File details
File name: schtasks.exe
Name: Manages scheduled tasks
Description: Microsoft® Windows® Operating System
Version: 6.0.6000.16386 (vista_rtm.061101-2205)
Product version: 6.0.6000.16386
Size: 146.5 KB
Original file name: sctasks.exe.mui
Windows file protection:
Yes
Resource utilization
 | CPU utilization averages |
Total CPU: 0.0000445312%
Privileged CPU:
0.0000324876%

User CPU:
0.00001204361175%

Privileged CPU time: 40.62 ms
Privileged CPU time /min: 0 ms
CPU cycle count:
216,608,052
CPU cycle count /min: 238,832
 | Memory utilization averages |
Committed memory:
37.9 MB
Peak committed memory: 38.95 MB
Paged memory:
2.35 MB
Peak paged memory: 2.36 MB
Paged system memory:
43.16 KB
Non-paged system memory: 2.95 KB
Working set memory:
715.2 KB
Peak working set memory: 4.61 MB
Min working set memory: 672.8 KB
Private memory:
2.35 MB
Page faults:
4,589
Page faults /min: 5
 | Process I/O averages |
Total read operations:
26
Read operations /min: 1
Total read transfer: 16.78 KB
Read transfer /min: 19 Bytes
Total write operations:
6
Write operations /min: 1
Total write transfer: 719 Bytes
Write transfer /min: 0 Bytes
Total other operations:
475
Other operations /min: 1
Total other transfer: 8.58 KB
Other Transfer /min: 10 Bytes
Resources
Handle count average: 140
Thread count average: 1
Thread resource averages
Total CPU: 0.000088506147%
Privileged CPU: 0.000064057915%
User CPU: 0.000024448232%
CPU Cycle count /sec: 3,470
Module memory size: 160 KB
Process details
Runs as (owner): System
Integrety level: System
Windows platform: 32-bit
Parent Process
Process Commands
"C:\Windows\system32\schtasks.exe" /create /tn "AdobeFlashPlayerUpdate" /ru "SYSTEM" /sc hourly /mo 1 /tr "C:\Windows\system32\FlashPlayerUpdateService.exe /w" /st 00:00:00
"C:\Windows\system32\schtasks.exe" /create /tn "BrowserProtect" /ru "SYSTEM" /sc minute /mo 1 /tr "C:\Windows\system32\sc.exe start BrowserProtect" /st 00:00:00
Scheduled task details
Name: ValidationTaskDeadline
Command: \Microsoft\Windows\Windows Activation Technologies\ValidationTaskDeadline
Image hashes
MD5: aadef985c9abdc7f9a459baafb561be8
SHA-1: a6440ab4124530be53f0a00c1f9644dc60fc0b30
SHA-256: d2f7aaf8ad3676fb6db2366b90167ba6dbb65cdf761c2e91671b4bc61ef63d36
PE image details
Subsystem: Windows Console
Langauge*: Microsoft Visual C++
File entropy: 5.77196
File packed: No
Import Table
advapi32.dll

ConvertSidToStringSidW
CreateWellKnownSid
GetUserNameW
StartServiceW
QueryServiceStatus
CloseServiceHandle
OpenServiceW
OpenSCManagerW
RegQueryValueExW
GetSidSubAuthority
GetSidSubAuthorityCount
GetSidIdentifierAuthority
LookupAccountNameW
RegCloseKey
RegOpenKeyExW
RegConnectRegistryW
api-ms-win-core-console-l1-1-0.dll

WriteConsoleW
SetConsoleMode
GetConsoleMode
ReadConsoleW
api-ms-win-core-datetime-l1-1-0.dll

GetDateFormatW
GetTimeFormatW
api-ms-win-core-datetime-l1-1-1.dll

GetDateFormatW
GetTimeFormatW
api-ms-win-core-errorhandling-l1-1-0.dll

SetLastError
GetLastError
SetUnhandledExceptionFilter
UnhandledExceptionFilter
api-ms-win-core-file-l1-1-0.dll

CreateFileW
ReadFile
CompareFileTime
SetFilePointer
GetFileSizeEx
WriteFile
api-ms-win-core-file-l1-1-1.dll

WriteFile
CreateFileW
GetFileType
ReadFile
CompareFileTime
GetFileSizeEx
SetFilePointer
api-ms-win-core-handle-l1-1-0.dll

api-ms-win-core-heap-l1-1-0.dll

api-ms-win-core-interlocked-l1-1-0.dll

InterlockedCompareExchange
InterlockedDecrement
InterlockedExchange
api-ms-win-core-libraryloader-l1-1-0.dll

LoadStringW
GetProcAddress
FreeLibrary
LoadLibraryExA
GetModuleHandleA
api-ms-win-core-libraryloader-l1-1-1.dll

LoadStringW
GetModuleHandleA
api-ms-win-core-localization-l1-1-0.dll

api-ms-win-core-localization-l1-1-1.dll

api-ms-win-core-localregistry-l1-1-0.dll

RegCloseKey
RegOpenKeyExW
RegQueryValueExW
api-ms-win-core-misc-l1-1-0.dll

api-ms-win-core-processenvironment-l1-1-0.dll

api-ms-win-core-processthreads-l1-1-0.dll

GetCurrentThreadId
TerminateProcess
GetCurrentProcess
GetCurrentProcessId
api-ms-win-core-processthreads-l1-1-1.dll

GetCurrentProcessId
TerminateProcess
GetCurrentThreadId
GetCurrentProcess
api-ms-win-core-profile-l1-1-0.dll

api-ms-win-core-registry-l1-1-0.dll

RegCloseKey
RegOpenKeyExW
RegQueryValueExW
api-ms-win-core-string-l1-1-0.dll

api-ms-win-core-synch-l1-1-1.dll

api-ms-win-core-sysinfo-l1-1-0.dll

GetTickCount
GetLocalTime
SystemTimeToFileTime
GetSystemTimeAsFileTime
api-ms-win-core-sysinfo-l1-1-1.dll

GetLocalTime
SystemTimeToFileTime
GetSystemTimeAsFileTime
GetTickCount
api-ms-win-obsolete-kernelbase-l1-1-0.dll

api-ms-win-security-base-l1-1-0.dll

CreateWellKnownSid
GetSidSubAuthority
GetSidSubAuthorityCount
GetSidIdentifierAuthority
bcrypt.dll

BCryptCloseAlgorithmProvider
BCryptGetProperty
BCryptOpenAlgorithmProvider
kernel32.dll

HeapSize
HeapFree
HeapAlloc
GetProcessHeap
InitializeCriticalSectionAndSpinCount
DebugBreak
HeapValidate
WideCharToMultiByte
RegDeleteKeyExW
DeleteFileTransactedW
DeleteFileW
EnterCriticalSection
LeaveCriticalSection
DeleteCriticalSection
InterlockedIncrement
InitializeCriticalSection
RegSetValueExW
ExpandEnvironmentStringsW
UnregisterWait
GetComputerNameExW
CompareStringA
GetThreadLocale
CompareStringW
FileTimeToSystemTime
GetModuleFileNameW
ExitProcess
GetConsoleOutputCP
HeapReAlloc
lstrlenA
GetFileType
VerSetConditionMask
VerifyVersionInfoW
FormatMessageW
SetThreadUILanguage
DelayLoadFailureHook
GetComputerNameW
GetConsoleMode
GetStdHandle
SetLastError
GetLocalTime
lstrlenW
LocalFree
MultiByteToWideChar
WriteFile
ReadFile
GetLastError
SetFilePointer
GetFileSizeEx
InterlockedDecrement
CompareFileTime
SystemTimeToFileTime
CloseHandle
CreateFileW
GetLocaleInfoW
GetTimeFormatW
SetConsoleMode
HeapSetInformation
UnhandledExceptionFilter
GetCurrentProcess
TerminateProcess
GetSystemTimeAsFileTime
GetCurrentProcessId
GetCurrentThreadId
GetTickCount
QueryPerformanceCounter
GetModuleHandleA
SetUnhandledExceptionFilter
InterlockedCompareExchange
Sleep
InterlockedExchange
WriteConsoleW
ReadConsoleW
GetDateFormatW
ResolveDelayLoadedAPI
ktmw32.dll

CommitTransaction
RollbackTransaction
CreateTransaction
mpr.dll

WNetAddConnection2W
WNetCancelConnection2W
WNetGetLastErrorW
msvcrt.dll
netapi32.dll

NetApiBufferFree
NetServerGetInfo
ntdll.dll

EtwTraceMessage
WinSqmAddToStream
RtlNtStatusToDosError
RtlCreateVirtualAccountSid
RtlInitUnicodeString
WinSqmIsOptedIn
RtlVerifyVersionInfo
ole32.dll

IIDFromString
CoUninitialize
StringFromGUID2
CoCreateGuid
CoCreateInstance
CoInitializeSecurity
CoInitializeEx
secur32.dll

shlwapi.dll

StrChrW
StrRChrIW
StrStrIW
StrChrIW
StrStrW
user32.dll

CharUpperW
MessageBeep
LoadStringW
version.dll

GetFileVersionInfoW
VerQueryValueW
GetFileVersionInfoSizeW
ws2_32.dll

GetAddrInfoW
FreeAddrInfoW
GetNameInfoW