nf.exe
Norton Family by Symantec Corporation (Signed)
Version: | 12.10.0.42 |
MD5: | cf16f362df532380910f21325a3094d9 |
SHA1: | 638a4a2fecb353b2acad88740a6b8427e1e00078 |
SHA256: | f61314be2857b69f08744bf96407e3400af808591340b7b5ae62de9589c9e176 |
Overview
nf.exe runs as a service under the name Norton Family (NSM) with extensive SYSTEM privileges (full administrator access). This is typically installed with the program Norton Family published by Symantec Corporation. The file is digitally signed by Symantec Corporation which was issued by the VeriSign certificate authority (CA). This particular version is usually found on Windows 8 (6.2.9200.0).
Details
File name: | nf.exe |
Publisher: | Symantec Corporation |
Product name: | Norton Family |
Typical file path: | C:\Program Files\norton family\engine\2.9.0.26\nf.exe |
Original name: | ccSvcHst.exe |
File version: | 12.10.0.42 |
Product version: | 2.9.0.26 |
Size: | 556.9 KB (570,264 bytes) |
Build date: | 8/7/2013 8:38 PM |
Certificate |
Issued to: | Symantec Corporation |
Authority (CA): | VeriSign |
Effective date: | Tuesday, September 7, 2010 |
Expiration date: | Saturday, November 23, 2013 |
Digital DNA |
File packed: | No |
.NET CLR: | No |
More details
Programs
The following program will install this file
“Norton Family gives you insight into where your kids go and what they do online. So you can keep them safe and teach them good Internet habits. An easy-to-read activity report shows you at a glance ALL the web sites your kids visit, or attempt to visit. You can visit the sites your kids have been to and block specific sites or types of sites. You can set limits on your kids’ computer time to help ensure they aren’t spending too much ti...”
Behaviors
Service
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
Network connections
[TCP] lga15s34-in-f6.1e100.net (173.194.43.6:80)
Resource utilization
(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
CPU |
Total CPU: | 0.00020882% | |
Kernel CPU: | 0.00018539% | |
User CPU: | 0.00002343% | |
Kernel CPU time: | 556,828 ms/min | |
CPU cycles: | 17,373,608/sec | |
Memory |
Private memory: | 13.56 MB | |
Private (maximum): | 23.13 MB | |
Private (minimum): | 12.7 MB | |
Non-paged memory: | 13.56 MB | |
Virtual memory: | 124.3 MB | |
Virtual memory (peak): | 211.95 MB | |
Working set: | 15.95 MB | |
Working set (peak): | 29.8 MB | |
I/O |
I/O read transfer: | 929.95 KB/sec | |
I/O read operations: | 3,575/sec | |
I/O write transfer: | 8.91 KB/sec | |
I/O write operations: | 6/sec | |
I/O other transfer: | 2.64 MB/sec | |
I/O other operations: | 4,293/sec | |
Resource allocations |
Threads: | 28 | |
Handles: | 925 | |
GUI GDI count: | 36 | |
GUI GDI peak: | 73 | |
GUI USER count: | 23 | |
GUI USER peak: | 29 | |
Process properties
Integrety level: | System |
Platform: | 64-bit |
Command lines: |
- "C:\Program Files\norton family\engine\2.9.0.26\nf.exe" /s "nsm" /m "C:\Program Files\norton family\engine\2.9.0.26\dimaster.dll" /prefetcC:1
- "C:\Program Files\norton family\engine\2.9.0.26\nf.exe" /c /a /s usersession
|
Owner: | SYSTEM |
Windows Service |
Service name: | NSM |
Display name: | Norton Family |
Description: | “Norton Family” |
Type: | Win32OwnProcess |
Parent processes: |
|
Threads
Averages
wow64.dll |
Total CPU: | 0.12040705% | |
Kernel CPU: | 0.06154818% | |
User CPU: | 0.05885887% | |
CPU cycles: | 1,350,295/sec | |
Memory: | 276 KB | |
NF.exe (main module) |
Total CPU: | 0.04027213% | |
Kernel CPU: | 0.02698002% | |
User CPU: | 0.01329211% | |
CPU cycles: | 1,031,748/sec | |
Memory: | 556 KB | |
Common loaded modules
These are modules that are typiclaly loaded within the context of this process.
Distribution by Windows OS
OS version | distribution |
Windows 8 |
100.00% |
|
Distribution by PC manufacturer
PC Manufacturer | distribution |
Toshiba |
100.00% |
|