Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

1.0.0.2 50.00%
1.0.0.2 25.00%
1.0.0.2 25.00%
(Note, ZTE CORPORATION publishes each variation of this file with the same version, but the hashes are unique.)

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
RegEnumKeyExW, RegSetValueExW, RegCreateKeyExW, RegQueryValueW, RegEnumKeyW, RegDeleteKeyW, RegOpenKeyW, RegQueryValueExW, RegOpenKeyExW, RegCloseKey
comctl32.dll
InitCommonControlsEx
comdlg32.dll
GetFileTitleW
gdi32.dll
DeleteObject, GetObjectW, GetViewportExtEx, GetWindowExtEx, PtVisible, RectVisible, TextOutW, ExtTextOutW, Escape, SelectObject, SetViewportOrgEx, OffsetViewportOrgEx, SetViewportExtEx, ScaleViewportExtEx, SetWindowExtEx, ScaleWindowExtEx, ExtSelectClipRgn, DeleteDC, GetStockObject, GetBkColor, GetTextColor, CreateRectRgnIndirect, GetRgnBox, GetMapMode, GetClipBox, SetMapMode, SetTextColor, SetBkColor, RestoreDC, SaveDC, GetDeviceCaps, CreateBitmap
iphlpapi.dll
GetAdaptersInfo
kernel32.dll
GetFileAttributesW, GetFileSizeEx, GetFileTime, SetErrorMode, GetTickCount, GetStartupInfoW, HeapFree, HeapAlloc, GetSystemTimeAsFileTime, TerminateProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsDebuggerPresent, RtlUnwind, ExitProcess, RaiseException, HeapReAlloc, HeapSize, SetStdHandle, GetFileType, VirtualProtect, VirtualAlloc, GetSystemInfo, VirtualQuery, GetStdHandle, GetModuleFileNameA, FreeEnvironmentStringsW, GetEnvironmentStringsW, GetCommandLineW, SetHandleCount, GetStartupInfoA, HeapCreate, VirtualFree, QueryPerformanceCounter, GetCPInfo, GetACP, GetOEMCP, IsValidCodePage, LCMapStringW, GetTimeFormatA, GetDateFormatA, GetTimeZoneInformation, GetConsoleCP, GetConsoleMode, InitializeCriticalSectionAndSpinCount, LCMapStringA, GetStringTypeA, GetStringTypeW, GetLocaleInfoA, WriteConsoleA, GetConsoleOutputCP, WriteConsoleW, GetProcessHeap, CreateFileA, SetEnvironmentVariableA, CreateMutexW, GetLastError, CloseHandle, WaitForSingleObject, GetModuleFileNameW, FindResourceW, LoadResource, SizeofResource, MultiByteToWideChar, LockResource, Sleep, WritePrivateProfileStringW, OutputDebugStringW, OutputDebugStringA, GetPrivateProfileStringW, GetPrivateProfileIntW, GetTempPathW, DeleteFileW, CopyFileW, GetSystemTime, GetCurrentThreadId, ReleaseMutex, GetModuleHandleW, GetProcAddress, CreateFileW, SetLastError, GetVersionExW, GetFullPathNameW, GetVolumeInformationW, DuplicateHandle, GetFileSize, SetEndOfFile, UnlockFile, LockFile, FlushFileBuffers, SetFilePointer, WriteFile, ReadFile, lstrlenA, GetThreadLocale, InterlockedIncrement, TlsFree, LocalReAlloc, TlsSetValue, TlsAlloc, GetCurrentProcessId, GetCurrentProcess, GlobalHandle, GlobalReAlloc, TlsGetValue, GlobalFlags, LocalAlloc, LeaveCriticalSection, EnterCriticalSection, DeleteCriticalSection, InitializeCriticalSection, FileTimeToLocalFileTime, FileTimeToSystemTime, GlobalFindAtomW, CompareStringW, LoadLibraryA, GetVersionExA, GetModuleHandleA, GlobalUnlock, FormatMessageW, LocalFree, lstrlenW, MulDiv, CreateDirectoryW, InterlockedDecrement, GlobalAddAtomW, FreeResource, GlobalFree, GlobalDeleteAtom, GetCurrentThread, ConvertDefaultLocale, EnumResourceLanguagesW, lstrcmpA, GetLocaleInfoW, LoadLibraryW, CompareStringA, InterlockedExchange, GlobalLock, lstrcmpW, GlobalAlloc, FreeLibrary, WideCharToMultiByte, FindClose, FindFirstFileW
ole32.dll
CoRegisterMessageFilter, CLSIDFromProgID, CLSIDFromString, CoTaskMemFree, CoTaskMemAlloc, CoGetClassObject, StgOpenStorageOnILockBytes, StgCreateDocfileOnILockBytes, CreateILockBytesOnHGlobal, OleUninitialize, CoFreeUnusedLibraries, OleInitialize, CoRevokeClassObject, OleIsCurrentClipboard, OleFlushClipboard
oledlg.dll
OleUIBusyW
setupapi.dll
SetupDiGetClassDevsW, SetupDiGetDeviceRegistryPropertyW, SetupDiDestroyDeviceInfoList, SetupDiEnumDeviceInfo
shell32.dll
ShellExecuteW
shlwapi.dll
PathFileExistsW, PathFindExtensionW, PathFindFileNameW, UrlUnescapeW, PathStripToRootW, PathRemoveFileSpecW, PathIsUNCW
user32.dll
PostThreadMessageW, GetSysColorBrush, MessageBeep, GetNextDlgGroupItem, InvalidateRgn, InvalidateRect, SetRect, IsRectEmpty, CopyAcceleratorTableW, CharNextW, ReleaseCapture, LoadCursorW, SetCapture, RegisterWindowMessageW, SendDlgItemMessageA, WinHelpW, IsChild, GetCapture, GetClassLongW, GetClassNameW, SetPropW, GetPropW, RemovePropW, GetForegroundWindow, GetTopWindow, GetMessageTime, GetMessagePos, MapWindowPoints, SetMenu, SetForegroundWindow, UpdateWindow, CreateWindowExW, GetClassInfoExW, GetClassInfoW, RegisterClassW, AdjustWindowRectEx, EqualRect, CopyRect, PtInRect, CallWindowProcW, GetMenu, OffsetRect, IntersectRect, SystemParametersInfoA, GetWindowPlacement, GetWindowRect, GetSysColor, EndPaint, BeginPaint, GetWindowDC, ReleaseDC, GetDC, ClientToScreen, GrayStringW, DrawTextExW, TabbedTextOutW, GetWindowTextW, SetFocus, ShowWindow, MoveWindow, SetWindowLongW, GetDlgCtrlID, SetWindowTextW, IsDialogMessageW, SendDlgItemMessageW, GetDesktopWindow, SetActiveWindow, CreateDialogIndirectParamW, DestroyWindow, IsWindow, GetDlgItem, GetNextDlgTabItem, EndDialog, GetMenuItemID, GetMenuItemCount, GetSubMenu, UnhookWindowsHookEx, GetWindowThreadProcessId, GetWindowLongW, GetLastActivePopup, IsWindowEnabled, MessageBoxW, SetCursor, RegisterClipboardFormatW, SetWindowsHookExW, CallNextHookEx, DestroyMenu, DefWindowProcW, GetMessageW, GetActiveWindow, IsWindowVisible, GetKeyState, GetCursorPos, ValidateRect, SetMenuItemBitmaps, GetMenuCheckMarkDimensions, LoadBitmapW, GetFocus, ModifyMenuW, GetMenuState, EnableMenuItem, CheckMenuItem, GetWindow, SetWindowContextHelpId, GetParent, MapDialogRect, SetWindowPos, PostMessageW, TranslateMessage, PeekMessageW, DispatchMessageW, EnableWindow, PostQuitMessage, KillTimer, DrawIcon, GetClientRect, GetSystemMetrics, IsIconic, SetTimer, SendMessageW, LoadIconW, UnregisterClassW, CharUpperW, DrawTextW
wininet.dll
InternetReadFile, InternetWriteFile, InternetSetFilePointer, InternetSetStatusCallbackW, InternetOpenW, InternetGetLastResponseInfoW, InternetCloseHandle, InternetQueryDataAvailable, InternetQueryOptionW, InternetCanonicalizeUrlW, InternetCrackUrlW, InternetOpenUrlW, HttpQueryInfoW
winspool.drv
DocumentPropertiesW, OpenPrinterW, ClosePrinter

checkndisport_df.exe

By ZTE CORPORATION (Signed)

Remove checkndisport_df.exe
Version:   1.0.0.2
MD5:   43c18bc8c424eccd12514867494343c4
SHA1:   b8658a09523fd1f102dc90207c1953c05ba971a8

Overview

checkndisport_df.exe executes as a process with the local user's privileges. It is set to be start when the PC boots and any user logs into Windows (added to the Run registry key for the all users under the local machine). This is typically installed with the program Maxis Broadband Hostless Modem published by ZTE Corporation. The file is digitally signed by ZTE CORPORATION which was issued by the VeriSign certificate authority (CA).

DetailsDetails

File name:checkndisport_df.exe
Typical file path:C:\Program Files\hostless modem\4g hostless modem\checkndisport_df.exe
File version:1.0.0.2
Size:398.82 KB (408,392 bytes)
Build date:10/30/2012 2:22 AM
Certificate
Issued to:ZTE CORPORATION
Authority (CA):VeriSign
Effective date:Monday, September 3, 2012
Digital DNA
File packed:No
.NET CLR:No
More details

ResourcesPrograms

The following program will install this file
ZTE Corporation
2% remove

BehaviorsBehaviors

Startup files (all users) run
Runs under the registry key 'HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run'
  • 'CheckNDISPortf0acc8' → C:\Program Files\O2 4G Dongle\CheckNDISPort_df.exe
  • 'CheckNDISPort_df' → C:\Program Files\Hostless Modem\4G Hostless Modem\CheckNDISPort_df.exe

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.02227407%
0.028634%
Kernel CPU:0.01167726%
0.013761%
User CPU:0.01059681%
0.014873%
Kernel CPU time:10,875 ms/min
100,923,805ms/min
Context switches:672/sec
284/sec
Memory
Private memory:4.89 MB
21.59 MB
Private (maximum):6.86 MB
Private (minimum):6.75 MB
Non-paged memory:4.89 MB
21.59 MB
Virtual memory:51.34 MB
140.96 MB
Virtual memory (peak):75.36 MB
169.69 MB
Working set:6.85 MB
18.61 MB
Working set (peak):6.86 MB
37.95 MB
Resource allocations
Threads:1
12
Handles:70
600
GUI GDI count:25
103
GUI USER count:10
49

BehaviorsProcess properties

Integrety level:Undefined
Platform:32-bit
Command line:"C:\Program Files\hostless modem\maxis broadband\checkndisport_df.exe"
Owner:User
Parent process:explorer.exe (Windows Explorer by Microsoft Corporation)

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Microsoft Windows XP 50.00%
Windows 8.1 25.00%
Windows 7 Home Premium 25.00%

Distribution by countryDistribution by country

United Kingdom installs about 25.00% of checkndisport_df.exe.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
GIGABYTE 50.00%
Alienware 25.00%
Hewlett-Packard 25.00%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE