File details
File name: iexplore.exe
Name: Windows® Internet Explorer
Description: Internet Explorer
Version: 8.00.7600.16385 (win7_rtm.090713-1255)
Product version: 8.00.7600.16385
Size: 657.27 KB
Original file name: IEXPLORE.EXE.MUI
Windows file protection:
Yes
Digital certificate
Certificate authority:
Microsoft Corporation
Expiration date: 10/26/2013
Resource utilization
 | CPU utilization averages |
Total CPU: 0.4538726492%
Privileged CPU:
0.2567478314%

User CPU:
0.19712481779711%

Privileged CPU time: 33222939.97 ms
Privileged CPU time /min: 864 ms
CPU cycle count:
84,982,663
CPU cycle count /min: 51,645,202
Context switches /sec:
276
 | Memory utilization averages |
Committed memory:
304.39 MB
Peak committed memory: 320.49 MB
Paged memory:
89.79 MB
Peak paged memory: 99.7 MB
Paged system memory:
205.11 KB
Non-paged system memory: 36.12 KB
Working set memory:
66.68 MB
Peak working set memory: 103.01 MB
Min working set memory: 64.08 MB
Private memory:
89.79 MB
Page faults:
386,209
Page faults /min: 198
 | Process I/O averages |
Total read operations:
14,796
Read operations /min: 6
Total read transfer: 20.52 MB
Read transfer /min: 11.43 KB
Total write operations:
13,977
Write operations /min: 46
Total write transfer: 29.63 MB
Write transfer /min: 105.19 KB
Total other operations:
122,708
Other operations /min: 108
Total other transfer: 2.67 MB
Other Transfer /min: 3.17 KB
 | GUI Object Averages |
GDI objects:
439
Peak GDI objects: 502
USER objects:
273
Peak USER objects: 349
Resources
Handle count average: 1,173
Thread count average: 38
Thread resource averages
iertutil.dll

Total CPU: 1.502463501776%
Privileged CPU: 0.460196820630%
User CPU: 1.042266681145%
CPU Cycle count /sec: 65,408,920
Context switches /sec: 108
Module memory size: 1.98 MB
wow64.dll

Total CPU: 0.746464753577%
Privileged CPU: 0.310641902551%
User CPU: 0.435822851025%
CPU Cycle count /sec: 37,870,753
Context switches /sec: 51
Module memory size: 252 KB
Total CPU: 0.352328554559%
Privileged CPU: 0.301995903908%
User CPU: 0.050332650651%
CPU Cycle count /sec: 10,918,594
Context switches /sec: 16
Module memory size: 396 KB
Total CPU: 0.279465161942%
Privileged CPU: 0.225799812814%
User CPU: 0.053665349128%
CPU Cycle count /sec: 4,691,750
Module memory size: 100 KB
wow64.dll

Total CPU: 0.261534400114%
Privileged CPU: 0.172601163799%
User CPU: 0.088933236316%
CPU Cycle count /sec: 13,662,164
Context switches /sec: 17
Module memory size: 252 KB
iertutil.dll

Total CPU: 0.223595926155%
Privileged CPU: 0.085943744510%
User CPU: 0.137652181645%
CPU Cycle count /sec: 11,269,141
Module memory size: 1.99 MB
Total CPU: 0.164774867697%
Privileged CPU: 0.071641246825%
User CPU: 0.093133620872%
CPU Cycle count /sec: 3,784,876
Context switches /sec: 1
Module memory size: 1.78 MB
Total CPU: 0.160951222484%
Privileged CPU: 0.138563344027%
User CPU: 0.022387878457%
CPU Cycle count /sec: 6,016,020
Context switches /sec: 1
Module memory size: 376 KB
Total CPU: 0.157932115749%
Privileged CPU: 0.056960971930%
User CPU: 0.100971143819%
CPU Cycle count /sec: 5,505,811
Context switches /sec: 18
Module memory size: 252 KB
Total CPU: 0.155765380444%
Privileged CPU: 0.117518209164%
User CPU: 0.038247171281%
CPU Cycle count /sec: 6,290,747
Context switches /sec: 7
Module memory size: 10.5 MB
Total CPU: 0.128361793632%
Privileged CPU: 0.096271345224%
User CPU: 0.032090448408%
CPU Cycle count /sec: 7,687,555
Context switches /sec: 7
Module memory size: 376 KB
Total CPU: 0.120266858305%
Privileged CPU: 0.104313091387%
User CPU: 0.015953766918%
CPU Cycle count /sec: 6,199,347
Module memory size: 376 KB
Total CPU: 0.113923031173%
Privileged CPU: 0.081695940676%
User CPU: 0.032227090496%
CPU Cycle count /sec: 3,337,533
Context switches /sec: 71
Module memory size: 664 KB
Total CPU: 0.110507580005%
Privileged CPU: 0.098797529546%
User CPU: 0.011710050460%
CPU Cycle count /sec: 1,826,250
Module memory size: 1.98 MB
ntdll.dll

Total CPU: 0.109473542772%
Privileged CPU: 0.048020328107%
User CPU: 0.061453214665%
CPU Cycle count /sec: 2,110,049
Module memory size: 1.5 MB
Total CPU: 0.109409039217%
Privileged CPU: 0.014092971280%
User CPU: 0.095316067937%
CPU Cycle count /sec: 2,609,907
Module memory size: 692 KB
msvcr90.dll

Total CPU: 0.101011301117%
Privileged CPU: 0.057720743496%
User CPU: 0.043290557622%
CPU Cycle count /sec: 3,279,034
Context switches /sec: 8
Module memory size: 652 KB
Total CPU: 0.087208056296%
Privileged CPU: 0.056552792178%
User CPU: 0.030655264119%
CPU Cycle count /sec: 1,746,193
Context switches /sec: 2
Module memory size: 1 MB
Total CPU: 0.085475934273%
Privileged CPU: 0.073495037859%
User CPU: 0.011980896414%
CPU Cycle count /sec: 2,366,274
Context switches /sec: 29
Module memory size: 1.01 MB
iertutil.dll

Total CPU: 0.085061721768%
Privileged CPU: 0.034069134179%
User CPU: 0.050992587589%
CPU Cycle count /sec: 3,878,851
Module memory size: 2 MB
Process details
Runs as (owner): User
Integrety level: Low
Windows platform: 32-bit
Parent Processes
Child Process
Process Commands
"C:\Program Files\Internet Explorer\iexplore.exe" SCODEC:6024 CREDAC:465153
"C:\Program Files\Internet Explorer\iexplore.exe" SCODEC:6024 CREDAC:6406
"C:\Program Files\Internet Explorer\iexplore.exe"
"C:\Program Files\Internet Explorer\iexplore.exe" SCODEC:6992 CREDAC:71937
"C:\Program Files\Internet Explorer\iexplore.exe" SCODEC:4856 CREDAC:79873
Shell open command details
Name: InternetShortcut
Command: "C:\Program Files\internet explorer\iexplore.exe" "%1"
Scheduled task details
CLSID: {2DCD1DD7-C11A-429A-A73E-B7C06B5288CE}
Command: \{2DCD1DD7-C11A-429A-A73E-B7C06B5288CE}
Image hashes
MD5: c613e69c3b191bb02c7a191741a1d024
SHA-1: 1962888198ae972cbb999d0dc9c9ee5cbabf5e0d
SHA-256: e285feeca968b3ca22017a64363eea5e69ccd519696671df523291b089597875
PE image details
Subsystem: Windows GUI
Langauge*: Microsoft Visual C++
File packed: No
Import Table
advapi32.dll

TraceEvent
GetTraceEnableFlags
GetTraceEnableLevel
GetTraceLoggerHandle
UnregisterTraceGuids
RegisterTraceGuidsW
RegCloseKey
RegQueryValueExW
RegOpenKeyExW
EventWrite
EventUnregister
EventRegister
RegEnumValueW
RegEnumKeyW
RegSetValueExW
RegCreateKeyExW
RegDeleteValueW
RegDeleteKeyW
RegQueryInfoKeyW
RegQueryValueW
api-ms-win-downlevel-advapi32-l1-1-0.dll

RegGetValueW
RegOpenKeyExW
EventRegister
RegCloseKey
EventUnregister
EventWrite
RegQueryValueExW
api-ms-win-downlevel-shlwapi-l1-1-0.dll

gdi32.dll

CreateFontIndirectW
GetObjectW
DeleteObject
kernel32.dll

CreateFileW
GetWindowsDirectoryW
TerminateProcess
DeleteCriticalSection
HeapSetInformation
SetErrorMode
InitializeCriticalSection
LoadLibraryW
GetVersionExW
GetProcAddress
GetModuleHandleW
IsWow64Process
GetCurrentProcess
RaiseException
LoadLibraryA
GetSystemDefaultLCID
GetUserDefaultLCID
GetFileTime
GetCommandLineW
LocalAlloc
ExpandEnvironmentStringsW
CreateProcessW
LocalFree
lstrlenW
SetDllDirectoryW
GetLastError
SetLastError
CloseHandle
InitializeCriticalSectionAndSpinCount
LeaveCriticalSection
EnterCriticalSection
SearchPathW
GetUserDefaultUILanguage
GetSystemDefaultUILanguage
UnmapViewOfFile
FreeLibrary
GetLocaleInfoW
CreateFileMappingW
MapViewOfFile
LoadLibraryExW
LoadResource
FindResourceExW
UnhandledExceptionFilter
GetSystemTimeAsFileTime
ReleaseMutex
GetCurrentProcessId
GetCurrentThreadId
GetTickCount
QueryPerformanceCounter
GetModuleHandleA
SetUnhandledExceptionFilter
GetStartupInfoW
InterlockedCompareExchange
Sleep
InterlockedExchange
VerifyVersionInfoW
GetCurrentDirectoryW
GetModuleFileNameW
VerSetConditionMask
Wow64DisableWow64FsRedirection
Wow64RevertWow64FsRedirection
GetVersionExA
LoadLibraryExA
SetProcessDEPPolicy
VirtualAlloc
GetNativeSystemInfo
CreateMutexW
WaitForSingleObjectEx
GetLongPathNameW
GetFileAttributesExW
CompareFileTime
lstrcmpW
WaitForSingleObject
FindResourceW
OutputDebugStringA
OpenProcess
CreateEventW
WaitForMultipleObjects
CompareStringW
msvcrt.dll
ntdll.dll

ole32.dll

CoInitialize
CoUninitialize
CoTaskMemFree
CoTaskMemAlloc
CoCreateInstance
StringFromGUID2
CoGetTreatAsClass
shell32.dll

shlwapi.dll

PathCombineW
UrlCanonicalizeW
PathIsURLW
SHGetValueW
SHSetValueW
SHRegGetValueW
PathRemoveFileSpecW
PathAppendW
PathQuoteSpacesW
UrlCreateFromPathW
UrlApplySchemeW
SHEnumValueW
StrStrW
PathFindFileNameW
PathAddBackslashW
SHQueryValueExW
StrToIntExW
SHDeleteKeyW
PathUnquoteSpacesW
user32.dll

CharNextW
SendMessageTimeoutW
IsWindowVisible
IsWindowEnabled
AllowSetForegroundWindow
GetWindowThreadProcessId
FindWindowExW
MessageBoxW
LoadStringW
SendMessageW
CharUpperW
GetUserObjectInformationW
GetThreadDesktop
DialogBoxParamW
IsDlgButtonChecked
EnableWindow
EndDialog
SetDlgItemTextW
GetDlgItem
SendDlgItemMessageW
GetParent
version.dll

GetFileVersionInfoSizeW
GetFileVersionInfoW
VerQueryValueW