File details
File name: explorer.exe
Name: Sistema operativo Microsoft® Windows®
Description: Explorador de Windows
Version: 6.00.2900.5512 (xpsp.080413-2105)
Product version: 6.00.2900.5512
Size: 1012 KB
Original file name: EXPLORER.EXE
Windows file protection:
Yes
Resource utilization
 | CPU utilization averages |
Total CPU: 0.0051087745%
Privileged CPU:
0.0033902607%

User CPU:
0.00171851385828%

Privileged CPU time: 7896603.12 ms
Privileged CPU time /min: 0 ms
Context switches /sec:
43
 | Memory utilization averages |
Committed memory:
113.95 MB
Peak committed memory: 246.05 MB
Paged memory:
21.24 MB
Peak paged memory: 24.43 MB
Paged system memory:
153.43 KB
Non-paged system memory: 23.08 KB
Working set memory:
10.24 MB
Peak working set memory: 29.6 MB
Min working set memory: 5.65 MB
Private memory:
21.24 MB
Page faults:
157,066
Page faults /min: 0
 | Process I/O averages |
Total read operations:
3,235
Total read transfer: 6.03 MB
Total write operations:
42
Total write transfer: 554.46 KB
Total other operations:
1,576,566
Total other transfer: 172.43 MB
 | GUI Object Averages |
GDI objects:
310
USER objects:
155
Resources
Handle count average: 537
Thread count average: 12
Thread resource averages
shlwapi.dll

Total CPU: 0.051330816122%
Privileged CPU: 0.040869330020%
User CPU: 0.010461486102%
Context switches /sec: 1
Module memory size: 472 KB
Total CPU: 0.015530448073%
Privileged CPU: 0.012297673345%
User CPU: 0.003232774728%
Context switches /sec: 2
Module memory size: 132 KB
Total CPU: 0.015472242632%
Privileged CPU: 0.012159243148%
User CPU: 0.003312999484%
Module memory size: 1020 KB
ntdll.dll

Total CPU: 0.008321408119%
Privileged CPU: 0.005596709015%
User CPU: 0.002724699105%
Module memory size: 736 KB
winmm.dll

Total CPU: 0.000215446100%
Privileged CPU: 0.000169837063%
User CPU: 0.000045609037%
Module memory size: 184 KB
Process details
Runs as (owner): User
Integrety level: Undefined
Windows platform: 32-bit
System Tray: Yes
Process Command
C:\WINDOWS\Explorer.EXE
Shell open command details
Name: SHCmdFile
Command: explorer.exe
Autoplay handler details
Name: MSOpenFolder
Command: SOFTWARE\Microsoft\Windows\ CurrentVersion\Explorer\AutoplayHandlers\Handlers\MSOpenFolder
Image hashes
MD5: 7522f548a84abad8fa516de5ab3931ef
SHA-1: 78f905f135771dec9646f6f753195adf5e7bf7c9
SHA-256: 0e2f07845b836db6ae4ccbd6e6ca5c609a84b83b7caebdf698672a9cc1892893
PE image details
Subsystem: Windows GUI
Langauge*: Microsoft Visual C++
File packed: No
Import Table
advapi32.dll

RegSetValueW
RegEnumKeyExW
GetUserNameW
RegNotifyChangeKeyValue
RegEnumValueW
RegQueryValueExA
RegOpenKeyExA
RegEnumKeyW
RegCloseKey
RegCreateKeyW
RegQueryInfoKeyW
RegOpenKeyExW
RegQueryValueExW
RegCreateKeyExW
RegSetValueExW
RegDeleteValueW
RegQueryValueW
RegGetValueW
GetTraceEnableFlags
GetTraceEnableLevel
GetTraceLoggerHandle
RegisterTraceGuidsW
UnregisterTraceGuids
EventRegister
EventUnregister
EventWrite
EventEnabled
GetLengthSid
GetTokenInformation
OpenProcessToken
RegDeleteKeyExW
TraceMessage
RegOpenKeyW
ConvertStringSidToSidW
CloseServiceHandle
OpenServiceW
OpenSCManagerW
CreateWellKnownSid
StartServiceW
CryptAcquireContextW
CryptCreateHash
CryptHashData
CryptGetHashParam
CryptDestroyHash
CryptReleaseContext
StartTraceW
EnableTraceEx
StopTraceW
LsaLookupSids
IsValidSid
GetSidSubAuthorityCount
GetSidSubAuthority
LsaOpenPolicy
LsaFreeMemory
LsaClose
OpenThreadToken
ConvertSidToStringSidW
ConvertStringSecurityDescriptorToSecurityDescriptorW
CheckTokenMembership
QueryServiceStatus
dwmapi.dll

