Should I block it?
No, this file is 100% safe to run.
Relationships
Parent process
Related files
PE file structure |
Show functions |
Import table
mscoree.dll
DllMain
AdBlocker.exe
AdBlocker by Lavasoft Limited (Signed)
Version: | 1.3.69.1 |
MD5: | 9753a7fc981a146f7254bfabfb40e02c |
SHA1: | e4d4b83d88827e9801d3c60164e94984a78f5b47 |
Overview
adblocker.exe executes as a process with the local user's privileges usually within the context of Windows Explorer. It is set to be run when the PC boots and the user logs into Windows (added to the Run registry key for the current user). This is typically installed with the program Ad-Aware AdBlocker (Alpha) published by Lavasoft. The assembly utilizes the .NET run-time framework (which is required to be installed on the PC). The file is digitally signed by Lavasoft Limited which was issued by the VeriSign certificate authority (CA). This particular version is usually found on Windows 7 Professional (6.1.7601.65536).
Details
File name: | adblocker.exe |
Publisher: | Lavasoft |
Product name: | AdBlocker |
Typical file path: | C:\Program Files\lavasoft\ad-aware adblocker (alpha)\adblocker.exe |
File version: | 1.3.69.1 |
Size: | 436.05 KB (446,520 bytes) |
Build date: | 10/23/2013 11:01 PM |
Certificate |
Issued to: | Lavasoft Limited |
Authority (CA): | VeriSign |
Effective date: | Wednesday, August 7, 2013 |
Expiration date: | Friday, July 24, 2015 |
Digital DNA |
PE subsystem: | Windows GUI |
File packed: | No |
Code language: | Microsoft Visual C# / Basic .NET |
.NET CLR: | Yes |
.NET NGENed: | No |
More details
Programs
The following program will install this file
“Enjoy surfing the web without those annoying ads, pop-ups and video ads... This means that you can increase your online privacy and reduce the chance of being a victim of malware or scams.”
Behaviors
Startup files (user) run
Runs under the registry key 'HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run'
- 'Lavasoft AdBlock' → C:\Program Files\Lavasoft\Ad-Aware AdBlocker (Alpha)\AdBlocker.exe
Resource utilization
(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
CPU |
Total CPU: | 0.00010969% | |
Kernel CPU: | 0.00010251% | |
User CPU: | 0.00000719% | |
Kernel CPU time: | 123,615 ms/min | |
CPU cycles: | 14,181,746/sec | |
Memory |
Private memory: | 65.49 MB | |
Private (maximum): | 148.31 MB | |
Private (minimum): | 8.62 MB | |
Non-paged memory: | 65.49 MB | |
Virtual memory: | 276.1 MB | |
Virtual memory (peak): | 283.56 MB | |
Working set: | 19.24 MB | |
Working set (peak): | 149.29 MB | |
Page faults: | 373,982/min | |
I/O |
I/O read transfer: | 1.98 MB/sec | |
I/O read operations: | 859/sec | |
I/O write transfer: | 91.42 KB/sec | |
I/O write operations: | 2,023/sec | |
I/O other transfer: | 128.18 KB/sec | |
I/O other operations: | 12,637/sec | |
Resource allocations |
Threads: | 27 | |
Handles: | 534 | |
GUI GDI count: | 29 | |
GUI GDI peak: | 33 | |
GUI USER count: | 26 | |
GUI USER peak: | 29 | |
Process properties
Threads
Averages
mscorwks.dll |
Total CPU: | 0.02277691% | |
Kernel CPU: | 0.01738604% | |
User CPU: | 0.00539087% | |
CPU cycles: | 9,704,453/sec | |
Context switches: | 6/sec | |
Memory: | 5.68 MB | |
wpfgfx_v0300.dll |
Total CPU: | 0.01758544% | |
Kernel CPU: | 0.01443565% | |
User CPU: | 0.00314979% | |
CPU cycles: | 4,840,588/sec | |
Context switches: | 43/sec | |
Memory: | 1.67 MB | |
AdBlocker.exe (main module) |
Total CPU: | 0.00297829% | |
Kernel CPU: | 0.00056577% | |
User CPU: | 0.00241252% | |
CPU cycles: | 36,372,288/sec | |
Context switches: | 112/sec | |
Memory: | 448 KB | |
lavasoftproxy.dll (LavasoftProxy.dll by Lavasoft Limited) |
Total CPU: | 0.00152699% | |
Kernel CPU: | 0.00103579% | |
User CPU: | 0.00049120% | |
CPU cycles: | 357,317/sec | |
Context switches: | 12/sec | |
Memory: | 360 KB | |
ole32.dll (Microsoft OLE for Windows by Microsoft) |
Total CPU: | 0.00003875% | |
Kernel CPU: | 0.00000000% | |
User CPU: | 0.00003875% | |
CPU cycles: | 616/sec | |
Memory: | 1.36 MB | |
Common loaded modules
These are modules that are typiclaly loaded within the context of this process.
Distribution by Windows OS
OS version | distribution |
Windows 7 Professional |
100.00% |
|