Should I block it?

No, this file is 100% safe to run.

Relationships

Parent process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
RegCloseKey, RegOpenKeyExW, RegQueryValueExW, RegSetValueExW, RegDeleteValueW, RegOpenKeyW, SetSecurityDescriptorDacl, InitializeSecurityDescriptor, RegEnumKeyExW, RegDeleteKeyW, GetTokenInformation, GetUserNameW, OpenProcessToken, LookupPrivilegeValueW, AdjustTokenPrivileges, StartServiceCtrlDispatcherW, RegisterServiceCtrlHandlerW, SetServiceStatus, CloseServiceHandle, CreateServiceW, OpenSCManagerW, DeleteService, OpenServiceW, EnumServicesStatusW, StartServiceW
gdi32.dll
BitBlt, SetTextColor, SetBkColor, SelectObject, CreateBitmap, StretchBlt, DeleteDC, DeleteObject, CreateCompatibleDC, CreateCompatibleBitmap, GetObjectW
kernel32.dll
GetStartupInfoW, SetUnhandledExceptionFilter, QueryPerformanceCounter, GetSystemTimeAsFileTime, TerminateProcess, UnhandledExceptionFilter, IsDebuggerPresent, InterlockedCompareExchange, RaiseException, GetProcessHeap, HeapSize, HeapReAlloc, HeapFree, HeapAlloc, HeapDestroy, GetTimeFormatW, GetDateFormatW, GetCurrentThreadId, ExpandEnvironmentStringsW, GetEnvironmentVariableW, OutputDebugStringW, OpenEventW, GetFileAttributesW, RemoveDirectoryW, ProcessIdToSessionId, GetModuleHandleW, OpenProcess, GetCurrentProcess, SetPriorityClass, GetCommandLineW, CreateThread, FindResourceExW, LoadResource, LockResource, SizeofResource, FindResourceW, InterlockedExchange, OpenThread, CopyFileW, GetVersionExW, GetCurrentDirectoryW, SetCurrentDirectoryW, CreateEventW, CreateMutexW, InitializeCriticalSection, DeleteCriticalSection, CloseHandle, GetTickCount, LeaveCriticalSection, EnterCriticalSection, lstrlenW, GetSystemDirectoryW, WideCharToMultiByte, ReadFile, WriteFile, CreateFileW, CreateDirectoryW, CreateProcessW, MoveFileW, GetLastError, DeleteFileW, lstrlenA, MultiByteToWideChar, WaitForSingleObject, SetEvent, ResetEvent, ReleaseMutex, Sleep, MoveFileExW, SetFileAttributesW, FindClose, FindNextFileW, FindFirstFileW, GetModuleFileNameW, GetCurrentProcessId, GetProcAddress, LoadLibraryW, FreeLibrary
msvcp90.dll
DllMain
msvcr90.dll
DllMain
ole32.dll
CoCreateInstance, StringFromGUID2, CoGetObject
shell32.dll
SHGetSpecialFolderPathW, ShellExecuteW, ShellExecuteExW
shlwapi.dll
PathRemoveExtensionW, PathStripPathW, PathIsRelativeW, PathFileExistsW
user32.dll
GetUserObjectInformationW, GetForegroundWindow, AllowSetForegroundWindow, GetThreadDesktop, SetWindowPos, EndPaint, OpenWindowStationW, SetProcessWindowStation, OpenDesktopW, SetThreadDesktop, GetDesktopWindow, LoadIconW, LoadCursorW, RegisterClassExW, LoadImageW, CreateWindowExW, GetWindowLongW, SetWindowLongW, GetDC, ShowWindow, UpdateWindow, DefWindowProcW, MsgWaitForMultipleObjects, PeekMessageW, DispatchMessageW, BeginPaint
winhttp.dll
WinHttpCloseHandle, WinHttpOpen
wslib.dll
HTTPLibNew, WSLibNew, HTTPLibDelete, WSLibDelete, HTTPLibSetOption

livesrv.exe

BitDefender 2010 by BitDefender SRL (Signed)

Remove livesrv.exe
Version:   13,0,21,3
MD5:   d727571bd79e5812adbeb687db595360
SHA1:   83fdca738e664479911d0840f59f7a3dfe2a8786
SHA256:   f9c10ac5bf264d32d3799b92268b3e84c4caf1fdcc8dc25d577999ec89260fe9

Overview

livesrv.exe runs as a service under the name BitDefender Desktop Update Service (LIVESRV) with extensive SYSTEM privileges (full administrator access). It is installed with a couple of know programs including BitDefender Internet Security 2010 published by Bitdefender, BitDefender Internet Security 2010 from Bitdefender and BitDefender Internet Security 2010 by Bitdefender. The file is digitally signed by BitDefender SRL which was issued by the VeriSign certificate authority (CA). This particular version is usually found on Windows Vista (TM) Home Premium (6.0.6002.131072).

DetailsDetails

File name:livesrv.exe
Publisher:BitDefender S.R.L.
Product name:BitDefender 2010
Description:BitDefender Update Service
Typical file path:C:\Program Files\common files\bitdefender\bitdefender update service\livesrv.exe
File version:13,0,21,3
Product version:13,0,19,346
Size:303.57 KB (310,856 bytes)
Build date:3/4/2011 4:55 PM
Certificate
Issued to:BitDefender SRL
Authority (CA):VeriSign
Effective date:Friday, July 2, 2010
Expiration date:Monday, July 2, 2012
Digital DNA
PE subsystem:Windows GUI
File packed:No
Code language:Microsoft Visual C++ 9.0
.NET CLR:No
More details

ResourcesPrograms

The following programs will install this file
Bitdefender
4% remove
Surf the Internet and socialize without worries. Your private information cannot be seen or stolen by hackers. Bitdefender Autopilot™ automatically takes the best security-related decisions for you, offering silent security. Active Virus Control is a proactive, dynamic detection technology. It monitors processes’ behavior in real time, as they are running, and tags suspicious activities. Enables you to keep track of all of your secur...
Bitdefender
1% remove
BitDefender Total Security 2010 provides comprehensive protection against all Internet security threats, along with system maintenance and backup. Protect your identity: shop, bank, listen and watch, privately and securely; blocks attempted identity theft (phishing). The Industry's Best Value! Provides 3 PCs 2 full years of protection against viruses, spyware, hackers, and other e-threats, without slowing them down. Includes: online ba...
Bitdefender
12% remove
BitDefender Antivirus 2010 provides an advanced proactive protection against viruses, spywares, phishing attacks and identity theft. Its great ease of use and its automatic updates which take place every hour make BitDefender Antivirus the best solution to protect your computer without slowing it down.
Skype Technologies S.A.
5% remove
The video calling feature in Facebook powered by Skype is an in-browser Skype-based video chat which enables users to video conference their Facebook friends. Facebook provides users with two choices to initiate a call. You can choose someone from your online Facebook chat contacts and then hit the video button in the discussion window. Features: - Face-to-face video calls - Video call button at the top of the chat window - Add e...

BehaviorsBehaviors

Service
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
  • 'LIVESRV' (BitDefender Desktop Update Service)

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00133633%
0.028634%
Kernel CPU:0.00053845%
0.013761%
User CPU:0.00079788%
0.014873%
Kernel CPU time:10,468 ms/min
100,923,805ms/min
CPU cycles:861,384/sec
17,470,203/sec
Memory
Private memory:5.38 MB
21.59 MB
Private (maximum):6.31 MB
Private (minimum):608 KB
Non-paged memory:5.38 MB
21.59 MB
Virtual memory:66.19 MB
140.96 MB
Virtual memory (peak):69.19 MB
169.69 MB
Working set:3.89 MB
18.61 MB
Working set (peak):7.08 MB
37.95 MB
Page faults:6,148/min
2,039/min
I/O
I/O read transfer:597.82 KB/sec
1.02 MB/min
I/O read operations:547/sec
343/min
I/O write transfer:878 Bytes/sec
274.99 KB/min
I/O write operations:14/sec
227/min
I/O other transfer:1.09 KB/sec
448.09 KB/min
I/O other operations:129/sec
1,671/min
Resource allocations
Threads:11
12
Handles:138
600

BehaviorsProcess properties

Integrety level:System
Platform:32-bit
Command line:"C:\Program Files\common files\bitdefender\bitdefender update service\livesrv.exe" /service
Owner:SYSTEM
Windows Service
Service name:LIVESRV
Display name:BitDefender Desktop Update Service
Description:“Downloads BitDefender updates and new malware signatures from the Internet”
Type:Win32OwnProcess
Parent process:services.exe (Services and Controller app by Microsoft)

ResourcesThreads

Averages
 
ADVAPI32.dll
Total CPU:0.00603627%
0.272967%
Kernel CPU:0.00578476%
0.107585%
User CPU:0.00025151%
0.165382%
CPU cycles:301,852/sec
5,741,424/sec
Context switches:2/sec
79/sec
Memory:792 KB
1.16 MB
livesrv.exe (main module)
Total CPU:0.00014372%
Kernel CPU:0.00014372%
User CPU:0.00000000%
CPU cycles:2,427/sec
Memory:332 KB
npcomm.dll (BitDefender 13 by BitDefender LLC)
Total CPU:0.00012576%
Kernel CPU:0.00008983%
User CPU:0.00003593%
CPU cycles:7,422/sec
Memory:56 KB
framework.dll (Plugin Framework)
Total CPU:0.00007197%
Kernel CPU:0.00007197%
User CPU:0.00000000%
CPU cycles:6,181/sec
Memory:104 KB

Common loaded modules

These are modules that are typiclaly loaded within the context of this process.

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows Vista Home Premium 100.00%

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Acer 100.00%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE