Should I block it?
No, this file is 100% safe to run.
Relationships
Parent process
Related files
PLAVService.exe
ParetoLogic Anti-Virus PLUS by ParetoLogic
Version: | 2.0.0.0 |
MD5: | 43d214b7e6bc6c84a4e33e353d488caa |
SHA1: | ed1d75c03ddde22ca29c048ee0be22be5322590a |
SHA256: | f9c1fb4573a573fd9452875dd616709ad1830d2d8b550ba00190f61d3c9bff18 |
About PLAVService.exe (from ParetoLogic)
“ParetoLogic Anti-Virus Plus protects against viruses, malware, spyware. Will scan, clean and completely remove even the most deeply rooted viruses, spyware, adware, and even rootkits, which attempt to”
Overview
plavservice.exe runs as a service under the name PLAVService with extensive SYSTEM privileges (full administrator access). This particular version is usually found on Windows 7 Home Premium (6.1.7601.65536).
Details
File name: | plavservice.exe |
Publisher: | ParetoLogic Inc. |
Product name: | ParetoLogic Anti-Virus PLUS |
Description: | PLAV Service |
Typical file path: | C:\Program Files\common files\plav\plavservice.exe |
File version: | 2.0.0.0 |
Product version: | 7.0.1.4 |
Size: | 586.92 KB (601,008 bytes) |
Digital DNA |
File packed: | No |
.NET CLR: | No |
More details
Behaviors
Service
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
Network connections
[TCP] ec2-107-23-37-165.compute-1.amazonaws.com (107.23.37.165:80)
Resource utilization
(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
CPU |
Total CPU: | 0.00003745% | |
Kernel CPU: | 0.00000531% | |
User CPU: | 0.00003214% | |
Kernel CPU time: | 1,564,191 ms/min | |
CPU cycles: | 21,215,669/sec | |
Memory |
Private memory: | 251.05 MB | |
Private (maximum): | 723.91 MB | |
Private (minimum): | 4.55 MB | |
Non-paged memory: | 251.05 MB | |
Virtual memory: | 867.07 MB | |
Virtual memory (peak): | 1.67 GB | |
Working set: | 221.78 MB | |
Working set (peak): | 824.95 MB | |
Page faults: | 84,399,001/min | |
I/O |
I/O read transfer: | 8.4 MB/sec | |
I/O read operations: | 796/sec | |
I/O write transfer: | 29.01 KB/sec | |
I/O write operations: | 27/sec | |
I/O other transfer: | 1.98 MB/sec | |
I/O other operations: | 6,312/sec | |
Resource allocations |
Threads: | 49 | |
Handles: | 3753 | |
Process properties
Integrety level: | System |
Platform: | 64-bit |
Command line: | "C:\Program Files\common files\plav\plavservice.exe" |
Owner: | SYSTEM |
Windows Service |
Service name: | PLAVService |
Description: | “Provides scanning, cleaning, and quarantining of malware items.” |
Type: | Win32OwnProcess |
Parent process: | services.exe (Services and Controller app by Microsoft) |
Threads
Averages
PLAVservice.exe (main module) |
Total CPU: | 0.40242911% | |
Kernel CPU: | 0.02706520% | |
User CPU: | 0.37536390% | |
CPU cycles: | 9,056,839/sec | |
Memory: | 600 KB | |
ntdll.dll |
Total CPU: | 0.00293142% | |
Kernel CPU: | 0.00285869% | |
User CPU: | 0.00007273% | |
CPU cycles: | 78,796/sec | |
Memory: | 1.66 MB | |
wow64.dll |
Total CPU: | 0.00170519% | |
Kernel CPU: | 0.00085260% | |
User CPU: | 0.00085260% | |
CPU cycles: | 2,504/sec | |
Memory: | 252 KB | |
Common loaded modules
These are modules that are typiclaly loaded within the context of this process.
Distribution by Windows OS
OS version | distribution |
Windows 7 Home Premium |
100.00% |
|