File details
File name: sidebar.exe
Name: Windows Desktop Gadgets
Description: Microsoft® Windows® Operating System
Version: 6.1.7600.16385 (win7_rtm.090713-1255)
Product version: 1.0.7600.16385
Size: 1.12 MB
Original file name: sidebar.EXE.MUI
Windows file protection:
Yes
Resource utilization
 | CPU utilization averages |
Total CPU: 0.0116050795%
Privileged CPU:
0.0052635218%

User CPU:
0.00634155772288%

Privileged CPU time: 223562082.06 ms
Privileged CPU time /min: 193 ms
CPU cycle count:
23,080,485
CPU cycle count /min: 568,526,854
Context switches /sec:
102
 | Memory utilization averages |
Committed memory:
162.61 MB
Peak committed memory: 166.98 MB
Paged memory:
23.62 MB
Peak paged memory: 25.23 MB
Paged system memory:
248.27 KB
Non-paged system memory: 17.7 KB
Working set memory:
23.12 MB
Peak working set memory: 29.72 MB
Min working set memory: 18.59 MB
Private memory:
23.62 MB
Page faults:
2,155,912
Page faults /min: 4,557
 | Process I/O averages |
Total read operations:
28,088
Read operations /min: 67
Total read transfer: 26.78 MB
Read transfer /min: 40.2 KB
Total write operations:
8,435
Write operations /min: 1
Total write transfer: 151.6 KB
Write transfer /min: 46 Bytes
Total other operations:
1,449,459
Other operations /min: 3,694
Total other transfer: 3.52 MB
Other Transfer /min: 10.13 KB
 | GUI Object Averages |
GDI objects:
78
Peak GDI objects: 87
USER objects:
52
Peak USER objects: 69
Resources
Handle count average: 438
Thread count average: 18
Thread resource averages
Total CPU: 1.048206621726%
Privileged CPU: 0.397834457876%
User CPU: 0.650372163850%
CPU Cycle count /sec: 21,584,476
Context switches /sec: 7
Module memory size: 1.14 MB
Total CPU: 0.137325111159%
Privileged CPU: 0.026086256582%
User CPU: 0.111238854577%
CPU Cycle count /sec: 2,236,977
Context switches /sec: 1
Module memory size: 5.7 MB
ole32.dll

Total CPU: 0.022870823758%
Privileged CPU: 0.004654556514%
User CPU: 0.018216267244%
CPU Cycle count /sec: 302,220
Context switches /sec: 2
Module memory size: 1.36 MB
ntdll.dll

Total CPU: 0.009946709605%
Privileged CPU: 0.005871005263%
User CPU: 0.004075704342%
CPU Cycle count /sec: 266,360
Context switches /sec: 3
Module memory size: 1.23 MB
auxiliarydisplayapi.dll

Total CPU: 0.009518211805%
Privileged CPU: 0.009518211805%
User CPU: 0.000000000000%
CPU Cycle count /sec: 69,880
Module memory size: 132 KB
ntdll.dll

Total CPU: 0.006304416965%
Privileged CPU: 0.004177709548%
User CPU: 0.002126707417%
CPU Cycle count /sec: 35,121
Module memory size: 1.23 MB
Total CPU: 0.005622376957%
Privileged CPU: 0.002693510821%
User CPU: 0.002928866136%
CPU Cycle count /sec: 409,948
Context switches /sec: 20
Module memory size: 316 KB
Total CPU: 0.004742222049%
Privileged CPU: 0.002371111025%
User CPU: 0.002371111025%
CPU Cycle count /sec: 149,108
Module memory size: 11.77 MB
msvcrt.dll

Total CPU: 0.004152583756%
Privileged CPU: 0.001186420534%
User CPU: 0.002966163221%
CPU Cycle count /sec: 27,084
Module memory size: 688 KB
Total CPU: 0.003767725905%
Privileged CPU: 0.000000000000%
User CPU: 0.003767725905%
CPU Cycle count /sec: 48,937
Module memory size: 796 KB
Total CPU: 0.003648146673%
Privileged CPU: 0.000116849292%
User CPU: 0.003531297380%
CPU Cycle count /sec: 96,741
Module memory size: 11.73 MB
Total CPU: 0.001286115547%
Privileged CPU: 0.000900280883%
User CPU: 0.000385834664%
CPU Cycle count /sec: 208,944
Module memory size: 11.77 MB
Total CPU: 0.001226593067%
Privileged CPU: 0.000861224920%
User CPU: 0.000365368148%
CPU Cycle count /sec: 610,520
Context switches /sec: 26
Module memory size: 11.77 MB
rasman.dll

Total CPU: 0.001185424505%
Privileged CPU: 0.000000000000%
User CPU: 0.001185424505%
CPU Cycle count /sec: 2,429
Module memory size: 84 KB
gdiplus.dll

Total CPU: 0.000957883437%
Privileged CPU: 0.000935478927%
User CPU: 0.000022404510%
CPU Cycle count /sec: 6,826
Module memory size: 1.56 MB
msvcrt.dll

Total CPU: 0.000791212685%
Privileged CPU: 0.000013041263%
User CPU: 0.000778171422%
CPU Cycle count /sec: 12,155
Module memory size: 688 KB
wlanapi.dll

Total CPU: 0.000786883213%
Privileged CPU: 0.000332598482%
User CPU: 0.000454284731%
CPU Cycle count /sec: 16,545
Module memory size: 88 KB
wininet.dll

Total CPU: 0.000754787859%
Privileged CPU: 0.000754787859%
User CPU: 0.000000000000%
CPU Cycle count /sec: 44,963
Module memory size: 1.11 MB
ole32.dll

Total CPU: 0.000268197647%
Privileged CPU: 0.000259482492%
User CPU: 0.000008715155%
CPU Cycle count /sec: 3,201
Module memory size: 1.36 MB
Total CPU: 0.000243496977%
Privileged CPU: 0.000121748489%
User CPU: 0.000121748489%
CPU Cycle count /sec: 35,827
Context switches /sec: 3
Module memory size: 11.77 MB
Process details
Runs as (owner): User
Integrety level: Medium
Windows platform: 32-bit
Parent Processes
Child Processes
Process Commands
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
Scheduled task details
Name: SidebarExecute
Command: \SidebarExecute
Startup files (user) run details
Name: Sidebar
Command: C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
User start menu folder details
Name: sidebar.exe
Network connectivity
UDP: LISTENING on port 53099
UDP: LISTENING on port 49158
UDP: LISTENING on port 54597
UDP: LISTENING on port 62809
UDP: LISTENING on port 56663
UDP: LISTENING on port 52034
UDP: LISTENING on port 61555
UDP: LISTENING on port 62428
UDP: LISTENING on port 55064
UDP: LISTENING on port 59442
Image hashes
MD5: ea6eadf6314e43783ba8eee79f93f73c
SHA-1: 7547491b0d7c29ea94a44cb01078867ede0b6bd0
SHA-256: 1a4bc2d8dfbdc37af85c73dee76a6ee901eba188d43856bd2ffa96b79a126f73
PE image details
Subsystem: Windows GUI
Langauge*: Microsoft Visual C++
File entropy: 6.93849
File packed: No
Import Table
advapi32.dll

EventRegister
EventUnregister
EventWrite
RegCloseKey
RegOpenKeyExW
IsTextUnicode
RegQueryValueExW
RegNotifyChangeKeyValue
CryptGetHashParam
CryptHashData
CryptAcquireContextA
CryptCreateHash
CryptDestroyHash
RegisterEventSourceW
CryptReleaseContext
GetTokenInformation
OpenProcessToken
EventEnabled
RegDeleteKeyW
DeregisterEventSource
ReportEventW
crypt32.dll

CertCloseStore
CertFreeCertificateContext
CertGetNameStringW
CryptDecodeObject
CertFindCertificateInStore
CryptMsgGetParam
CryptQueryObject
CryptMsgClose
cryptui.dll

CryptUIDlgViewCertificateW
dwmapi.dll

DwmUpdateThumbnailProperties
DwmSetWindowAttribute
gdi32.dll

ExtTextOutW
GetDeviceCaps
CreateDIBSection
SetLayout
CreateFontIndirectW
SetBkColor
GetDIBits
SaveDC
RestoreDC
SetViewportOrgEx
GetWindowOrgEx
StretchBlt
SetStretchBltMode
GetPath
GdiGetBatchLimit
DeleteDC
DeleteObject
CreateCompatibleDC
OffsetWindowOrgEx
SetBkMode
GetClipBox
GetObjectW
BitBlt
GetStockObject
SelectObject
LineDDA
GetTextExtentExPointW
SetTextColor
GdiAlphaBlend
gdiplus.dll
kernel32.dll

InterlockedIncrement
Sleep
InitializeCriticalSectionAndSpinCount
InterlockedCompareExchange
EnterCriticalSection
LeaveCriticalSection
DeleteFileW
GetTickCount
GetModuleHandleW
InterlockedExchange
InterlockedPushEntrySList
QueryDepthSList
OpenThread
GetCurrentThreadId
TlsSetValue
lstrcmpiW
ExpandEnvironmentStringsW
ReadFile
GetFileSizeEx
CreateFileW
CompareStringOrdinal
WritePrivateProfileStringW
WriteFile
HeapAlloc
GetProcessHeap
HeapFree
CloseHandle
SetEvent
CreateEventW
GetStartupInfoW
GetThreadPreferredUILanguages
CopyFileW
lstrcmpW
SetFileAttributesW
FreeLibrary
LoadLibraryExW
SetFilePointer
GetTempFileNameW
GetTempPathW
MultiByteToWideChar
SetCurrentDirectoryA
CreateDirectoryA
SetCurrentDirectoryW
CreateDirectoryW
ResetEvent
WaitForMultipleObjects
TlsGetValue
SearchPathW
GlobalFree
SetFilePointerEx
DelayLoadFailureHook
GetProcAddress
GetUserDefaultUILanguage
GetSystemDefaultUILanguage
CompareStringW
ReleaseMutex
WaitForSingleObject
GetLastError
CreateMutexW
lstrlenW
GetModuleFileNameW
TlsAlloc
RegisterApplicationRestart
LocalFree
UnmapViewOfFile
GetLocaleInfoW
CreateFileMappingW
MapViewOfFile
SetLastError
FindResourceExW
GetCommandLineW
DeleteCriticalSection
CreateThread
InitializeCriticalSection
SetErrorMode
HeapSetInformation
LocalAlloc
RegEnumKeyExW
IsValidLocale
GetTimeZoneInformation
GetDynamicTimeZoneInformation
FileTimeToSystemTime
SystemTimeToTzSpecificLocalTime
GlobalLock
GlobalUnlock
GetDiskFreeSpaceExW
SetVolumeLabelW
GetLogicalDrives
GetVolumeInformationW
GetDriveTypeW
GetSystemWindowsDirectoryW
GetSystemInfo
GetComputerNameW
GetSystemPowerStatus
GlobalMemoryStatusEx
OutputDebugStringW
RaiseException
GetEnvironmentVariableW
GetFileAttributesW
GetFileSize
QueueUserAPC
InterlockedFlushSList
InitializeSListHead
CompareFileTime
GetFileAttributesExW
GetSystemTime
SystemTimeToFileTime
FindFirstFileW
FindNextFileW
FindClose
DeleteAtom
GetTickCount64
GlobalGetAtomNameW
GlobalDeleteAtom
QueryPerformanceFrequency
CreateWaitableTimerW
SetWaitableTimer
TlsFree
CancelWaitableTimer
WideCharToMultiByte
GlobalAddAtomW
GetVersionExW
LoadLibraryW
GetFileTime
FindResourceW
SizeofResource
LoadResource
LockResource
FormatMessageW
MulDiv
RegLoadMUIStringW
GetSystemDirectoryW
RegDeleteValueW
RegSetValueExW
RegCreateKeyExW
InterlockedDecrement
UnhandledExceptionFilter
GetCurrentProcess
TerminateProcess
GetSystemTimeAsFileTime
GetCurrentProcessId
QueryPerformanceCounter
GetModuleHandleA
SetUnhandledExceptionFilter
GetStartupInfoA
LoadLibraryExA
msvcrt.dll
ntdll.dll

WinSqmIncrementDWORD
RtlIpv4AddressToStringExW
NtQuerySystemInformation
WinSqmSetDWORD
WinSqmIsOptedIn
WinSqmAddToStreamEx
WinSqmAddToStream
RtlIpv6AddressToStringExW
ole32.dll

CoUninitialize
CoInitializeEx
OleUninitialize
CoTaskMemFree
CoCreateInstance
CreateBindCtx
CoTaskMemAlloc
CLSIDFromProgID
StringFromGUID2
CoCreateGuid
PropVariantClear
ReleaseStgMedium
StringFromCLSID
GetHGlobalFromStream
CLSIDFromString
CreateStreamOnHGlobal
CoInitialize
OleInitialize
sfc_os.dll

shell32.dll

DragAcceptFiles
SHGetFileInfoW
SHBindToObject
DragFinish
SHCreateItemFromIDList
ShellExecuteW
SHFileOperationW
SHGetFolderPathAndSubDirW
CommandLineToArgvW
SHCreateDirectoryExW
DragQueryPoint
ShellExecuteExW
SHGetFolderPathEx
SHEmptyRecycleBinW
SHGetPathFromIDListW
SHBrowseForFolderW
SHGetFolderLocation
SHCreateItemWithParent
DragQueryFileW
SHParseDisplayName
shlwapi.dll

PathIsDirectoryW
PathFindFileNameW
PathFindExtensionW
PathRemoveExtensionW
PathIsRelativeW
PathCombineW
PathFileExistsW
PathIsURLW
UrlIsW
UrlEscapeW
PathRemoveFileSpecW
PathCreateFromUrlW
PathCanonicalizeW
UrlUnescapeW
StrStrNW
StrStrNIW
PathIsPrefixW
SHCreateStreamOnFileW
SHCreateStreamOnFileEx
PathGetDriveNumberW
AssocQueryStringW
PathCommonPrefixW
PathGetArgsW
StrToIntExW
urlmon.dll

URLOpenBlockingStreamW
CreateURLMoniker
CoInternetGetSession
user32.dll

SendMessageW
DispatchMessageW
TranslateMessage
PeekMessageW
SendMessageTimeoutW
RegisterWindowMessageW
CreateWindowExW
CharPrevW
GetThreadDesktop
OpenInputDesktop
RegisterPowerSettingNotification
MessageBoxIndirectW
CharUpperBuffW
CharUpperW
MessageBeep
UnhookWinEvent
GetUserObjectInformationW
FindWindowW
PostMessageW
GetWindowThreadProcessId
AllowSetForegroundWindow
GetShellWindow
LoadStringW
MessageBoxW
DrawFrameControl
LoadImageW
InsertMenuItemW
SetRectEmpty
CloseDesktop
GetMonitorInfoW
SetWinEventHook
UnregisterPowerSettingNotification
InflateRect
DrawTextExW
GetIconInfo
SwitchToThisWindow
ShowWindow
SetDlgItemTextW
SetForegroundWindow
SetFocus
OffsetRect
PtInRect
GetForegroundWindow
GetCursorPos
SetTimer
GetDlgItem
GetWindowRect
SetWindowPos
ScreenToClient
KillTimer
DestroyIcon
IsWindow
DestroyWindow
GetSystemMetrics
CharNextW
ReleaseDC
GetDC
GetWindowLongW
DestroyMenu
RemoveMenu
GetSubMenu
LoadMenuW
SetWindowLongW
GetWindow
DeleteMenu
GetMenuItemCount
EndPaint
MapWindowPoints
BeginPaint
GetParent
FillRect
SetRect
GetClientRect
RemovePropW
DefWindowProcW
SetPropW
GetPropW
RegisterClassW
LoadCursorW
CreateDialogParamW
GetKeyState
GetDoubleClickTime
SetCapture
ReleaseCapture
GetFocus
NotifyWinEvent
UpdateLayeredWindow
RedrawWindow
IsIconic
SetCursor
GetMessagePos
GetKeyboardState
GetMessageTime
MonitorFromPoint
IntersectRect
IsHungAppWindow
IsWindowVisible
PostQuitMessage
UnregisterHotKey
GetWindowTextW
SetParent
RegisterHotKey
GetSysColor
SystemParametersInfoW
MonitorFromWindow
GetDesktopWindow
EnumDisplayMonitors
TrackPopupMenu
CheckMenuItem
CopyRect
PrintWindow
SetLayeredWindowAttributes
CloseGestureInfoHandle
DeregisterShellHookWindow
RegisterShellHookWindow
GetWindowInfo
IsDialogMessageW
MsgWaitForMultipleObjectsEx
EndDeferWindowPos
DeferWindowPos
BeginDeferWindowPos
EqualRect
IsChild
SetActiveWindow
LoadIconW
AdjustWindowRectEx
AppendMenuW
CreatePopupMenu
EndDialog
EnableWindow
SetWindowTextW
GetAsyncKeyState
uxtheme.dll

DrawThemeTextEx
IsThemeActive
OpenThemeData
DrawThemeBackground
CloseThemeData
SetWindowThemeAttribute