File details
File name: sidebar.exe
Name: Windows Desktop Gadgets
Description: Microsoft® Windows® Operating System
Version: 6.1.7600.16385 (win7_rtm.090713-1255)
Product version: 1.0.7600.16385
Size: 1.12 MB
Original file name: sidebar.EXE.MUI
Windows file protection:
Yes
Resource utilization
 | CPU utilization averages |
Total CPU: 0.0102078977%
Privileged CPU:
0.0056674826%

User CPU:
0.00454041506530%

Privileged CPU time: 117397100.11 ms
Privileged CPU time /min: 11,229 ms
CPU cycle count:
119,108,158
CPU cycle count /min: 95,513,045
Context switches /sec:
94
 | Memory utilization averages |
Committed memory:
191.74 MB
Peak committed memory: 197.18 MB
Paged memory:
29.66 MB
Peak paged memory: 34.23 MB
Paged system memory:
281.13 KB
Non-paged system memory: 20.34 KB
Working set memory:
27.39 MB
Peak working set memory: 39.02 MB
Min working set memory: 20.24 MB
Private memory:
29.66 MB
Page faults:
3,748,776
Page faults /min: 6,250
 | Process I/O averages |
Total read operations:
29,657
Read operations /min: 13
Total read transfer: 38.19 MB
Read transfer /min: 23.32 KB
Total write operations:
3,707
Write operations /min: 3
Total write transfer: 499.7 KB
Write transfer /min: 1.59 KB
Total other operations:
536,221
Other operations /min: 822
Total other transfer: 16.56 MB
Other Transfer /min: 14.06 KB
 | GUI Object Averages |
GDI objects:
53
Peak GDI objects: 66
USER objects:
51
Peak USER objects: 65
Resources
Handle count average: 480
Thread count average: 24
Thread resource averages
Total CPU: 0.229180744834%
Privileged CPU: 0.075748863558%
User CPU: 0.153431881275%
CPU Cycle count /sec: 7,800,946
Context switches /sec: 11
Module memory size: 1.14 MB
ntdll.dll

Total CPU: 0.093493050239%
Privileged CPU: 0.038586503630%
User CPU: 0.054906546609%
CPU Cycle count /sec: 1,205,222
Context switches /sec: 11
Module memory size: 1.24 MB
Total CPU: 0.031289571583%
Privileged CPU: 0.027327204702%
User CPU: 0.003962366881%
CPU Cycle count /sec: 1,519,156
Context switches /sec: 18
Module memory size: 13.69 MB
ntdll.dll

Total CPU: 0.018571554645%
Privileged CPU: 0.006392377585%
User CPU: 0.012179177060%
CPU Cycle count /sec: 555,845
Context switches /sec: 6
Module memory size: 1.23 MB
ntdll.dll

Total CPU: 0.012538963340%
Privileged CPU: 0.008604255793%
User CPU: 0.003934707547%
CPU Cycle count /sec: 575,468
Context switches /sec: 6
Module memory size: 1.23 MB
ntdll.dll

Total CPU: 0.011819511863%
Privileged CPU: 0.001367698951%
User CPU: 0.010451812911%
CPU Cycle count /sec: 582,338
Context switches /sec: 5
Module memory size: 1.23 MB
Total CPU: 0.008796914647%
Privileged CPU: 0.004576274748%
User CPU: 0.004220639899%
CPU Cycle count /sec: 1,950,025
Context switches /sec: 62
Module memory size: 11.77 MB
mscorwks.dll

Total CPU: 0.008550684596%
Privileged CPU: 0.000987237612%
User CPU: 0.007563446984%
CPU Cycle count /sec: 158,394
Module memory size: 5.67 MB
Total CPU: 0.003063758682%
Privileged CPU: 0.002162653187%
User CPU: 0.000901105495%
CPU Cycle count /sec: 1,301,447
Module memory size: 11.76 MB
Total CPU: 0.002559289847%
Privileged CPU: 0.002098617674%
User CPU: 0.000460672172%
CPU Cycle count /sec: 55,378
Module memory size: 11.76 MB
Total CPU: 0.002318593730%
Privileged CPU: 0.001726672569%
User CPU: 0.000591921161%
CPU Cycle count /sec: 70,365
Module memory size: 13.68 MB
Total CPU: 0.002113288469%
Privileged CPU: 0.002113288469%
User CPU: 0.000000000000%
CPU Cycle count /sec: 19,922
Module memory size: 5.71 MB
msvcrt.dll

Total CPU: 0.001671519816%
Privileged CPU: 0.000474629163%
User CPU: 0.001196890653%
CPU Cycle count /sec: 26,554
Module memory size: 688 KB
Total CPU: 0.001257350264%
Privileged CPU: 0.000688227245%
User CPU: 0.000569123018%
CPU Cycle count /sec: 267,108
Context switches /sec: 10
Module memory size: 11.77 MB
Total CPU: 0.001219911572%
Privileged CPU: 0.000592318068%
User CPU: 0.000627593504%
CPU Cycle count /sec: 274,192
Context switches /sec: 15
Module memory size: 13.69 MB
Total CPU: 0.001059617718%
Privileged CPU: 0.000776885039%
User CPU: 0.000282732679%
CPU Cycle count /sec: 206,676
Context switches /sec: 4
Module memory size: 11.72 MB
wininet.dll

Total CPU: 0.000884239037%
Privileged CPU: 0.000353695615%
User CPU: 0.000530543422%
CPU Cycle count /sec: 116,047
Module memory size: 980 KB
msvcrt.dll

Total CPU: 0.000860860905%
Privileged CPU: 0.000262330702%
User CPU: 0.000598530203%
CPU Cycle count /sec: 32,277
Module memory size: 688 KB
Total CPU: 0.000817803444%
Privileged CPU: 0.000272601681%
User CPU: 0.000545201763%
CPU Cycle count /sec: 69,224
Module memory size: 13.69 MB
mscorwks.dll

Total CPU: 0.000777767983%
Privileged CPU: 0.000019942769%
User CPU: 0.000757825214%
CPU Cycle count /sec: 7,951
Module memory size: 5.67 MB
Process details
Runs as (owner): User
Integrety level: Medium
Windows platform: 32-bit
Runs as a service: Yes
Parent Processes
Child Processes
Process Commands
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
"C:\Program Files\Windows Sidebar\sidebar.exe" /showGadgets
"C:\Program Files\Windows Sidebar\sidebar.exe" (null)
Scheduled task details
Name: SidebarExecute
Command: \SidebarExecute
Startup files (user) run details
Name: Sidebar
Command: C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
User start menu folder details
Name: sidebar.exe
Network connectivity
TCP: 217-212-252-121.customer.teliacarrier.com on port 64782
UDP: LISTENING on port 56821
UDP: LISTENING on port 54921
UDP: LISTENING on port 64103
UDP: LISTENING on port 55911
UDP: LISTENING on port 56117
UDP: LISTENING on port 55739
UDP: LISTENING on port 60986
UDP: LISTENING on port 65267
UDP: LISTENING on port 57423
UDP: LISTENING on port 51826
UDP: LISTENING on port 49154
Image hashes
MD5: dcca4b04af87e52ef9eaa2190e06cbac
SHA-1: 12a602b86fc394b1c88348fb099685eabb876495
SHA-256: 8858cfd159bb32ae9fcca1a79ea83c876d481a286e914071d48f42fca5b343d8
PE image details
Subsystem: Windows GUI
Langauge*: Microsoft Visual C++
File entropy: 6.93849
File packed: No
Import Table
advapi32.dll

EventRegister
EventUnregister
EventWrite
RegCloseKey
RegOpenKeyExW
IsTextUnicode
RegQueryValueExW
RegNotifyChangeKeyValue
CryptGetHashParam
CryptHashData
CryptAcquireContextA
CryptCreateHash
CryptDestroyHash
RegisterEventSourceW
CryptReleaseContext
GetTokenInformation
OpenProcessToken
EventEnabled
RegDeleteKeyW
DeregisterEventSource
ReportEventW
crypt32.dll

CertCloseStore
CertFreeCertificateContext
CertGetNameStringW
CryptDecodeObject
CertFindCertificateInStore
CryptMsgGetParam
CryptQueryObject
CryptMsgClose
cryptui.dll

CryptUIDlgViewCertificateW
dwmapi.dll

DwmUpdateThumbnailProperties
DwmSetWindowAttribute
gdi32.dll

ExtTextOutW
GetDeviceCaps
CreateDIBSection
SetLayout
CreateFontIndirectW
SetBkColor
GetDIBits
SaveDC
RestoreDC
SetViewportOrgEx
GetWindowOrgEx
StretchBlt
SetStretchBltMode
GetPath
GdiGetBatchLimit
DeleteDC
DeleteObject
CreateCompatibleDC
OffsetWindowOrgEx
SetBkMode
GetClipBox
GetObjectW
BitBlt
GetStockObject
SelectObject
LineDDA
GetTextExtentExPointW
SetTextColor
GdiAlphaBlend
gdiplus.dll
kernel32.dll

InterlockedIncrement
Sleep
InitializeCriticalSectionAndSpinCount
InterlockedCompareExchange
EnterCriticalSection
LeaveCriticalSection
DeleteFileW
GetTickCount
GetModuleHandleW
InterlockedExchange
InterlockedPushEntrySList
QueryDepthSList
OpenThread
GetCurrentThreadId
TlsSetValue
lstrcmpiW
ExpandEnvironmentStringsW
ReadFile
GetFileSizeEx
CreateFileW
CompareStringOrdinal
WritePrivateProfileStringW
WriteFile
HeapAlloc
GetProcessHeap
HeapFree
CloseHandle
SetEvent
CreateEventW
GetStartupInfoW
GetThreadPreferredUILanguages
CopyFileW
lstrcmpW
SetFileAttributesW
FreeLibrary
LoadLibraryExW
SetFilePointer
GetTempFileNameW
GetTempPathW
MultiByteToWideChar
SetCurrentDirectoryA
CreateDirectoryA
SetCurrentDirectoryW
CreateDirectoryW
ResetEvent
WaitForMultipleObjects
TlsGetValue
SearchPathW
GlobalFree
SetFilePointerEx
DelayLoadFailureHook
GetProcAddress
GetUserDefaultUILanguage
GetSystemDefaultUILanguage
CompareStringW
ReleaseMutex
WaitForSingleObject
GetLastError
CreateMutexW
lstrlenW
GetModuleFileNameW
TlsAlloc
RegisterApplicationRestart
LocalFree
UnmapViewOfFile
GetLocaleInfoW
CreateFileMappingW
MapViewOfFile
SetLastError
FindResourceExW
GetCommandLineW
DeleteCriticalSection
CreateThread
InitializeCriticalSection
SetErrorMode
HeapSetInformation
LocalAlloc
RegEnumKeyExW
IsValidLocale
GetTimeZoneInformation
GetDynamicTimeZoneInformation
FileTimeToSystemTime
SystemTimeToTzSpecificLocalTime
GlobalLock
GlobalUnlock
GetDiskFreeSpaceExW
SetVolumeLabelW
GetLogicalDrives
GetVolumeInformationW
GetDriveTypeW
GetSystemWindowsDirectoryW
GetSystemInfo
GetComputerNameW
GetSystemPowerStatus
GlobalMemoryStatusEx
OutputDebugStringW
RaiseException
GetEnvironmentVariableW
GetFileAttributesW
GetFileSize
QueueUserAPC
InterlockedFlushSList
InitializeSListHead
CompareFileTime
GetFileAttributesExW
GetSystemTime
SystemTimeToFileTime
FindFirstFileW
FindNextFileW
FindClose
DeleteAtom
GetTickCount64
GlobalGetAtomNameW
GlobalDeleteAtom
QueryPerformanceFrequency
CreateWaitableTimerW
SetWaitableTimer
TlsFree
CancelWaitableTimer
WideCharToMultiByte
GlobalAddAtomW
GetVersionExW
LoadLibraryW
GetFileTime
FindResourceW
SizeofResource
LoadResource
LockResource
FormatMessageW
MulDiv
RegLoadMUIStringW
GetSystemDirectoryW
RegDeleteValueW
RegSetValueExW
RegCreateKeyExW
InterlockedDecrement
UnhandledExceptionFilter
GetCurrentProcess
TerminateProcess
GetSystemTimeAsFileTime
GetCurrentProcessId
QueryPerformanceCounter
GetModuleHandleA
SetUnhandledExceptionFilter
GetStartupInfoA
LoadLibraryExA
msvcrt.dll
ntdll.dll

WinSqmIncrementDWORD
RtlIpv4AddressToStringExW
NtQuerySystemInformation
WinSqmSetDWORD
WinSqmIsOptedIn
WinSqmAddToStreamEx
WinSqmAddToStream
RtlIpv6AddressToStringExW
ole32.dll

CoUninitialize
CoInitializeEx
OleUninitialize
CoTaskMemFree
CoCreateInstance
CreateBindCtx
CoTaskMemAlloc
CLSIDFromProgID
StringFromGUID2
CoCreateGuid
PropVariantClear
ReleaseStgMedium
StringFromCLSID
GetHGlobalFromStream
CLSIDFromString
CreateStreamOnHGlobal
CoInitialize
OleInitialize
sfc_os.dll

shell32.dll

DragAcceptFiles
SHGetFileInfoW
SHBindToObject
DragFinish
SHCreateItemFromIDList
ShellExecuteW
SHFileOperationW
SHGetFolderPathAndSubDirW
CommandLineToArgvW
SHCreateDirectoryExW
DragQueryPoint
ShellExecuteExW
SHGetFolderPathEx
SHEmptyRecycleBinW
SHGetPathFromIDListW
SHBrowseForFolderW
SHGetFolderLocation
SHCreateItemWithParent
DragQueryFileW
SHParseDisplayName
shlwapi.dll

PathIsDirectoryW
PathFindFileNameW
PathFindExtensionW
PathRemoveExtensionW
PathIsRelativeW
PathCombineW
PathFileExistsW
PathIsURLW
UrlIsW
UrlEscapeW
PathRemoveFileSpecW
PathCreateFromUrlW
PathCanonicalizeW
UrlUnescapeW
StrStrNW
StrStrNIW
PathIsPrefixW
SHCreateStreamOnFileW
SHCreateStreamOnFileEx
PathGetDriveNumberW
AssocQueryStringW
PathCommonPrefixW
PathGetArgsW
StrToIntExW
urlmon.dll

URLOpenBlockingStreamW
CreateURLMoniker
CoInternetGetSession
user32.dll

SendMessageW
DispatchMessageW
TranslateMessage
PeekMessageW
SendMessageTimeoutW
RegisterWindowMessageW
CreateWindowExW
CharPrevW
GetThreadDesktop
OpenInputDesktop
RegisterPowerSettingNotification
MessageBoxIndirectW
CharUpperBuffW
CharUpperW
MessageBeep
UnhookWinEvent
GetUserObjectInformationW
FindWindowW
PostMessageW
GetWindowThreadProcessId
AllowSetForegroundWindow
GetShellWindow
LoadStringW
MessageBoxW
DrawFrameControl
LoadImageW
InsertMenuItemW
SetRectEmpty
CloseDesktop
GetMonitorInfoW
SetWinEventHook
UnregisterPowerSettingNotification
InflateRect
DrawTextExW
GetIconInfo
SwitchToThisWindow
ShowWindow
SetDlgItemTextW
SetForegroundWindow
SetFocus
OffsetRect
PtInRect
GetForegroundWindow
GetCursorPos
SetTimer
GetDlgItem
GetWindowRect
SetWindowPos
ScreenToClient
KillTimer
DestroyIcon
IsWindow
DestroyWindow
GetSystemMetrics
CharNextW
ReleaseDC
GetDC
GetWindowLongW
DestroyMenu
RemoveMenu
GetSubMenu
LoadMenuW
SetWindowLongW
GetWindow
DeleteMenu
GetMenuItemCount
EndPaint
MapWindowPoints
BeginPaint
GetParent
FillRect
SetRect
GetClientRect
RemovePropW
DefWindowProcW
SetPropW
GetPropW
RegisterClassW
LoadCursorW
CreateDialogParamW
GetKeyState
GetDoubleClickTime
SetCapture
ReleaseCapture
GetFocus
NotifyWinEvent
UpdateLayeredWindow
RedrawWindow
IsIconic
SetCursor
GetMessagePos
GetKeyboardState
GetMessageTime
MonitorFromPoint
IntersectRect
IsHungAppWindow
IsWindowVisible
PostQuitMessage
UnregisterHotKey
GetWindowTextW
SetParent
RegisterHotKey
GetSysColor
SystemParametersInfoW
MonitorFromWindow
GetDesktopWindow
EnumDisplayMonitors
TrackPopupMenu
CheckMenuItem
CopyRect
PrintWindow
SetLayeredWindowAttributes
CloseGestureInfoHandle
DeregisterShellHookWindow
RegisterShellHookWindow
GetWindowInfo
IsDialogMessageW
MsgWaitForMultipleObjectsEx
EndDeferWindowPos
DeferWindowPos
BeginDeferWindowPos
EqualRect
IsChild
SetActiveWindow
LoadIconW
AdjustWindowRectEx
AppendMenuW
CreatePopupMenu
EndDialog
EnableWindow
SetWindowTextW
GetAsyncKeyState
uxtheme.dll

DrawThemeTextEx
IsThemeActive
OpenThemeData
DrawThemeBackground
CloseThemeData
SetWindowThemeAttribute