File details
File name: cltmng.exe
Name: Search Protect
Description: Search Protect by Conduit
Version: 1.5.0.71
Size: 2.72 MB
Original file name: SearchProtect (R)
Digital certificate
Certificate authority:
VeriSign
Effective date: 2/17/2010
Expiration date: 3/30/2013
Resource utilization
 | CPU utilization averages |
Total CPU: 0.1677371049%
Privileged CPU:
0.0022663929%

User CPU:
0.16547071204954%

Privileged CPU time: 717.6 ms
Privileged CPU time /min: 1 ms
CPU cycle count:
581,292,234
Context switches /sec:
60
 | Memory utilization averages |
Committed memory:
164.35 MB
Peak committed memory: 190.98 MB
Paged memory:
19.91 MB
Peak paged memory: 21.05 MB
Paged system memory:
235.35 KB
Non-paged system memory: 2.06 MB
Working set memory:
30.85 MB
Peak working set memory: 31.59 MB
Min working set memory: 30.09 MB
Private memory:
19.91 MB
Page faults:
54,430
Page faults /min: 139
 | Process I/O averages |
Total read operations:
152
Total read transfer: 183.41 KB
Total write operations:
82
Total write transfer: 89.82 KB
Total other operations:
19,361
Total other transfer: 381.47 KB
 | GUI Object Averages |
GDI objects:
8
Peak GDI objects: 9
USER objects:
55
Peak USER objects: 58
Resources
Handle count average: 633
Thread count average: 42
Thread resource averages
ntdll.dll

Total CPU: 0.012232225684%
Privileged CPU: 0.001588490116%
User CPU: 0.010643735568%
CPU Cycle count /sec: 297,800
Module memory size: 1.66 MB
ntdll.dll

Total CPU: 0.003390078281%
Privileged CPU: 0.002259039391%
User CPU: 0.001131038890%
CPU Cycle count /sec: 73,113
Module memory size: 1.66 MB
Total CPU: 0.002807355328%
Privileged CPU: 0.001151610200%
User CPU: 0.001655745128%
CPU Cycle count /sec: 66,160
Module memory size: 2.77 MB
Process details
Runs as (owner): User
Integrety level: Undefined
Windows platform: 64-bit
Parent Process
Process Commands
"C:\users\user\appdata\Roaming\SearchProtect\bin\cltmng.exe"
"C:\users\user\appdata\Roaming\SearchProtect\bin\cltmng.exe"
Startup files (all users) run details
Name: SearchProtectAll
Command: C:\Program Files\SearchProtect\bin\cltmng.exe
Startup files (user) run details
Name: SearchProtect
Command: C:\users\user\appdata\Roaming\SearchProtect\bin\cltmng.exe
Network connectivity
TCP: VIP15.LB30.DALL.COTENDO.net on port 49171
Image hashes
MD5: e7bfaec48b638814f9da09ff1f4b723a
SHA-1: fd93ccaeba15517ce2171a1637bc837d393ade8e
SHA-256: 42178c44cbb9c0a4f00261ec1802ba79ceaf9277d366b7bd272dea4ad6732757
PE image details
Subsystem: Windows GUI
Langauge*: Microsoft Visual C++ 10.0
File packed: No
Import Table
advapi32.dll

GetUserNameA
RegCloseKey
RegQueryValueExW
RegOpenKeyExW
DeregisterEventSource
ReportEventA
RegisterEventSourceA
OpenProcessToken
RegEnumValueW
RegQueryInfoKeyW
RegSetValueExW
RegNotifyChangeKeyValue
RegCreateKeyExW
CreateProcessAsUserW
GetLengthSid
SetTokenInformation
ConvertStringSidToSidW
DuplicateTokenEx
GetSidSubAuthorityCount
GetSidSubAuthority
GetTokenInformation
crypt32.dll

CryptQueryObject
CertFindCertificateInStore
CertGetNameStringW
CertFreeCertificateContext
CertCloseStore
CryptMsgClose
CryptMsgGetParam
dbghelp.dll

SymInitialize
SymFunctionTableAccess64
SymGetModuleBase64
StackWalk64
MiniDumpWriteDump
SymGetSymFromAddr64
SymGetLineFromAddr64
gdi32.dll

GetStockObject
DeleteObject
CreateSolidBrush
SetWindowOrgEx
GetWindowOrgEx
kernel32.dll

IsProcessorFeaturePresent
HeapSize
HeapReAlloc
HeapDestroy
InitializeCriticalSectionAndSpinCount
RaiseException
TlsSetValue
OpenEventA
TlsGetValue
TlsFree
TlsAlloc
CreateEventA
HeapAlloc
GetProcessHeap
GetStringTypeExW
SetFileTime
LocalFileTimeToFileTime
GetCurrentDirectoryW
SystemTimeToFileTime
ReadFile
SetFilePointer
FindResourceExW
LockResource
SizeofResource
LoadResource
FindResourceW
GetLocaleInfoW
GetUserDefaultLCID
GetVersionExW
CreateProcessW
OpenProcess
LocalAlloc
FlushConsoleInputBuffer
LoadLibraryA
GetStdHandle
GetFileType
GetVersion
LCMapStringW
UnmapViewOfFile
HeapFree
SetProcessShutdownParameters
GetCurrentProcessId
GetComputerNameW
GetLastError
AreFileApisANSI
GetTickCount
QueryPerformanceCounter
IsDebuggerPresent
UnhandledExceptionFilter
TerminateProcess
GetStartupInfoW
HeapSetInformation
InterlockedCompareExchange
Sleep
InterlockedExchange
DecodePointer
EncodePointer
lstrlenW
FormatMessageA
WaitForSingleObjectEx
CreateDirectoryW
GetSystemTime
ResetEvent
SetEvent
WaitForMultipleObjects
QueueUserWorkItem
CreateMutexW
OpenMutexW
GetTempPathW
InterlockedIncrement
GetModuleHandleExW
FreeLibrary
GetModuleHandleW
LoadLibraryW
LeaveCriticalSection
EnterCriticalSection
DeleteCriticalSection
InitializeCriticalSection
LocalFree
FormatMessageW
WideCharToMultiByte
MultiByteToWideChar
InterlockedDecrement
SetUnhandledExceptionFilter
GetCurrentProcess
GetCurrentThread
GetCurrentThreadId
GetLocalTime
GlobalMemoryStatus
GetSystemTimeAsFileTime
OutputDebugStringA
GetModuleHandleA
GetProcAddress
GetVersionExA
VirtualQuery
GetSystemInfo
GetFileTime
CreateFileA
GetModuleFileNameA
FileTimeToDosDateTime
FileTimeToLocalFileTime
WriteFile
lstrlenA
lstrcpyA
lstrcpynA
GetFileInformationByHandle
WaitForSingleObject
PostQueuedCompletionStatus
GetQueuedCompletionStatus
ReadDirectoryChangesW
CreateIoCompletionPort
CreateEventW
GetDiskFreeSpaceExW
CloseHandle
GetFileSize
CreateFileW
CopyFileW
GetFileAttributesW
FindClose
SetFileAttributesW
RemoveDirectoryW
FindNextFileW
FindFirstFileW
DeleteFileW
GetModuleFileNameW
ResumeThread
ReleaseSemaphore
SetLastError
ProcessIdToSessionId
msvcp100.dll
msvcr100.dll
ole32.dll

CoInitializeEx
CoSetProxyBlanket
CoUninitialize
CoCreateInstance
OleInitialize
CLSIDFromString
psapi.dll

EnumProcessModules
GetModuleBaseNameW
GetModuleFileNameExW
GetProcessImageFileNameW
EnumProcesses
shell32.dll

ShellExecuteW
SHCreateDirectoryExW
shlwapi.dll

PathFileExistsW
UrlUnescapeW
user32.dll

RegisterWindowMessageW
GetWindowThreadProcessId
FindWindowW
CharUpperW
PostThreadMessageW
SetWindowLongW
GetWindowLongW
GetClassInfoW
RegisterClassW
SetTimer
GetMessageW
LoadStringW
DispatchMessageW
TranslateMessage
DestroyWindow
MessageBoxA
GetDesktopWindow
GetSystemMetrics
wsprintfW
GetProcessWindowStation
GetUserObjectInformationW
PostQuitMessage
DefWindowProcW
LoadIconW
LoadCursorW
RegisterClassExW
CreateWindowExW
ShowWindow
UpdateWindow
KillTimer
GetWindowRect
IsWindow
PostMessageW
GetCursorPos
FindWindowExW
FillRect
SendMessageW
ScreenToClient
ClientToScreen
GetClientRect
SetFocus
IsChild
GetFocus
version.dll

VerQueryValueW
GetFileVersionInfoW
GetFileVersionInfoSizeW
GetFileVersionInfoA
VerQueryValueA
GetFileVersionInfoSizeA
wininet.dll

InternetCrackUrlW
InternetGetConnectedState