File details
File name: asghost.exe
Name: Cognizance Identity Manager
Description: Global Virtual Card Host
Version: 2.5.0.057
Product version: 2.5
Size: 64 KB
Original file name: ASGHost.exe
Resource utilization
 | CPU utilization averages |
Total CPU: 0.0198640175%
Privileged CPU:
0.0135231981%

User CPU:
0.00634081938970%

Privileged CPU time: 15976921.88 ms
Privileged CPU time /min: 1 ms
Context switches /sec:
480
 | Memory utilization averages |
Committed memory:
84.39 MB
Peak committed memory: 100.79 MB
Paged memory:
12.29 MB
Peak paged memory: 12.39 MB
Paged system memory:
114.43 KB
Non-paged system memory: 8.63 KB
Working set memory:
14.68 MB
Peak working set memory: 14.84 MB
Min working set memory: 13.11 MB
Private memory:
12.29 MB
Page faults:
41,432
Page faults /min: 14
 | Process I/O averages |
Total read operations:
33,378
Read operations /min: 2
Total read transfer: 1.13 MB
Read transfer /min: 831 Bytes
Total write operations:
84
Write operations /min: 1
Total write transfer: 6.77 KB
Write transfer /min: 8 Bytes
Total other operations:
1,404,214
Other operations /min: 328
Total other transfer: 24.37 MB
Other Transfer /min: 3.77 KB
 | GUI Object Averages |
GDI objects:
38
USER objects:
38
Resources
Handle count average: 346
Thread count average: 20
Thread resource averages
Total CPU: 0.012942960201%
Privileged CPU: 0.004706530982%
User CPU: 0.008236429219%
Context switches /sec: 1
Module memory size: 76 KB
msvcr70.dll

Total CPU: 0.009417688394%
Privileged CPU: 0.007455691921%
User CPU: 0.001961996473%
Context switches /sec: 19
Module memory size: 336 KB
Total CPU: 0.004737355942%
Privileged CPU: 0.002960847466%
User CPU: 0.001776508475%
Context switches /sec: 177
Module memory size: 1.17 MB
Process details
Runs as (owner): User
Integrety level: Undefined
Windows platform: 32-bit
System Tray: Yes
Parent Processes
Process Commands
C:\Programas\Hewlett-Packard\IAM\bin\asghost.exe -Embedding
"C:\Program Files\Bioscrypt\VeriSoft\Bin\AsGHost.exe" -Embedding
Image hashes
MD5: 3f91d1056d2cebef374be0e55428190a
SHA-1: 8269b65116127753df720de7d7a2a4fde37b20ba
SHA-256: 4b48d8ed4f407d1d2535d439719b03d5ac7d6deaf8d111252351570cbdc482a2
PE image details
Subsystem: Windows GUI
File packed: No
Import Table
advapi32.dll

RegSetValueExW
RegCreateKeyExW
SetSecurityDescriptorDacl
InitializeSecurityDescriptor
RegCloseKey
RegQueryValueExW
RegOpenKeyExW
RegDeleteValueW
GetSecurityInfo
SetEntriesInAclW
SetSecurityInfo
RegDeleteKeyW
RegQueryInfoKeyW
RegEnumKeyExW
kernel32.dll

GetCurrentThreadId
lstrcatW
lstrcpyW
SetProcessShutdownParameters
DeleteCriticalSection
InterlockedIncrement
InterlockedDecrement
FindResourceW
SizeofResource
LockResource
LoadResource
FindResourceExW
FlushInstructionCache
SetLastError
LoadLibraryW
GetModuleFileNameW
GetModuleHandleA
GetModuleHandleW
OutputDebugStringA
TryEnterCriticalSection
GetModuleFileNameA
lstrlenA
GetCurrentDirectoryA
GetEnvironmentVariableA
GetCurrentProcessId
SetErrorMode
SetUnhandledExceptionFilter
GetCurrentThread
SetEvent
WideCharToMultiByte
OpenProcess
LocalFree
GetSystemTimeAsFileTime
QueryPerformanceCounter
ExitProcess
GetStartupInfoW
HeapSize
HeapReAlloc
HeapDestroy
VirtualAlloc
VirtualFree
IsProcessorFeaturePresent
LoadLibraryA
HeapAlloc
InterlockedCompareExchange
GetProcessHeap
HeapFree
GetVersionExA
GetCommandLineW
OpenMutexW
CompareStringW
LocalAlloc
UnmapViewOfFile
MapViewOfFile
CreateFileMappingW
GetSystemInfo
CreateEventW
GetComputerNameW
ReleaseMutex
CloseHandle
WaitForSingleObject
CreateMutexW
GetCurrentProcess
GetTickCount
LeaveCriticalSection
EnterCriticalSection
lstrlenW
lstrcmpiW
FreeLibrary
GetProcAddress
Sleep
GetLastError
InitializeCriticalSection
LoadLibraryExW
MultiByteToWideChar
ExitThread
lstrcpynW
msvcr70.dll
ole32.dll

StringFromGUID2
CoUninitialize
CoSuspendClassObjects
CoRevokeClassObject
CoCreateGuid
CoRegisterClassObject
CoResumeClassObjects
CoCreateInstance
ProgIDFromCLSID
CoInitialize
CLSIDFromString
CoTaskMemRealloc
CoInitializeEx
CoTaskMemFree
CoTaskMemAlloc
shlwapi.dll

PathAppendW
PathFindExtensionW
SHDeleteKeyW
PathStripPathW
user32.dll

RegisterWindowMessageW
PostThreadMessageW
BroadcastSystemMessageW
CharNextW
GetMessageW
RegisterClassExW
GetClassInfoExW
wsprintfW
LoadCursorW
DefWindowProcW
DestroyWindow
SetWindowLongW
PeekMessageW
GetWindowLongW
CreateWindowExW
MsgWaitForMultipleObjectsEx
PostMessageW
EnumThreadWindows
IsDialogMessageW
CallWindowProcW
CharUpperBuffW
TranslateMessage
DispatchMessageW
UnregisterClassA
SendMessageW
GetSystemMetrics
winmm.dll