DwmEnableBlurBehindWindow
DwmIsCompositionEnabled
DwmSetWindowAttribute
DwmQueryThumbnailSourceSize
DwmUnregisterThumbnail
DwmUpdateThumbnailProperties
gdi32.dll

GetStockObject
CreatePatternBrush
OffsetViewportOrgEx
GetLayout
CombineRgn
CreateDIBSection
GetTextExtentPoint32W
StretchBlt
SetTextColor
CreateRectRgn
GetClipRgn
IntersectClipRect
GetViewportOrgEx
SetViewportOrgEx
SelectClipRgn
PatBlt
GetBkColor
CreateCompatibleDC
CreateCompatibleBitmap
OffsetWindowOrgEx
DeleteDC
SetBkColor
BitBlt
ExtTextOutW
GetTextExtentPointW
GetClipBox
GetObjectW
CreateRectRgnIndirect
SetBkMode
CreateFontIndirectW
DeleteObject
GetTextMetricsW
SelectObject
GetDeviceCaps
TranslateCharsetInfo
SetStretchBltMode
SetWindowOrgEx
Polyline
CreatePen
GetTextColor
ExtCreateRegion
GetRegionData
SetLayout
OffsetRgn
LPtoDP
GetRgnBox
GdiFlush
SetDIBits
CreateBitmap
GdiAlphaBlend
gdiplus.dll

GdipAlloc
GdiplusStartup
GdiplusShutdown
GdipFree
GdipDeleteGraphics
GdipDisposeImage
GdipGetImageWidth
GdipGetImageHeight
GdipCreateBitmapFromHBITMAP
GdipCreateFromHDC
GdipSetCompositingMode
GdipSetInterpolationMode
GdipDrawImageRectI
GdipCloneImage
kernel32.dll

