File details
File name: alg.exe
Name: Application Layer Gateway Service
Description: Microsoft® Windows® Operating System
Version: 6.2.9200.16384 (win8_rtm.120725-1247)
Product version: 6.2.9200.16384
Size: 69.5 KB
Original file name: ALG.exe.mui
Windows file protection:
Yes
Resource utilization
 | CPU utilization averages |
Total CPU: 0.0000654730%
Privileged CPU:
0%

User CPU:
0.00006547296654%

CPU cycle count:
40,324,347
CPU cycle count /min: 23,536
 | Memory utilization averages |
Committed memory:
19.6 MB
Peak committed memory: 20.91 MB
Paged memory:
722 KB
Peak paged memory: 784 KB
Paged system memory:
41.49 KB
Non-paged system memory: 3.77 KB
Working set memory:
2 MB
Peak working set memory: 3.11 MB
Min working set memory: 1.73 MB
Private memory:
722 KB
Page faults:
923
Page faults /min: 1
 | Process I/O averages |
Total read operations:
1
Total read transfer: 13.82 KB
Total other operations:
166
Other operations /min: 1
Total other transfer: 467 Bytes
Other Transfer /min: 0 Bytes
Resources
Handle count average: 76
Thread count average: 3
Thread resource averages
ntdll.dll

Total CPU: 0.000018387768%
Privileged CPU: 0.000000000000%
User CPU: 0.000018387768%
CPU Cycle count /sec: 114
Module memory size: 1.41 MB
Process details
Runs as (owner): Local Service
Integrety level: System
Windows platform: 32-bit
Runs as a service: Yes
Parent Processes
Process Command
C:\Windows\System32\alg.exe
Service details
Name: Υπηρεσία πύλης επιπέδου εφαρμογής
Service name: ALG
Service type:
Win32OwnProcess
Description: “Παρέχει υποστήριξη για προσθήκες πρωτοκόλλων άλλων κατασκευαστών για την Κοινόχρηστη σύνδεση στο Internet”
Image hashes
MD5: b5a707e902be5fc9b93c389fba6edf9c
SHA-1: 93b0eb4614bc45a0705e8f642b2fca0513951c5d
SHA-256: 3274d0fc8b3cc0c27ebe3d1e7aa31bf261f265fa31b0ef767f15289e2843a1d6
PE image details
Subsystem: Windows GUI
Langauge*: Microsoft Visual C++
File entropy: 6.35313
File packed: No
Import Table
advapi32.dll

SetServiceStatus
RegCloseKey
RegOpenKeyExW
RegisterServiceCtrlHandlerW
RegNotifyChangeKeyValue
StartServiceCtrlDispatcherW
RegQueryValueExW
RegEnumKeyExW
SystemFunction036
api-ms-win-core-delayload-l1-1-1.dll

ResolveDelayLoadedAPI
DelayLoadFailureHook
api-ms-win-core-errorhandling-l1-1-1.dll

UnhandledExceptionFilter
RaiseException
SetUnhandledExceptionFilter
GetLastError
api-ms-win-core-file-l1-2-0.dll

api-ms-win-core-handle-l1-1-0.dll

CloseHandle
DuplicateHandle
api-ms-win-core-heap-l1-2-0.dll

HeapDestroy
HeapSetInformation
HeapFree
GetProcessHeap
HeapAlloc
api-ms-win-core-interlocked-l1-2-0.dll

InterlockedCompareExchange
InterlockedDecrement
InterlockedIncrement
InterlockedExchange
api-ms-win-core-kernel32-legacy-l1-1-0.dll

BindIoCompletionCallback
WaitForMultipleObjects
api-ms-win-core-libraryloader-l1-1-1.dll

LoadResource
SizeofResource
GetModuleHandleA
GetModuleHandleW
FreeLibrary
GetModuleFileNameW
FindResourceExW
GetProcAddress
LoadLibraryExW
api-ms-win-core-memory-l1-1-1.dll

VirtualQuery
VirtualProtect
VirtualAlloc
api-ms-win-core-processthreads-l1-1-1.dll

GetCurrentProcessId
GetCurrentProcess
GetCurrentThreadId
TerminateProcess
GetStartupInfoW
CreateThread
api-ms-win-core-profile-l1-1-0.dll

api-ms-win-core-registry-l1-1-0.dll

RegCreateKeyExW
RegDeleteValueW
RegNotifyChangeKeyValue
RegSetValueExW
RegQueryInfoKeyW
RegOpenKeyExW
RegEnumKeyExW
RegCloseKey
RegEnumValueW
RegQueryValueExW
api-ms-win-core-string-l1-1-0.dll

api-ms-win-core-string-l2-1-0.dll

api-ms-win-core-string-obsolete-l1-1-0.dll

api-ms-win-core-synch-l1-2-0.dll

SetEvent
WaitForSingleObject
Sleep
CreateEventW
EnterCriticalSection
InitializeCriticalSection
DeleteCriticalSection
LeaveCriticalSection
api-ms-win-core-sysinfo-l1-2-0.dll

GetVersionExW
GetTickCount
GetSystemTimeAsFileTime
GetSystemInfo
api-ms-win-core-threadpool-legacy-l1-1-0.dll

DeleteTimerQueueEx
DeleteTimerQueueTimer
CreateTimerQueueTimer
CreateTimerQueue
cryptbase.dll

kernel32.dll

DeleteTimerQueueEx
CloseHandle
Sleep
WaitForMultipleObjects
CreateEventW
HeapSetInformation
WaitForSingleObject
SetEvent
CreateThread
DeleteTimerQueueTimer
CreateTimerQueueTimer
GetCurrentProcessId
DuplicateHandle
GetCurrentProcess
RaiseException
GetLastError
CreateTimerQueue
EnterCriticalSection
LeaveCriticalSection
InitializeCriticalSection
DeleteCriticalSection
InterlockedDecrement
InterlockedIncrement
InterlockedExchange
InterlockedCompareExchange
GetStartupInfoW
SetUnhandledExceptionFilter
BindIoCompletionCallback
WriteFile
ReadFile
HeapFree
GetProcessHeap
HeapAlloc
UnhandledExceptionFilter
TerminateProcess
GetSystemTimeAsFileTime
GetCurrentThreadId
GetTickCount
QueryPerformanceCounter
GetModuleHandleA
msvcrt.dll
mswsock.dll

AcceptEx
GetAcceptExSockaddrs
ole32.dll

CoCreateInstance
CoTaskMemFree
CoTaskMemAlloc
CoUninitialize
CoInitializeEx
CLSIDFromString
ws2_32.dll
