RegSrvc.exe
Intel PROSet/Wireless by Intel Corporation (Signed)
Warning 4 antivirus scanners has detected malware in various versions of RegSrvc.exe.
Overview
There are 43 versions of regsrvc.exe in the wild, the latest version being 16, 10, 0, 0. It is started as a Windows Service called 'IntelR PROSet/Wireless Registry Service' with the name 'RegSrvc' and described as “Provides registry access to all IntelR PROSet/Wireless Software components”. . In addition, it is run under the context of the SYSTEM account with extensive privileges (the administrator accounts have the same privileges). The average file size is about 476.31 KB. The file is a digitally signed and issued to Intel Corporation by Intel Corporation. Some variations of the file have been seen to be installed with the program Lenovo Patch Utility 64 bit from Lenovo. During the process's lifecycle, the typical CPU resource utilization is about 0.0001% including both foreground and background operations, the average private memory consumption is about 2.25 MB with the maximum memory reaching around 6.31 MB. Addionally, typically read and write I/O disk operations is about 2.17 KB per minute for reads and 0 Bytes per minute for writes.
What is regsrvc.exe?
Intel PROSet/Wireless WiFi Registry Service is used to set up, edit, and manage network profiles to connect to a network. It also includes advanced settings such as power management and channel selection for setting up ad-hoc networks. The WiFi Connection Utility Main Window lets users view the current connection details (signal quality, speed and current network name), scan for available WiFi networks and troubleshoot wireless connection problems.
About regsrvc.exe (from Intel Corporation)
“With your wireless network card, you can access wireless networks, share files or printers, or even share your Internet connection. All of these features can be explored using a wireless network in yo”
Details |
File name: | regsrvc.exe |
Publisher: | Intel(R) Corporation |
Product name: | Intel(R) PROSet/Wireless |
Description: | Intel(R) PROSet/Wireless Registry Service |
Typical file path: | C:\Program Files\common files\intel\wirelesscommon\regsrvc.exe |
Certificate |
Issued to: | Intel Corporation |
Authority (CA): | Intel Corporation |
Effective date: | Monday, October 30, 2006 |
Expiration date: | Thursday, October 29, 2009 |
Windows Service |
Service name: | RegSrvc |
Display name: | IntelR PROSet/Wireless Registry Service |
Description: | “Provides registry access to all IntelR PROSet/Wireless Software components” |
Type: | Win32OwnProcess |
Programs installed in
(Note, the programs listed below are for all versions of Intel(R) PROSet/Wireless.)
This program provides the utilities (sub packages) related for the special keys and buttons on your computer. The special keys and buttons are designed on the accessibility and usability. The utilitie...
Behaviors
(Note, the behaviors below are for all versions of regsrvc.exe, select a unique version for details.)
Services
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
- 'RegSrvc' (IntelR PROSet/Wireless Registry Service)
- RegSrvc
Malware detections
Based on 40+ industry antivirus scanners, 4 of them detected the following malware.
Antivirus engine | Engine version | Detection | File version |
ByteHero |
1.0.0.1 |
Trojan.Malware.Win32.xPack.m |
14, 1, 1, 0 |
ByteHero |
1.0.0.1 |
Trojan.Malware.Win32.xPack.m |
13, 0, 0, 0 |
ByteHero |
1.0.0.1 |
Trojan.Malware.Win32.xPack.m |
14, 1, 1, 0 |
ByteHero |
1.0.0.1 |
Trojan.Malware.Win32.xPack.m |
12, 1, 2, 0 |
All file variations of regsrvc.exe
Distribution by Windows OS
OS version | distribution |
Windows 7 Home Premium |
51.52% |
|
Windows 7 Ultimate |
16.67% |
|
Windows 7 Professional |
8.08% |
|
Windows 8 |
4.55% |
|
Microsoft Windows XP |
4.55% |
|
Windows 8 Pro with Media Center |
3.03% |
|
Windows Vista Home Premium |
3.03% |
|
Windows 8.1 |
2.53% |
|
Windows 8 Single Language |
2.02% |
|
Windows 8.1 Pro |
1.01% |
|
Windows 7 Enterprise |
1.01% |
|
Windows 8.1 Pro Preview with Media Center |
1.01% |
|
Windows 8 Pro |
1.01% |
|
Distribution by country
United States installs about 48.99% of Intel(R) PROSet/Wireless.
Distribution by PC manufacturer
PC Manufacturer | distribution |
Dell |
28.24% |
|
Sony |
19.85% |
|
Toshiba |
12.98% |
|
ASUS |
12.98% |
|
Lenovo |
8.40% |
|
Hewlett-Packard |
8.40% |
|
Acer |
3.82% |
|
NEC |
2.29% |
|
Alienware |
1.53% |
|
Samsung |
1.53% |
|