Should I block it?

60%
60% of PCs block this file from running.
Possible reason:
Performance resource utilization

VersionsAdditional versions

21.8.0.261 1.56%
21.5.0.2560 6.25%
21.4.0.1982 21.88%
21.3.1.1692 3.13%
21.2.0.1139 9.38%
21.1.0.607 3.13%
21.0.0.146 21.88%
20.3.0.729 12.50%
20.1.0.3831 14.06%
20.0.0.2671 4.69%
11.2.0.1794 1.56%

Relationships

Parent process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
RegisterServiceCtrlHandlerW, ReportEventW, RegisterEventSourceW, SetServiceStatus, CloseServiceHandle, OpenServiceW, OpenSCManagerW, CreateServiceW, DeleteService, RegQueryValueExW, RegEnumValueW, OpenProcessToken, LookupPrivilegeValueW, DuplicateTokenEx, SetTokenInformation, AdjustTokenPrivileges, CreateProcessAsUserW, RegQueryInfoKeyW, RegEnumKeyExW, InitializeSecurityDescriptor, SetSecurityDescriptorDacl, RegSetValueExW, RegCloseKey, RegOpenKeyExW, StartServiceCtrlDispatcherW, ControlService, DeregisterEventSource, ConvertStringSecurityDescriptorToSecurityDescriptorW
crypt32.dll
CryptDecodeObject, CertGetNameStringW, CryptMsgClose, CertCloseStore, CertFreeCertificateContext, CertFindCertificateInStore, CryptMsgGetParam, CryptQueryObject
kernel32.dll
CompareStringW, LCMapStringW, WriteConsoleW, SetStdHandle, FlushFileBuffers, GetStringTypeW, LoadLibraryW, CreateFileW, WriteFile, SetEvent, GetTempPathW, CreateDirectoryW, CreateToolhelp32Snapshot, Process32FirstW, lstrcmpiW, ProcessIdToSessionId, Process32NextW, OpenProcess, WTSGetActiveConsoleSessionId, lstrcmpA, WaitForMultipleObjects, lstrlenW, LocalFree, LocalAlloc, GetSystemTime, CreateEventW, CloseHandle, GetModuleHandleW, GetProcAddress, MultiByteToWideChar, FindResourceExW, FindResourceW, LoadResource, LockResource, IsValidCodePage, GetOEMCP, GetACP, GetCPInfo, GetConsoleMode, GetConsoleCP, SetFilePointer, GetCurrentProcessId, GetTickCount, QueryPerformanceCounter, GetFileType, SetHandleCount, GetEnvironmentStringsW, SetEnvironmentVariableA, FreeEnvironmentStringsW, GetTimeZoneInformation, WideCharToMultiByte, IsProcessorFeaturePresent, GetStdHandle, HeapCreate, ExitProcess, Sleep, SetLastError, InterlockedIncrement, TlsFree, TlsSetValue, TlsGetValue, TlsAlloc, SizeofResource, GetCommandLineW, InterlockedDecrement, GetModuleFileNameW, GetCurrentThreadId, DeleteCriticalSection, InitializeCriticalSectionAndSpinCount, GetLastError, RaiseException, GetCurrentProcess, TerminateProcess, IsDebuggerPresent, SetUnhandledExceptionFilter, EnterCriticalSection, LeaveCriticalSection, HeapDestroy, HeapAlloc, HeapFree, HeapReAlloc, HeapSize, GetProcessHeap, RtlUnwind, EncodePointer, DecodePointer, ExitThread, CreateThread, GetSystemTimeAsFileTime, HeapSetInformation, GetStartupInfoW, UnhandledExceptionFilter, GetVersionExW
ole32.dll
CoInitializeEx, CoUninitialize, CoReleaseServerProcess, CoInitializeSecurity, CoCreateInstance, CoTaskMemFree, CoTaskMemAlloc, CoAddRefServerProcess
user32.dll
GetMessageW, SetTimer, KillTimer, TranslateMessage, MessageBoxW, PostThreadMessageW, DispatchMessageW, CharUpperW, CharNextW, LoadStringW, RegisterWindowMessageW
userenv.dll
UnloadUserProfile, CreateEnvironmentBlock
winhttp.dll
WinHttpQueryDataAvailable, WinHttpReceiveResponse, WinHttpSendRequest, WinHttpCloseHandle, WinHttpOpenRequest, WinHttpConnect, WinHttpOpen, WinHttpSetOption, WinHttpCrackUrl, WinHttpReadData, WinHttpQueryHeaders
wintrust.dll
WinVerifyTrust
wtsapi32.dll
WTSEnumerateSessionsW, WTSFreeMemory

APNMCP.exe

APN Updater by APN LLC (Signed)

Remove APNMCP.exe
Version:   20.1.0.3831
MD5:   8549d4b927c6ae13a118296f2251cc51
SHA1:   cb986dd43f303c27a630a7ae52ff19a212144548
SHA256:   077a6687871b25fa3075e8381f260a8a130777ec6f243c8c0caa6e393766607d

Overview

apnmcp.exe runs as a service under the name Servicio de actualización Ask (APNMCP) with extensive SYSTEM privileges (full administrator access). The file is digitally signed by APN LLC which was issued by the VeriSign certificate authority (CA).

DetailsDetails

File name:apnmcp.exe
Publisher:APN LLC.
Product name:APN Updater
Typical file path:C:\Program Files\askpartnernetwork\toolbar\apnmcp.exe
File version:20.1.0.3831
Size:165.13 KB (169,096 bytes)
Certificate
Issued to:APN LLC
Authority (CA):VeriSign
Effective date:Monday, April 16, 2012
Expiration date:Thursday, April 9, 2015
Digital DNA
File packed:No
.NET CLR:No
More details

BehaviorsBehaviors

Services
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
  • 'APNMCP' (Servicio de actualización Ask)
  • APNMCP

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00096022%
0.028634%
Kernel CPU:0.00058946%
0.013761%
User CPU:0.00037076%
0.014873%
Kernel CPU time:206 ms/min
100,923,805ms/min
CPU cycles:36,732/sec
17,470,203/sec
Memory
Private memory:2.5 MB
21.59 MB
Private (maximum):4.46 MB
Private (minimum):2.22 MB
Non-paged memory:2.5 MB
21.59 MB
Virtual memory:48.87 MB
140.96 MB
Virtual memory (peak):51.21 MB
169.69 MB
Working set:2.54 MB
18.61 MB
Working set (peak):4.78 MB
37.95 MB
Page faults:4,282/min
2,039/min
I/O
I/O read transfer:2 Bytes/sec
1.02 MB/min
I/O read operations:1/sec
343/min
I/O write transfer:3 Bytes/sec
274.99 KB/min
I/O write operations:1/sec
227/min
I/O other transfer:11 Bytes/sec
448.09 KB/min
I/O other operations:4/sec
1,671/min
Resource allocations
Threads:5
12
Handles:113
600
GUI GDI count:4
103
GUI USER count:2
49

BehaviorsProcess properties

Integrety level:System
Platform:32-bit
Command line:"C:\Program Files\askpartnernetwork\toolbar\apnmcp.exe"
Owner:SYSTEM
Windows Service
Service name:APNMCP
Display name:Servicio de actualización Ask
Description:“El Servicio de actualización Ask mantiene actualizado el software de tu barra de herramientas Ask.”
Type:Win32OwnProcess
Parent process:services.exe (by Microsoft)

ResourcesThreads

Averages
 
sechost.dll
Total CPU:0.00192432%
0.272967%
Kernel CPU:0.00088815%
0.107585%
User CPU:0.00103617%
0.165382%
CPU cycles:62,238/sec
5,741,424/sec
Memory:100 KB
1.16 MB
apnmcp.exe (main module)
Total CPU:0.00078799%
Kernel CPU:0.00046571%
User CPU:0.00032228%
CPU cycles:14,550/sec
Memory:176 KB
wow64.dll
Total CPU:0.00000853%
Kernel CPU:0.00000522%
User CPU:0.00000331%
CPU cycles:857/sec
Memory:276 KB

Common loaded modules

These are modules that are typiclaly loaded within the context of this process.

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Ultimate 31.25%
Windows 7 Home Premium 17.19%
Microsoft Windows XP 12.50%
Windows 8 Single Language 7.81%
Windows Vista Home Premium 7.81%
Windows 8 Pro 7.81%
Windows 7 Professional 4.69%
Windows 8.1 3.13%
Windows 8 3.13%
Windows 8.1 Pro 1.56%
Windows 8 Pro with Media Center 1.56%
Windows Vista Home Basic 1.56%

Distribution by countryDistribution by country

United States installs about 33.87% of APN Updater.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Dell 22.50%
ASUS 20.00%
Hewlett-Packard 18.75%
Acer 12.50%
Lenovo 5.00%
Sony 5.00%
Toshiba 5.00%
Intel 2.50%
Alienware 2.50%
MSI 2.50%
American Megatrends 2.50%
GIGABYTE 1.25%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE