Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

96ce8 50.00%
7efe2 50.00%
(Note, the developer publishes each variation of this file with the same version, but the hashes are unique.)

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
RegDeleteValueA, RegOpenKeyExA, RegCloseKey, RegCreateKeyExA, RegQueryValueExA, RegSetValueExA
iphlpapi.dll
GetExtendedTcpTable
kernel32.dll
InitializeCriticalSectionEx, GetProcAddress, LockResource, GetModuleFileNameA, GetModuleHandleA, CloseHandle, FreeLibrary, LoadLibraryA, ExitProcess, GetTickCount, DuplicateHandle, CreateEventA, SetEvent, CreateSemaphoreA, TerminateProcess, ReleaseSemaphore, GetLastError, WaitForMultipleObjects, CreateMutexA, ReleaseMutex, GetCurrentProcessId, HeapAlloc, HeapFree, GetProcessHeap, ResetEvent, GetTickCount64, GetSystemTimeAsFileTime, Thread32First, Thread32Next, OpenThread, CreateToolhelp32Snapshot, GetVersionExA, FormatMessageA, GetEnvironmentVariableA, SystemTimeToFileTime, CreateWaitableTimerA, SetWaitableTimer, OpenEventA, SetEndOfFile, SignalObjectAndWait, CreateFileW, CreateProcessA, SizeofResource, WideCharToMultiByte, WaitForSingleObject, GetCurrentProcess, LoadResource, FindResourceW, GetThreadPriority, WriteConsoleW, SetStdHandle, ReadConsoleW, UnregisterWait, SetFilePointer, FreeEnvironmentStringsW, GetEnvironmentStringsW, QueryPerformanceCounter, LoadLibraryW, VirtualProtect, VirtualFree, VirtualAlloc, GetVersionExW, SetThreadPriority, FreeLibraryAndExitThread, GetThreadTimes, OutputDebugStringW, GetConsoleMode, GetConsoleCP, LocalFree, FindResourceExW, Sleep, GetCurrentThread, GetCurrentThreadId, GetExitCodeThread, InterlockedIncrement, InterlockedDecrement, EncodePointer, DecodePointer, EnterCriticalSection, LeaveCriticalSection, DeleteCriticalSection, InterlockedExchange, MultiByteToWideChar, GetStringTypeW, RaiseException, HeapDestroy, HeapReAlloc, HeapSize, CreateTimerQueueTimer, IsDebuggerPresent, IsProcessorFeaturePresent, InitializeCriticalSectionAndSpinCount, TlsGetValue, CreateTimerQueue, InterlockedPopEntrySList, InterlockedPushEntrySList, InterlockedFlushSList, QueryDepthSList, TlsSetValue, GetCommandLineA, RtlUnwind, CreateThread, ExitThread, LoadLibraryExW, GetCPInfo, UnhandledExceptionFilter, SetUnhandledExceptionFilter, SetLastError, TlsAlloc, TlsFree, GetStartupInfoW, GetModuleHandleW, CreateSemaphoreW, LCMapStringW, GetLocaleInfoW, IsValidLocale, GetUserDefaultLCID, EnumSystemLocalesW, GetModuleHandleExW, AreFileApisANSI, IsValidCodePage, GetACP, GetOEMCP, GetStdHandle, WriteFile, GetModuleFileNameW, DeleteTimerQueueTimer, GetProcessAffinityMask, SetThreadAffinityMask, CreateEventW, InitializeSListHead, SwitchToThread, UnregisterWaitEx, ChangeTimerQueueTimer, GetNumaHighestNodeNumber, RegisterWaitForSingleObject, GetFileType, ReadFile, SetFilePointerEx, FlushFileBuffers, QueryPerformanceFrequency
ole32.dll
CoCreateGuid, StringFromGUID2
shell32.dll
SHCreateDirectoryExA, ShellExecuteExA, SHFileOperationA
user32.dll
GetWindowTextLengthA, FindWindowExA, EnumWindows, GetWindowTextLengthW, GetWindowTextA, GetWindowTextW, IsWindow, GetClassNameA, GetWindowRect, PostMessageA, GetWindowThreadProcessId
ws2_32.dll
WSAWaitForMultipleEvents, WSACreateEvent, WSAEventSelect, WSAEnumNetworkEvents

controller.exe

Remove controller.exe
MD5:   7efe2d851249723ac6af06210700a997
SHA1:   627a93987dc7b4118c5031b02bb9f6f56fc8cb04

Overview

controller.exe executes as a process with the local user's privileges. It is installed with a couple of know programs including GigaClicks Crawler published by GigaClicks inc. and GigaClicks Crawler published by GigaClicks inc..

DetailsDetails

File name:controller.exe
Typical file path:C:\users\user\appdata\local\gcc\controller.exe
Size:444 KB (454,656 bytes)
Build date:1/21/2014 11:41 PM
Digital DNA
PE subsystem:Windows GUI
File packed:No
.NET CLR:No
More details

ResourcesPrograms

The following programs will install this file
GigaClicks inc.
  87% remove
This spyware/adware program monitors a user's web browsing activity and captures click-stream data in order to aggregate and track a user's behavior including search and browse. This is done through it's "WebStroller" application. "When WebStroller runs on your computer, GigaClicks inc may automatically receive non- personally identifiable information, such as your system’s IP address, when you contact our servers. WebStroller itself...

BehaviorsBehaviors

Scheduled task
  • The task 'GC_Scheduler' runs daily in the path '\GC_Scheduler'
Network connections
  • [UDP] listens on port 63306

  • ResourcesResource utilization

    (Note: statistics below are averages based on a minimum sample size of 200 unique participants)
    Averages
     
    CPU
    Total CPU:0.00166648%
    0.028634%
    Kernel CPU:0.00139891%
    0.013761%
    User CPU:0.00026757%
    0.014873%
    Kernel CPU time:10,780 ms/min
    100,923,805ms/min
    CPU cycles:4,996,971/sec
    17,470,203/sec
    Context switches:25/sec
    284/sec
    Memory
    Private memory:18.32 MB
    21.59 MB
    Private (maximum):19.04 MB
    Private (minimum):544 KB
    Non-paged memory:18.32 MB
    21.59 MB
    Virtual memory:322.1 MB
    140.96 MB
    Virtual memory (peak):338.32 MB
    169.69 MB
    Working set:7.15 MB
    18.61 MB
    Working set (peak):19.23 MB
    37.95 MB
    Page faults:248,922/min
    2,039/min
    I/O
    I/O read transfer:918 Bytes/sec
    1.02 MB/min
    I/O read operations:1/sec
    343/min
    I/O write transfer:0 Bytes/sec
    274.99 KB/min
    I/O write operations:1/sec
    227/min
    I/O other transfer:135.31 KB/sec
    448.09 KB/min
    I/O other operations:2,411/sec
    1,671/min
    Resource allocations
    Threads:196
    12
    Handles:959
    600

    BehaviorsProcess properties

    Integrety level:High
    Platform:64-bit
    Command line:C:\users\user\appdata\local\gcc\controller.exe
    Owner:User
    Parent process:taskeng.exe (Task Scheduler Engine by Microsoft)

    ResourcesThreads

    Averages
     
    Controller.exe (main module)
    Total CPU:0.01358799%
    0.272967%
    Kernel CPU:0.00848404%
    0.107585%
    User CPU:0.00510395%
    0.165382%
    CPU cycles:575,951/sec
    5,741,424/sec
    Context switches:2/sec
    79/sec
    Memory:476 KB
    1.16 MB
    ntdll.dll
    Total CPU:0.00016973%
    Kernel CPU:0.00007604%
    User CPU:0.00009369%
    CPU cycles:35,311/sec
    Memory:1.66 MB

    Windows OS versionsDistribution by Windows OS

    OS versiondistribution
    Windows 7 Home Premium 100.00%

    Distribution by countryDistribution by country

    United States installs about 100.00% of controller.exe.

    OEM distributionDistribution by PC manufacturer

    PC Manufacturerdistribution
    Gateway 100.00%
    Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

    Download it for FREE