Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

13.6.20.2100 9.03%
13.6.20.2100 0.65%
13.6.20.2100 0.65%
13.6.20.2100 0.65%
13.6.20.2100 1.94%
13.6.20.2100 0.65%
13.6.0.1752 3.23%
13.6.0.1752 1.94%
13.6.0.1752 1.94%
13.6.0.1194 4.52%
13.6.0.1194 1.94%
13.6.0.1194 0.65%
13.6.0.986 1.94%
13.6.0.986 1.29%
13.6.0.628 16.13%
13.6.0.628 0.65%
13.6.0.628 0.65%
13.6.0.628 0.65%
13.6.0.628 0.65%
13.6.0.628 0.65%
13.6.0.402 10.97%
13.6.0.402 0.65%
13.6.0.402 4.52%
13.4.0.294 0.65%
13.4.0.255 0.65%
View more

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
RegCloseKey, RegOpenKeyExA, RegQueryValueExA, InitializeSecurityDescriptor, SetSecurityDescriptorDacl, GetTokenInformation, LookupAccountSidW, OpenProcessToken, GetSecurityInfo, GetSecurityDescriptorDacl, BuildExplicitAccessWithNameW, SetEntriesInAclW, SetSecurityInfo, CreateProcessAsUserW, RegDeleteValueW, RegOpenKeyExW, OpenServiceW, QueryServiceStatus, CloseServiceHandle, OpenSCManagerW, GetUserNameW, RegQueryValueExW, ImpersonateLoggedOnUser, SetThreadToken, DuplicateTokenEx, RevertToSelf, RegCreateKeyExW, RegSetValueExW
comctl32.dll
_TrackMouseEvent
gdi32.dll
GetDeviceCaps, CreatePatternBrush, GetStockObject, DeleteObject, GetTextExtentPoint32W, GetPixel, BitBlt, RoundRect, SelectObject, CreateRoundRectRgn, CreateCompatibleBitmap, CreateSolidBrush, GetObjectW, RealizePalette, CreatePen, CreateFontIndirectW, CreateCompatibleDC, PtVisible, RectVisible, TextOutW, ExtTextOutW, Escape, SetPixel
gdiplus.dll
GdiplusShutdown, GdiplusStartup, GdipDeleteGraphics, GdipCreateFromHDC, GdipDrawImageRectRectI, GdipSetPixelOffsetMode, GdipGetImageWidth, GdipGetImageHeight
kernel32.dll
GetCurrentProcess, InterlockedDecrement, CreateEventW, Sleep, PulseEvent, OpenEventW, InterlockedIncrement, GetFileAttributesW, LoadLibraryExW, WaitForSingleObject, FreeLibrary, GetProcAddress, LoadLibraryW, FormatMessageW, SetEndOfFile, ReadFile, GetFileSize, SetFilePointer, CreateFileW, GetTickCount, GetModuleHandleW, GetModuleFileNameW, SetLastError, LocalFree, GetLastError, FindResourceExW, CloseHandle, FindResourceW, LoadResource, LockResource, HeapDestroy, HeapAlloc, HeapFree, HeapReAlloc, HeapSize, GetProcessHeap, RaiseException, SizeofResource, EnterCriticalSection, LeaveCriticalSection, InitializeCriticalSectionAndSpinCount, DeleteCriticalSection, ExpandEnvironmentStringsA, SetEvent, IsProcessorFeaturePresent, IsDebuggerPresent, UnhandledExceptionFilter, GetSystemTimeAsFileTime, QueryPerformanceCounter, SetUnhandledExceptionFilter, DecodePointer, EncodePointer, HeapSetInformation, InterlockedCompareExchange, InterlockedExchange, MulDiv, lstrcpynW, GetCurrentThreadId, MultiByteToWideChar, GetFullPathNameW, WideCharToMultiByte, GetFileAttributesExW, LocalAlloc, GetComputerNameW, GlobalAlloc, GlobalFree, SetProcessWorkingSetSize, GetStartupInfoW, OpenProcess, TerminateProcess, GetVersionExW, VerSetConditionMask, VerifyVersionInfoW, WriteFile, CreateProcessW, GetExitCodeProcess, LoadLibraryA, DeviceIoControl, SetCurrentDirectoryW, SetErrorMode, OutputDebugStringW, GetCurrentProcessId, GetPrivateProfileIntW, GetSystemDirectoryW, GetPriorityClass, ResetEvent, WaitForMultipleObjects, GetPrivateProfileStringW, CreateThread, InitializeCriticalSection, InterlockedExchangeAdd, GetLocalTime, GetEnvironmentVariableW, GetLogicalDriveStringsW, GetDiskFreeSpaceExW, GetPrivateProfileSectionW, GlobalMemoryStatusEx, GetDriveTypeW, GetLocaleInfoW, GetUserDefaultUILanguage, GetSystemInfo
mfc100u.dll
DllMain
msvcp100.dll
DllMain
msvcr100.dll
DllMain
netapi32.dll
DsEnumerateDomainTrustsW, NetWkstaGetInfo, NetApiBufferFree, NetServerEnum
ole32.dll
CoInitializeEx, CoCreateInstance, CoUninitialize, CoInitialize
shell32.dll
ShellExecuteW, ShellExecuteExW, SHGetSpecialFolderPathW, Shell_NotifyIconW
user32.dll
ReleaseCapture, SetCapture, PtInRect, SystemParametersInfoW, SetWindowLongW, GetActiveWindow, GetLastActivePopup, MessageBoxW, GetKeyState, TabbedTextOutW, DrawTextW, DrawTextExW, GrayStringW, SetCursor, GetDC, SetWindowRgn, IsWindowVisible, SetWindowPos, GetDlgCtrlID, GetClientRect, TranslateAcceleratorW, LoadImageW, LoadIconW, DrawIconEx, IsWindow, DestroyIcon, GetParent, InvalidateRect, ReleaseDC, ScreenToClient, GetWindowRect, FillRect, InflateRect, CopyRect, DrawStateW, GetSystemMetrics, GetForegroundWindow, LoadStringW, EnableWindow, GetMenuItemCount, SetMenuDefaultItem, CreatePopupMenu, PostMessageW, AppendMenuW, GetSubMenu, RemoveMenu, GetCursorPos, LoadMenuW, PostQuitMessage, SetTimer, KillTimer, SendMessageW, RegisterWindowMessageW, SetForegroundWindow, GetPropW, EnumWindows, RemovePropW, PeekMessageW, UpdateWindow
version.dll
GetFileVersionInfoSizeW, GetFileVersionInfoW, VerQueryValueW
wininet.dll
InternetCanonicalizeUrlW, InternetGetConnectedState

avgnt.exe

Avira Free Antivirus by Avira Operations GmbH & Co. KG (Signed)

Remove avgnt.exe
Version:   13.4.0.255
MD5:   48887b1b115c0f69d5766a472b3bf1b3
SHA1:   dbf2ff77d4f4f9554bf2084bbd62ff37dce254c6
SHA256:   346ddc33035985bacd9a374f37787600af081135585dd40d8757b7d0b954f651

What is avgnt.exe?

Avira System Tray Tool. This edition of Avira Antivirus is free of charge and runs as a background process which checks every file opened or downloaded. Like many antivirus programs, it can run a full or custom scan to check the PC for malware in order to remove them. It updates its virus definitions automatically everyday by default using the Internet.

About avgnt.exe (from Avira Operations GmbH & Co. KG)

Our entry-level antivirus eliminates many forms of malware, including worms, rootkits and costly dialers. System Scanner prevents infection from viruses, worms and Trojans. AHeAD Technology halts unkn

Overview

avgnt.exe executes as a process with the local user's privileges. It is set to be start when the PC boots and any user logs into Windows (added to the Run registry key for the all users under the local machine). It is installed with a couple of know programs including Avira Free Antivirus published by Avira GmbH, Avira Free Antivirus from Avira GmbH and Avira Free Antivirus by Avira GmbH. The file is digitally signed by Avira Operations GmbH & Co. KG which was issued by the VeriSign certificate authority (CA).

