File details
File name: nspmain.exe
Name: nProtect Anti-Virus/Spyware
Description: nProtect Anti-Virus/Spyware Main Application
Version: 3.0.13309.0
Size: 1.06 MB
Original file name: nspmain.exe
Digital certificate
Certificate authority:
VeriSign
Effective date: 2/12/2011
Expiration date: 7/12/2012
Resource utilization
 | CPU utilization averages |
Total CPU: 0.0002762902%
Privileged CPU:
0.0002062144%

User CPU:
0.00007007584401%

Privileged CPU time: 951684.1 ms
Privileged CPU time /min: 0 ms
CPU cycle count:
1,411,173,082
 | Memory utilization averages |
Committed memory:
158.95 MB
Peak committed memory: 181.46 MB
Paged memory:
21.77 MB
Peak paged memory: 52.21 MB
Paged system memory:
240.47 KB
Non-paged system memory: 25.74 KB
Working set memory:
7.46 MB
Peak working set memory: 37.03 MB
Min working set memory: 320 KB
Private memory:
21.77 MB
Page faults:
11,236,627
Page faults /min: 0
 | Process I/O averages |
Total read operations:
397,655
Total write operations:
391,547
Total other operations:
18,197,091
Total other transfer: 172.99 MB
 | GUI Object Averages |
GDI objects:
671
Peak GDI objects: 686
USER objects:
270
Peak USER objects: 277
Resources
Handle count average: 517
Thread count average: 19
Thread resource averages
Total CPU: 0.260572537150%
Privileged CPU: 0.192691222995%
User CPU: 0.067881314155%
CPU Cycle count /sec: 4,990,833
Module memory size: 1.69 MB
Total CPU: 0.013669317831%
Privileged CPU: 0.007740379162%
User CPU: 0.005928938669%
CPU Cycle count /sec: 2,338,854
Module memory size: 1.12 MB
msvcr80.dll

Total CPU: 0.000756081944%
Privileged CPU: 0.000573080543%
User CPU: 0.000183001401%
CPU Cycle count /sec: 54,990
Module memory size: 620 KB
Total CPU: 0.000250437506%
Privileged CPU: 0.000086689906%
User CPU: 0.000163747600%
CPU Cycle count /sec: 4,018
Module memory size: 1.27 MB
ntdll.dll

Total CPU: 0.000048160072%
Privileged CPU: 0.000024079592%
User CPU: 0.000024080481%
CPU Cycle count /sec: 2,400
Module memory size: 1.23 MB
gdiplus.dll

Total CPU: 0.000009631307%
Privileged CPU: 0.000000000000%
User CPU: 0.000009631307%
CPU Cycle count /sec: 241
Module memory size: 1.56 MB
Process details
Runs as (owner): User
Integrety level: High
Windows platform: 32-bit
Parent Process
Process Command
"C:\Program Files\INCAInternet\nProtect GameGuard Personal 3.0\nspmain.exe" -tray
Startup files (all users) run details
Name: nProtect GameGuard Personal 3.0
Command: C:\Program Files\INCAInternet\nProtect GameGuard Personal 3.0\nspmain.exe -tray
Network connectivity
TCP: 211.200.28.4 on port 49166
Image hashes
MD5: 4e836ac75c1444627018f047e0caefd7
SHA-1: a56e366459b3d86a042c03119e98ada1b2490f68
SHA-256: 18800b9684309fc14510199ad6ec799ea6194db4591fc02daf4edad0b3b0dc5d
PE image details
Subsystem: Windows GUI
Langauge*: Microsoft Visual C++ 8.0
File packed: No
Import Table
advapi32.dll

RevertToSelf
RegOpenKeyExA
RegQueryValueExA
RegCloseKey
RegQueryValueExW
RegOpenKeyExW
LookupAccountNameW
SetSecurityDescriptorDacl
InitializeSecurityDescriptor
SetEntriesInAclW
AllocateAndInitializeSid
FreeSid
RegQueryValueW
AddAccessAllowedAce
GetSecurityDescriptorDacl
GetAclInformation
InitializeAcl
GetAce
AddAce
GetTokenInformation
GetLengthSid
CopySid
LogonUserW
OpenProcessToken
DuplicateTokenEx
SetTokenInformation
ImpersonateLoggedOnUser
CreateProcessAsUserW
RegOpenKeyW
QueryServiceStatus
ControlService
StartServiceW
QueryServiceConfigW
ChangeServiceConfigW
OpenServiceW
DeleteService
OpenSCManagerW
CreateServiceW
CloseServiceHandle
RegDeleteValueW
RegDeleteKeyW
RegCreateKeyExW
RegCreateKeyW
RegSetValueExW
GetUserNameW
comctl32.dll

_TrackMouseEvent
ImageList_GetIcon
ImageList_GetIconSize
ImageList_Draw
InitializeFlatSB
FlatSB_SetScrollPos
FlatSB_EnableScrollBar
UninitializeFlatSB
comdlg32.dll

gdi32.dll

SetTextJustification
GetTextMetricsW
GetDIBits
GetRgnBox
CreatePolygonRgn
CreateRectRgnIndirect
GetBkColor
FillRgn
CreateRoundRectRgn
Escape
ExtTextOutW
TextOutW
Polygon
RectVisible
CreateBitmap
SetPixel
DeleteDC
EnumFontFamiliesExW
SetTextColor
PtVisible
GetPixel
CreateRectRgn
CombineRgn
GetCurrentObject
Ellipse
RoundRect
Pie
Arc
GetTextExtentPoint32W
Rectangle
CreateSolidBrush
BeginPath
PolyBezier
EndPath
FillPath
GetDeviceCaps
GetObjectW
GetStockObject
CreateCompatibleBitmap
CreateCompatibleDC
BitBlt
CreateFontIndirectW
DeleteObject
LineTo
MoveToEx
SelectObject
CreatePen
CreateFontW
gdiplus.dll

GdipCreateFromHDC
GdipDeleteGraphics
GdipDrawImageRectI
GdipLoadImageFromFile
GdipLoadImageFromFileICM
GdipDisposeImage
GdipAlloc
GdipGetImageWidth
GdipGetImageHeight
GdiplusStartup
GdiplusShutdown
GdipDrawImagePointRectI
GdipDrawImageI
GdipCloneImage
GdipFree
iphlpapi.dll

kernel32.dll

ExpandEnvironmentStringsA
lstrlenA
IsDebuggerPresent
UnhandledExceptionFilter
GetSystemTimeAsFileTime
GetCurrentThreadId
QueryPerformanceCounter
SetUnhandledExceptionFilter
GetStartupInfoW
InterlockedCompareExchange
InterlockedExchange
WinExec
GetSystemWindowsDirectoryW
TerminateProcess
ExitProcess
GetUserDefaultLangID
GetProcessHeap
HeapAlloc
HeapFree
GetComputerNameW
CreateProcessW
lstrlenW
GetVersion
IsBadWritePtr
GetSystemInfo
VerSetConditionMask
VerifyVersionInfoW
MultiByteToWideChar
InterlockedDecrement
WideCharToMultiByte
SuspendThread
ResumeThread
ReleaseMutex
OpenEventW
OpenFileMappingW
WaitNamedPipeW
SetNamedPipeHandleState
CreateFileMappingW
MapViewOfFile
UnmapViewOfFile
ResetEvent
CreateMailslotW
GetMailslotInfo
CreateNamedPipeW
ConnectNamedPipe
WriteFile
FlushFileBuffers
DisconnectNamedPipe
CreateFileW
ReadFile
GetVolumeInformationW
GetSystemDefaultLangID
GetSystemDirectoryW
WaitForMultipleObjects
CreateSemaphoreW
GetTempPathW
GetTempFileNameW
lstrcmpiW
OpenProcess
VirtualAllocEx
ReadProcessMemory
VirtualFreeEx
SystemTimeToFileTime
CompareFileTime
GetCurrentProcess
GetProcessWorkingSetSize
SetProcessWorkingSetSize
GetDateFormatW
GetTickCount
Sleep
GetVersionExW
LocalFree
SetEvent
TerminateThread
GetCurrentProcessId
LocalAlloc
CreateEventW
OpenMutexW
CreateThread
DeleteCriticalSection
InitializeCriticalSectionAndSpinCount
InitializeCriticalSection
GetModuleHandleW
WaitForSingleObject
MulDiv
EnterCriticalSection
LeaveCriticalSection
GetProcAddress
LoadLibraryW
FreeLibrary
SetLastError
GetLocalTime
CreateMutexW
GetLastError
CloseHandle
OutputDebugStringW
LoadLibraryA
mfc80u.dll
msimg32.dll

msvcp80.dll
msvcr80.dll
ole32.dll

OleRun
CoUninitialize
CoInitializeEx
CoCreateInstance
shell32.dll

SHAppBarMessage
SHGetSpecialFolderPathW
ShellExecuteW
Shell_NotifyIconW
ShellExecuteExW
shlwapi.dll

PathStripToRootW
PathFileExistsW
user32.dll

GetWindowDC
GetClassInfoExW
BeginPaint
DrawEdge
EndPaint
RedrawWindow
IsWindowEnabled
GetUserObjectSecurity
SetUserObjectSecurity
GetProcessWindowStation
OpenWindowStationW
SetProcessWindowStation
OpenDesktopW
CloseDesktop
CloseWindowStation
LoadBitmapW
LoadImageW
OffsetRect
GetWindow
IsDlgButtonChecked
MapWindowPoints
RegisterClassW
DrawIconEx
SetForegroundWindow
DrawAnimatedRects
BringWindowToTop
GetWindowThreadProcessId
CopyRect
MonitorFromRect
GetMenuItemInfoW
SetMenuItemInfoW
LoadMenuW
GetSubMenu
SetMenuDefaultItem
ModifyMenuW
InsertMenuW
CheckMenuItem
IsRectEmpty
GetMenuItemCount
CreatePopupMenu
AppendMenuW
TrackPopupMenu
LoadStringW
GetLastInputInfo
GetWindowLongW
SetWindowLongW
GetForegroundWindow
GetAncestor
GetClassNameW
MonitorFromWindow
GetMonitorInfoW
FindWindowExW
SystemParametersInfoW
LoadIconW
DestroyIcon
SetLayeredWindowAttributes
AnimateWindow
FillRect
GetSysColorBrush
DestroyMenu
KillTimer
SetTimer
ShowWindow
MoveWindow
TrackMouseEvent
CreateIconIndirect
GetIconInfo
SetRectEmpty
IntersectRect
TabbedTextOutW
DrawTextW
DefWindowProcW
DestroyWindow
UnregisterClassW
RegisterClassExW
CreateWindowExW
ReleaseDC
GetDC
ScreenToClient
GetWindowRect
PtInRect
DrawTextExW
GrayStringW
InflateRect
GetSysColor
SetWindowPos
GetScrollPos
ShowScrollBar
GetScrollInfo
SetWindowRgn
RemoveMenu
ClientToScreen
DestroyCursor
EnableMenuItem
LoadCursorW
SetCursor
GetCursorPos
UpdateWindow
FindWindowW
PostMessageW
GetDesktopWindow
MessageBoxW
GetSystemMetrics
GetParent
InvalidateRect
SetRect
IsWindow
SendMessageW
EnableWindow
GetClientRect
winmm.dll
