File details
File name: iexplore.exe
Name: Windows® Internet Explorer
Description: Internet Explorer
Version: 10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)
Product version: 10.00.9200.16521
Size: 752.59 KB
Original file name: IEXPLORE.EXE.MUI
Windows file protection:
Yes
Digital certificate
Certificate authority:
Microsoft Corporation
Effective date: 7/19/2010
Expiration date: 10/19/2011
Resource utilization
 | CPU utilization averages |
Total CPU: 0.0209383657%
Privileged CPU:
0.0093830766%

User CPU:
0.01155528905115%

Privileged CPU time: 7348855594.78 ms
Privileged CPU time /min: 192 ms
CPU cycle count:
315,441,113
CPU cycle count /min: 794,364,644
Context switches /sec:
1,137
 | Memory utilization averages |
Committed memory:
703.34 MB
Peak committed memory: 749.49 MB
Paged memory:
288.51 MB
Peak paged memory: 318.56 MB
Paged system memory:
650.57 KB
Non-paged system memory: 325.2 KB
Working set memory:
266.98 MB
Peak working set memory: 309.35 MB
Min working set memory: 97.09 MB
Private memory:
288.51 MB
Page faults:
3,064,901
Page faults /min: 3,938
 | Process I/O averages |
Total read operations:
197,791
Read operations /min: 681
Total read transfer: 115.44 MB
Read transfer /min: 117.25 KB
Total write operations:
16,124
Write operations /min: 16
Total write transfer: 29.88 MB
Write transfer /min: 35.04 KB
Total other operations:
343,721
Other operations /min: 831
Total other transfer: 10.63 MB
Other Transfer /min: 27.78 KB
 | GUI Object Averages |
GDI objects:
299
Peak GDI objects: 329
USER objects:
230
Peak USER objects: 271
Resources
Handle count average: 3,666
Thread count average: 62
Thread resource averages
Total CPU: 0.717889573278%
Privileged CPU: 0.114587511359%
User CPU: 0.603302061919%
CPU Cycle count /sec: 18,652,511
Context switches /sec: 22
Module memory size: 752 KB
wow64cpu.dll

Total CPU: 0.615098595450%
Privileged CPU: 0.031595274662%
User CPU: 0.583503320788%
CPU Cycle count /sec: 13,576,515
Context switches /sec: 44
Module memory size: 32 KB
ntdll.dll

Total CPU: 0.125260835072%
Privileged CPU: 0.061952554490%
User CPU: 0.063308280582%
CPU Cycle count /sec: 3,007,139
Context switches /sec: 4
Module memory size: 1.66 MB
Total CPU: 0.059850223175%
Privileged CPU: 0.000701651307%
User CPU: 0.059148571868%
CPU Cycle count /sec: 1,467,633
Module memory size: 688 KB
ieshims.dll

Total CPU: 0.031669560835%
Privileged CPU: 0.008651962056%
User CPU: 0.023017598779%
CPU Cycle count /sec: 1,727,973
Module memory size: 244 KB
Total CPU: 0.026011199981%
Privileged CPU: 0.001162008371%
User CPU: 0.024849191611%
CPU Cycle count /sec: 625,792
Module memory size: 252 KB
ntdll.dll

Total CPU: 0.002060583773%
Privileged CPU: 0.000795379993%
User CPU: 0.001265203780%
CPU Cycle count /sec: 49,924
Module memory size: 1.23 MB
iertutil.dll

Total CPU: 0.000291124464%
Privileged CPU: 0.000224581731%
User CPU: 0.000066542732%
CPU Cycle count /sec: 7,350
Module memory size: 1.97 MB
Total CPU: 0.000245157764%
Privileged CPU: 0.000161515773%
User CPU: 0.000083641992%
CPU Cycle count /sec: 20,428
Module memory size: 13.14 MB
winmm.dll

Total CPU: 0.000050216073%
Privileged CPU: 0.000025108036%
User CPU: 0.000025108036%
CPU Cycle count /sec: 794
Module memory size: 200 KB
wininet.dll

Total CPU: 0.000024959420%
Privileged CPU: 0.000024959420%
User CPU: 0.000000000000%
CPU Cycle count /sec: 1,760
Module memory size: 1.72 MB
shlwapi.dll

Total CPU: 0.000009086257%
Privileged CPU: 0.000000000000%
User CPU: 0.000009086257%
CPU Cycle count /sec: 291
Module memory size: 348 KB
Process details
Runs as (owner): User
Integrety level: Low
Windows platform: 64-bit
Parent Processes
Child Process
Process Commands
"C:\Program Files\Internet Explorer\IEXPLORE.EXE" SCODEC:5952 CREDAC:267521 /prefetcC:2
"C:\Program Files\Internet Explorer\IEXPLORE.EXE" SCODEC:9132 CREDAC:267521 /prefetcC:2
"C:\Program Files\Internet Explorer\IEXPLORE.EXE" SCODEC:15932 CREDAC:267521 /prefetcC:2
"C:\Program Files\Internet Explorer\IEXPLORE.EXE" SCODEC:4684 CREDAC:734232 /prefetcC:2
"C:\Program Files\Internet Explorer\IEXPLORE.EXE" SCODEC:4684 CREDAC:209921 /prefetcC:2
Shell open command details
Name: gopher
Command: "C:\Program Files\Internet Explorer\iexplore.exe" -nohome
Scheduled task details
CLSID: {DC7ABF42-D45A-4D97-B5A3-E1981D317C8A}
Command: \{DC7ABF42-D45A-4D97-B5A3-E1981D317C8A}
Image hashes
MD5: 07dfd28e57879554d054464ee4a5662d
SHA-1: d37c8b0f228c7c6eef8c55c9f12aa3272ca9535a
SHA-256: aa57ad41401461cafc534cff77975b28d1d26a17dc340dca6ea85c41bfa462b7
PE image details
Subsystem: Windows GUI
Langauge*: Microsoft Visual C++
File entropy: 6.58338
File packed: No
Import Table
advapi32.dll

EventWrite
GetTraceEnableFlags
RegQueryValueExW
EventUnregister
GetTraceLoggerHandle
TraceEvent
UnregisterTraceGuids
RegOpenKeyExW
EventRegister
GetTraceEnableLevel
RegCloseKey
RegisterTraceGuidsW
api-ms-win-downlevel-advapi32-l1-1-0.dll

RegGetValueW
RegOpenKeyExW
EventRegister
RegCloseKey
EventUnregister
EventWrite
RegQueryValueExW
api-ms-win-downlevel-shlwapi-l1-1-0.dll

kernel32.dll

Wow64DisableWow64FsRedirection
Wow64RevertWow64FsRedirection
TerminateProcess
CreateFileW
lstrlenW
VerifyVersionInfoW
GetLastError
GetProcAddress
LocalAlloc
IsWow64Process
HeapSetInformation
GetFileTime
DeleteCriticalSection
CloseHandle
GetWindowsDirectoryW
LocalFree
ExpandEnvironmentStringsW
LoadLibraryW
GetModuleHandleW
GetCurrentProcess
VerSetConditionMask
SetDllDirectoryW
CreateProcessW
SetErrorMode
GetCommandLineW
RaiseException
LoadLibraryA
GetSystemDefaultLCID
GetUserDefaultLCID
EnterCriticalSection
GetModuleFileNameW
LeaveCriticalSection
InitializeCriticalSectionAndSpinCount
GetVersionExA
FreeLibrary
UnhandledExceptionFilter
GetSystemTimeAsFileTime
GetCurrentProcessId
GetCurrentThreadId
GetTickCount
QueryPerformanceCounter
GetModuleHandleA
SetUnhandledExceptionFilter
GetStartupInfoW
InterlockedCompareExchange
Sleep
InterlockedExchange
GetCurrentDirectoryW
InitializeCriticalSection
GetVersionExW
SetLastError
SearchPathW
GetUserDefaultUILanguage
GetSystemDefaultUILanguage
UnmapViewOfFile
GetLocaleInfoW
CreateFileMappingW
MapViewOfFile
LoadLibraryExW
LoadResource
FindResourceExW
ReleaseMutex
LoadLibraryExA
SetProcessDEPPolicy
VirtualAlloc
GetNativeSystemInfo
msvcrt.dll
ntdll.dll

ole32.dll

CoUninitialize
CoInitialize
shell32.dll

shlwapi.dll

SHGetValueW
SHRegGetValueW
SHSetValueW
UrlApplySchemeW
PathIsURLW
UrlCanonicalizeW
PathFindFileNameW
UrlCreateFromPathW
StrStrW
PathCombineW
PathRemoveFileSpecW
PathAppendW
PathQuoteSpacesW
SHEnumValueW
user32.dll

IsWindowEnabled
LoadStringW
CharNextW
GetWindowThreadProcessId
SendMessageTimeoutW
FindWindowExW
MessageBoxW
IsWindowVisible
AllowSetForegroundWindow