Technical information: |
Click here for description |
| Icon status | No tray icon |
| Icon setting | Not in the system tray |
| Executable file | C:\Windows\System32\Defrag.exe |
| Version | 6.0.6001.18000 |
| Parent process | C:\Users\Zahra\AppData\Roaming\KoshyJohn.com\DiskMax\DiskMax.exe |
| Can be uninstalled | No |
| Encrypted | No |
| Size on disk | 221.5 Kb |
| Minimum recorded memory usage | 992 Kb |
| Average recorded memory usage | 1,019.9 Kb |
| Maximum recorded memory usage | 1 Mb |
| Date when maximum memory usage occured | 02.03.2012 20:23:09 |
| Minimum recorded CPU usage | 0% |
| Average recorded CPU usage | 0% |
| Maximum recorded CPU usage | 0% |
| Date when maximum CPU usage occured | 02.03.2012 20:22:25 |
| Started at | 02.03.2012 20:12:03 |
| Total CPU time | 0 seconds |
| Imported functions | [-] Imported from ADVAPI32.dllFreeSid CheckTokenMembership AllocateAndInitializeSid RegCloseKey RegQueryValueExW RegOpenKeyExW RegSetValueExW RegCreateKeyExW DeregisterEventSource ReportEventW RegisterEventSourceW SetSecurityDescriptorDacl SetEntriesInAclW InitializeSecurityDescriptor GetSecurityDescriptorDacl RegDeleteKeyValueW CreateWellKnownSid DuplicateToken GetTokenInformation OpenProcessToken
[-] Imported from KERNEL32.dllGetLastError GlobalLock GlobalFree GlobalReAlloc GlobalUnlock GlobalSize GlobalAlloc HeapFree GetProcessHeap HeapAlloc SetLastError InterlockedIncrement InterlockedDecrement EnterCriticalSection LeaveCriticalSection Sleep InitializeCriticalSectionAndSpinCount DeleteCriticalSection CloseHandle WriteFile GetFileSize CreateFileW ReleaseMutex FormatMessageW GetCurrentThreadId lstrlenW GetTimeFormatW GetDateFormatW WaitForSingleObject ExpandEnvironmentStringsW LoadLibraryW OutputDebugStringA IsDebuggerPresent SetFilePointer GetLocalTime WideCharToMultiByte LocalFree SetErrorMode DeleteFileW GetDiskFreeSpaceExW GetTempFileNameW GetVolumeInformationW DeviceIoControl GetDriveTypeW GetConsoleOutputCP WriteConsoleW GetConsoleMode GetFileType GetStdHandle VerifyVersionInfoW VerSetConditionMask GetCurrentProcess ReleaseSemaphore SetEvent SetThreadUILanguage CreateSemaphoreW WaitForMultipleObjects SetConsoleCtrlHandler ResetEvent CreateEventW GetVolumePathNamesForVolumeNameW GetVolumeNameForVolumeMountPointW DuplicateHandle OpenProcess FreeLibrary HeapSetInformation UnhandledExceptionFilter TerminateProcess GetSystemTimeAsFileTime GetCurrentProcessId GetTickCount QueryPerformanceCounter GetModuleHandleA SetUnhandledExceptionFilter InterlockedCompareExchange InterlockedExchange
[-] Imported from msvcrt.dll_XcptFilter exit _initterm _amsg_exit __setusermatherr _adjust_fdiv __p__commode __p__fmode __set_app_type _exit ?terminate@@YAXXZ _controlfp _cexit __wgetmainargs wcsrchr _except_handler4_common swscanf _vsnwprintf ??3@YAXPAX@Z memcpy malloc free wcsncmp _wcsicmp localeconv atoi _vsnprintf memset ??2@YAPAXI@Z
[-] Imported from ole32.dllCoCreateInstanceEx CoInitializeEx CoRegisterClassObject ReleaseStgMedium CoCreateGuid CoTaskMemFree CoTaskMemAlloc StringFromCLSID CoUninitialize
|
| Some relevant texts from the exe file | [-] Click here to hide details!This program cannot be run in DOS mode. ADVAPI32.dll KERNEL32.dll msvcrt.dll USER32.dll d:\rtm\base\fs\utils\dfrg\alloc.cpp VMainWindow d:\rtm\base\fs\utils\dfrg\dataio.cpp d:\rtm\base\fs\utils\dfrg\dataiocl.cpp Compiled time: -no info- Error in file \system32\dfrgres.dll SOFTWARE\Microsoft\Dfrg ResourceDllName xMicrosoft-Windows-Defrag d:\rtm\base\fs\utils\dfrg\textblock.cpp d:\rtm\base\fs\utils\dfrg\uicommon.cpp \\.\MountPointManager MtMgrGetMountPoints MtMgrAllUniqueIdVolumeNames::GetVolumeName \??\Volume{ MtMgrUniqueIdVolumeName::Initialize MtMgrAllUniqueIdVolumeNames::Initialize GetVolumesToDefrag d:\rtm\base\fs\utils\dfrg\devio.cpp GetRestartVolumeFromRegistry DeleteRestartVolumeFromRegistry SaveVolumeNameInRegistry IsServerSku IsLocalSystem GetUserAccessLevel \\.\PhysicalDrive PredictVolumeFailure IsVolumeDirty IsVolumeUnhealthyToBeDefragged Global\DiskDefragmenter.Semaphore.MultiInstance PAUSEONACTIVITY DEFRAG CMDLINE PARTIAL_DEFRAG CMDLINE MOVE_EXTENT_FWD CMDLINE ANALYZE CMDLINE DiskDefragmenter.Event.Volume GetVolumeFriendlyName WriteTextReportToStdOut d:\rtm\base\fs\utils\dfrg\defrag\defrag.cpp GetUniqueVolumeForPath Error: cannot load resource DLL. Contact system administrator. CheckTokenMembership AllocateAndInitializeSid RegQueryValueExW RegSetValueExW DeregisterEventSource RegisterEventSourceW SetSecurityDescriptorDacl SetEntriesInAclW InitializeSecurityDescriptor GetSecurityDescriptorDacl RegDeleteKeyValueW CreateWellKnownSid DuplicateToken GetTokenInformation GetLastError GlobalFree GlobalReAlloc GlobalUnlock GlobalSize GetProcessHeap SetLastError InterlockedIncrement InterlockedDecrement EnterCriticalSection LeaveCriticalSection InitializeCriticalSectionAndSpinCount DeleteCriticalSection CloseHandle CreateFileW ReleaseMutex FormatMessageW GetCurrentThreadId GetTimeFormatW GetDateFormatW WaitForSingleObject ExpandEnvironmentStringsW LoadLibraryW OutputDebugStringA IsDebuggerPresent SetFilePointer GetLocalTime WideCharToMultiByte GetDiskFreeSpaceExW GetTempFileNameW GetVolumeInformationW DeviceIoControl GetConsoleOutputCP WriteConsoleW VerifyVersionInfoW VerSetConditionMask GetCurrentProcess ReleaseSemaphore SetThreadUILanguage CreateSemaphoreW WaitForMultipleObjects SetConsoleCtrlHandler GetVolumePathNamesForVolumeNameW GetVolumeNameForVolumeMountPointW DuplicateHandle FreeLibrary HeapSetInformation localeconv __wgetmainargs _amsg_exit __setusermatherr _adjust_fdiv _except_handler4_common ?terminate@@YAXXZ NtQueryVolumeInformationFile NtWaitForSingleObject NtFsControlFile LoadStringW ReleaseStgMedium CoRegisterClassObject CoInitializeEx CoUninitialize CoCreateInstanceEx CoCreateGuid CoTaskMemFree InterlockedExchange InterlockedCompareExchange SetUnhandledExceptionFilter GetModuleHandleA QueryPerformanceCounter GetTickCount GetCurrentProcessId GetSystemTimeAsFileTime TerminateProcess UnhandledExceptionFilter CoTaskMemAlloc RestartVolumeGUID CurrentVolumeGUID <?xml version= encoding= standalone= <!-- Copyright (c) Microsoft Corporation --> urn:schemas-microsoft-com:asm.v1 manifestVersion= <assemblyIdentity version= processorArchitecture= Microsoft.Windows.Filesystem.Defrag <trustInfo xmlns= urn:schemas-microsoft-com:asm.v3 <security> </security> </trustInfo> VS_VERSION_INFO StringFileInfo CompanyName FileDescription Disk Defragmenter Module FileVersion InternalName Defrag.EXE LegalCopyright OriginalFilename ProductName Windows Disk Defragmenter ProductVersion VarFileInfo Translation <5i`UQA[TT
|