File details
File name: 5amedint.exe
Name: MindSpark Toolbar Platform for Internet Explorer and Firefox
Description: Run a MindSpark DLL as an App
Version: 1, 0, 1, 0
Product version: 2, 3, 0, 0
Size: 21.55 KB
Original file name: t8MedInt.exe
Digital certificate
Resource utilization
 | CPU utilization averages |
Total CPU: 0.0010237629%
Privileged CPU:
0.0002511116%

User CPU:
0.00077265123035%

Privileged CPU time: 130.19 ms
Privileged CPU time /min: 0 ms
CPU cycle count:
518,648,264
CPU cycle count /min: 759,505
 | Memory utilization averages |
Committed memory:
70.79 MB
Peak committed memory: 75.68 MB
Paged memory:
2.77 MB
Peak paged memory: 2.8 MB
Paged system memory:
65.22 KB
Non-paged system memory: 8.86 KB
Working set memory:
5.43 MB
Peak working set memory: 9.76 MB
Min working set memory: 5.43 MB
Private memory:
2.77 MB
Page faults:
20,768
Page faults /min: 30
 | Process I/O averages |
Total read operations:
247
Read operations /min: 1
Total read transfer: 266.97 KB
Read transfer /min: 400 Bytes
Total write operations:
113
Write operations /min: 1
Total write transfer: 87.12 KB
Write transfer /min: 131 Bytes
Total other operations:
1,587
Other operations /min: 2
Total other transfer: 10.96 KB
Other Transfer /min: 16 Bytes
 | GUI Object Averages |
GDI objects:
9
Peak GDI objects: 10
USER objects:
6
Peak USER objects: 6
Resources
Handle count average: 348
Thread count average: 7
Thread resource averages
Total CPU: 0.000174021225%
Privileged CPU: 0.000135349842%
User CPU: 0.000038671383%
CPU Cycle count /sec: 7,314
Module memory size: 20 KB
Total CPU: 0.000116015025%
Privileged CPU: 0.000116015025%
User CPU: 0.000000000000%
CPU Cycle count /sec: 2,262
Module memory size: 88 KB
Process details
Runs as (owner): User
Integrety level: Medium
Windows platform: 32-bit
Parent Process
Process Command
C:\Program Files1\MYWEBF~2\bar\1.bin\5amedint.exe C:\Program Files1\MYWEBF~2\bar\1.bin\5ascript.dll,#5 WeatherWidgetMultipleButton
Image hashes
MD5: 653d0282ab8f798bc435f9c0fbbb14de
SHA-1: e96a81614dec84d08db68394ecc6e59a3e9975e6
SHA-256: cdae650807e4b061d83bc555393e66395160d0c5b9830f75a4d213ae8ccdff1e
PE image details
Subsystem: Windows GUI
File packed: No
Import Table
kernel32.dll

FreeLibrary
GetProcAddress
LoadLibraryExA
GetModuleFileNameA
lstrcpyA
lstrlenA
GetStartupInfoA
ExitProcess
GetCommandLineA
GetModuleHandleA
DebugBreak
HeapAlloc
GetProcessHeap
HeapReAlloc
HeapFree
user32.dll
