Should I block it?

No, this file is 100% safe to run.

Relationships

Parent process
Child process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
RegQueryValueExW, RegOpenKeyExW, RegCloseKey, SetSecurityDescriptorDacl, ReportEventW, RegisterEventSourceW, RegUnLoadKeyW, RegSetValueExW, RegSaveKeyW, RegRestoreKeyW, RegReplaceKeyW, RegQueryInfoKeyW, RegLoadKeyW, RegFlushKey, RegEnumValueW, RegEnumKeyExW, RegDeleteValueW, RegDeleteKeyW, RegCreateKeyExW, RegConnectRegistryW, InitializeSecurityDescriptor, DeregisterEventSource, AllocateAndInitializeSid, StartServiceCtrlDispatcherW, SetServiceStatus, RegisterServiceCtrlHandlerW, OpenServiceW, OpenSCManagerW, DeleteService, CreateServiceW, CloseServiceHandle, SetEntriesInAclW, DuplicateTokenEx, CreateProcessAsUserW, OpenProcessToken
comctl32.dll
InitializeFlatSB, FlatSB_SetScrollProp, FlatSB_SetScrollPos, FlatSB_SetScrollInfo, FlatSB_GetScrollPos, FlatSB_GetScrollInfo, _TrackMouseEvent, ImageList_GetImageInfo, ImageList_SetIconSize, ImageList_GetIconSize, ImageList_Write, ImageList_Read, ImageList_GetDragImage, ImageList_DragShowNolock, ImageList_DragMove, ImageList_DragLeave, ImageList_DragEnter, ImageList_EndDrag, ImageList_BeginDrag, ImageList_Copy, ImageList_LoadImageW, ImageList_GetIcon, ImageList_Remove, ImageList_DrawEx, ImageList_Replace, ImageList_Draw, ImageList_SetOverlayImage, ImageList_GetBkColor, ImageList_SetBkColor, ImageList_ReplaceIcon, ImageList_Add, ImageList_SetImageCount, ImageList_GetImageCount, ImageList_Destroy, ImageList_Create
gdi32.dll
UnrealizeObject, StretchDIBits, StretchBlt, StartPage, StartDocW, SetWindowOrgEx, SetWinMetaFileBits, SetViewportOrgEx, SetTextColor, SetStretchBltMode, SetROP2, SetPixel, SetEnhMetaFileBits, SetDIBits, SetDIBColorTable, SetBrushOrgEx, SetBkMode, SetBkColor, SetAbortProc, SelectPalette, SelectObject, SaveDC, RoundRect, RestoreDC, Rectangle, RectVisible, RealizePalette, Polyline, Polygon, PolyBezierTo, PolyBezier, PlayEnhMetaFile, Pie, PatBlt, MoveToEx, MaskBlt, LineTo, IntersectClipRect, GetWindowOrgEx, GetWinMetaFileBits, GetTextMetricsW, GetTextExtentPointW, GetTextExtentPoint32W, GetSystemPaletteEntries, GetStockObject, GetRgnBox, GetPixel, GetPaletteEntries, GetObjectW, GetEnhMetaFilePaletteEntries, GetEnhMetaFileHeader, GetEnhMetaFileDescriptionW, GetEnhMetaFileBits, GetDeviceCaps, GetDIBits, GetDIBColorTable, GetDCOrgEx, GetCurrentPositionEx, GetClipBox, GetBrushOrgEx, GetBitmapBits, FrameRgn, ExtTextOutW, ExtFloodFill, ExcludeClipRect, EnumFontsW, EnumFontFamiliesExW, EndPage, EndDoc, Ellipse, DeleteObject, DeleteEnhMetaFile, DeleteDC, CreateSolidBrush, CreateRectRgn, CreatePenIndirect, CreatePalette, CreateICW, CreateHalftonePalette, CreateFontIndirectW, CreateDIBitmap, CreateDIBSection, CreateDCW, CreateCompatibleDC, CreateCompatibleBitmap, CreateBrushIndirect, CreateBitmap, CopyEnhMetaFileW, Chord, BitBlt, Arc, AbortDoc
kernel32.dll
lstrcmpiA, LoadLibraryA, LocalFree, LocalAlloc, GetACP, Sleep, VirtualFree, VirtualAlloc, GetSystemInfo, GetTickCount, QueryPerformanceCounter, GetVersion, GetCurrentThreadId, VirtualQuery, WideCharToMultiByte, MultiByteToWideChar, lstrlenW, lstrcpynW, LoadLibraryExW, IsValidLocale, GetSystemDefaultUILanguage, GetStartupInfoA, GetProcAddress, GetModuleHandleW, GetModuleFileNameW, GetUserDefaultUILanguage, GetLocaleInfoW, GetLastError, GetCommandLineW, FreeLibrary, FindFirstFileW, FindClose, ExitProcess, ExitThread, CreateThread, CompareStringW, WriteFile, UnhandledExceptionFilter, RtlUnwind, RaiseException, GetStdHandle, DeleteCriticalSection, LeaveCriticalSection, EnterCriticalSection, InitializeCriticalSection, CloseHandle, TlsSetValue, TlsGetValue, lstrcpyW, WritePrivateProfileStringW, WaitForSingleObject, WaitForMultipleObjectsEx, WaitForMultipleObjects, VirtualQueryEx, TryEnterCriticalSection, TerminateThread, SwitchToThread, SuspendThread, SizeofResource, SignalObjectAndWait, SetThreadPriority, SetThreadLocale, SetThreadAffinityMask, SetLastError, SetFilePointer, SetEvent, SetErrorMode, SetEndOfFile, ResumeThread, ResetEvent, RemoveDirectoryW, ReadFile, QueryPerformanceFrequency, IsDebuggerPresent, MulDiv, MoveFileExW, LockResource, LoadResource, LoadLibraryW, GlobalUnlock, GlobalLock, GlobalFree, GlobalFindAtomW, GlobalDeleteAtom, GlobalAlloc, GlobalAddAtomW, GetVersionExW, GetTimeZoneInformation, GetThreadTimes, GetThreadPriority, GetThreadLocale, GetTempPathW, GetSystemDirectoryW, GetProcessAffinityMask, GetPrivateProfileStringW, GetLocalTime, GetFullPathNameW, GetFileSize, GetFileAttributesW, GetExitCodeThread, GetDiskFreeSpaceW, GetDateFormatW, GetCurrentThread, GetCurrentProcessId, GetCurrentProcess, GetComputerNameW, GetCPInfo, FreeResource, InterlockedIncrement, InterlockedExchangeAdd, InterlockedExchange, InterlockedDecrement, InterlockedCompareExchange, FormatMessageW, FindResourceW, FindNextFileW, FileTimeToSystemTime, FileTimeToLocalFileTime, FileTimeToDosDateTime, EnumCalendarInfoW, DeleteFileW, CreateProcessW, CreateMailslotW, CreateFileW, CreateEventW, CreateDirectoryW, TerminateProcess, OpenProcess
msimg32.dll
AlphaBlend
ole32.dll
OleUninitialize, OleInitialize, CoTaskMemFree, CoTaskMemAlloc, CoCreateInstance, CoUninitialize, CoInitialize, IsEqualGUID
oleaut32.dll
SysFreeString, SysReAllocStringLen, SysAllocStringLen, CreateErrorInfo, GetErrorInfo, SetErrorInfo, SafeArrayPtrOfIndex, SafeArrayPutElement, SafeArrayGetElement, SafeArrayGetUBound, SafeArrayGetLBound, SafeArrayCreate, VariantChangeType, VariantCopy, VariantClear, VariantInit
shell32.dll
ShellExecuteW, SHGetSpecialFolderPathW
user32.dll
LoadStringW, MessageBoxA, CharNextW, DllMain
userenv.dll
CreateEnvironmentBlock
version.dll
VerQueryValueW, GetFileVersionInfoSizeW, GetFileVersionInfoW
winmm.dll
timeGetTime, timeEndPeriod, timeBeginPeriod
winspool.drv
OpenPrinterW, EnumPrintersW, DocumentPropertiesW, ClosePrinter, GetDefaultPrinterW

kmpservice.exe

By PandoraTV (Signed)

Remove kmpservice.exe
Version:   1.0.3.4
MD5:   836266d31f9b7920ed04c4775e401fbc
SHA1:   415894832a224b4aff986e72c7072d92242b837d
SHA256:   422bf0f5cbcb45047c75741ee3d02d93be3a7ec01c8e622079dc24893df65dfc

Overview

kmpservice.exe runs as a service under the name PanService (PanService) with extensive SYSTEM privileges (full administrator access). It is installed with a couple of know programs including Pandora Service published by Pandora.TV, KMP Service from KMP Media co., Ltd and KMP Service by KMP Media co., Ltd. The file is digitally signed by PandoraTV which was issued by the Thawte certificate authority (CA).

DetailsDetails

File name:kmpservice.exe
Publisher:Pandora.TV
Description:Pandora.TV service file
Typical file path:C:\Program Files\pandora.tv\panservice\kmpservice.exe
Original name:PandoraService.exe
File version:1.0.3.4
Product version:1.0.3.3
Size:1.83 MB (1,922,600 bytes)
Build date:7/4/2013 9:13 AM
Certificate
Issued to:PandoraTV
Authority (CA):Thawte
Digital DNA
PE subsystem:Windows GUI
File packed:No
.NET CLR:No
More details

ResourcesPrograms

The following programs will install this file
KMP Media co., Ltd
40% remove
The player handles a wide range of audio, video and subtitles formats and allows one to capture audio, video, and screenshots. It provides both internal and external filters with a fully controlled environment in terms of connections to other splitters, decoders, audio/video transform filters and renderers without grappling with the DirectShow merit system.
Pandora.TV
  55% remove
Pandora TV is a video sharing website that hosts user-generated content. Pandora TV is a video sharing website designed to attach advertisement to user-submitted video clips and to provide unlimited storage space for users to upload.
Pandora.TV
  53% remove
Pandora TV is a video sharing website that hosts user-generated content. Pandora TV is a video sharing website designed to attach advertisement to user-submitted video clips and to provide unlimited storage space for users to upload.

BehaviorsBehaviors

Services
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
  • PanService
  • 'PanService' (PandoraService)
Network connections
  • [TCP] 111.111.111.111:80

  • ResourcesResource utilization

    (Note: statistics below are averages based on a minimum sample size of 200 unique participants)
    Averages
     
    CPU
    Total CPU:0.00524427%
    0.028634%
    Kernel CPU:0.00341079%
    0.013761%
    User CPU:0.00183348%
    0.014873%
    Kernel CPU time:595,667,674 ms/min
    100,923,805ms/min
    CPU cycles:11,695,378/sec
    17,470,203/sec
    Context switches:1,393/sec
    284/sec
    Memory
    Private memory:3.8 MB
    21.59 MB
    Private (maximum):8.02 MB
    Private (minimum):6.36 MB
    Non-paged memory:3.8 MB
    21.59 MB
    Virtual memory:79.25 MB
    140.96 MB
    Virtual memory (peak):81.45 MB
    169.69 MB
    Working set:6.61 MB
    18.61 MB
    Working set (peak):9.12 MB
    37.95 MB
    Page faults:8,727,138/min
    2,039/min
    I/O
    I/O read transfer:0 Bytes/sec
    1.02 MB/min
    I/O read operations:9,113/sec
    343/min
    I/O write transfer:0 Bytes/sec
    274.99 KB/min
    I/O write operations:1/sec
    227/min
    I/O other transfer:2.19 KB/sec
    448.09 KB/min
    I/O other operations:152/sec
    1,671/min
    Resource allocations
    Threads:12
    12
    Handles:196
    600
    GUI GDI count:34
    103
    GUI USER count:26
    49

    BehaviorsProcess properties

    Integrety level:System
    Platform:64-bit
    Command line:"C:\Program Files\pandora.tv\panservice\kmpservice.exe"
    Owner:SYSTEM
    Windows Service
    Service name:PanService
    Display name:PanService
    Description:“This is a description for KMP Service Application.”
    Type:Win32OwnProcess, InteractiveProcess
    Parent process:services.exe (Services and Controller app by Microsoft)

    ResourcesThreads

    Averages
     
    KMPService.exe (main module)
    Total CPU:0.03219567%
    0.272967%
    Kernel CPU:0.02425749%
    0.107585%
    User CPU:0.00793818%
    0.165382%
    CPU cycles:6,575,854/sec
    5,741,424/sec
    Context switches:307/sec
    79/sec
    Memory:1.88 MB
    1.16 MB
    wow64.dll
    Total CPU:0.00013261%
    Kernel CPU:0.00013261%
    User CPU:0.00000000%
    CPU cycles:44/sec
    Memory:252 KB
    ntdll.dll
    Total CPU:0.00001537%
    Kernel CPU:0.00000899%
    User CPU:0.00000638%
    CPU cycles:1,678/sec
    Memory:1.66 MB

    Windows OS versionsDistribution by Windows OS

    OS versiondistribution
    Windows 7 Ultimate 45.83%
    Windows 8 Pro 12.50%
    Windows 7 Home Premium 12.50%
    Windows 8.1 8.33%
    Windows 8 Enterprise N 8.33%
    Microsoft Windows XP 8.33%
    Windows 8 4.17%

    Distribution by countryDistribution by country

    Taiwan installs about 25.00% of kmpservice.exe.

    OEM distributionDistribution by PC manufacturer

    PC Manufacturerdistribution
    Dell 35.90%
    ASUS 30.77%
    Intel 10.26%
    Hewlett-Packard 7.69%
    Acer 5.13%
    GIGABYTE 5.13%
    Sony 5.13%
    Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

    Download it for FREE