Technical information: |
|
| Icon status | No tray icon |
| Icon setting | Not in the system tray |
| Executable file | C:\Program Files\RadioPI_4e\bar\1.bin\4eSrchMn.exe |
| Version | 2, 3, 0, 0 |
| Parent process | C:\Windows\explorer.exe |
| Can be uninstalled | Yes |
| Autorun | Started form registry |
| Key | HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run |
| Value | RadioPI Search Scope Monitor |
| Encrypted | No |
| Size on disk | 37.5 Kb |
| Minimum recorded memory usage | 640 Kb |
| Average recorded memory usage | 720.2 Kb |
| Maximum recorded memory usage | 932 Kb |
| Date when maximum memory usage occured | 12/01/2012 14:34:24 |
| Minimum recorded CPU usage | 0% |
| Average recorded CPU usage | 0% |
| Maximum recorded CPU usage | 6% |
| Date when maximum CPU usage occured | 12/01/2012 14:37:16 |
| Started at | 28/01/2012 11:53:55 |
| Total CPU time | 0 seconds |
| Imported functions | [-] Imported from KERNEL32.dllGetModuleFileNameA lstrlenW OpenMutexA GetStartupInfoA ExitProcess GetCommandLineA GetModuleHandleA InitializeCriticalSection DeleteCriticalSection DebugBreak HeapAlloc GetProcessHeap HeapReAlloc HeapFree LeaveCriticalSection EnterCriticalSection LocalFree GetProcAddress lstrcpynA GetVersionExA LoadLibraryExA GetDriveTypeA CreateProcessA FreeLibrary ResetEvent GetLastError CreateEventA SetLastError GetSystemDirectoryA CompareFileTime GetSystemTimeAsFileTime GetTickCount SystemTimeToFileTime GetSystemTime lstrcmpiA CreateFileMappingA DuplicateHandle GetCurrentProcess OpenFileMappingA MapViewOfFile UnmapViewOfFile FindResourceA LoadResource LockResource lstrlenA lstrcpyA lstrcatA CreateMutexA WaitForSingleObject ReleaseMutex CloseHandle GetFileAttributesA GetLocalTime
[-] Imported from USER32.dllSetWindowsHookExA MsgWaitForMultipleObjects PeekMessageA TranslateMessage DispatchMessageA UnhookWindowsHookEx GetKeyboardType CharNextA wsprintfA
[-] Imported from ADVAPI32.dllRegCloseKey RegQueryValueExA RegFlushKey RegSetValueExA RegCreateKeyExA RegDeleteValueA RegDeleteKeyA RegQueryInfoKeyA RegEnumKeyExA RegNotifyChangeKeyValue RegOpenKeyExA
|
| Some relevant texts from the exe file | [-] Click here to hide details(http://ak.results.myway.com/mw_eula.html0 http://ocsp.verisign.com0? https://www.verisign.com/rpa0 http://crl.verisign.com/pca3.crl0) http://ocsp.verisign.com01 http://logo.verisign.com/vslogo.gif0 https://www.verisign.com/cps0* 0http://crl.verisign.com/ThawteTimestampingCA.crl0 http://ocsp.verisign.com0 http://crl.verisign.com/tss-ca.crl0 !This program cannot be run in DOS mode. Software\Microsoft\Internet Explorer\SearchScopes NoThrottleAlert AlertCount AlertPeriod AlertPausePeriod AlertWaitLow AlertWaitHigh s}\InprocServer32 \ieframe.dll GetLocalTime CloseHandle ReleaseMutex WaitForSingleObject CreateMutexA LockResource LoadResource FindResourceA LoadLibraryExA GetModuleFileNameA OpenMutexA GetStartupInfoA ExitProcess GetCommandLineA GetModuleHandleA InitializeCriticalSection DeleteCriticalSection DebugBreak GetProcessHeap HeapReAlloc LeaveCriticalSection EnterCriticalSection GetProcAddress GetVersionExA GetFileAttributesA GetDriveTypeA CreateProcessA FreeLibrary GetLastError SetLastError GetSystemDirectoryA CompareFileTime GetSystemTimeAsFileTime GetTickCount SystemTimeToFileTime CreateFileMappingA DuplicateHandle GetCurrentProcess OpenFileMappingA MapViewOfFile UnmapViewOfFile KERNEL32.dll GetKeyboardType UnhookWindowsHookEx DispatchMessageA MsgWaitForMultipleObjects SetWindowsHookExA USER32.dll RegOpenKeyExA RegQueryValueExA RegSetValueExA RegDeleteValueA RegQueryInfoKeyA RegEnumKeyExA RegNotifyChangeKeyValue ADVAPI32.dll VerQueryValueA GetFileVersionInfoA GetFileVersionInfoSizeA VERSION.dll ConfigDateStamp Software\AppDataLow IEGetWriteableHKCU ieframe.dll DefaultScope SearchScopeMonintor --Shared0I \SkinTools,PlayerPath, Message Tray Protected HKLM,SOFTWARE\ \SkinTools,PlayerPath, Message Tray Protected Bye <?xml version= encoding= standalone= urn:schemas-microsoft-com:asm.v1 manifestVersion= <assemblyIdentity version= SearchScopeMon <description>Search Scope Monitor</description> <trustInfo xmlns= urn:schemas-microsoft-com:asm.v3 <security> </trustInfo> VS_VERSION_INFO StringFileInfo CompanyName FileDescription MindSpark Toolbar Platform SearchScope Monitor FileVersion InternalName LegalCopyright OriginalFilename t8SrchMn.exe ProductName ProductVersion VarFileInfo Translation VeriSign Time Stamping Services CA0 +VeriSign Time Stamping Services Signer - G20 Durbanville1 Thawte Certification1 Thawte Timestamping CA0 .Class 3 Public Primary Certification Authority0 VeriSign Trust Network1;09 VeriSign Class 3 Code Signing 2009-2 CA0 image/gif0!0 White Plains1 Mindspark Interactive Network1>0< Mindspark Interactive Network0 VeriSign Class 3 Code Signing 2009-2 CA VeriSign Time Stamping Services CA
|