Home How it works Support Boost Connect Download

Boost Connect

Uncovering the DNA of programs.
Good programs    
Fair programs  
Bad programs 

What is avshadow.exe?

Part of AntiVir Desktop by Avira GmbH

What is it?

AntiVir shadow copy service - Avira Antivirus runs as a background process which checks every file opened or downloaded. Like many antivirus programs, it can run a full or custom scan to check the computer for malware in order to remove them. It updates its virus definitions automatically everyday by default using the Internet.
Description of avshadow.exe from Avira GmbH
Avira Free Antivirus eliminates many forms of malware including worms, rootkits, and costly dialers. Features include system scanner prevents infection from viruses, worms, and Trojans, blocks new viruses before they run and halts unknown code that looks suspicious, and click, run, and protect no awkward options express installation sets up your security system for you. System Scanner prevents infection from viruses, worms and Trojans. AHeAD Technology halts unknown code that looks suspicious.
Download Boost and enjoy your PC. Speed up AntiVir Desktop and optimize your PC.

How does avshadow.exe run?

Process - avshadow.exe is an instance of a running program. This 32-bit program executes with the privileges as the currently logged in user account. avshadow.exe is executed by the process avguard.exe (AntiVir Desktop by Avira GmbH).


What is the community is seeing?What is the community is doing?
About 0.4% of all Boost users have the avshadow.exe process running.Of the 0.4% of avshadow.exe users, 14.3% have disabled it.
How resource intensive is avshadow.exe?
Comparison based on the average resource utilization across all programs.
          0.00000250% CPU25.0%
Average CPU utilization across all programs is 0.00001%.
     956 KB RAM4.3%
Average private memory utilization across all programs is 21.53 MB.
Typical file (disk image) location:
C:\Program Files\avira\antivir desktop\avshadow.exe

Are there other versions of AntiVir Desktop?

Why are multiple of the same versions listed?

What modules are loaded?

A module is a dynamic link library (DLL) or an executable file that is loaded into the process. Below is a list of non-system modules that are loaded by AntiVir Desktop.

What else is related?

What Windows OS versions does this run on?

Windows 7 Enterprise (6.1.7601.65536)
Windows 7 Home Premium (6.1.7601.65536)
Windows 7 Professional (6.1.7601.65536)
Windows 7 Starter (6.1.7601.65536)

About Avira GmbH

Avira Operations GmbH is a German antivirus software company. Avira is one of the most widely used antivirus programs in the world, with 100 million users world More...
Download Boost

File details

File name: avshadow.exe
Publisher: Avira GmbH (verified)
Name: AntiVir Desktop
Description: AntiVir shadow copy service
Size: 75.16 KB
Original file name: avshadow.exe

Digital certificate

Issued to: Avira GmbH
Certificate authority: VeriSign
Effective date: 2/10/2009
Expiration date: 2/11/2012

Resource utilization

CPU utilization averages
Total CPU: 0.0000128260%
Privileged CPU: 0.0000103274%
User CPU: 0.00000249856891%
Privileged CPU time: 624004 ms
Privileged CPU time /min: 0 ms
CPU cycle count: 117,789,960
Memory utilization averages
Committed memory: 21.13 MB
Peak committed memory: 24.13 MB
Paged memory: 956 KB
Peak paged memory: 1008 KB
Paged system memory: 35.07 KB
Non-paged system memory: 3.04 KB
Working set memory: 172 KB
Peak working set memory: 3.27 MB
Min working set memory: 56 KB
Private memory: 956 KB
Page faults: 888
Page faults /min: 0
Process I/O averages
Total read operations: 21
Total read transfer: 219.86 KB
Total other operations: 230
Total other transfer: 1.16 KB
Handle count average: 61
Thread count average: 3

Process details

Runs as (owner): User
Integrety level: System
Windows platform: 32-bit
Parent Process
Process Command
"C:\Program Files\Avira\AntiVir Desktop\avshadow.exe" avshadowcontrol0_00000914

Image hashes

MD5: 976b5890e0f1a7cb35bcc55aa8d04a9b
SHA-1: 0867cb164964070a509e6686c69ff9be6ac5a37b
SHA-256: f149a5e8bceab614ee7818316166893581888421c7c60f4b8c5f5055313c1402

PE image details

Subsystem: Windows Console
Langauge*: Microsoft Visual C++ 9.0
File entropy: 6.54573
File packed: No
Import Table
Stay up to date with news about Boost
Subscribe to our newsletter to receive the latest Boost news and discounts.
© 2018 Reason Software Company Inc.
228 Park Ave S #74122 New York, NY 10003
(646) 664-1038 | info@boostbyreason.com
How it works Privacy Terms Support Contact Download Donate Reason Software, the makers of Boost logo

Download Boost and enjoy your PC.

Increase your PC's performance.
Remove unwanted crapware.
Reduce your boot time.
Identify and resolves crashes.
Download the FREE unlimited trial of Boost!
No spyware, no adware, no bundles, no tricks.

Save 40% on Boost

For a limited time, from now until Tuesday, April 24, 2018 you can purchase Boost for 40% off of the normal price, only $39.95 $24.95.
The instant online savings will be automatically applied during checkout.

100% Satisfaction Guarantee

Purchase with confidence. We stand behind Boost.
If for any reason you are not satisfied with your software purchase, simply contact our Customer Support within 30 days, and we'll refund the purchase price. We won't make you jump through hoops to get all your money back!