Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

9.06.02.02 18.75%
9.06.02.00 68.75%
9.06.01.00 6.25%
9.05.07.00 6.25%

Relationships

Parent process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
ImpersonateSelf, GetTokenInformation, AllocateAndInitializeSid, GetLengthSid, InitializeAcl, AddAccessDeniedAce, AddAccessAllowedAce, FreeSid, RevertToSelf, ImpersonateLoggedOnUser, StartServiceCtrlDispatcherA, OpenProcessToken, RegisterServiceCtrlHandlerA, InitializeSecurityDescriptor, SetSecurityDescriptorDacl, LookupPrivilegeValueA, AdjustTokenPrivileges, SetServiceStatus, RegOpenKeyExW, RegQueryValueExW, StartServiceA, OpenSCManagerA, OpenServiceA, CloseServiceHandle, QueryServiceStatus, RegCreateKeyExA, RegSetValueExA, RegOpenKeyExA, RegQueryValueExA, RegDeleteValueA, RegCloseKey, GetUserNameA
kernel32.dll
GetSystemTime, DeleteFileA, InitializeCriticalSection, DeleteCriticalSection, EnterCriticalSection, LeaveCriticalSection, FreeLibrary, LoadLibraryExA, GetCurrentProcess, GetVersionExA, OpenProcess, InterlockedExchange, TerminateThread, GetModuleFileNameA, OpenMutexA, ResetEvent, SetLastError, GetLastError, GetTickCount, CreateFileA, GetFileSize, GetLocaleInfoA, RaiseException, FindClose, FindNextFileA, MoveFileA, FindFirstFileA, WaitForMultipleObjects, CreateFileW, GetModuleFileNameW, LoadLibraryA, ExitProcess, LocalFree, GetACP, MultiByteToWideChar, InterlockedDecrement, InterlockedIncrement, LocalAlloc, UnmapViewOfFile, MapViewOfFile, CreateFileMappingA, InterlockedCompareExchange, lstrlenA, lstrcpynA, GetShortPathNameA, FormatMessageA, lstrcmpiA, GetComputerNameA, DeviceIoControl, FreeEnvironmentStringsA, SetHandleCount, ReadFile, SetFilePointer, VirtualQuery, IsBadWritePtr, VirtualAlloc, VirtualFree, HeapCreate, HeapDestroy, HeapSize, TerminateProcess, SetUnhandledExceptionFilter, TlsGetValue, TlsSetValue, TlsFree, TlsAlloc, CreateMutexA, ReleaseMutex, OpenEventA, SetEvent, GetSystemTimeAsFileTime, GetModuleHandleA, GetProcAddress, GetCurrentProcessId, GetCurrentThreadId, CreateEventA, CreateThread, WaitForSingleObject, CloseHandle, Sleep, GetStringTypeA, GetStringTypeW, IsBadReadPtr, IsBadCodePtr, GetStdHandle, GetFileType, SetStdHandle, FlushFileBuffers, WriteFile, UnhandledExceptionFilter, QueryPerformanceCounter, SetEndOfFile, WideCharToMultiByte, GetSystemInfo, VirtualProtect, GetEnvironmentStringsW, FreeEnvironmentStringsW, GetEnvironmentStrings, RtlUnwind, HeapFree, HeapAlloc, GetFileAttributesA, HeapReAlloc, GetStartupInfoA, GetCommandLineA, LCMapStringA, LCMapStringW, GetOEMCP, GetCPInfo
ole32.dll
CoCreateGuid, CoInitializeEx, CLSIDFromString, CoUninitialize, CoCreateInstance
plats.dll
FinalizarServidor, IniciarServidor
shlwapi.dll
PathRemoveFileSpecA
user32.dll
RegisterClassA, CreateWindowExA, ShowWindow, UpdateWindow, GetMessageA, CharUpperA, TranslateMessage, BeginPaint, EndPaint, PostQuitMessage, DefWindowProcA, GetSystemMetrics, CharPrevA, CharToOemA, DispatchMessageA, wsprintfA
version.dll
VerQueryValueA, GetFileVersionInfoA, GetFileVersionInfoSizeA, VerQueryValueW, GetFileVersionInfoW, GetFileVersionInfoSizeW
wininet.dll
InternetConnectA, InternetOpenA, HttpOpenRequestA, InternetSetOptionA, HttpAddRequestHeadersA, HttpSendRequestA, HttpQueryInfoA, InternetCloseHandle

PAVFNSVR.exe

Panda Residents by Panda Security S.L (Signed)

Remove PAVFNSVR.exe
Version:   9.06.01.00
MD5:   702799cb670b7cbbdf74a80b382629bd
SHA1:   a962b3da9433b76338e03708dd9ce03d7771cc64
SHA256:   6a63ef9b8570ab5ba0a2f885eb0bf576c00492adf116d12a3d1a226b3df2e801

What is PAVFNSVR.exe?

Panda Function Service is part of Panda's anti-malware platform, an antivirus program by Panda Security that is cloud-based in the sense that files are scanned on a remote server without using processing power of the user's machine. Panda Security says it detects viruses, Trojans, worms, spyware, dialers and security risks.

About PAVFNSVR.exe (from Panda Security S.L)

Enjoy total security with Panda Global Protection. Harness the power of the cloud and help automatically improve the protection of every computer in the Panda community. Protect yourself from all kind

DetailsDetails

File name:pavfnsvr.exe
Publisher:Panda Security, S.L.
Product name:Panda Residents
Description:Panda Function Service
Typical file path:C:\Program Files\panda security\panda global protection 2012\pavfnsvr.exe
File version:9.06.01.00
Size:197.28 KB (202,016 bytes)
Certificate
Issued to:Panda Security S.L
Authority (CA):VeriSign
Expiration date:Friday, July 5, 2013
Digital DNA
File packed:No
.NET CLR:No
More details

BehaviorsBehaviors

Service
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
  • 'PAVFNSVR' (Panda Function Service)

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00006683%
0.028634%
Kernel CPU:0.00003469%
0.013761%
User CPU:0.00003215%
0.014873%
Kernel CPU time:183,520 ms/min
100,923,805ms/min
CPU cycles:3,857,717/sec
17,470,203/sec
Memory
Private memory:63 MB
21.59 MB
Private (maximum):22.29 MB
Private (minimum):352 KB
Non-paged memory:63 MB
21.59 MB
Virtual memory:274.09 MB
140.96 MB
Virtual memory (peak):382.74 MB
169.69 MB
Working set:3.86 MB
18.61 MB
Working set (peak):104.04 MB
37.95 MB
Page faults:13,716,265/min
2,039/min
I/O
I/O read transfer:38.12 KB/sec
1.02 MB/min
I/O read operations:52/sec
343/min
I/O write transfer:67 Bytes/sec
274.99 KB/min
I/O write operations:1/sec
227/min
I/O other transfer:857 Bytes/sec
448.09 KB/min
I/O other operations:17/sec
1,671/min
Resource allocations
Threads:16
12
Handles:535
600

BehaviorsProcess properties

Integrety level:System
Platform:64-bit
Command line:"C:\Program Files\panda security\panda global protection 2013\pavfnsvr.exe"
Owner:SYSTEM
Windows Service
Service name:PAVFNSVR
Display name:Panda Function Service
Type:Win32OwnProcess
Parent process:services.exe (Services and Controller app by Microsoft)

ResourcesThreads

Averages
 
PavFnSvr.exe (main module)
Total CPU:0.00572184%
0.272967%
Kernel CPU:0.00413814%
0.107585%
User CPU:0.00158370%
0.165382%
CPU cycles:197,600/sec
5,741,424/sec
Memory:200 KB
1.16 MB
wow64.dll (Win32 Emulation on NT64 by Microsoft)
Total CPU:0.00025436%
Kernel CPU:0.00001251%
User CPU:0.00024185%
CPU cycles:7,714/sec
Memory:252 KB
ntdll.dll
Total CPU:0.00010425%
Kernel CPU:0.00009174%
User CPU:0.00001251%
CPU cycles:3,163/sec
Memory:1.66 MB

Common loaded modules

These are modules that are typiclaly loaded within the context of this process.

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Home Premium 37.50%
Windows 7 Ultimate 31.25%
Windows 7 Professional 12.50%
Microsoft Windows XP 12.50%
Windows 8 6.25%

Distribution by countryDistribution by country

United States installs about 18.75% of Panda Residents.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Dell 44.44%
Hewlett-Packard 33.33%
Sony 11.11%
Acer 5.56%
GIGABYTE 5.56%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE