Should I block it?

No, this file is 100% safe to run.

Relationships

Parent process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
QueryServiceStatusEx, SetServiceStatus, StartServiceW, CloseServiceHandle, OpenSCManagerW, OpenServiceW, ChangeServiceConfig2W, RegisterServiceCtrlHandlerExW, DeleteService, CreateServiceW, QueryServiceStatus, ControlService, StartServiceCtrlDispatcherW, RegQueryValueExW, RegOpenKeyExW, RegCloseKey
kernel32.dll
WideCharToMultiByte, FindResourceExW, FindResourceW, LeaveCriticalSection, LoadResource, EnterCriticalSection, LockResource, Sleep, SizeofResource, WaitForSingleObject, CloseHandle, GetModuleFileNameW, CreateIoCompletionPort, SetEvent, PostQueuedCompletionStatus, InitializeCriticalSection, FormatMessageW, GetLocalTime, GetLastError, LocalFree, GetVersionExW, GetSystemInfo, MultiByteToWideChar, WaitForMultipleObjects, CreateThread, DeleteCriticalSection, CreateEventW, TerminateThread, SetProcessShutdownParameters, SetErrorMode, DeleteTimerQueue, GetTickCount, CreateTimerQueue, GetQueuedCompletionStatus, CreateTimerQueueTimer, ReadFile, DeleteFileW, CopyFileW, CreateFileW, GetFileSize, GetFileSizeEx, WriteFile, FindNextFileW, FindFirstFileW, GetCurrentThreadId, CreateMutexA, SuspendThread, ResumeThread, ReleaseMutex, SetFilePointer, LoadLibraryA, SetStdHandle, WriteConsoleA, GetConsoleOutputCP, CreateDirectoryA, WriteConsoleW, CreateFileA, SetEndOfFile, CompareStringA, CompareStringW, SetEnvironmentVariableA, lstrlenW, GetStringTypeW, HeapDestroy, HeapAlloc, HeapFree, HeapReAlloc, HeapSize, GetProcessHeap, InterlockedExchange, GetACP, GetLocaleInfoA, GetThreadLocale, GetVersionExA, RaiseException, TerminateProcess, GetCurrentProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsDebuggerPresent, ExitThread, FindClose, FileTimeToSystemTime, FileTimeToLocalFileTime, GetDriveTypeA, FindFirstFileA, GetSystemTimeAsFileTime, GetTimeZoneInformation, RtlUnwind, HeapCreate, VirtualFree, VirtualAlloc, GetCPInfo, InterlockedIncrement, InterlockedDecrement, GetOEMCP, IsValidCodePage, GetModuleHandleA, GetProcAddress, TlsGetValue, TlsAlloc, TlsSetValue, TlsFree, SetLastError, LCMapStringA, LCMapStringW, ExitProcess, SetHandleCount, GetStdHandle, GetFileType, GetStartupInfoA, GetModuleFileNameA, GetConsoleCP, GetConsoleMode, FlushFileBuffers, FreeEnvironmentStringsA, GetEnvironmentStrings, FreeEnvironmentStringsW, GetEnvironmentStringsW, GetCommandLineA, GetCommandLineW, QueryPerformanceCounter, GetCurrentProcessId, GetFullPathNameA, GetCurrentDirectoryA, GetStringTypeA
shlwapi.dll
StrTrimW
user32.dll
UnregisterClassA
ws2_32.dll
WSAEnumNetworkEvents, WSASocketW, WSACreateEvent, WSAWaitForMultipleEvents, WSACloseEvent, WSARecv, WSASend, WSAEventSelect

dcnotificationserver.exe

By Zoho Corporation Pvt. Ltd. (Signed)

Remove dcnotificationserver.exe
MD5:   0d2d9dacfcfa240d177943b47a4de6bf
SHA1:   3fb400787fae81694bc4004fca58cd99547cbe90

Overview

dcnotificationserver.exe runs as a service under the name MEDC Server Component - Notification Server with extensive SYSTEM privileges (full administrator access). The file is digitally signed by Zoho Corporation Pvt. Ltd. which was issued by the COMODO CA Limited certificate authority (CA). This particular version is usually found on Windows Vista (TM) Home Basic (6.0.6002.131072).

DetailsDetails

File name:dcnotificationserver.exe
Typical file path:C:\manageengine\desktopcentral_server\bin\dcnotificationserver.exe
Size:225.54 KB (230,952 bytes)
Certificate
Issued to:Zoho Corporation Pvt. Ltd.
Authority (CA):COMODO CA Limited
Effective date:Wednesday, December 26, 2012
Expiration date:Saturday, December 27, 2014
Digital DNA
PE subsystem:Windows Console
File packed:No
.NET CLR:No
More details

BehaviorsBehaviors

Service
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
  • 'MEDC Server Component - Notification Server'

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00140398%
0.028634%
Kernel CPU:0.00112319%
0.013761%
User CPU:0.00028080%
0.014873%
Kernel CPU time:125 ms/min
100,923,805ms/min
Memory
Private memory:1.57 MB
21.59 MB
Private (maximum):3.13 MB
Private (minimum):2.73 MB
Non-paged memory:1.57 MB
21.59 MB
Virtual memory:48.08 MB
140.96 MB
Virtual memory (peak):50.09 MB
169.69 MB
Working set:2.73 MB
18.61 MB
Working set (peak):3.14 MB
37.95 MB
Resource allocations
Threads:5
12
Handles:60
600

BehaviorsProcess properties

Integrety level:System
Platform:32-bit
Command line:"C:\manageengine\desktopcentral_server\bin\dcnotificationserver.exe" -k 8027
Owner:SYSTEM
Windows Service
Service name:MEDC Server Component - Notification Server
Description:“Notification Server Used for Ondemand Actions”
Type:Win32OwnProcess, InteractiveProcess
Parent process:services.exe (Services and Controller app by Microsoft)

ResourcesThreads

Averages
 
dcnotificationserver.exe (main module)
Total CPU:0.00098441%
0.272967%
Kernel CPU:0.00084378%
0.107585%
User CPU:0.00014063%
0.165382%
CPU cycles:403,608/sec
5,741,424/sec
Memory:228 KB
1.16 MB
ADVAPI32.dll
Total CPU:0.00028126%
Kernel CPU:0.00014063%
User CPU:0.00014063%
CPU cycles:8,980/sec
Memory:792 KB

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows Vista Home Basic 100.00%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE