File details
File name: flashplayerplugin_11_8_800_168.exe
Name: Shockwave Flash
Description: Adobe Flash Player 11.8 r800
Version: 11,8,800,168
Size: 1.78 MB
Original file name: SAFlashPlayer.exe
Digital certificate
Certificate authority:
VeriSign
Effective date: 2/24/2013
Expiration date: 2/26/2014
Resource utilization
 | CPU utilization averages |
Total CPU: 0.0253323648%
Privileged CPU:
0.0169842796%

User CPU:
0.00834808521643%

Privileged CPU time: 100230642.5 ms
Privileged CPU time /min: 0 ms
CPU cycle count:
1,858,590,644
Context switches /sec:
1,556
 | Memory utilization averages |
Committed memory:
221.93 MB
Peak committed memory: 230.95 MB
Paged memory:
84.11 MB
Peak paged memory: 86.1 MB
Paged system memory:
238.93 KB
Non-paged system memory: 31.96 KB
Working set memory:
52.23 MB
Peak working set memory: 52.54 MB
Min working set memory: 26.94 MB
Private memory:
84.11 MB
Page faults:
22,593
Page faults /min: 0
 | Process I/O averages |
Total read operations:
156,656
Total read transfer: 108.48 MB
Total write operations:
172,662
Total write transfer: 84.65 MB
Total other operations:
8,628
Total other transfer: 821.98 KB
 | GUI Object Averages |
GDI objects:
20
Peak GDI objects: 23
USER objects:
24
Peak USER objects: 28
Resources
Handle count average: 629
Thread count average: 29
Process details
Runs as (owner): User
Integrety level: Medium
Windows platform: 64-bit
Parent Processes
Child Process
Process Commands
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_168.exe" --proxy-stub-channel=Flash8628.56BDF308.5982 --host-broker-channel=Flash8628.56BDF308.16040 --host-pid=8628 --host-npapi-version=27 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_168.dll"
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_168.exe" --channel=6848.0027F5A8.874793183 --proxy-stub-channel=Flash8628.56BDF308.5982 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_168.dll" --host-npapi-version=27 --type=renderer
Image hashes
MD5: 8d4afd5f4955a52c39c8c424fe5516d9
SHA-1: c4e5eb5f6ea2423734f64eaf84952ac8ef276c1e
PE image details
File packed: No
Import Table
advapi32.dll

GetTokenInformation
OpenProcessToken
CreateProcessAsUserW
RegQueryInfoKeyW
RegEnumKeyExW
ConvertSidToStringSidW
CheckTokenMembership
CreateWellKnownSid
CopySid
LookupPrivilegeValueW
EqualSid
DuplicateToken
DuplicateTokenEx
RegCreateKeyExW
RegSetValueExW
RegDisablePredefinedCache
RevertToSelf
SetTokenInformation
GetLengthSid
ConvertStringSidToSidW
SetThreadToken
CreateRestrictedToken
RegSetValueExA
RegOpenKeyExA
RegQueryValueExA
RegCreateKeyExA
RegOpenKeyExW
RegQueryValueExW
RegCloseKey
GetSecurityInfo
SetEntriesInAclW
SetSecurityInfo
FreeSid
AllocateAndInitializeSid
comdlg32.dll

CommDlgExtendedError
GetSaveFileNameW
GetOpenFileNameW
crypt32.dll

CertFindCertificateInStore
CertFreeCertificateContext
CertCloseStore
CertGetCertificateChain
CertAddCertificateContextToStore
CertVerifySubjectCertificateContext
CertFreeCertificateChain
CertOpenStore
CertVerifyCertificateChainPolicy
CertAddStoreToCollection
CertVerifyRevocation
CertCompareCertificate
CertCreateCertificateContext
CryptGetMessageCertificates
CryptVerifyMessageSignature
CertEnumCertificatesInStore
dinput8.dll

gdi32.dll

DeleteEnhMetaFile
GetDIBits
GetWorldTransform
EnumEnhMetaFile
PlayEnhMetaFileRecord
ModifyWorldTransform
SetWorldTransform
SetEnhMetaFileBits
CombineRgn
CreateRectRgn
GetRgnBox
GetEnhMetaFileBits
GetObjectW
GetCurrentObject
CreateICW
GetEnhMetaFileHeader
GetFontData
CreateScalableFontResourceW
RemoveFontResourceW
CreateFontIndirectW
GetTextColor
GetTextAlign
GetBkMode
GetStretchBltMode
SetPolyFillMode
CreateEnhMetaFileW
GetPolyFillMode
GetMiterLimit
CreateDCA
AddFontResourceW
StartDocW
AbortDoc
PlayEnhMetaFile
EndPage
StartPage
ExtEscape
Escape
ResetDCW
GetDeviceCaps
GetObjectType
CloseEnhMetaFile
GetClipBox
SelectObject
DeleteDC
DeleteObject
EndDoc
SetDIBits
CreateCompatibleBitmap
CreateDCW
imm32.dll

ImmGetOpenStatus
ImmCreateContext
kernel32.dll
mpr.dll

WNetAddConnection2W
WNetGetResourceInformationW
WNetGetUniversalNameW
ole32.dll

CoInitializeEx
GetHGlobalFromStream
CoMarshalInterface
CreateBindCtx
CoSetProxyBlanket
StringFromCLSID
ReleaseStgMedium
CoUnmarshalInterface
MkParseDisplayName
CoTaskMemFree
CoTaskMemAlloc
CoCreateInstance
CoUninitialize
CoInitialize
CreateStreamOnHGlobal
psapi.dll

GetProcessImageFileNameW
GetMappedFileNameW
secur32.dll

FreeContextBuffer
FreeCredentialsHandle
DeleteSecurityContext
ApplyControlToken
EncryptMessage
DecryptMessage
AcquireCredentialsHandleA
InitializeSecurityContextA
QueryContextAttributesA
QueryCredentialsAttributesA
shell32.dll

SHGetFolderPathW
SHGetPathFromIDListW
SHBrowseForFolderW
CommandLineToArgvW
SHFileOperationW
ShellExecuteW
ShellExecuteExW
SHGetFolderPathA
SHCreateDirectoryExW
SHGetKnownFolderPath
shlwapi.dll

PathRemoveFileSpecW
UrlIsW
PathIsURLW
PathAddBackslashW
PathAppendW
PathFileExistsA
PathFindExtensionW
PathIsRelativeW
PathCanonicalizeW
UrlCanonicalizeW
AssocQueryStringW
PathIsDirectoryW
PathFileExistsW
PathCreateFromUrlW
urlmon.dll

user32.dll

LoadCursorW
LoadIconW
GetClassNameW
IsWindowEnabled
CloseWindow
GetAsyncKeyState
SetCursor
GetClientRect
MapWindowPoints
MonitorFromWindow
GetParent
GetTopWindow
ScreenToClient
GetKeyState
SetCursorPos
ClientToScreen
GetWindowRect
EnumThreadWindows
FindWindowExW
GetClipboardFormatNameA
GetClipboardData
ReleaseDC
GetDC
OpenClipboard
CloseClipboard
EmptyClipboard
SetClipboardData
IsClipboardFormatAvailable
EnumClipboardFormats
CountClipboardFormats
GetClipboardFormatNameW
GetClipboardSequenceNumber
GetClipboardOwner
GetPriorityClipboardFormat
GetOpenClipboardWindow
EnumWindows
GetClipboardViewer
SetClipboardViewer
RegisterClipboardFormatW
RegisterClipboardFormatA
InvalidateRect
GetUpdateRect
AllowSetForegroundWindow
RedrawWindow
IsWindow
CallWindowProcW
GetPropW
RemovePropW
SetWindowsHookExW
GetQueueStatus
PeekMessageW
UnhookWindowsHookEx
GetWindowThreadProcessId
AttachThreadInput
SetActiveWindow
GetFocus
EnableWindow
IsWindowVisible
UpdateWindow
GetAncestor
GetWindowLongW
PostMessageW
SendMessageW
DefWindowProcW
RegisterClassExW
SetWindowPos
DestroyWindow
GetWindow
GetUserObjectInformationW
CreateDesktopW
CreateWindowStationW
CloseWindowStation
UserHandleGrantAccess
GetProcessWindowStation
GetThreadDesktop
GetDesktopWindow
ChangeClipboardChain
GetActiveWindow
GetCursorPos
WindowFromPoint
RegisterWindowMessageW
UnregisterClassW
ShowWindow
CreateWindowExW
CloseDesktop
OpenInputDesktop
SetThreadDesktop
SetProcessWindowStation
SetWindowLongW
WaitForInputIdle
GetForegroundWindow
PostQuitMessage
CallMsgFilterW
TranslateMessage
DispatchMessageW
MsgWaitForMultipleObjectsEx
WaitMessage
SetTimer
KillTimer
MsgWaitForMultipleObjects
MessageBoxW
SetPropW
GetClassNameA
CallNextHookEx
ValidateRect
DestroyIcon
userenv.dll

CreateEnvironmentBlock
DestroyEnvironmentBlock
wininet.dll

HttpEndRequestA
InternetQueryDataAvailable
InternetReadFile
InternetErrorDlg
HttpSendRequestA
HttpOpenRequestA
InternetConnectA
InternetOpenA
HttpAddRequestHeadersA
InternetSetOptionA
InternetQueryOptionA
InternetCloseHandle
HttpSendRequestExA
InternetWriteFile
HttpQueryInfoA
winmm.dll

timeBeginPeriod
timeGetTime
timeEndPeriod
winspool.drv

EnumPrintersA
DeviceCapabilitiesW
EnumPrintersW
ClosePrinter
GetPrinterW
SetPrinterW
DocumentPropertiesW
OpenPrinterW