Should I block it?

No, this file is 100% safe to run.

Relationships

Parent process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
GetUserNameA, DeleteAce, StartServiceCtrlDispatcherA, RegEnumValueA, RegQueryInfoKeyA, SetServiceStatus, RegisterServiceCtrlHandlerA, LookupAccountNameA, GetFileSecurityA, GetSecurityDescriptorDacl, GetAclInformation, AddAce, GetAce, EqualSid, SetFileSecurityA, DeleteService, CreateServiceA, ControlService, StartServiceA, QueryServiceStatus, OpenSCManagerA, OpenServiceA, CloseServiceHandle, GetSidLengthRequired, InitializeSid, RegOpenKeyExA, AllocateAndInitializeSid, GetLengthSid, InitializeAcl, AddAccessAllowedAce, RegSetKeySecurity, FreeSid, RegSetValueA, InitializeSecurityDescriptor, SetSecurityDescriptorDacl, RegDeleteValueA, CreateProcessAsUserA, RegCreateKeyA, RegSetValueExA, OpenProcessToken, LookupPrivilegeValueA, AdjustTokenPrivileges, RegOpenKeyA, RegQueryValueExA, RegCloseKey
gdi32.dll
PtVisible, RectVisible, TextOutA, ExtTextOutA, Escape, ScaleWindowExtEx, SetWindowExtEx, ScaleViewportExtEx, SetViewportExtEx, OffsetViewportOrgEx, SetViewportOrgEx, SetMapMode, GetStockObject, SelectObject, RestoreDC, SetBkColor, SetTextColor, GetClipBox, CreateBitmap, DeleteDC, DeleteObject, GetDeviceCaps, GetObjectA, SaveDC
kernel32.dll
HeapSize, SetStdHandle, LCMapStringA, LCMapStringW, UnhandledExceptionFilter, FreeEnvironmentStringsA, FreeEnvironmentStringsW, GetEnvironmentStrings, GetEnvironmentStringsW, SetUnhandledExceptionFilter, IsBadCodePtr, GetStringTypeA, GetStringTypeW, GetCPInfo, GetACP, GetOEMCP, SetEndOfFile, CompareStringA, CompareStringW, SetEnvironmentVariableA, lstrlenA, GetStartupInfoA, lstrcpyA, GlobalFree, GlobalUnlock, GlobalHandle, GlobalLock, GlobalReAlloc, GlobalAlloc, LocalReAlloc, GlobalDeleteAtom, GlobalFindAtomA, GlobalAddAtomA, lstrcmpiA, GlobalGetAtomNameA, lstrcatA, GetProcessVersion, lstrcmpA, GlobalFlags, GetFileType, SetHandleCount, IsBadWritePtr, VirtualAlloc, VirtualFree, HeapCreate, HeapDestroy, TlsGetValue, SetLastError, TlsAlloc, GetCurrentThreadId, FlushFileBuffers, GetCommandLineA, GetTimeZoneInformation, ExitThread, TlsSetValue, ResumeThread, InterlockedIncrement, InterlockedDecrement, HeapReAlloc, ExitProcess, RtlUnwind, InitializeCriticalSection, DeleteCriticalSection, ReleaseMutex, GetCurrentDirectoryA, GetFileAttributesA, LocalAlloc, GetProcessHeap, HeapAlloc, HeapFree, FormatMessageA, GetStdHandle, WriteFile, LocalFree, OpenEventA, CreateDirectoryA, GetLogicalDrives, GetDriveTypeA, ResetEvent, CreateMutexA, WritePrivateProfileStringA, GetPrivateProfileIntA, GetLocalTime, FindClose, GetLongPathNameA, FindNextFileA, SetEvent, CreateEventA, GetPrivateProfileStringA, MoveFileA, DeleteFileA, MoveFileExA, GetTickCount, SetFileAttributesA, GetTempPathA, WideCharToMultiByte, Sleep, GetShortPathNameA, ReadFile, SetFilePointer, GetSystemDirectoryA, GetVersion, CreateToolhelp32Snapshot, Process32First, Process32Next, OpenProcess, TerminateProcess, OpenMutexA, GetSystemTime, SystemTimeToFileTime, WinExec, GetWindowsDirectoryA, GetVersionExA, CopyFileA, CreateFileA, GetFileSize, CreateFileMappingA, MapViewOfFile, IsBadReadPtr, FileTimeToLocalFileTime, FileTimeToSystemTime, FlushViewOfFile, UnmapViewOfFile, MultiByteToWideChar, FindFirstFileA, CreateIoCompletionPort, CloseHandle, CreateThread, WaitForMultipleObjects, CreateProcessA, WaitForSingleObject, GetQueuedCompletionStatus, GetLastError, EnterCriticalSection, LeaveCriticalSection, QueryDosDeviceA, GetModuleHandleA, GetCurrentProcess, GetModuleFileNameA, LoadLibraryA, GetProcAddress, FreeLibrary, GetFileInformationByHandle, PeekNamedPipe, lstrcpynA, RaiseException
shell32.dll
SHGetSpecialFolderPathA
shlwapi.dll
StrToIntA, SHDeleteKeyA, PathFileExistsA
user32.dll
TabbedTextOutA, DrawTextA, GrayStringA, DestroyMenu, PostQuitMessage, ClientToScreen, PtInRect, GetClassNameA, GetDC, ReleaseDC, GetSysColorBrush, LoadCursorA, SetWindowTextA, LoadIconA, PostMessageA, MapWindowPoints, GetSysColor, SetFocus, AdjustWindowRectEx, GetClientRect, CopyRect, GetTopWindow, GetCapture, WinHelpA, GetClassInfoA, RegisterClassA, GetMenu, GetMenuItemCount, GetSubMenu, GetMenuItemID, GetDlgItem, GetWindowTextA, GetDlgCtrlID, DefWindowProcA, DestroyWindow, MessageBoxA, ShowWindow, FindWindowA, CreateWindowExA, GetClassLongA, SetPropA, GetPropA, CallWindowProcA, RemovePropA, GetMessageTime, GetMessagePos, GetForegroundWindow, SetForegroundWindow, GetWindow, SetWindowLongA, SetWindowPos, SystemParametersInfoA, IsIconic, GetWindowPlacement, GetWindowRect, GetSystemMetrics, GetMenuCheckMarkDimensions, LoadBitmapA, GetMenuState, ModifyMenuA, SetMenuItemBitmaps, CheckMenuItem, EnableMenuItem, GetFocus, GetNextDlgTabItem, DispatchMessageA, GetKeyState, CallNextHookEx, PeekMessageA, SetWindowsHookExA, UnhookWindowsHookEx, GetParent, GetLastActivePopup, IsWindowEnabled, GetWindowLongA, SendMessageA, EnableWindow, LoadStringA, RegisterWindowMessageA
winspool.drv
DocumentPropertiesA, OpenPrinterA, ClosePrinter

zvmonnt.exe

Net Protector Antivirus by Biz Secure Labs Pvt. Ltd. (Signed)

Remove zvmonnt.exe
Version:   0, 18, 0, 0
MD5:   0389747c568ab474ef739f1e8872e30a
SHA1:   b9dab2f0ad617ac3c2f115d91761392ac5471ab5

Overview

zvmonnt.exe runs as a service under the name Zero-V AntiVirus Protection (ZeroVProtect) with extensive SYSTEM privileges (full administrator access). The file is digitally signed by Biz Secure Labs Pvt. Ltd. which was issued by the The Code Project certificate authority (CA). This particular version is usually found on Windows 8 Pro (6.2.9200.0).

DetailsDetails

File name:zvmonnt.exe
Publisher:biz secure labs pvt Ltd.
Product name:Net Protector Antivirus
Description:ZvmonntNpr
Typical file path:C:\Program Files\net protector 2013\zvscan\zvmonnt.exe
File version:0, 18, 0, 0
Product version:1, 0, 0, 1
Size:224.32 KB (229,704 bytes)
Build date:4/19/2013 6:18 AM
Certificate
Issued to:Biz Secure Labs Pvt. Ltd.
Authority (CA):The Code Project
Digital DNA
PE subsystem:Windows Console
File packed:No
.NET CLR:No
More details

BehaviorsBehaviors

Service
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
  • 'ZeroVProtect' (Zero-V AntiVirus Protection)

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00053486%
0.028634%
Kernel CPU:0.00020785%
0.013761%
User CPU:0.00032701%
0.014873%
Kernel CPU time:16,563 ms/min
100,923,805ms/min
Context switches:2/sec
284/sec
Memory
Private memory:35.64 MB
21.59 MB
Private (maximum):27.97 MB
Private (minimum):27.85 MB
Non-paged memory:35.64 MB
21.59 MB
Virtual memory:125.82 MB
140.96 MB
Virtual memory (peak):337.89 MB
169.69 MB
Working set:27.96 MB
18.61 MB
Working set (peak):61.61 MB
37.95 MB
Resource allocations
Threads:8
12
Handles:173
600

BehaviorsProcess properties

Integrety level:System
Platform:32-bit
Command line:"C:\Program Files\net protector 2013\zvscan\zvmonnt.exe"
Owner:SYSTEM
Windows Service
Service name:ZeroVProtect
Display name:Zero-V AntiVirus Protection
Type:Win32OwnProcess, InteractiveProcess
Parent process:services.exe (Services and Controller app by Microsoft)

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 8 Pro 100.00%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE