Should I block it?

No, this file is 100% safe to run.

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
RegCloseKey, AdjustTokenPrivileges, LookupPrivilegeValueA, OpenProcessToken, FreeSid, EqualSid, GetTokenInformation, GetUserNameA, LookupAccountSidA, OpenThreadToken, AllocateAndInitializeSid, RevertToSelf, ImpersonateLoggedOnUser, CryptGetHashParam, CryptDestroyHash, CryptSetHashParam, CryptCreateHash, CryptImportKey, CryptAcquireContextA, CryptReleaseContext, CryptDestroyKey, CryptHashData, CryptDuplicateHash, CryptSetKeyParam, CryptGetKeyParam, CryptGenKey, CryptEncrypt, CryptDuplicateKey, CryptDecrypt, DuplicateTokenEx, SetTokenInformation, SetServiceStatus, OpenServiceA, QueryServiceStatus, ControlService, DeleteService, RegisterServiceCtrlHandlerA, OpenSCManagerA, CreateServiceA, CloseServiceHandle, StartServiceA, StartServiceCtrlDispatcherA, ImpersonateNamedPipeClient, InitializeSecurityDescriptor, SetSecurityDescriptorDacl, AddAccessAllowedAce, AddAccessAllowedAceEx, SetSecurityInfo, DeleteAce, GetSecurityDescriptorDacl, GetAclInformation, InitializeAcl, GetAce, AddAce, GetLengthSid, LookupPrivilegeValueW, LogonUserW, CreateProcessAsUserW, CopySid, RegOpenKeyExW, RegEnumKeyW, RegQueryInfoKeyW, RegDeleteKeyW, RegCreateKeyExW, RegSetValueExA, RegQueryInfoKeyA, RegEnumKeyA, RegCreateKeyExA, RegOpenKeyExA, RegQueryValueExA, CryptDeriveKey, InitiateSystemShutdownA
gdi32.dll
CreatePalette, CreateHalftonePalette, SelectPalette, RealizePalette, CreateCompatibleBitmap, SetDIBits, CreateCompatibleDC, BitBlt, DeleteDC, GetTextExtentPoint32A, GetBkColor, GetDIBColorTable, SetTextColor, ExtTextOutA, SetBkMode, GetTextColor, CreatePen, MoveToEx, LineTo, CreateBrushIndirect, Rectangle, DeleteObject, GetStockObject, SelectObject, GetObjectA, SetBkColor, GetTextMetricsA, EnumFontFamiliesA, CreateFontA
kernel32.dll
DllMain
ole32.dll
CLSIDFromProgID, CoInitialize, CoInitializeEx, CoUninitialize, CoRegisterClassObject, CoRevokeClassObject, CoGetClassObject, CoCreateGuid, CoCreateInstance
shell32.dll
SHGetDesktopFolder, SHGetPathFromIDListW, SHGetMalloc, Shell_NotifyIconA, ShellExecuteExA, SHBrowseForFolderA
user32.dll
GetWindowRect, DestroyAcceleratorTable, SetFocus, EndPaint, BeginPaint, InvalidateRect, LoadIconA, DrawIcon, GetClientRect, CreateAcceleratorTableA, MoveWindow, GetFocus, PostMessageA, EnableWindow, LoadImageA, GetSysColor, GetSysColorBrush, CopyAcceleratorTableA, IsWindowEnabled, IsWindowVisible, GetWindowTextA, GetWindowTextLengthA, GetSystemMetrics, ClientToScreen, UpdateWindow, CloseWindow, DrawIconEx, FillRect, GetSystemMenu, GetParent, ScreenToClient, SetWindowPos, SetTimer, GetMessageA, KillTimer, DrawTextA, IsWindow, IsDialogMessageA, TranslateAcceleratorA, GetDesktopWindow, GetDC, ReleaseDC, CharNextExA, GetUserObjectSecurity, MessageBoxA, GetClassInfoA, RegisterClassA, CreateWindowExA, LoadCursorA, SetProcessWindowStation, SetCursor, PostQuitMessage, TranslateMessage, DispatchMessageA, PeekMessageA, MsgWaitForMultipleObjects, GetProcessWindowStation, GetUserObjectInformationA, OpenWindowStationA, GetClassNameA, DestroyMenu, TrackPopupMenu, CloseWindowStation, OpenInputDesktop, CloseDesktop, GetThreadDesktop, GetWindowLongA, DefWindowProcA, SetWindowLongA, CallWindowProcA, CreateDialogParamA, DestroyWindow, wsprintfA, ShowWindow, SetDlgItemTextA, SetWindowTextA, GetDlgItem, SendMessageA, SetForegroundWindow, GetCursorPos, LoadMenuA, GetSubMenu, SetMenuDefaultItem, EnableMenuItem
version.dll
VerQueryValueA, GetFileVersionInfoA, GetFileVersionInfoSizeA

ndserv.exe

Enterprise Deployment Suite by ManageSoft Corporation (Signed)

Remove ndserv.exe
Version:   8.2.2
MD5:   22293a7640beac011c6ea6c976a059e8
SHA1:   779da59335c8daeb79b74cd9b8486271427a5a6d
SHA256:   e5c345b0eb0d9a25ff7e4417847204a482388333bbe558cc7a46799cf44b7048

Overview

ndserv.exe runs as a service under the name Deployment Manager installation agent (ndGlobalLauncher) with extensive SYSTEM privileges (full administrator access). The file is digitally signed by ManageSoft Corporation which was issued by the VeriSign certificate authority (CA). This particular version is usually found on Microsoft Windows XP (5.1.2600.196608).

DetailsDetails

File name:ndserv.exe
Publisher:Flexera Software
Product name:Enterprise Deployment Suite
Description:Installation agent service
Typical file path:C:\Program Files\managesoft\launcher\ndserv.exe
File version:8.2.2
Size:2.7 MB (2,836,304 bytes)
Certificate
Issued to:ManageSoft Corporation
Authority (CA):VeriSign
Digital DNA
PE subsystem:Windows GUI
File packed:No
.NET CLR:No
More details

BehaviorsBehaviors

Service
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
  • 'ndGlobalLauncher' (Deployment Manager installation agent)

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00000706%
0.028634%
Kernel CPU:0.00000471%
0.013761%
User CPU:0.00000235%
0.014873%
Kernel CPU time:63 ms/min
100,923,805ms/min
Memory
Private memory:1.07 MB
21.59 MB
Private (maximum):3.43 MB
Private (minimum):420 KB
Non-paged memory:1.07 MB
21.59 MB
Virtual memory:31.84 MB
140.96 MB
Virtual memory (peak):35.45 MB
169.69 MB
Working set:1.02 MB
18.61 MB
Working set (peak):3.44 MB
37.95 MB
Resource allocations
Threads:3
12
Handles:40
600
GUI GDI count:7
103
GUI USER count:2
49

BehaviorsProcess properties

Integrety level:Undefined
Platform:32-bit
Command line:"C:\Program Files\managesoft\launcher\ndserv.exe"
Owner:SYSTEM
Windows Service
Service name:ndGlobalLauncher
Display name:Deployment Manager installation agent
Description:“Manages privilege elevation for software maintenance tasks”
Type:Win32OwnProcess, InteractiveProcess
Parent process:services.exe (Services and Controller app by Microsoft)

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Microsoft Windows XP 100.00%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE