Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

2.1.214.0 23.16%
2.1.214.0 2.82%
2.1.108.0 7.34%
1.8.323.0 0.56%
1.8.323.0 0.56%
1.7.321.0 2.26%
1.7.306.0 2.26%
1.7.306.0 0.56%
1.6.85.0 9.04%
1.6.85.0 0.56%
1.6.53.0 7.34%
1.6.34.0 14.69%
1.6.34.0 0.56%
1.6.34.0 3.95%
1.6.34.0 0.56%
1.05.42.0 0.56%
1.05.28.0 2.26%
1.05.28.0 3.95%
1.05.28.0 3.95%
1.05.28.0 10.73%
1.05.19.0 2.26%

Relationships

Child process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
RegisterServiceCtrlHandlerExA, ReportEventA, SetTokenInformation, DeregisterEventSource, OpenProcessToken, RegisterEventSourceA, CreateProcessAsUserA, ControlService, OpenSCManagerA, QueryServiceStatus, CreateServiceA, DeleteService, StartServiceCtrlDispatcherA, CloseServiceHandle, OpenServiceA, SetServiceStatus, InitializeSecurityDescriptor, SetSecurityDescriptorDacl, RegSetValueExA, RegQueryValueExA, RegCreateKeyExA, RegOpenKeyExA, RegCloseKey, RegDeleteKeyA, RegDeleteValueA, RegEnumValueA, RegEnumKeyExA, RegCreateKeyA, RegQueryInfoKeyA, LsaOpenPolicy, LsaClose, LsaStorePrivateData, LsaNtStatusToWinError, LsaRetrievePrivateData, LsaFreeMemory, EnumServicesStatusA, ChangeServiceConfig2A, LockServiceDatabase, StartServiceA, UnlockServiceDatabase, RegNotifyChangeKeyValue, ConvertStringSecurityDescriptorToSecurityDescriptorA, DuplicateTokenEx, RegEnumValueW, RegOpenKeyExW, CryptGetHashParam, CryptReleaseContext, CryptAcquireContextA, CryptCreateHash, CryptDestroyHash, CryptHashData
d3d9.dll
Direct3DCreate9
gdi32.dll
StretchBlt, DeleteObject, SelectObject, CreateCompatibleDC, GetObjectA, GetDeviceCaps, DeleteDC
gdiplus.dll
GdipAlloc, GdipGetImageEncodersSize, GdipDisposeImage, GdipGetImageEncoders, GdipCreateBitmapFromHICON, GdipFree, GdipCloneImage, GdiplusStartup, GdipSaveImageToFile
iphlpapi.dll
GetAdaptersInfo, GetNetworkParams, GetIpForwardTable, GetIpAddrTable, GetPerAdapterInfo, DeleteIpForwardEntry, CreateIpForwardEntry, GetBestInterface, GetExtendedTcpTable, GetAdaptersAddresses
kernel32.dll
DllMain
netapi32.dll
NetApiBufferFree, NetGetJoinInformation, NetShareEnum
ole32.dll
CoInitialize, PropVariantClear, CoInitializeEx, CoUninitialize, CoCreateInstance, CoTaskMemFree
powrprof.dll
SetSuspendState
setupapi.dll
SetupDiChangeState, SetupDiSetClassInstallParamsA, SetupDiDestroyDeviceInfoList, SetupDiGetClassDevsA, SetupDiClassGuidsFromNameA, SetupDiEnumDeviceInfo, SetupDiGetDeviceRegistryPropertyA
shell32.dll
SHGetFolderPathA, SHGetKnownFolderPath, SHCreateDirectoryExA
shlwapi.dll
PathAppendA, SHCreateStreamOnFileA
user32.dll
CloseDesktop, SetThreadDesktop, DestroyWindow, GetMessageA, GetWindowThreadProcessId, FindWindowA, PostMessageA, ShowWindow, GetDesktopWindow, GetKeyboardState, UnhookWindowsHookEx, OpenInputDesktop, WaitForInputIdle, SetForegroundWindow, GetUserObjectInformationA, EnumDesktopWindows, TranslateMessage, RegisterDeviceNotificationA, IsWindowVisible, EnumDisplayDevicesA, GetClassNameW, GetWindowTextW, SetWindowsHookExA, PeekMessageA, FindWindowExA, GetAsyncKeyState, CallNextHookEx, PostThreadMessageA, LoadIconA, CreateWindowExA, DefWindowProcA, DispatchMessageA, RegisterClassA, InvalidateRect, UpdateWindow, EnableWindow, EnumDisplaySettingsA, ChangeDisplaySettingsA, EnumWindows, ReleaseDC, GetWindowPlacement, GetForegroundWindow, SetProcessDPIAware, GetWindow, mouse_event, LoadImageA, SetWindowPos, UnregisterClassA, LoadBitmapA, PostQuitMessage, GetDC, RegisterClassExA, LoadStringA, SendMessageA, keybd_event, GetClassNameA, GetWindowTextA, LoadImageW, GetIconInfoExA, GetThreadDesktop
userenv.dll
DestroyEnvironmentBlock, CreateEnvironmentBlock
version.dll
GetFileVersionInfoW, VerQueryValueW, GetFileVersionInfoSizeW, VerQueryValueA, GetFileVersionInfoSizeA, GetFileVersionInfoA
winmm.dll
timeSetEvent, timeEndPeriod, timeKillEvent, timeBeginPeriod, timeGetDevCaps, timeGetTime
ws2_32.dll
WSACloseEvent, WSAEnumNetworkEvents, WSACreateEvent, WSAIoctl, WSAStringToAddressA, WSARecvFrom, WSAAddressToStringA, WSAEventSelect
wtsapi32.dll
WTSQueryUserToken
xmllite.dll
CreateXmlReader, CreateXmlWriterOutputWithEncodingName, CreateXmlWriter

nvstreamsvc.exe

NVIDIA Streamer by NVIDIA Corporation (Signed)

Remove nvstreamsvc.exe
Version:   1.8.323.0
MD5:   c79c814e5f4e238834439d322b615500
SHA1:   6d9542727ca4b618c4d5ab26edc379693589d312

Overview

nvstreamsvc.exe runs as a service under the name NvStreamSvc (NvStreamSvc) with extensive SYSTEM privileges (full administrator access). The file is digitally signed by NVIDIA Corporation which was issued by the VeriSign certificate authority (CA).

DetailsDetails

File name:nvstreamsvc.exe
Publisher:NVIDIA Corporation
Product name:NVIDIA Streamer
Description:NVIDIA Streamer Service
Typical file path:C:\Program Files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe
File version:1.8.323.0
Size:19.59 MB (20,542,408 bytes)
Build date:4/2/2014 9:21 AM
Certificate
Issued to:NVIDIA Corporation
Authority (CA):VeriSign
Digital DNA
PE subsystem:Windows Console
File packed:No
.NET CLR:No
More details

BehaviorsBehaviors

Services
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
  • NvStreamSvc
  • 'NvStreamSvc' (NVIDIA Streamer Service)
Network connections
  • [TCP] li685-243.members.linode.com (23.239.16.243:80)
  • [UDP] listens on port 48201
  • [UDP] listens on port 5353

  • ResourcesResource utilization

    (Note: statistics below are averages based on a minimum sample size of 200 unique participants)
    Averages
     
    CPU
    Total CPU:0.00001868%
    0.028634%
    Kernel CPU:0.00001368%
    0.013761%
    User CPU:0.00000500%
    0.014873%
    Kernel CPU time:2,651 ms/min
    100,923,805ms/min
    CPU cycles:443,852/sec
    17,470,203/sec
    Context switches:19/sec
    284/sec
    Memory
    Private memory:7.96 MB
    21.59 MB
    Private (maximum):3.9 MB
    Private (minimum):190.67 KB
    Non-paged memory:7.96 MB
    21.59 MB
    Virtual memory:122.96 MB
    140.96 MB
    Virtual memory (peak):133.07 MB
    169.69 MB
    Working set:3.89 MB
    18.61 MB
    Working set (peak):11.37 MB
    37.95 MB
    Page faults:48,406/min
    2,039/min
    I/O
    I/O read transfer:4 Bytes/sec
    1.02 MB/min
    I/O read operations:1/sec
    343/min
    I/O write transfer:0 Bytes/sec
    274.99 KB/min
    I/O write operations:1/sec
    227/min
    I/O other transfer:5.93 KB/sec
    448.09 KB/min
    I/O other operations:341/sec
    1,671/min
    Resource allocations
    Threads:23
    12
    Handles:287
    600
    GUI GDI count:12
    103
    GUI GDI peak:14
    142
    GUI USER count:8
    49
    GUI USER peak:10
    71

    BehaviorsProcess properties

    Integrety level:System
    Platform:64-bit
    Command lines:
    • "C:\Program Files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe" serviceapp
    • "C:\Program Files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe"
    • "C:\Program Files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe" nss 5cba72e9-fce4-4a99-8c3c-2c484cb07b5e 1
    Owner:SYSTEM
    Windows Service
    Service name:NvStreamSvc
    Display name:NvStreamSvc
    Description:“Service for SHIELD Streaming”
    Type:Win32OwnProcess
    Parent processes:

    ResourcesThreads

    Averages
     
    nvstreamsvc.exe (main module)
    Total CPU:0.00031547%
    0.272967%
    Kernel CPU:0.00024470%
    0.107585%
    User CPU:0.00007077%
    0.165382%
    CPU cycles:110,220/sec
    5,741,424/sec
    Context switches:2/sec
    79/sec
    Memory:19.85 MB
    1.16 MB
    NvBackendAPI64.dll
    Total CPU:0.00001644%
    Kernel CPU:0.00000548%
    User CPU:0.00001096%
    CPU cycles:216/sec
    Memory:1.14 MB

    Common loaded modules

    These are modules that are typiclaly loaded within the context of this process.

    Windows OS versionsDistribution by Windows OS

    OS versiondistribution
    Windows 7 Ultimate 26.14%
    Windows 7 Home Premium 23.86%
    Windows 7 Professional 11.36%
    Windows 8.1 10.23%
    Windows 8.1 Pro 7.95%
    Windows 8 Pro 6.82%
    Windows 8 Pro with Media Center 3.41%
    Windows 8 Enterprise N 2.27%
    Windows 8.1 Single Language 2.27%
    Windows 8 Single Language 1.70%
    Windows 8 1.70%
    Windows 8 Enterprise 1.70%
    Windows 8.1 Pro with Media Center 0.57%

    Distribution by countryDistribution by country

    United States installs about 28.24% of NVIDIA Streamer.

    OEM distributionDistribution by PC manufacturer

    PC Manufacturerdistribution
    ASUS 32.60%
    Lenovo 22.91%
    Acer 13.22%
    Dell 7.05%
    Hewlett-Packard 5.73%
    Alienware 4.85%
    Intel 4.41%
    MSI 2.64%
    American Megatrends 2.64%
    Samsung 1.32%
    GIGABYTE 1.32%
    Sahara 1.32%
    Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

    Download it for FREE