Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

0001.0006.2007.1210 33.33%
0001.0004.2006.1103 66.67%

Relationships

Parent process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
RegDeleteKeyA, RegQueryValueA, RegOpenKeyA, RegEnumKeyA, RegOpenKeyExA, RegSetValueExA, RegCreateKeyExA, RegCloseKey, RegQueryValueExA
comctl32.dll
InitCommonControlsEx
comdlg32.dll
GetFileTitleA
gdi32.dll
DeleteDC, GetStockObject, GetDeviceCaps, ExtSelectClipRgn, GetBkColor, GetTextColor, CreateRectRgnIndirect, GetRgnBox, GetMapMode, ScaleWindowExtEx, SetWindowExtEx, ScaleViewportExtEx, SetViewportExtEx, OffsetViewportOrgEx, SetViewportOrgEx, CreateBitmap, Escape, ExtTextOutA, TextOutA, RectVisible, PtVisible, GetWindowExtEx, GetViewportExtEx, GetObjectA, DeleteObject, GetClipBox, SetMapMode, SetTextColor, SetBkColor, RestoreDC, SaveDC, SelectObject
kernel32.dll
FileTimeToSystemTime, GetTickCount, FileTimeToLocalFileTime, GetFileAttributesA, GetFileTime, HeapFree, HeapAlloc, VirtualProtect, VirtualAlloc, GetSystemInfo, VirtualQuery, HeapReAlloc, GetCommandLineA, GetProcessHeap, RtlUnwind, ExitProcess, ExitThread, CreateThread, RaiseException, HeapSize, TerminateProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsDebuggerPresent, GetACP, HeapDestroy, HeapCreate, SetErrorMode, GetStdHandle, FreeEnvironmentStringsA, GetEnvironmentStrings, FreeEnvironmentStringsW, GetEnvironmentStringsW, SetHandleCount, GetFileType, QueryPerformanceCounter, GetSystemTimeAsFileTime, GetStringTypeA, GetStringTypeW, GetTimeZoneInformation, LCMapStringA, LCMapStringW, GetConsoleCP, GetConsoleMode, SetStdHandle, WriteConsoleA, GetConsoleOutputCP, WriteConsoleW, SetEnvironmentVariableA, GetOEMCP, GetCPInfo, CreateFileA, GetFullPathNameA, GetVolumeInformationA, FindFirstFileA, FindClose, GetCurrentProcess, DuplicateHandle, GetFileSize, SetEndOfFile, UnlockFile, LockFile, FlushFileBuffers, SetFilePointer, WriteFile, ReadFile, GetThreadLocale, InterlockedIncrement, TlsFree, LocalReAlloc, TlsSetValue, TlsAlloc, GlobalHandle, GlobalReAlloc, TlsGetValue, LocalAlloc, GlobalFlags, GlobalGetAtomNameA, GlobalFindAtomA, lstrcmpW, GetVersionExA, MulDiv, InterlockedDecrement, GetModuleFileNameW, GetCurrentProcessId, SetLastError, GlobalAddAtomA, SuspendThread, ResumeThread, SetThreadPriority, CreateEventA, GlobalUnlock, WritePrivateProfileStringA, FreeResource, GlobalFree, GetCurrentThread, GetCurrentThreadId, ConvertDefaultLocale, EnumResourceLanguagesA, GetLocaleInfoA, LoadLibraryA, FindResourceA, LoadResource, LockResource, SizeofResource, GlobalLock, lstrcmpA, GlobalAlloc, FreeLibrary, GlobalDeleteAtom, GetModuleHandleA, GetProcAddress, GetVersion, CompareStringA, InterlockedExchange, MultiByteToWideChar, CompareStringW, WideCharToMultiByte, lstrlenA, GetLastError, CreateMutexA, GetPrivateProfileStringA, GetModuleFileNameA, Sleep, CloseHandle, CreateProcessA, GetStartupInfoA, LocalFree, FormatMessageA, LeaveCriticalSection, EnterCriticalSection, DeleteCriticalSection, InitializeCriticalSection, SetEvent, VirtualFree, WaitForSingleObject, IsValidCodePage
ole32.dll
OleInitialize, CoFreeUnusedLibraries, OleUninitialize, CreateILockBytesOnHGlobal, StgCreateDocfileOnILockBytes, StgOpenStorageOnILockBytes, CoGetClassObject, CoRevokeClassObject, CoTaskMemFree, CLSIDFromString, CLSIDFromProgID, OleIsCurrentClipboard, OleFlushClipboard, CoRegisterMessageFilter, CoTaskMemAlloc
shlwapi.dll
PathFindFileNameA, PathStripToRootA, SHSetValueA, PathFindExtensionA, PathIsUNCA
user32.dll
RegisterClipboardFormatA, PostThreadMessageA, IsRectEmpty, CopyAcceleratorTableA, CharNextA, ReleaseCapture, LoadCursorA, SetCapture, ShowWindow, MoveWindow, SetWindowTextA, IsDialogMessageA, RegisterWindowMessageA, SendDlgItemMessageA, WinHelpA, IsChild, GetCapture, GetClassLongA, GetClassNameA, SetPropA, GetPropA, RemovePropA, SetFocus, GetWindowTextA, GetForegroundWindow, GetTopWindow, GetMessageTime, GetMessagePos, MapWindowPoints, DestroyMenu, SetForegroundWindow, UpdateWindow, GetMenu, GetSubMenu, GetMenuItemID, GetMenuItemCount, CreateWindowExA, GetClassInfoExA, GetClassInfoA, RegisterClassA, AdjustWindowRectEx, EqualRect, CopyRect, PtInRect, GetDlgCtrlID, DefWindowProcA, CallWindowProcA, SetWindowLongA, OffsetRect, IntersectRect, SystemParametersInfoA, GetWindowPlacement, GetWindowRect, GetSysColor, EndPaint, BeginPaint, GetWindowDC, ReleaseDC, GetDC, ClientToScreen, GrayStringA, DrawTextExA, DrawTextA, TabbedTextOutA, PeekMessageA, TranslateMessage, DispatchMessageA, LoadIconA, PostMessageA, IsIconic, UnhookWindowsHookEx, GetWindowThreadProcessId, GetLastActivePopup, MessageBoxA, SetCursor, SetWindowsHookExA, CallNextHookEx, GetMessageA, IsWindowVisible, GetKeyState, GetCursorPos, UnregisterClassA, GetSysColorBrush, ValidateRect, SetMenuItemBitmaps, MessageBeep, GetNextDlgGroupItem, InvalidateRgn, InvalidateRect, SetRect, SendMessageA, GetSystemMetrics, GetClientRect, DrawIcon, EnableWindow, CharUpperA, PostQuitMessage, SetWindowPos, MapDialogRect, GetParent, SetWindowContextHelpId, GetWindow, EndDialog, GetNextDlgTabItem, IsWindowEnabled, GetDlgItem, GetWindowLongA, IsWindow, DestroyWindow, CreateDialogIndirectParamA, SetActiveWindow, GetActiveWindow, GetDesktopWindow, CheckMenuItem, EnableMenuItem, GetMenuState, ModifyMenuA, GetFocus, LoadBitmapA, GetMenuCheckMarkDimensions
winspool.drv
DocumentPropertiesA, OpenPrinterA, ClosePrinter

monitor.exe

Registry Monitor by PixArt Imaging Incorporation

Remove monitor.exe
Version:   0001.0006.2007.1210
MD5:   c72fb9cc856ecff3b6459b27cb674638
SHA1:   04b249bf970ff9810c80fd86bbaa50845bf53365
SHA256:   4d5fed8fd31e24a0bc52ae11c1fbcb9c08b1b7eb4a90771b0174117e8d84b966

Overview

monitor.exe executes as a process with the local user's privileges usually within the context of Windows Explorer. It is set to be start when the PC boots and any user logs into Windows (added to the Run registry key for the all users under the local machine). It is installed with a couple of know programs including iSlim 310 published by KYE Systems Corp., Philips SPC230NC Webcam from Philips and Philips SPC230NC Webcam by Philips.

DetailsDetails

File name:monitor.exe
Publisher:PixArt Imaging Incorporation
Product name:Registry Monitor
Typical file path:C:\windows\pixart\pac7302\monitor.exe
Original name:Registry Monitor.exe
File version:0001.0006.2007.1210
Product version:0000.0000.0000.0000
Size:316 KB (323,584 bytes)
Digital DNA
PE subsystem:Windows GUI
File packed:No
.NET CLR:No
More details

ResourcesPrograms

The following programs will install this file
A4Tech
1% remove
This software program contains the required drivers and utilities to connect and manage the A4 TECH PC Camera.
A4Tech
1% remove
This software program contains the required drivers and utilities to connect and manage the A4 TECH PC Camera.
KYE Systems Corp.
1% remove
KYE Systems Corp.
9% remove
KYE Systems Corp.
8% remove
This is the hardware driver and software utilities package for the KYE i-Look 110 device. The driver software is required in order for it to function properly and is the software that allows your computer to communicate with this hardware device.
Philips
5% remove
Philips SPC230NC Webcam is software used to connect and manage the webcam to the user's PC.
Philips
8% remove
Philips SPZ2500, SPZ2000 WebCam is software used to connect and manage the webcam to the user's PC.
Philips
2% remove
Philips SPC220NC Webcam is software used to connect and manage the webcam to the user's PC.

BehaviorsBehaviors

Startup files (all users) run
Runs under the registry key 'HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run'
  • 'SPC230NC_Monitor' → C:\Windows\Philips\SPC230NC\Monitor.exe
  • 'SPC_Monitor' → C:\Windows\Philips\SPC230NC\Monitor.exe
  • 'iSlim310_Monitor' → C:\WINDOWS\islim310\Monitor.exe
  • 'SPC610NC_Monitor' → C:\Windows\Philips\SPC610NC\Monitor.exe
  • 'PAP7501_Monitor' → C:\WINDOWS\PixArt\PAP7501\GUCI_AVS.exe
  • 'GUCI_AVS' → C:\Windows\PixArt\PAP7501\GUCI_AVS.exe
  • 'Monitor' → C:\Windows\PixArt\PAC207\Monitor.exe
  • 'PAC7302_Monitor' → C:\Windows\PixArt\PAC7302\Monitor.exe

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00778380%
0.028634%
Kernel CPU:0.00526010%
0.013761%
User CPU:0.00252370%
0.014873%
Kernel CPU time:3,347,654 ms/min
100,923,805ms/min
CPU cycles:3,315,184/sec
17,470,203/sec
Context switches:91/sec
284/sec
Memory
Private memory:1.58 MB
21.59 MB
Private (maximum):4.53 MB
Private (minimum):2.72 MB
Non-paged memory:1.58 MB
21.59 MB
Virtual memory:54.08 MB
140.96 MB
Virtual memory (peak):57.97 MB
169.69 MB
Working set:2.98 MB
18.61 MB
Working set (peak):4.74 MB
37.95 MB
Page faults:1,525/min
2,039/min
I/O
I/O read transfer:15 Bytes/sec
1.02 MB/min
I/O read operations:1/sec
343/min
I/O other transfer:16 Bytes/sec
448.09 KB/min
I/O other operations:1/sec
1,671/min
Resource allocations
Threads:2
12
Handles:63
600
GUI GDI count:20
103
GUI GDI peak:19
142
GUI USER count:18
49
GUI USER peak:21
71

BehaviorsProcess properties

Integrety level:Medium
Platform:32-bit
Command lines:
  • "C:\windows\pixart\pap7501\guci_avs.exe"
  • "C:\windows\pixart\pac7302\monitor.exe"
  • "C:\windows\philips\spc230nc\monitor.exe"
  • "C:\windows\islim310\monitor.exe"
Owner:User
Parent process:explorer.exe (Windows Explorer by Microsoft Corporation)

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Microsoft Windows XP 33.33%
Windows 7 Ultimate 28.57%
Windows 7 Home Premium 19.05%
Windows Vista Home Premium 4.76%
Windows 7 Professional 4.76%
Windows 8 Pro with Media Center 4.76%
Windows 8 Enterprise N 2.38%
Windows Vista Business 2.38%

Distribution by countryDistribution by country

United Kingdom installs about 21.43% of Registry Monitor.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Hewlett-Packard 22.22%
Toshiba 22.22%
GIGABYTE 18.52%
Lenovo 14.81%
Dell 14.81%
Intel 7.41%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE