File details
File name: locator.exe
Name: Rpc Locator
Description: Microsoft® Windows® Operating System
Version: 6.1.7600.16385 (win7_rtm.090713-1255)
Product version: 6.1.7600.16385
Size: 10 KB
Original file name: locator.exe.mui
Windows file protection:
Yes
Resource utilization
 | CPU utilization averages |
Total CPU: 0.0000032502%
Privileged CPU:
0.0000032502%

User CPU:
0%

Privileged CPU time: 3.12 ms
Privileged CPU time /min: 0 ms
CPU cycle count:
26,358,318
CPU cycle count /min: 20,699
 | Memory utilization averages |
Committed memory:
12.51 MB
Peak committed memory: 13.04 MB
Paged memory:
1.34 MB
Peak paged memory: 1.39 MB
Paged system memory:
24.07 KB
Non-paged system memory: 3.84 KB
Working set memory:
2.81 MB
Peak working set memory: 2.83 MB
Min working set memory: 2.81 MB
Private memory:
1.34 MB
Page faults:
729
Page faults /min: 1
Resources
Handle count average: 30
Thread count average: 3
Thread resource averages
Total CPU: 0.000067498943%
Privileged CPU: 0.000067498943%
User CPU: 0.000000000000%
CPU Cycle count /sec: 1,005
Module memory size: 28 KB
Process details
Runs as (owner): Network Service
Integrety level: System
Windows platform: 64-bit
Runs as a service: Yes
Parent Process
Process Command
C:\Windows\system32\locator.exe
Service details
Name: Πρόγραμμα εντοπισμού Κλήσης απομακρ. διαδικασίας (RPC)
Service name: RpcLocator
Service type:
Win32OwnProcess
Description: “Διαχειρίζεται τη βάση δεδομένων της υπηρεσίας ονομάτων RPC.”
Image hashes
MD5: d5ba242d4cf8e384db90e6a8ed850b8c
SHA-1: be6a56b561319da5969d2854d1604a2a1413a746
SHA-256: cb4cb2608b5e31b55fb1a2cf4051e6d08a0c2a5fb231b2116f95938d7577334e
PE image details
Subsystem: Windows Console
Langauge*: Microsoft Visual C++
File entropy: 5.30119
File packed: No
Import Table
advapi32.dll

RegisterServiceCtrlHandlerW
StartServiceCtrlDispatcherW
SetServiceStatus
api-ms-win-core-errorhandling-l1-1-0.dll

GetLastError
UnhandledExceptionFilter
SetUnhandledExceptionFilter
api-ms-win-core-interlocked-l1-1-0.dll

InterlockedCompareExchange
InterlockedExchange
api-ms-win-core-libraryloader-l1-1-0.dll

api-ms-win-core-misc-l1-1-0.dll

api-ms-win-core-processthreads-l1-1-0.dll

TerminateProcess
ExitProcess
GetCurrentThreadId
GetCurrentProcess
GetCurrentProcessId
api-ms-win-core-profile-l1-1-0.dll

api-ms-win-core-synch-l1-1-0.dll

CreateEventW
SetEvent
WaitForSingleObject
api-ms-win-core-sysinfo-l1-1-0.dll

GetSystemTimeAsFileTime
GetTickCount
api-ms-win-service-core-l1-1-0.dll

StartServiceCtrlDispatcherW
SetServiceStatus
api-ms-win-service-winsvc-l1-1-0.dll

RegisterServiceCtrlHandlerW
kernel32.dll

ExitProcess
GetLastError
SetEvent
WaitForSingleObject
CreateEventW
GetCurrentProcess
TerminateProcess
GetSystemTimeAsFileTime
GetCurrentProcessId
GetCurrentThreadId
GetTickCount
QueryPerformanceCounter
GetModuleHandleA
SetUnhandledExceptionFilter
InterlockedCompareExchange
Sleep
UnhandledExceptionFilter
InterlockedExchange
msvcrt.dll