Should I block it?

No, this file is 100% safe to run.

Relationships

Child processes
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
RegSetValueW, RegEnumKeyExW, GetUserNameW, RegNotifyChangeKeyValue, RegEnumValueW, RegQueryValueExA, RegOpenKeyExA, RegEnumKeyW, RegCloseKey, RegCreateKeyW, RegQueryInfoKeyW, RegOpenKeyExW, RegQueryValueExW, RegCreateKeyExW, RegSetValueExW, RegDeleteValueW, RegQueryValueW
gdi32.dll
GetStockObject, CreatePatternBrush, OffsetViewportOrgEx, GetLayout, CombineRgn, CreateDIBSection, GetTextExtentPoint32W, StretchBlt, CreateRectRgnIndirect, CreateRectRgn, GetClipRgn, IntersectClipRect, GetViewportOrgEx, SetViewportOrgEx, SelectClipRgn, PatBlt, GetBkColor, CreateCompatibleDC, CreateCompatibleBitmap, OffsetWindowOrgEx, DeleteDC, SetBkColor, BitBlt, ExtTextOutW, GetTextExtentPointW, GetClipBox, GetObjectW, SetTextColor, SetBkMode, CreateFontIndirectW, DeleteObject, GetTextMetricsW, SelectObject, GetDeviceCaps, TranslateCharsetInfo, SetStretchBltMode
kernel32.dll
GetSystemDirectoryW, CreateThread, CreateJobObjectW, ExitProcess, SetProcessShutdownParameters, ReleaseMutex, CreateMutexW, SetPriorityClass, GetCurrentProcess, GetStartupInfoW, GetCommandLineW, SetErrorMode, LeaveCriticalSection, EnterCriticalSection, ResetEvent, LoadLibraryExA, CompareFileTime, GetSystemTimeAsFileTime, SetThreadPriority, GetCurrentThreadId, GetThreadPriority, GetCurrentThread, GetUserDefaultLangID, Sleep, GetBinaryTypeW, GetModuleHandleExW, SystemTimeToFileTime, GetLocalTime, GetCurrentProcessId, GetEnvironmentVariableW, UnregisterWait, GlobalGetAtomNameW, GetFileAttributesW, MoveFileW, lstrcmpW, LoadLibraryExW, FindClose, FindNextFileW, FindFirstFileW, lstrcmpiA, SetEvent, AssignProcessToJobObject, GetDateFormatW, GetTimeFormatW, FlushInstructionCache, lstrcpynW, GetSystemWindowsDirectoryW, SetLastError, GetProcessHeap, HeapFree, HeapReAlloc, HeapSize, HeapAlloc, GetUserDefaultLCID, ReadProcessMemory, OpenProcess, InterlockedCompareExchange, LoadLibraryA, QueryPerformanceCounter, UnhandledExceptionFilter, SetUnhandledExceptionFilter, VirtualFree, VirtualAlloc, ResumeThread, TerminateProcess, TerminateThread, GetSystemDefaultLCID, GetLocaleInfoW, CreateEventW, GetLastError, OpenEventW, DelayLoadFailureHook, WaitForSingleObject, GetTickCount, ExpandEnvironmentStringsW, GetModuleFileNameW, GetPrivateProfileStringW, lstrcmpiW, CreateProcessW, FreeLibrary, GetWindowsDirectoryW, LocalAlloc, CreateFileW, DeviceIoControl, LocalFree, GetQueuedCompletionStatus, CreateIoCompletionPort, SetInformationJobObject, CloseHandle, LoadLibraryW, GetModuleHandleW, ActivateActCtx, DeactivateActCtx, GetFileAttributesExW, GetProcAddress, DeleteCriticalSection, CreateEventA, HeapDestroy, InitializeCriticalSection, MulDiv, InitializeCriticalSectionAndSpinCount, lstrlenW, InterlockedDecrement, InterlockedIncrement, GlobalAlloc, InterlockedExchange, GetModuleHandleA, GetVersionExA, GlobalFree, GetProcessTimes, lstrcpyW, GetLongPathNameW, RegisterWaitForSingleObject
msvcrt.dll
DllMain
ntdll.dll
RtlNtStatusToDosError, NtQueryInformationProcess
ole32.dll
CoFreeUnusedLibraries, RegisterDragDrop, CreateBindCtx, RevokeDragDrop, CoInitializeEx, CoUninitialize, OleInitialize, CoRevokeClassObject, CoRegisterClassObject, CoMarshalInterThreadInterfaceInStream, CoCreateInstance, OleUninitialize, DoDragDrop
shell32.dll
SHGetFolderPathW, ExtractIconExW, SHGetSpecialFolderLocation, ShellExecuteExW, SHGetSpecialFolderPathW, SHBindToParent, SHParseDisplayName, SHChangeNotify, SHGetDesktopFolder, SHAddToRecentDocs, DuplicateIcon, SHUpdateRecycleBinIcon, SHGetFolderLocation, SHGetPathFromIDListA, SHGetPathFromIDListW
shlwapi.dll
StrCpyNW, StrRetToBufW, StrRetToStrW, SHQueryValueExW, PathIsNetworkPathW, AssocCreate, StrCatW, StrCpyW, SHGetValueW, StrCmpNIW, PathRemoveBlanksW, PathRemoveArgsW, PathFindFileNameW, StrStrIW, PathGetArgsW, StrToIntW, SHRegGetBoolUSValueW, SHRegWriteUSValueW, SHRegCloseUSKey, SHRegCreateUSKeyW, SHRegGetUSValueW, SHSetValueW, PathAppendW, PathUnquoteSpacesW, PathQuoteSpacesW, SHSetThreadRef, SHCreateThreadRef, PathCombineW, SHStrDupW, PathIsPrefixW, PathParseIconLocationW, AssocQueryKeyW, AssocQueryStringW, StrCmpW, SHRegQueryUSValueW, SHRegOpenUSKeyW, SHRegSetUSValueW, PathIsDirectoryW, PathFileExistsW, PathGetDriveNumberW, StrChrW, PathFindExtensionW, PathRemoveFileSpecW, PathStripToRootW, SHOpenRegStream2W, StrDupW, SHDeleteValueW, StrCatBuffW, SHDeleteKeyW, StrCmpIW, wnsprintfW, StrCmpNW
user32.dll
DllMain
uxtheme.dll
GetThemeBackgroundContentRect, GetThemeBool, GetThemePartSize, DrawThemeParentBackground, OpenThemeData, DrawThemeBackground, GetThemeTextExtent, DrawThemeText, CloseThemeData, SetWindowTheme, GetThemeBackgroundRegion, GetThemeMargins, GetThemeColor, GetThemeFont, GetThemeRect, IsAppThemed

EXPLORER.exe

Windows Stifinder by Microsoft

Remove EXPLORER.exe
Version:   6.00.2900.5512 (xpsp.080413-2105)
MD5:   1d9bd1caa1e4cf63370f201df742dc7d
SHA1:   3b0bf8e558420d054e7771c50176285c98f2fcf8
SHA256:   549bc34025d1cee9d32ee95f5d690c4050f623082393159c851aa214ee023c5e
This is a Windows system installed file with Windows File Protection (WFP) enabled.

Overview

explorer.exe executes as a process with the local user's privileges. It configures an autoplay handler withing explorer.exe named MSCDBurningOnArrival that will launch the program automatically. This version is installed on Windows XP and is compiled as a 32 bit program.

DetailsDetails

File name:explorer.exe
Publisher:Microsoft Corporation
Product name:Windows Stifinder
Description:Microsoft® Windows® Operativsystem
Typical file path:C:\windows\explorer.exe
File version:6.00.2900.5512 (xpsp.080413-2105)
Product version:6.00.2900.5512
Size:1010.5 KB (1,034,752 bytes)
Build date:4/13/2008 9:17 PM
Digital DNA
PE subsystem:Windows GUI
File packed:No
Code language:Microsoft Visual C++
.NET CLR:No
More details

BehaviorsBehaviors

Shell open commands
  • SHCmdFile
Autoplay handlers
Runs under the registry key 'SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers'
  • Handler name 'MSOpenFolder'
  • Handler name 'MSCDBurningOnArrival'

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00290143%
0.028634%
Kernel CPU:0.00167367%
0.013761%
User CPU:0.00122776%
0.014873%
Kernel CPU time:670,188 ms/min
100,923,805ms/min
Context switches:41/sec
284/sec
Memory
Private memory:25.33 MB
21.59 MB
Private (maximum):30.64 MB
Private (minimum):13.42 MB
Non-paged memory:25.33 MB
21.59 MB
Virtual memory:122.27 MB
140.96 MB
Virtual memory (peak):157.25 MB
169.69 MB
Working set:13.96 MB
18.61 MB
Working set (peak):31.04 MB
37.95 MB
Resource allocations
Threads:14
12
Handles:532
600
GUI GDI count:273
103
GUI USER count:145
49

BehaviorsProcess properties

Tray notification:Yes
Integrety level:Undefined
Platform:32-bit
Command line:C:\windows\explorer.exe
Owner:User

ResourcesThreads

Averages
 
SHLWAPI.dll
Total CPU:0.07071420%
0.272967%
Kernel CPU:0.05648255%
0.107585%
User CPU:0.01423165%
0.165382%
Context switches:12/sec
79/sec
Memory:472 KB
1.16 MB
stobject.dll (Systray shell-tjenesteobjekt by Microsoft)
Total CPU:0.06040129%
Kernel CPU:0.04725401%
User CPU:0.01314728%
Context switches:7/sec
Memory:132 KB
Explorer.EXE (main module)
Total CPU:0.03421457%
Kernel CPU:0.01494036%
User CPU:0.01927421%
Context switches:3/sec
Memory:1020 KB
ntdll.dll
Total CPU:0.00680574%
Kernel CPU:0.00517085%
User CPU:0.00163490%
Memory:720 KB
PDM.DLL
Total CPU:0.00125475%
Kernel CPU:0.00079847%
User CPU:0.00045627%
Context switches:2/sec
Memory:176 KB
SSDPAPI.dll
Total CPU:0.00030487%
Kernel CPU:0.00022865%
User CPU:0.00007622%
Memory:48 KB
netshell.dll (Grænseflade til netværksforbindelser by Microsoft)
Total CPU:0.00022813%
Kernel CPU:0.00011406%
User CPU:0.00011406%
Memory:1.65 MB
WINMM.dll
Total CPU:0.00019055%
Kernel CPU:0.00015244%
User CPU:0.00003811%
Memory:184 KB
wdmaud.drv
Total CPU:0.00003811%
Kernel CPU:0.00000000%
User CPU:0.00003811%
Memory:36 KB

Common loaded modules

These are modules that are typiclaly loaded within the context of this process.

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Microsoft Windows XP 100.00%

Distribution by countryDistribution by country

DK installs about 100.00% of Windows Stifinder.
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE