Technical information: |
|
| Icon status | Invisible |
| Icon setting | Hidden when inactive |
| Executable file | C:\Program Files\Dell Support Center\bin\sprtcmd.exe |
| Version | 7.0.1619.0 |
| Parent process | C:\Windows\explorer.exe |
| Can be uninstalled | No |
| Autorun | Started form registry |
| Key | HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run |
| Value | DellSupportCenter |
| Encrypted | No |
| Size on disk | 201.2 Kb |
| Minimum recorded memory usage | 32 Mb |
| Average recorded memory usage | 32.1 Mb |
| Maximum recorded memory usage | 32.2 Mb |
| Date when maximum memory usage occured | 18/02/2010 00:14:54 |
| Minimum recorded CPU usage | 0% |
| Average recorded CPU usage | 0% |
| Maximum recorded CPU usage | 10% |
| Date when maximum CPU usage occured | 17/02/2010 23:54:37 |
| Started at | 17/02/2010 23:01:45 |
| Total CPU time | 13 seconds |
| Imported functions | [-] Imported from KERNEL32.dllGetCurrentProcess GetTimeFormatA GetDateFormatA FormatMessageA VirtualQuery IsBadWritePtr GetCurrentThread WriteFile GetProcAddress LoadLibraryA FreeLibrary lstrlenA lstrcmpA GetVersion GetCurrentProcessId GetVersionExA Process32Next Process32First CreateToolhelp32Snapshot OpenProcess SetLastError InterlockedIncrement InterlockedDecrement WideCharToMultiByte MultiByteToWideChar GetTempFileNameA GetEnvironmentVariableA GetCurrentDirectoryA GetTempPathA DeleteFileA GetWindowsDirectoryA TerminateProcess GetShortPathNameA FindClose FindFirstFileA GetSystemDirectoryA FreeEnvironmentStringsW GetEnvironmentStringsW GetComputerNameA CreateFileA MoveFileExA SetFileAttributesA CopyFileA RemoveDirectoryA FindNextFileA CreateDirectoryA SetEnvironmentVariableA IsBadReadPtr OpenMutexA SetNamedPipeHandleState WaitNamedPipeA ReadFile TransactNamedPipe GetTickCount CompareFileTime GetFileTime GetSystemTimeAsFileTime GetLocalTime InterlockedExchange RtlUnwind HeapFree GetStartupInfoA GetCommandLineA HeapAlloc HeapReAlloc GetFileType SetStdHandle CreateThread TlsSetValue TlsGetValue ExitThread HeapSize TlsAlloc HeapDestroy HeapCreate VirtualFree VirtualAlloc GetCPInfo GetACP GetOEMCP LCMapStringA LCMapStringW UnhandledExceptionFilter FreeEnvironmentStringsA GetEnvironmentStrings SetHandleCount GetStdHandle GetStringTypeA GetStringTypeW FlushFileBuffers SetEndOfFile CompareStringA CompareStringW SetEnvironmentVariableW IsBadCodePtr GetFileSize SetFilePointer SetUnhandledExceptionFilter EnterCriticalSection LeaveCriticalSection DeleteCriticalSection InitializeCriticalSection GetCurrentThreadId GetFileAttributesA CreateMutexA WaitForSingleObject LocalAlloc LocalFree CreateEventA GetModuleHandleA OutputDebugStringA Sleep OpenEventA SetEvent GetLastError WaitForMultipleObjects ExitProcess GetModuleFileNameA MoveFileA CloseHandle
[-] Imported from USER32.dllEnumWindows GetWindowThreadProcessId GetWindowTextA SendMessageA wvsprintfA wsprintfA LoadStringA DefWindowProcA RegisterClassA CreateWindowExA MessageBoxA MsgWaitForMultipleObjects PeekMessageA DispatchMessageA PostThreadMessageA
[-] Imported from ADVAPI32.dllRegQueryValueExA GetTokenInformation OpenProcessToken GetSidSubAuthority GetSidSubAuthorityCount GetSidIdentifierAuthority IsValidSid RevertToSelf ImpersonateLoggedOnUser LookupAccountSidA RegOpenKeyExA RegSetValueExA RegCreateKeyExA AllocateAndInitializeSid ControlService OpenSCManagerA OpenServiceA StartServiceA QueryServiceStatus CloseServiceHandle RegEnumKeyA CreateProcessAsUserA DeregisterEventSource ReportEventA RegisterEventSourceA SetSecurityDescriptorDacl InitializeSecurityDescriptor GetUserNameA RegCloseKey RegEnumValueA RegQueryInfoKeyA RegEnumKeyExA RegOpenKeyA
|
| Some relevant texts from the exe file | [-] Click here to hide detailshttp://ocsp.verisign.com0? https://www.verisign.com/rpa0 /http://CSC3-2004-crl.verisign.com/CSC3-2004.crl0D http://crl.verisign.com/pca3.crl0 https://www.verisign.com/rpa01 0http://crl.verisign.com/ThawteTimestampingCA.crl0 http://ocsp.verisign.com0 ""http://crl.verisign.com/tss-ca.crl0 !This program cannot be run in DOS mode. WindowsScreenSaverClass KERNEL32.DLL CreateToolhelp32Snapshot Process32First __GLOBAL_HEAP_SELECTED runtime error SING error DOMAIN error - unable to initialize heap - not enough space for lowio initialization - not enough space for stdio initialization - pure virtual function call - not enough space for _onexit/atexit table - unable to open console device - unexpected heap error - unexpected multithread lock error - not enough space for thread data abnormal program termination - not enough space for environment - not enough space for arguments - floating point not loaded Microsoft Visual C++ Runtime Library Runtime Error! <program name unknown> GAIsProcessorFeaturePresent GetLastActivePopup GetActiveWindow MessageBoxA user32.dll SunMonTueWedThuFriSat JanFebMarAprMayJunJulAugSepOctNovDec CloseHandle GetModuleFileNameA ExitProcess WaitForMultipleObjects GetLastError OpenEventA OutputDebugStringA GetModuleHandleA WaitForSingleObject CreateMutexA GetFileAttributesA GetCurrentThreadId DispatchMessageA MsgWaitForMultipleObjects CreateWindowExA RegisterClassA DefWindowProcA CreateProcessAsUserA DeregisterEventSource ReportEventA RegisterEventSourceA SetSecurityDescriptorDacl InitializeSecurityDescriptor GetUserNameA ADVAPI32.dll SHLWAPI.dll InitializeCriticalSection DeleteCriticalSection LeaveCriticalSection EnterCriticalSection SetUnhandledExceptionFilter SetFilePointer CreateFileA GetCurrentProcess GetTimeFormatA GetDateFormatA FormatMessageA VirtualQuery IsBadWritePtr GetCurrentThread GetProcAddress LoadLibraryA FreeLibrary GetVersion GetCurrentProcessId GetVersionExA SetLastError InterlockedIncrement InterlockedDecrement WideCharToMultiByte MultiByteToWideChar GetEnvironmentVariableA GetCurrentDirectoryA DeleteFileA GetWindowsDirectoryA TerminateProcess GetShortPathNameA FindFirstFileA GetSystemDirectoryA FreeEnvironmentStringsW GetEnvironmentStringsW GetComputerNameA MoveFileExA SetFileAttributesA RemoveDirectoryA FindNextFileA CreateDirectoryA SetEnvironmentVariableA IsBadReadPtr OpenMutexA SetNamedPipeHandleState WaitNamedPipeA TransactNamedPipe GetTickCount CompareFileTime GetSystemTimeAsFileTime GetLocalTime InterlockedExchange GetStartupInfoA GetCommandLineA HeapReAlloc TlsSetValue TlsGetValue ExitThread HeapDestroy VirtualFree VirtualAlloc UnhandledExceptionFilter FreeEnvironmentStringsA GetEnvironmentStrings SetHandleCount GetStringTypeA FlushFileBuffers SetEndOfFile CompareStringA CompareStringW SetEnvironmentVariableW IsBadCodePtr GetWindowTextA GetWindowThreadProcessId EnumWindows LoadStringA PostThreadMessageA RegQueryValueExA RegOpenKeyA GetTokenInformation GetSidSubAuthority GetSidSubAuthorityCount GetSidIdentifierAuthority ImpersonateLoggedOnUser LookupAccountSidA RegOpenKeyExA RegSetValueExA AllocateAndInitializeSid RegQueryInfoKeyA RegEnumKeyExA RegEnumValueA RegEnumKeyA CloseServiceHandle QueryServiceStatus StartServiceA OpenServiceA OpenSCManagerA ControlService SHGetSpecialFolderPathA SHFileOperationA SHELL32.dll OLEAUT32.dll VerQueryValueA GetFileVersionInfoA GetFileVersionInfoSizeA VERSION.dll .?AUlog_filter@saf@@ .?AUlog_level@saf@@ winsta0\default Shutdown forced with second kill request Sprocket Exit State: %s state=%d Wait Select Failed Aborting: status=%d Sprocket State: name=%s state=%d An existing instance is already running Service couldn''t be started for reason: %d Restarting service %s Removed user registry data in %s Removed provider registry data in %s Stopping user process (sprtcmd.exe) Service couldn''t be stopped for reason: %d Stopping service %s EnableIcon SPROCKET_%s_TrayIcon_%s ProviderId SPRTCMD_EVENT_LOGUPDATE LogComponentMask LogSeverityMask LogFilePath SPRTCMD_EVENT_KILLREQUEST SPRTCMD_EVENT_STOPREQUEST No context for provider: ''%s'' No provider ID specified. sprtcmd -logset [-P {providerID}] -P {providerID} -P__[providerFilter] -logfile {log-file-path} Specifies where the logger file will be written. -logcomp {log-component-mask} Specifies the logger component mask. -logsev {log-severity-mask} Specifies the logger severity mask. SPRTCMD - Command Line Options SupportSoft Agent bitsjobwakeup SetInstallPaths get module handle failed: status=% SPRTCMD_INSTANCE_MUTEX_%s_%s DirUserServer %sSupportSoft\%s\_default Copy_DefaultAlways Set server path to [%s]. users\_default Received WM_POWERBROADCAST, relay to sprockets. \StringFileInfo\%04x%04x\FileVersion \VarFileInfo\Translation IMAGEHLP.DLL or its exported procs not found Fault address: %08X %02X:%08X %s Exception code: %08X %s //== Version:%s STACK_OVERFLOW PRIV_INSTRUCTION INT_OVERFLOW INT_DIVIDE_BY_ZERO FLT_UNDERFLOW FLT_INVALID_OPERATION FLT_INEXACT_RESULT FLT_DIVIDE_BY_ZERO FLT_DENORMAL_OPERAND INVALID_HANDLE ILLEGAL_INSTRUCTION NONCONTINUABLE_EXCEPTION INVALID_DISPOSITION ARRAY_BOUNDS_EXCEEDED IN_PAGE_ERROR GUARD_PAGE DATATYPE_MISALIGNMENT BREAKPOINT ACCESS_VIOLATION SymGetSymFromAddr SymGetModuleBase SymFunctionTableAccess SymCleanup SymInitialize IMAGEHLP.DLL UnloadUserProfile LoadUserProfileW DestroyEnvironmentBlock CreateEnvironmentBlock ProcessIdToSessionId WTSQuerySessionInformationW WTSEnumerateProcessesA WTSEnumerateSessionsA WTSGetActiveConsoleSessionId WTSQueryUserToken userenv.dll Wtsapi32.dll ProductSuite System\CurrentControlSet\Control\ProductOptions VerifyVersionInfoA VerSetConditionMask Terminal Server Failed to call WTSEnumerateProcesses(), %d Failed to call ProcessIdToSessionId(), %d explorer.exe Could not open process token! = %d Process Id=%d opened Could not open process! = %d User name %s winsta0\winlogon InprocHandler LocalServer InprocServer InprocHandler32 LocalServer32 InProcServer32 UserIdType NWDSWhoAmI NWDSCreateContextHandle netwin32.dll VnsGetUserName vnsapi32.dll TuGetUserName[%x]: userName = %s .?AVTgEnumRegVal@@ Software\Microsoft\Windows\CurrentVersion\RunOnce IsWow64Process Native Program files Path : %s,%ld Wow Program files Path : %s,%ld ProgramFiles(x86) .?AUSdcContext@@ FANOUT_URL Local Settings Profiles\All Users\Application Data %SERVERROOT%profiles\%MACHINE%\%USERNAME%\logs\ %MACHINE%\%USERNAME%\dnaback\ DirDnaBackup %SERVERROOT%profiles\ DirUserProfile %SERVERROOT%profiles\%MACHINE%\%USERNAME%\ DirActions %SERVERROOT%actions\ DirProfiles %SERVERROOT%profiles\%MACHINE%\ %SERVERROOT%bin\ %SERVERROOT%issue\ %SERVERROOT%backup\ %SERVERROOT%vault\ %SERVERROOT%dna\ %USERNAME% DirContent DirSysProfile DirSysProfile_Old UserKeyRoot SOFTWARE\SupportSoft\ProviderList\ %DirProfiles% %SdcProfile% %MachineName% %HomeDrive% Common Startup %SF_COMMON_STARTUP% Common Start Menu %SF_COMMON_STARTMENU% Start Menu %SF_STARTMENU% %SF_PERSONAL% %SF_FAVORITES% CommonFilesDir %CommonFiles% ProgramFilesDir %ProgramFiles% Software\Microsoft\Windows NT\CurrentVersion Software\Microsoft\Windows\CurrentVersion AppDataUser state\lastrun\ DirSysLastRun bin\probeflt\ SupportSoft\Profiles\ AppDataUserEx state\backup\ DirZCatalog DirLastRun state\issues\ state\logs\ state\patchout\ DirPatchOut DirUserExec REGTREE: ERROR RegCloseKey failed!: %d REGTREE: ERROR RegOpenKeyEx failed!: %s %d REGTREE: ERROR RegEnumValue failed!: %d REGTREE: ERROR RegQueryValueEx failed!: %d d:\7.0\build\090223\cross\util\rierror.cpp Could not find message for error %d. Error [%d] copying [%s] to [%s] RemoveDir: %s %ld Software\SupportSoft\ Value: <%s>=<%s> .?AVTgKvFile@@ BVS_VERSION_INFO VarFileInfo StringFileInfo __RepairService__ __RepairService_Pipe__ prot = %s, src = %s, dir = %s, file = %s, ext = %s .?AVTgUncObject@@ .?AVTgLocalObject@@ .?AVTgFileObject@@ LogRotateSize SPRTUPDATE TRACE_CONN TRACE_UTIL Dispose Sprocket Thread: %s (%p) Started Sprocket Thread: %s (%p) Stopped Sprocket Thread: %s (%p) getSprocketFileVersion: finfoSize=%d Sprocket %s load failed: status=%d Sprocket %s loaded: hMod=%x Init=%x SprocketDispose SprocketDisposeContext SprocketGetState SprocketStart SprocketInitContext SprocketInit SprocketDllEnsureInit Loading Sprocket: %s from=%s MESSAGE_RECEPTOR MASTER_THREAD_ID SPROCKET_NAME EXIT_REQUEST_EVENT End SprocketThread Run Begin SprocketThread Run .?AVtype_info@@ VS_VERSION_INFO CompanyName SupportSoft, Inc. FileDescription Dell Support Center Updates FileVersion InternalName LegalCopyright Copyright 1997-2009 SupportSoft OriginalFilename d:\7.0\build\090223/agent/sprtcmd/sprtcmd.rc ProductName ProductVersion Translation <description>Supportsoft Inc</description> <security> </trustInfo> ""VeriSign Time Stamping Services CA0 +VeriSign Time Stamping Services Signer - G20 Durbanville1 Thawte Certification1 Thawte Timestamping CA0 .Class 3 Public Primary Certification Authority0 VeriSign Trust Network1;09 %VeriSign Class 3 Code Signing 2004 CA0 .Class 3 Public Primary Certification Authority %VeriSign Class 3 Code Signing 2004 CA ""VeriSign Time Stamping Services CA
|