GetSystemDirectoryW
CreateThread
CreateJobObjectW
ExitProcess
SetProcessShutdownParameters
ReleaseMutex
CreateMutexW
SetPriorityClass
GetCurrentProcess
GetStartupInfoW
GetCommandLineW
SetErrorMode
LeaveCriticalSection
EnterCriticalSection
ResetEvent
LoadLibraryExA
CompareFileTime
GetSystemTimeAsFileTime
SetThreadPriority
GetCurrentThreadId
GetThreadPriority
GetCurrentThread
GetUserDefaultLangID
Sleep
GetBinaryTypeW
GetModuleHandleExW
SystemTimeToFileTime
GetLocalTime
GetCurrentProcessId
GetEnvironmentVariableW
UnregisterWait
GlobalGetAtomNameW
GetFileAttributesW
MoveFileW
lstrcmpW
LoadLibraryExW
FindClose
FindNextFileW
FindFirstFileW
lstrcmpiA
SetEvent
AssignProcessToJobObject
GetDateFormatW
GetTimeFormatW
FlushInstructionCache
lstrcpynW
GetSystemWindowsDirectoryW
SetLastError
GetProcessHeap
HeapFree
HeapReAlloc
HeapSize
HeapAlloc
GetUserDefaultLCID
ReadProcessMemory
OpenProcess
InterlockedCompareExchange
LoadLibraryA
QueryPerformanceCounter
UnhandledExceptionFilter
SetUnhandledExceptionFilter
VirtualFree
VirtualAlloc
ResumeThread
TerminateProcess
TerminateThread
GetSystemDefaultLCID
GetLocaleInfoW
CreateEventW
GetLastError
RegisterWaitForSingleObject
OpenEventW
WaitForSingleObject
GetTickCount
ExpandEnvironmentStringsW
GetModuleFileNameW
GetPrivateProfileStringW
lstrcmpiW
CreateProcessW
FreeLibrary
GetWindowsDirectoryW
LocalAlloc
CreateFileW
DeviceIoControl
LocalFree
GetQueuedCompletionStatus
CreateIoCompletionPort
SetInformationJobObject
CloseHandle
LoadLibraryW
GetModuleHandleW
ActivateActCtx
DeactivateActCtx
DelayLoadFailureHook
GetProcAddress
DeleteCriticalSection
CreateEventA
HeapDestroy
InitializeCriticalSection
GetFileAttributesExW
MulDiv
lstrlenW
InterlockedDecrement
InterlockedIncrement
GlobalAlloc
InterlockedExchange
GetModuleHandleA
GetVersionExA
GlobalFree
GetProcessTimes
lstrcpyW
GetLongPathNameW
InitializeCriticalSectionAndSpinCount
GetFileSize
ReadFile
RaiseException
OpenThread
GetSystemTime
GetPriorityClass
SearchPathW
GetSystemDefaultUILanguage
UnmapViewOfFile
MapViewOfFile
GetTimeZoneInformation
GetDynamicTimeZoneInformation
QueryPerformanceFrequency
QueueUserWorkItem
GetTickCount64
MultiByteToWideChar
GetProductInfo
DeleteFileW
GetProcessId
CompareStringW
QueryFullProcessImageNameW
CreateFileMappingW
WideCharToMultiByte
GlobalLock
GlobalUnlock
DuplicateHandle
GetCurrentDirectoryW
WaitForMultipleObjects
GetComputerNameW
ReleaseActCtx
CreateActCtxW
FindResourceExW
LoadResource
LockResource
QueryInformationJobObject
GetUserDefaultUILanguage
HeapSetInformation
GetVersionExW
RegisterApplicationRestart
SetProcessDEPPolicy
SetTermsrvAppInstallMode
CompareStringOrdinal
msvcrt.dll
ntdll.dll

RtlNtStatusToDosError
NtQueryInformationProcess
WinSqmSetString
NtSetInformationProcess
WinSqmIsOptedIn
NtOpenThreadToken
NtOpenProcessToken
NtClose
WinSqmAddToStreamEx
NtSetSystemInformation
WinSqmAddToStream
WinSqmEventEnabled
WinSqmSetDWORD
EtwEventWrite
EtwEventEnabled
NtQueryInformationToken
RtlGetProductInfo
ole32.dll

CoFreeUnusedLibraries
RegisterDragDrop
CreateBindCtx
RevokeDragDrop
CoInitializeEx
CoUninitialize
OleInitialize
CoRevokeClassObject
CoRegisterClassObject
CoMarshalInterThreadInterfaceInStream
CoCreateInstance
OleUninitialize
DoDragDrop
StringFromGUID2
CoRegisterMessageFilter
CoCreateFreeThreadedMarshaler
PropVariantClear
ReleaseStgMedium
CreateStreamOnHGlobal
CoTaskMemFree
CoGetInterfaceAndReleaseStream
CoInitialize
CoGetMalloc
CoTaskMemAlloc
CLSIDFromString
powrprof.dll

CallNtPowerInformation
GetPwrCapabilities
PowerDeterminePlatformRole
propsys.dll

PropVariantToUInt32
PropVariantToStringAlloc
PropVariantToUInt64
PropVariantToBoolean
VariantToStringAlloc
VariantToStringWithDefault
PropVariantToString
VariantToBooleanWithDefault
VariantToInt32WithDefault
PSCreateMemoryPropertyStore
PropVariantToInt64
rpcrt4.dll

RpcBindingFree
RpcBindingSetAuthInfoExW
RpcStringFreeW
RpcBindingFromStringBindingW
RpcStringBindingComposeW
I_RpcExceptionFilter
NdrClientCall2
secur32.dll

shell32.dll

SHGetFolderPathW
ExtractIconExW
ShellExecuteExW
SHBindToParent
SHParseDisplayName
SHGetSpecialFolderLocation
SHGetSpecialFolderPathW
SHChangeNotify
SHGetDesktopFolder
SHAddToRecentDocs
DuplicateIcon
SHUpdateRecycleBinIcon
SHGetFolderLocation
SHGetPathFromIDListA
SHGetPathFromIDListW
SHGetPropertyStoreForWindow
SHGetStockIconInfo
Shell_GetCachedImageIndexW
SHGetLocalizedName
SHCreateDataObject
SHCreateShellItemArrayFromShellItem
SHGetKnownFolderPath
SHCreateShellItemArrayFromIDLists
SHBindToFolderIDListParentEx
SHGetFileInfoW
SHCreateItemWithParent
SHGetKnownFolderIDList
SHBindToObject
SHGetNameFromIDList
SHCreateShellItem
ShellExecuteW
SHEnableServiceObject
SHGetIDListFromObject
SHChangeNotifyRegisterThread
SHCreateItemFromIDList
SHFileOperationW
SHGetFolderPathEx
Shell_NotifyIconW
Shell_NotifyIconGetRect
SHEvaluateSystemCommandTemplate
SHCreateItemFromParsingName
DragQueryFileW
SHBindToFolderIDListParent
shlwapi.dll

StrCpyNW
StrRetToBufW
StrRetToStrW
SHQueryValueExW
PathIsNetworkPathW
AssocCreate
StrCatW
StrCpyW
SHGetValueW
StrCmpNIW
PathRemoveBlanksW
PathRemoveArgsW
PathFindFileNameW
StrStrIW
PathGetArgsW
StrToIntW
SHRegGetBoolUSValueW
SHRegWriteUSValueW
SHRegCloseUSKey
SHRegCreateUSKeyW
SHRegGetUSValueW
SHSetValueW
PathAppendW
PathUnquoteSpacesW
PathQuoteSpacesW
SHSetThreadRef
SHCreateThreadRef
PathCombineW
SHStrDupW
PathIsPrefixW
PathParseIconLocationW
AssocQueryKeyW
AssocQueryStringW
StrCmpW
SHRegQueryUSValueW
SHRegOpenUSKeyW
SHRegSetUSValueW
PathIsDirectoryW
PathFileExistsW
PathGetDriveNumberW
StrChrW
PathFindExtensionW
PathRemoveFileSpecW
PathStripToRootW
SHOpenRegStream2W
StrDupW
SHDeleteValueW
StrCatBuffW
SHDeleteKeyW
StrCmpIW
wnsprintfW
StrCmpNW
SHStrDupA
PathCommonPrefixW
PathRemoveExtensionW
PathIsFileSpecW
StrChrIW
SHRegGetValueW
StrTrimW
SHQueryInfoKeyW
SHCreateStreamOnFileW
PathIsRootW
PathStripPathW
ChrCmpIW
slc.dll

SLGetWindowsInformationDWORD
user32.dll
uxtheme.dll

GetThemeBackgroundContentRect
GetThemeBool
GetThemePartSize
DrawThemeParentBackground
OpenThemeData
DrawThemeBackground
GetThemeTextExtent
DrawThemeText
CloseThemeData
SetWindowTheme
GetThemeBackgroundRegion
GetThemeMargins
GetThemeColor
GetThemeFont
GetThemeRect
IsAppThemed
BeginBufferedPaint
IsCompositionActive
GetThemeMetric
GetWindowTheme
EndBufferedPaint
DrawThemeTextEx
BufferedPaintInit
BufferedPaintUnInit
IsThemeActive
IsThemePartDefined
DrawThemeIcon
GetBufferedPaintBits
BufferedPaintClear
GetThemeBackgroundExtent