File details
File name: taskeng.exe
Name: Task Scheduler Engine
Description: Microsoft® Windows® Operating System
Version: 6.1.7600.16385 (win7_rtm.090713-1255)
Product version: 6.1.7600.16385
Size: 453.5 KB
Original file name: taskeng.exe.mui
Windows file protection:
Yes
Resource utilization
 | CPU utilization averages |
Total CPU: 0.0019254858%
Privileged CPU:
0.0012038260%

User CPU:
0.00072165986086%

Privileged CPU time: 95847.55 ms
Privileged CPU time /min: 146 ms
CPU cycle count:
296,893,859
CPU cycle count /min: 1,811,319
Context switches /sec:
6
 | Memory utilization averages |
Committed memory:
55.09 MB
Peak committed memory: 60.62 MB
Paged memory:
2.71 MB
Peak paged memory: 2.92 MB
Paged system memory:
102.68 KB
Non-paged system memory: 9.31 KB
Working set memory:
5.4 MB
Peak working set memory: 6.9 MB
Min working set memory: 4.92 MB
Private memory:
2.71 MB
Page faults:
4,525
Page faults /min: 35
 | Process I/O averages |
Total read operations:
201
Read operations /min: 1
Total read transfer: 705.35 KB
Read transfer /min: 873 Bytes
Total write operations:
1
Total write transfer: 4.02 KB
Total other operations:
1,772
Other operations /min: 8
Total other transfer: 120.04 KB
Other Transfer /min: 117 Bytes
 | GUI Object Averages |
GDI objects:
10
Peak GDI objects: 11
USER objects:
3
Peak USER objects: 4
Resources
Handle count average: 107
Thread count average: 6
Thread resource averages
ntdll.dll

Total CPU: 0.010496645208%
Privileged CPU: 0.010496645208%
User CPU: 0.000000000000%
CPU Cycle count /sec: 64,479
Context switches /sec: 1
Module memory size: 1.66 MB
ntdll.dll

Total CPU: 0.006438947874%
Privileged CPU: 0.004255475166%
User CPU: 0.002183472708%
CPU Cycle count /sec: 33,959
Module memory size: 1.66 MB
Total CPU: 0.002630611310%
Privileged CPU: 0.001705929623%
User CPU: 0.000924681687%
CPU Cycle count /sec: 57,698
Module memory size: 464 KB
ntdll.dll

Total CPU: 0.002341946025%
Privileged CPU: 0.000273330028%
User CPU: 0.002068615997%
CPU Cycle count /sec: 11,070
Module memory size: 1.66 MB
Total CPU: 0.000082179552%
Privileged CPU: 0.000058699680%
User CPU: 0.000023479872%
CPU Cycle count /sec: 22,189
Module memory size: 1.69 MB
Process details
Runs as (owner): User
Integrety level: High
Windows platform: 64-bit
Parent Processes
Child Processes
Process Commands
taskeng.exe {096BD6CB-7FA6-4E25-911E-37CD540BACFF}
taskeng.exe {1766F24C-D720-4EE1-87D1-D475D1CCFC6D} S-1-5-18:NT AUTHORITY\SysteC:ServicC:
taskeng.exe {4E8D53FE-EE33-4C05-AF7D-42185BB84833}
taskeng.exe {C22BC305-D02B-4226-915B-222B50D74A0A}
taskeng.exe {1C989C57-C517-426B-BD72-9527C47538B3}
Image hashes
MD5: 65ea57712340c09b1b0c427b4848ae05
SHA-1: 2d5a9ffae8898ba67963290fc4e1ddf99ded5e2e
SHA-256: 5fdcf73191bff9dbb03886755ffcf0bc15849f0e216884a5a8b9bb375fa7c1a5
PE image details
Subsystem: Windows GUI
Langauge*: Microsoft Visual C++
File entropy: 5.55590
File packed: No
Import Table
advapi32.dll

TraceMessage
GetTraceEnableFlags
GetTraceEnableLevel
GetTraceLoggerHandle
RegisterTraceGuidsW
UnregisterTraceGuids
AddAce
InitializeAcl
GetSecurityDescriptorControl
MakeAbsoluteSD
GetSecurityDescriptorSacl
GetSecurityDescriptorDacl
GetSecurityDescriptorGroup
GetSecurityDescriptorOwner
InitializeSecurityDescriptor
GetLengthSid
IsValidSid
CopySid
GetAclInformation
SetSecurityDescriptorOwner
SetSecurityDescriptorGroup
SetSecurityDescriptorDacl
GetSidSubAuthority
InitializeSid
GetSidLengthRequired
RegCloseKey
RegSetValueExW
RegOpenKeyExW
CheckTokenMembership
OpenThreadToken
RegEnumKeyExW
RegDeleteKeyW
RegNotifyChangeKeyValue
RegCreateKeyExW
RegGetValueW
RegQueryValueExW
RegQueryValueW
EventRegister
EventActivityIdControl
EventEnabled
EventWriteTransfer
EventWrite
EventUnregister
CreateWellKnownSid
CloseServiceHandle
QueryServiceStatus
StartServiceW
OpenServiceW
OpenSCManagerW
CryptCreateHash
CryptHashData
CryptGetHashParam
CryptDestroyHash
CryptAcquireContextW
CryptReleaseContext
api-ms-win-core-com-l1-1-0.dll

StringFromGUID2
IIDFromString
StringFromCLSID
CLSIDFromString
CoCreateInstance
CoInitializeSecurity
CoRevertToSelf
CoDisableCallCancellation
CoInitializeEx
CoEnableCallCancellation
CoUninitialize
CoCancelCall
CoImpersonateClient
CoDisconnectObject
CoTaskMemFree
CoMarshalInterface
CreateStreamOnHGlobal
api-ms-win-core-debug-l1-1-0.dll

api-ms-win-core-debug-l1-1-1.dll

OutputDebugStringA
DebugBreak
IsDebuggerPresent
api-ms-win-core-delayload-l1-1-1.dll

DelayLoadFailureHook
ResolveDelayLoadedAPI
api-ms-win-core-errorhandling-l1-1-0.dll

SetLastError
GetLastError
SetUnhandledExceptionFilter
UnhandledExceptionFilter
api-ms-win-core-errorhandling-l1-1-1.dll

GetLastError
UnhandledExceptionFilter
SetUnhandledExceptionFilter
SetLastError
api-ms-win-core-file-l1-1-0.dll

GetFileAttributesW
CreateDirectoryW
CreateFileW
ReadFile
GetFileSizeEx
FileTimeToLocalFileTime
api-ms-win-core-file-l1-1-1.dll

ReadFile
CreateFileW
CreateDirectoryW
GetFileSizeEx
GetFileAttributesW
api-ms-win-core-file-l1-2-0.dll

GetFileSizeEx
ReadFile
GetFileAttributesW
CreateFileW
CreateDirectoryW
api-ms-win-core-handle-l1-1-0.dll

api-ms-win-core-heap-l1-1-0.dll

HeapReAlloc
HeapSetInformation
GetProcessHeap
HeapCreate
HeapDestroy
HeapAlloc
HeapFree
HeapSize
api-ms-win-core-heap-l1-2-0.dll

HeapFree
HeapSize
HeapReAlloc
HeapCreate
GetProcessHeap
HeapSetInformation
HeapAlloc
HeapDestroy
api-ms-win-core-interlocked-l1-1-0.dll

InterlockedDecrement
InterlockedIncrement
InterlockedCompareExchange
InterlockedExchange
api-ms-win-core-interlocked-l1-1-1.dll

InterlockedCompareExchange
InterlockedDecrement
InterlockedIncrement
InterlockedExchange
api-ms-win-core-interlocked-l1-2-0.dll

InterlockedDecrement
InterlockedIncrement
InterlockedExchange
InterlockedCompareExchange
api-ms-win-core-libraryloader-l1-1-0.dll

GetModuleHandleW
GetProcAddress
FreeLibrary
LoadLibraryExA
GetModuleHandleA
LoadLibraryExW
api-ms-win-core-libraryloader-l1-1-1.dll

GetModuleHandleA
LoadLibraryExW
FreeLibrary
GetModuleHandleW
LoadStringW
GetModuleHandleExW
GetProcAddress
api-ms-win-core-misc-l1-1-0.dll

api-ms-win-core-processenvironment-l1-1-0.dll

SearchPathW
ExpandEnvironmentStringsW
GetCurrentDirectoryW
api-ms-win-core-processenvironment-l1-1-1.dll

SearchPathW
GetCurrentDirectoryW
ExpandEnvironmentStringsW
api-ms-win-core-processenvironment-l1-2-0.dll

ExpandEnvironmentStringsW
SearchPathW
GetCurrentDirectoryW
api-ms-win-core-processthreads-l1-1-0.dll

SetProcessShutdownParameters
SetThreadPriority
GetCurrentThread
GetStartupInfoW
GetCurrentThreadId
GetCurrentProcessId
TerminateProcess
GetCurrentProcess
CreateThread
GetThreadPriority
GetExitCodeProcess
CreateProcessW
OpenThreadToken
ResumeThread
api-ms-win-core-processthreads-l1-1-1.dll

CreateThread
SetThreadPriority
TerminateProcess
GetCurrentProcess
GetCurrentProcessId
GetStartupInfoW
GetCurrentThread
OpenThreadToken
SetProcessShutdownParameters
GetThreadPriority
ResumeThread
GetCurrentThreadId
CreateProcessW
GetExitCodeProcess
IsProcessorFeaturePresent
api-ms-win-core-profile-l1-1-0.dll

api-ms-win-core-registry-l1-1-0.dll

RegSetValueExW
RegCloseKey
RegOpenKeyExW
RegNotifyChangeKeyValue
RegCreateKeyExW
RegQueryValueExW
RegGetValueW
api-ms-win-core-shlwapi-legacy-l1-1-0.dll

PathIsPrefixW
PathFileExistsW
api-ms-win-core-string-l1-1-0.dll

api-ms-win-core-synch-l1-1-0.dll

DeleteCriticalSection
LeaveCriticalSection
CreateEventW
EnterCriticalSection
SetEvent
ResetEvent
SetWaitableTimer
CancelWaitableTimer
WaitForSingleObject
InitializeCriticalSection
api-ms-win-core-synch-l1-1-1.dll

InitializeCriticalSection
EnterCriticalSection
CreateWaitableTimerExW
SetWaitableTimer
SetEvent
LeaveCriticalSection
InitializeCriticalSectionAndSpinCount
CancelWaitableTimer
CreateEventW
WaitForMultipleObjectsEx
WaitForSingleObject
DeleteCriticalSection
Sleep
api-ms-win-core-synch-l1-2-0.dll

WaitForMultipleObjectsEx
CancelWaitableTimer
WaitForSingleObject
Sleep
LeaveCriticalSection
InitializeCriticalSectionAndSpinCount
DeleteCriticalSection
SetWaitableTimer
EnterCriticalSection
InitializeCriticalSection
CreateEventW
SetEvent
CreateWaitableTimerExW
api-ms-win-core-sysinfo-l1-1-0.dll

GetTickCount
GetSystemTimeAsFileTime
SystemTimeToFileTime
api-ms-win-core-sysinfo-l1-1-1.dll

GetSystemTimeAsFileTime
SystemTimeToFileTime
GetTickCount
api-ms-win-core-sysinfo-l1-2-0.dll

GetTickCount
GetSystemTimeAsFileTime
api-ms-win-core-threadpool-l1-1-0.dll

CreateTimerQueueTimer
DeleteTimerQueueTimer
api-ms-win-core-threadpool-l1-1-1.dll

UnregisterWaitEx
RegisterWaitForSingleObjectEx
DeleteTimerQueueTimer
CreateTimerQueueTimer
api-ms-win-core-threadpool-legacy-l1-1-0.dll

DeleteTimerQueueTimer
UnregisterWaitEx
CreateTimerQueueTimer
api-ms-win-core-threadpool-private-l1-1-0.dll

RegisterWaitForSingleObjectEx
api-ms-win-core-timezone-l1-1-0.dll

api-ms-win-core-wow64-l1-1-0.dll

api-ms-win-legacy-advapi32-l1-1-0.dll

api-ms-win-legacy-shlwapi-l1-1-0.dll

PathIsPrefixW
PathFileExistsW
api-ms-win-obsolete-kernelbase-l1-1-0.dll

api-ms-win-security-base-l1-1-0.dll

GetSecurityDescriptorGroup
GetSecurityDescriptorOwner
InitializeSecurityDescriptor
IsValidSid
GetAclInformation
SetSecurityDescriptorOwner
SetSecurityDescriptorGroup
SetSecurityDescriptorDacl
GetSidSubAuthority
InitializeSid
GetSidLengthRequired
GetSecurityDescriptorDacl
GetLengthSid
CopySid
CheckTokenMembership
MakeAbsoluteSD
GetSecurityDescriptorControl
InitializeAcl
AddAce
CreateWellKnownSid
GetSecurityDescriptorSacl
api-ms-win-security-base-l1-2-0.dll

IsValidSid
GetLengthSid
GetSecurityDescriptorSacl
GetSidSubAuthority
CreateWellKnownSid
SetSecurityDescriptorGroup
CopySid
SetSecurityDescriptorOwner
CheckTokenMembership
GetAclInformation
GetSecurityDescriptorControl
InitializeAcl
GetSecurityDescriptorGroup
MakeAbsoluteSD
SetSecurityDescriptorDacl
AddAce
InitializeSecurityDescriptor
InitializeSid
GetSidLengthRequired
GetSecurityDescriptorOwner
GetSecurityDescriptorDacl
api-ms-win-security-lsalookup-l2-1-0.dll

bcrypt.dll

BCryptCreateHash
BCryptDestroyHash
BCryptHashData
BCryptFinishHash
BCryptOpenAlgorithmProvider
BCryptGetProperty
BCryptCloseAlgorithmProvider
kernel32.dll

IsWow64Process
LocalAlloc
GetThreadPreferredUILanguages
SetThreadPreferredUILanguages
UnregisterWait
RegisterWaitForSingleObject
DelayLoadFailureHook
CreateWaitableTimerW
WaitForMultipleObjects
DeleteAtom
GetCurrentDirectoryW
DebugBreak
InitializeCriticalSectionAndSpinCount
HeapSetInformation
ExpandEnvironmentStringsW
LoadLibraryExW
FileTimeToLocalFileTime
FreeLibrary
SystemTimeToFileTime
UnhandledExceptionFilter
GetCurrentProcess
TerminateProcess
GetSystemTimeAsFileTime
GetCurrentProcessId
GetCurrentThreadId
GetTickCount
QueryPerformanceCounter
CreateTimerQueueTimer
DeleteTimerQueueTimer
GetModuleHandleA
SetUnhandledExceptionFilter
OutputDebugStringA
GetStartupInfoW
InterlockedCompareExchange
LocalFree
InitializeCriticalSection
GetCurrentThread
SetThreadPriority
GetModuleHandleW
WaitForSingleObject
ResetEvent
CancelWaitableTimer
SetWaitableTimer
SetEvent
EnterCriticalSection
SetProcessShutdownParameters
CreateEventW
GetLastError
Sleep
UnregisterWaitEx
CloseHandle
LeaveCriticalSection
DeleteCriticalSection
InterlockedDecrement
InterlockedIncrement
InterlockedExchange
HeapFree
HeapAlloc
HeapDestroy
HeapCreate
GetProcessHeap
CreateDirectoryW
GetFileSizeEx
ReadFile
CreateFileW
OutputDebugStringW
DuplicateHandle
CreateProcessW
GetFileAttributesW
SearchPathW
GetThreadPriority
GetExitCodeProcess
TerminateThread
lstrlenW
HeapSize
HeapReAlloc
CreateThread
ResumeThread
mpr.dll

msvcrt.dll
ntdll.dll

NtSetInformationProcess
EtwEventRegister
EtwEventActivityIdControl
EtwEventEnabled
EtwEventWriteTransfer
EtwEventWrite
EtwEventUnregister
EtwUnregisterTraceGuids
EtwRegisterTraceGuidsW
EtwGetTraceLoggerHandle
EtwGetTraceEnableLevel
EtwGetTraceEnableFlags
EtwTraceMessage
RtlNtStatusToDosError
DbgPrintEx
ole32.dll

CoEnableCallCancellation
CoCancelCall
CoUninitialize
CoInitializeEx
CoDisconnectObject
CoRevertToSelf
CoImpersonateClient
CoMarshalInterface
CreateStreamOnHGlobal
CLSIDFromString
CoTaskMemFree
StringFromCLSID
IIDFromString
StringFromGUID2
CoCreateInstance
CoDisableCallCancellation
CoInitializeSecurity
rpcrt4.dll

RpcBindingFree
RpcBindingFromStringBindingW
RpcStringBindingComposeW
RpcAsyncInitializeHandle
I_RpcExceptionFilter
RpcAsyncCompleteCall
RpcAsyncCancelCall
NdrAsyncClientCall
RpcStringFreeW
RpcBindingSetAuthInfoExW
UuidCreateNil
secur32.dll

LsaDeregisterLogonProcess
GetUserNameExW
shell32.dll

shlwapi.dll

PathFileExistsW
PathIsPrefixW
PathIsDirectoryW
user32.dll

CreateWindowExW
RegisterClassW
UnregisterClassW
ShowWindow
UpdateWindow
DispatchMessageW
LoadStringW
ShutdownBlockReasonCreate
PostQuitMessage
DefWindowProcW
GetMonitorInfoW
AllowSetForegroundWindow
GetAncestor
MsgWaitForMultipleObjects
PeekMessageW
PostMessageW
EnumThreadWindows
MessageBoxW
GetWindowThreadProcessId
TranslateMessage
EnumWindows
GetUserObjectInformationW
GetThreadDesktop
GetProcessWindowStation
SetCursor
LoadCursorW
DestroyWindow
EnableWindow
IsWindow
xmllite.dll

CreateXmlReader
CreateXmlWriter
CreateXmlWriterOutputWithEncodingName