DetailsDetails

File name:avgnt.exe
Publisher:Avira Operations GmbH & Co. KG
Product name:Avira Free Antivirus
Description:Avira System Tray Tool
Typical file path:C:\Program Files\avira\antivir desktop\avgnt.exe
File version:13.4.0.255
Size:375.78 KB (384,800 bytes)
Certificate
Issued to:Avira Operations GmbH & Co. KG
Authority (CA):VeriSign
Expiration date:Sunday, July 20, 2014
Digital DNA
PE subsystem:Windows GUI
File packed:No
Code language:Microsoft Visual C++ 10.0
.NET CLR:No
More details

ResourcesPrograms

The following programs will install this file
Avira GmbH
25% remove
Avira AntiVir Personal includes a branded version of the Ask.com Toolbar, a web browser extenstion that provides search advertising and results. Upon installation the user is presented with the option to install the Ask toolbar. If accepted, the toolbar will be installed in the user's web browser (Internet Explorer, Chrome and Firefox) and will modify the home page and search settings.

BehaviorsBehaviors

Startup files (all users) run
Runs under the registry key 'HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run'
  • 'avgnt' → "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00059443%
0.028634%
Kernel CPU:0.00024258%
0.013761%
User CPU:0.00035185%
0.014873%
Kernel CPU time:3,666 ms/min
100,923,805ms/min
CPU cycles:2,190,977/sec
17,470,203/sec
Memory
Private memory:175.02 MB
21.59 MB
Private (maximum):161.29 MB
Private (minimum):892 KB
Non-paged memory:175.02 MB
21.59 MB
Virtual memory:288.1 MB
140.96 MB
Virtual memory (peak):297.25 MB
169.69 MB
Working set:9.26 MB
18.61 MB
Working set (peak):206.86 MB
37.95 MB
Page faults:458,804/min
2,039/min
I/O
I/O read transfer:233.01 KB/sec
1.02 MB/min
I/O read operations:95/sec
343/min
I/O write transfer:818 Bytes/sec
274.99 KB/min
I/O write operations:37/sec
227/min
I/O other transfer:203 Bytes/sec
448.09 KB/min
I/O other operations:55/sec
1,671/min
Resource allocations
Threads:10
12
Handles:246
600
GUI GDI count:93
103
GUI GDI peak:116
142
GUI USER count:28
49
GUI USER peak:40
71

BehaviorsProcess properties

Integrety level:High
Platform:32-bit
Command line:"C:\Program Files\avira\antivir desktop\avgnt.exe" /min
Owner:User
Parent process:Explorer.EXE (Windows Explorer by Microsoft)

ResourcesThreads

Averages
 
avgnt.exe (main module)
Total CPU:0.03330622%
0.272967%
Kernel CPU:0.00447567%
0.107585%
User CPU:0.02883056%
0.165382%
CPU cycles:3,012,083/sec
5,741,424/sec
Context switches:6/sec
79/sec
Memory:388 KB
1.16 MB
ccmsg.dll (Avira Free Antivirus by Avira Operations GmbH & Co. KG)
Total CPU:0.00097701%
Kernel CPU:0.00028402%
User CPU:0.00069300%
CPU cycles:32,112/sec
Memory:232 KB
gdiplus.dll
Total CPU:0.00004544%
Kernel CPU:0.00002272%
User CPU:0.00002272%
CPU cycles:312/sec
Memory:1.56 MB
ntdll.dll
Total CPU:0.00002272%
Kernel CPU:0.00002272%
User CPU:0.00000000%
CPU cycles:1,002/sec
Memory:1.23 MB

Common loaded modules

These are modules that are typiclaly loaded within the context of this process.

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Ultimate 35.48%
Microsoft Windows XP 27.74%
Windows 7 Home Premium 16.13%
Windows 7 Professional 11.61%
Windows Vista Home Premium 2.58%
Windows 7 Home Basic 1.94%
Windows 8 Pro 1.29%
Windows 7 Enterprise 1.29%
Windows 7 Starter 1.29%
Windows Vista Business 0.65%

Distribution by countryDistribution by country

Malaysia installs about 13.73% of Avira Free Antivirus.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
ASUS 26.56%
Hewlett-Packard 20.31%
Toshiba 12.50%
Intel 9.38%
Acer 7.03%
Lenovo 6.25%
Dell 6.25%
Compaq 3.13%
Sahara 3.13%
Samsung 1.56%
MSI 1.56%
GIGABYTE 1.56%
American Megatrends 0.78%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE