Should I block it?

60%
60% of PCs block this file from running.
Possible reason:
Performance resource utilization

VersionsAdditional versions

3.32.2.1 16.67%
3.31.4.2 83.33%

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
CryptAcquireContextW, CryptSetHashParam, CryptHashData, CryptGetHashParam, CryptDestroyHash, RegSetValueExA, RegFlushKey, RegRestoreKeyW, RegSaveKeyW, LookupPrivilegeValueW, AdjustTokenPrivileges, RegQueryValueW, RegEnumKeyW, RegDeleteKeyW, RegEnumValueW, RegQueryInfoKeyW, RegEnumKeyExW, RegDeleteValueW, RegCreateKeyExW, RegSetValueExW, CreateProcessAsUserW, RegisterServiceCtrlHandlerW, SetServiceStatus, DeleteService, CreateServiceW, ControlService, OpenSCManagerW, OpenServiceW, StartServiceW, CloseServiceHandle, StartServiceCtrlDispatcherW, OpenProcessToken, InitializeSecurityDescriptor, SetSecurityDescriptorDacl, LookupAccountSidW, GetTokenInformation, CryptDecrypt, CryptAcquireContextA, CryptReleaseContext, CryptImportKey, CryptEncrypt, CryptDestroyKey, RegOpenKeyExW, RegOpenKeyA, RegQueryValueExW, RegCloseKey, ConvertSidToStringSidW, CryptCreateHash
comctl32.dll
ImageList_GetIconSize
comdlg32.dll
GetFileTitleW
gdi32.dll
SetWindowExtEx, ScaleWindowExtEx, ExtSelectClipRgn, DeleteDC, SelectPalette, GetObjectType, CreateHatchBrush, GetTextExtentPoint32W, GetRgnBox, GetBkColor, GetTextColor, CreateDIBSection, CreateRoundRectRgn, CreatePolygonRgn, CombineRgn, PatBlt, CreateEllipticRgn, Polyline, Ellipse, Polygon, SetRectRgn, GetMapMode, DPtoLP, OffsetWindowOrgEx, GetNearestPaletteIndex, RealizePalette, GetSystemPaletteEntries, OffsetRgn, SetDIBColorTable, StretchBlt, SetPixel, Rectangle, EnumFontFamiliesExW, LPtoDP, GetWindowOrgEx, GetViewportOrgEx, PtInRegion, FillRgn, FrameRgn, GetBoundsRect, ScaleViewportExtEx, SetPaletteEntries, GetTextFaceW, SetPixelV, CreatePalette, SetWindowOrgEx, GetPixel, GetWindowExtEx, GetViewportExtEx, SelectClipRgn, SetLayout, GetLayout, SetTextAlign, MoveToEx, LineTo, IntersectClipRect, ExcludeClipRect, GetClipBox, SetMapMode, SetROP2, SetPolyFillMode, SetBkMode, RestoreDC, SaveDC, DeleteObject, GetTextCharsetInfo, EnumFontFamiliesW, GetTextMetricsW, BitBlt, CreateCompatibleDC, CreateRectRgnIndirect, CreateCompatibleBitmap, CreateFontIndirectW, CreatePatternBrush, SetViewportExtEx, OffsetViewportOrgEx, SetViewportOrgEx, SelectObject, Escape, ExtTextOutW, TextOutW, RectVisible, ExtFloodFill, PtVisible, SetTextColor, CreateSolidBrush, CreatePen, GetStockObject, CreateDIBitmap, GetObjectW, SetBkColor, GetDeviceCaps, CopyMetaFileW, CreateDCW, CreateBitmap, GetPaletteEntries, CreateRectRgn
gdiplus.dll
GdipGetImageHeight, GdipGetImagePixelFormat, GdipGetImagePaletteSize, GdipGetImageWidth, GdipCreateBitmapFromStream, GdipBitmapLockBits, GdipCreateBitmapFromScan0, GdipCloneImage, GdipDrawImageRectI, GdipSetInterpolationMode, GdipCreateFromHDC, GdiplusShutdown, GdiplusStartup, GdipCreateBitmapFromHBITMAP, GdipDisposeImage, GdipDeleteGraphics, GdipAlloc, GdipBitmapUnlockBits, GdipGetImageGraphicsContext, GdipFree, GdipGetImagePalette, GdipDrawImageI
imm32.dll
ImmReleaseContext, ImmGetContext, ImmGetOpenStatus
kernel32.dll
DllMain
msimg32.dll
TransparentBlt, AlphaBlend
ole32.dll
CLSIDFromString, CoCreateInstance, CoDisconnectObject, CoCreateGuid, OleDuplicateData, CoGetClassObject, CoTaskMemAlloc, ReleaseStgMedium, StgOpenStorageOnILockBytes, StgCreateDocfileOnILockBytes, CreateILockBytesOnHGlobal, CLSIDFromProgID, CoInitializeEx, OleUninitialize, CoFreeUnusedLibraries, OleInitialize, OleCreateMenuDescriptor, OleDestroyMenuDescriptor, OleTranslateAccelerator, IsAccelerator, OleIsCurrentClipboard, OleFlushClipboard, DoDragDrop, CoRevokeClassObject, CoRegisterMessageFilter, OleGetClipboard, RegisterDragDrop, CoLockObjectExternal, RevokeDragDrop, OleLockRunning, CoTaskMemFree, CoInitialize, CoUninitialize, CreateStreamOnHGlobal
oleacc.dll
AccessibleObjectFromWindow, CreateStdAccessibleObject, LresultFromObject
oledlg.dll
OleUIBusyW
psapi.dll
GetProcessMemoryInfo
shell32.dll
SHAppBarMessage, DragQueryFileW, DragFinish, SHGetFileInfoW, SHBrowseForFolderW, SHGetPathFromIDListW, SHGetMalloc, SHGetSpecialFolderLocation, SHGetDesktopFolder, SHGetSpecialFolderPathW, ShellExecuteW, SHGetFolderPathW
shlwapi.dll
SHQueryValueExW, UrlUnescapeW, PathIsUNCW, PathStripToRootW, PathFindFileNameW, PathFindExtensionW, PathRemoveFileSpecW, PathCombineW, PathFileExistsW, PathAppendW
urlmon.dll
URLDownloadToFileW
user32.dll
DllMain
userenv.dll
CreateEnvironmentBlock
version.dll
GetFileVersionInfoW, GetFileVersionInfoSizeW, VerQueryValueW
winhttp.dll
WinHttpSendRequest, WinHttpOpenRequest, WinHttpQueryDataAvailable, WinHttpReadData, WinHttpCloseHandle, WinHttpConnect, WinHttpOpen, WinHttpReceiveResponse, WinHttpAddRequestHeaders
wininet.dll
InternetCanonicalizeUrlW, InternetCrackUrlW, DeleteUrlCacheEntryW
winmm.dll
PlaySoundW
winspool.drv
ClosePrinter, DocumentPropertiesW, OpenPrinterW
ws2_32.dll
WSARecv, WSASend, WSAAccept, WSASocketW
wtsapi32.dll
WTSQuerySessionInformationW, WTSQueryUserToken, WTSFreeMemory, WTSEnumerateSessionsW

umbrella.exe

Iminent Protection by SIEN S.A. (Signed)

Remove umbrella.exe
Version:   3.32.2.1
MD5:   1b6ebaa539502c816930ae4fc9f192fe
SHA1:   48a2df268965db886395c2b902ea622d86c5b65c

Overview

umbrella.exe runs as a service under the name SProtection with extensive SYSTEM privileges (full administrator access). The file is digitally signed by SIEN S.A. which was issued by the VeriSign certificate authority (CA).

DetailsDetails

File name:umbrella.exe
Publisher:Iminent
Product name:Iminent Protection
Typical file path:C:\Program Files\common files\umbrella\umbrella.exe
File version:3.32.2.1
Size:2.74 MB (2,868,544 bytes)
Build date:8/7/2013 10:31 AM
Certificate
Issued to:SIEN S.A.
Authority (CA):VeriSign
Effective date:Tuesday, August 21, 2012
Expiration date:Friday, August 22, 2014
Digital DNA
File packed:No
.NET CLR:No
More details

BehaviorsBehaviors

Service
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
  • 'SProtection'

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00002628%
0.028634%
Kernel CPU:0.00002001%
0.013761%
User CPU:0.00000627%
0.014873%
Kernel CPU time:546 ms/min
100,923,805ms/min
CPU cycles:41,889/sec
17,470,203/sec
Memory
Private memory:4.7 MB
21.59 MB
Private (maximum):6.4 MB
Private (minimum):708 KB
Non-paged memory:4.7 MB
21.59 MB
Virtual memory:75.94 MB
140.96 MB
Virtual memory (peak):78.94 MB
169.69 MB
Working set:3.24 MB
18.61 MB
Working set (peak):7.84 MB
37.95 MB
Page faults:13,945/min
2,039/min
I/O
I/O read transfer:499 Bytes/sec
1.02 MB/min
I/O read operations:1/sec
343/min
I/O write transfer:507 Bytes/sec
274.99 KB/min
I/O write operations:1/sec
227/min
I/O other transfer:259 Bytes/sec
448.09 KB/min
I/O other operations:1/sec
1,671/min
Resource allocations
Threads:11
12
Handles:169
600

BehaviorsProcess properties

Integrety level:System
Platform:32-bit
Command line:"C:\Program Files\common files\umbrella\umbrella.exe"
Owner:SYSTEM
Windows Service
Service name:SProtection
Type:Win32OwnProcess, InteractiveProcess
Parent process:services.exe (Services and Controller app by Microsoft)

ResourcesThreads

Averages
 
sechost.dll
Total CPU:0.00002973%
0.272967%
Kernel CPU:0.00002287%
0.107585%
User CPU:0.00000686%
0.165382%
CPU cycles:11,097/sec
5,741,424/sec
Memory:100 KB
1.16 MB
umbrella.exe (main module)
Total CPU:0.00002516%
Kernel CPU:0.00002059%
User CPU:0.00000457%
CPU cycles:729/sec
Memory:2.77 MB

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Professional 33.33%
Windows 7 Home Premium 33.33%
Windows 7 Ultimate 16.67%
Windows 8 16.67%

Distribution by countryDistribution by country

United Kingdom installs about 33.33% of Iminent Protection.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Toshiba 50.00%
Samsung 25.00%
Acer 12.50%
Hewlett-Packard 12.50%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE