File details
File name: applephotostreams.exe
Name: iCloud Control Panel
Description: Apple Photostreams Uploader Executable
Version: 7.13.13.5
Size: 58.32 KB
Original file name: ApplePhotoStreams.exe
Digital certificate
Certificate authority:
VeriSign
Resource utilization
 | CPU utilization averages |
Total CPU: 0.0003342947%
Privileged CPU:
0.0002206522%

User CPU:
0.00011364252157%

Privileged CPU time: 998.41 ms
Privileged CPU time /min: 1 ms
CPU cycle count:
1,136,107,992
CPU cycle count /min: 18,620,466
 | Memory utilization averages |
Committed memory:
169.92 MB
Peak committed memory: 176.68 MB
Paged memory:
13.4 MB
Peak paged memory: 13.61 MB
Paged system memory:
283.08 KB
Non-paged system memory: 41.33 KB
Working set memory:
28.81 MB
Peak working set memory: 28.91 MB
Min working set memory: 18.33 MB
Private memory:
13.4 MB
Page faults:
22,824
Page faults /min: 30
 | Process I/O averages |
Total read operations:
2,685
Read operations /min: 4
Total read transfer: 2.26 MB
Read transfer /min: 3.07 KB
Total write operations:
780
Write operations /min: 1
Total write transfer: 875.78 KB
Write transfer /min: 1.16 KB
Total other operations:
20,419
Other operations /min: 27
Total other transfer: 639.16 KB
Other Transfer /min: 869 Bytes
 | GUI Object Averages |
GDI objects:
23
Peak GDI objects: 25
USER objects:
16
Peak USER objects: 18
Resources
Handle count average: 627
Thread count average: 24
Thread resource averages
Total CPU: 0.000232817615%
Privileged CPU: 0.000172099000%
User CPU: 0.000060718615%
CPU Cycle count /sec: 8,286
Module memory size: 52 KB
ntdll.dll

Total CPU: 0.000055135630%
Privileged CPU: 0.000055135630%
User CPU: 0.000000000000%
CPU Cycle count /sec: 22,883
Module memory size: 1.66 MB
wow64cpu.dll

Total CPU: 0.000027568654%
Privileged CPU: 0.000000000000%
User CPU: 0.000027568654%
CPU Cycle count /sec: 1,915
Module memory size: 32 KB
Process details
Runs as (owner): User
Integrety level: High
Windows platform: 64-bit
Parent Process
Process Command
"C:\Program Files\Common Files\Apple\Internet Services\ApplePhotoStreams.exe" -Embedding
Startup files (user) run details
Name: ApplePhotoStreams
Command: C:\Program Files\Common Files\Apple\Internet Services\ApplePhotoStreams.exe
Network connectivity
UDP: LISTENING on port 50128
Image hashes
MD5: 799bcc829f48f19c5689478179060435
SHA-1: 0ec168b2a9c5ced7e528e4c72aa9da5ce921aa91
PE image details
Subsystem: Windows GUI
Langauge*: Microsoft Visual C++ 8.0
File packed: No
Import Table
advapi32.dll

RegCloseKey
RegCreateKeyW
RegOpenKeyExW
RegQueryValueExW
kernel32.dll

GetLastError
GetModuleFileNameW
GetEnvironmentVariableW
SetDllDirectoryW
GetFileAttributesW
WideCharToMultiByte
FreeEnvironmentStringsW
lstrlenW
CloseHandle
GetCommandLineW
GetCurrentThreadId
GetCurrentProcessId
LoadLibraryW
DebugBreak
GetProcAddress
SetUnhandledExceptionFilter
CreateToolhelp32Snapshot
Process32FirstW
Process32NextW
GetEnvironmentStringsW
OutputDebugStringA
LoadLibraryA
FreeLibrary
LocalAlloc
GetSystemTimeAsFileTime
GetTickCount
QueryPerformanceCounter
IsDebuggerPresent
UnhandledExceptionFilter
GetCurrentProcess
TerminateProcess
GetStartupInfoA
InterlockedCompareExchange
Sleep
InterlockedExchange
RaiseException
msvcp80.dll
msvcr80.dll
shell32.dll

shlwapi.dll

PathFindExtensionW
PathRemoveFileSpecW
PathFindFileNameW