File details
File name: iexplore.exe
Name: Windows® Internet Explorer
Description: Internet Explorer
Version: 10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)
Product version: 10.00.9200.16521
Size: 752.59 KB
Original file name: IEXPLORE.EXE.MUI
Windows file protection:
Yes
Digital certificate
Certificate authority:
Microsoft Corporation
Effective date: 7/19/2010
Expiration date: 10/19/2011
Resource utilization
 | CPU utilization averages |
Total CPU: 0.0485635016%
Privileged CPU:
0.0281782054%

User CPU:
0.02038529620709%

Privileged CPU time: 56140.21 ms
Privileged CPU time /min: 38 ms
CPU cycle count:
384,575,449
CPU cycle count /min: 232,633,404
Context switches /sec:
128
 | Memory utilization averages |
Committed memory:
338.27 MB
Peak committed memory: 419.25 MB
Paged memory:
92.92 MB
Peak paged memory: 144.97 MB
Paged system memory:
492.58 KB
Non-paged system memory: 54.05 KB
Working set memory:
82.93 MB
Peak working set memory: 147.31 MB
Min working set memory: 52.69 MB
Private memory:
92.92 MB
Page faults:
903,980
Page faults /min: 601
 | Process I/O averages |
Total read operations:
13,408
Read operations /min: 8
Total read transfer: 31.03 MB
Read transfer /min: 18.94 KB
Total write operations:
30,607
Write operations /min: 10
Total write transfer: 71.56 MB
Write transfer /min: 21.74 KB
Total other operations:
111,483
Other operations /min: 95
Total other transfer: 1.7 MB
Other Transfer /min: 1.02 KB
 | GUI Object Averages |
GDI objects:
138
Peak GDI objects: 246
USER objects:
76
Peak USER objects: 153
Resources
Handle count average: 12,237
Thread count average: 24
Thread resource averages
Total CPU: 2.848084511381%
Privileged CPU: 0.046674131532%
User CPU: 2.801410379848%
CPU Cycle count /sec: 44,847,557
Context switches /sec: 9
Module memory size: 752 KB
ieshims.dll

Total CPU: 1.569580507753%
Privileged CPU: 0.101938141026%
User CPU: 1.467642366727%
CPU Cycle count /sec: 29,095,313
Context switches /sec: 7
Module memory size: 244 KB
Total CPU: 0.514427732773%
Privileged CPU: 0.015314992946%
User CPU: 0.499112739827%
CPU Cycle count /sec: 8,964,118
Context switches /sec: 1
Module memory size: 688 KB
ntdll.dll

Total CPU: 0.134262837025%
Privileged CPU: 0.010554592968%
User CPU: 0.123708244057%
CPU Cycle count /sec: 2,401,922
Context switches /sec: 1
Module memory size: 1.23 MB
wow64.dll

Total CPU: 0.100872563816%
Privileged CPU: 0.011843466684%
User CPU: 0.089029097132%
CPU Cycle count /sec: 2,760,899
Context switches /sec: 5
Module memory size: 252 KB
crypt32.dll

Total CPU: 0.077514083622%
Privileged CPU: 0.000000000000%
User CPU: 0.077514083622%
CPU Cycle count /sec: 46,882
Module memory size: 1.13 MB
ntdll.dll

Total CPU: 0.022457339463%
Privileged CPU: 0.013244469435%
User CPU: 0.009212870028%
CPU Cycle count /sec: 878,402
Context switches /sec: 4
Module memory size: 1.66 MB
wininet.dll

Total CPU: 0.007109409434%
Privileged CPU: 0.004492168252%
User CPU: 0.002617241182%
CPU Cycle count /sec: 173,304
Context switches /sec: 1
Module memory size: 1.72 MB
Total CPU: 0.003853475324%
Privileged CPU: 0.001563512715%
User CPU: 0.002289962609%
CPU Cycle count /sec: 81,127
Context switches /sec: 1
Module memory size: 13.14 MB
iertutil.dll

Total CPU: 0.002061805223%
Privileged CPU: 0.001498439116%
User CPU: 0.000563366107%
CPU Cycle count /sec: 44,230
Module memory size: 1.97 MB
mswsock.dll

Total CPU: 0.001949459883%
Privileged CPU: 0.000000000000%
User CPU: 0.001949459883%
CPU Cycle count /sec: 2,606
Module memory size: 240 KB
Total CPU: 0.001530054685%
Privileged CPU: 0.000765027343%
User CPU: 0.000765027343%
CPU Cycle count /sec: 83,390
Module memory size: 348 KB
ole32.dll

Total CPU: 0.000017094489%
Privileged CPU: 0.000000000000%
User CPU: 0.000017094489%
CPU Cycle count /sec: 585
Module memory size: 1.36 MB
Process details
Runs as (owner): User
Integrety level: Low
Windows platform: 64-bit
Parent Processes
Child Process
Process Commands
"C:\Program Files\Internet Explorer\IEXPLORE.EXE" SCODEC:3252 CREDAC:267521 /prefetcC:2
"C:\Program Files\Internet Explorer\iexplore.exe" SCODEC:8028 CREDAC:923044 /prefetcC:2
"C:\Program Files\Internet Explorer\iexplore.exe" SCODEC:8028 CREDAC:267762 /prefetcC:2
"C:\Program Files\Internet Explorer\iexplore.exe" SCODEC:8028 CREDAC:1054155 /prefetcC:2
"C:\Program Files\Internet Explorer\iexplore.exe" SCODEC:8028 CREDAC:529711 /prefetcC:2
Shell open command details
Name: gopher
Command: "C:\Program Files\Internet Explorer\iexplore.exe" -nohome
Scheduled task details
CLSID: {DC7ABF42-D45A-4D97-B5A3-E1981D317C8A}
Command: \{DC7ABF42-D45A-4D97-B5A3-E1981D317C8A}
Image hashes
MD5: 37287d98a1bf5d56aa729ceb9b27c6b1
SHA-1: d14491d2e29fad3262975300ca1b38d4b66dbb1b
SHA-256: d8a8c548a257b9f7476adcd9ce2e217fd71c4ab45270bce77125e5e302ad5fe4
PE image details
Subsystem: Windows GUI
Langauge*: Microsoft Visual C++
File entropy: 6.58338
File packed: No
Import Table
advapi32.dll

EventWrite
GetTraceEnableFlags
RegQueryValueExW
EventUnregister
GetTraceLoggerHandle
TraceEvent
UnregisterTraceGuids
RegOpenKeyExW
EventRegister
GetTraceEnableLevel
RegCloseKey
RegisterTraceGuidsW
api-ms-win-downlevel-advapi32-l1-1-0.dll

RegGetValueW
RegOpenKeyExW
EventRegister
RegCloseKey
EventUnregister
EventWrite
RegQueryValueExW
api-ms-win-downlevel-shlwapi-l1-1-0.dll

kernel32.dll

Wow64DisableWow64FsRedirection
Wow64RevertWow64FsRedirection
TerminateProcess
CreateFileW
lstrlenW
VerifyVersionInfoW
GetLastError
GetProcAddress
LocalAlloc
IsWow64Process
HeapSetInformation
GetFileTime
DeleteCriticalSection
CloseHandle
GetWindowsDirectoryW
LocalFree
ExpandEnvironmentStringsW
LoadLibraryW
GetModuleHandleW
GetCurrentProcess
VerSetConditionMask
SetDllDirectoryW
CreateProcessW
SetErrorMode
GetCommandLineW
RaiseException
LoadLibraryA
GetSystemDefaultLCID
GetUserDefaultLCID
EnterCriticalSection
GetModuleFileNameW
LeaveCriticalSection
InitializeCriticalSectionAndSpinCount
GetVersionExA
FreeLibrary
UnhandledExceptionFilter
GetSystemTimeAsFileTime
GetCurrentProcessId
GetCurrentThreadId
GetTickCount
QueryPerformanceCounter
GetModuleHandleA
SetUnhandledExceptionFilter
GetStartupInfoW
InterlockedCompareExchange
Sleep
InterlockedExchange
GetCurrentDirectoryW
InitializeCriticalSection
GetVersionExW
SetLastError
SearchPathW
GetUserDefaultUILanguage
GetSystemDefaultUILanguage
UnmapViewOfFile
GetLocaleInfoW
CreateFileMappingW
MapViewOfFile
LoadLibraryExW
LoadResource
FindResourceExW
ReleaseMutex
LoadLibraryExA
SetProcessDEPPolicy
VirtualAlloc
GetNativeSystemInfo
msvcrt.dll
ntdll.dll

ole32.dll

CoUninitialize
CoInitialize
shell32.dll

shlwapi.dll

SHGetValueW
SHRegGetValueW
SHSetValueW
UrlApplySchemeW
PathIsURLW
UrlCanonicalizeW
PathFindFileNameW
UrlCreateFromPathW
StrStrW
PathCombineW
PathRemoveFileSpecW
PathAppendW
PathQuoteSpacesW
SHEnumValueW
user32.dll

IsWindowEnabled
LoadStringW
CharNextW
GetWindowThreadProcessId
SendMessageTimeoutW
FindWindowExW
MessageBoxW
IsWindowVisible
AllowSetForegroundWindow