File details
File name: arservice.exe
Name: ARSVC Application
Description: ARSVC Application
Version: 6.0.0160.0
Size: 57.5 KB
Original file name: ARSVC.exe
Resource utilization
 | CPU utilization averages |
Total CPU: 0.0002019686%
Privileged CPU:
0.0001391625%

User CPU:
0.00006280606587%

Privileged CPU time: 260.42 ms
Privileged CPU time /min: 0 ms
Context switches /sec:
12
 | Memory utilization averages |
Committed memory:
19.28 MB
Peak committed memory: 19.49 MB
Paged memory:
1.67 MB
Peak paged memory: 2.01 MB
Paged system memory:
36.34 KB
Non-paged system memory: 2.24 KB
Working set memory:
304 KB
Peak working set memory: 2.72 MB
Min working set memory: 250.67 KB
Private memory:
1.67 MB
Page faults:
1,028
Page faults /min: 2
 | Process I/O averages |
Total read operations:
12
Read operations /min: 1
Total read transfer: 811 Bytes
Read transfer /min: 0 Bytes
Total write operations:
12
Write operations /min: 1
Total write transfer: 345 Bytes
Write transfer /min: 0 Bytes
Total other operations:
739
Other operations /min: 1
Total other transfer: 81.36 KB
Other Transfer /min: 65 Bytes
 | GUI Object Averages |
GDI objects:
12
USER objects:
4
Resources
Handle count average: 82
Thread count average: 3
Thread resource averages
Total CPU: 0.000275737701%
Privileged CPU: 0.000210522046%
User CPU: 0.000065215654%
Context switches /sec: 13
Module memory size: 620 KB
Total CPU: 0.000167852164%
Privileged CPU: 0.000166074377%
User CPU: 0.000001777788%
Module memory size: 72 KB
Process details
Runs as (owner): System
Integrety level: Undefined
Windows platform: 32-bit
Runs as a service: Yes
Parent Process
Process Command
C:\WINDOWS\arservice.exe
Service details
Name: ARSVC
Service type: Win32OwnProcess, InteractiveProcess
Image hashes
MD5: 9a0d9b2e263bede80fb79ddbad240ec1
SHA-1: c025ad39700cade0141636e4cb08b80d3a0b261c
SHA-256: 4a2f7dd8bbe4405bfc367b2e72d0fe4fbc15a1f6a2b3b8ae1117ab6a278219d2
PE image details
Subsystem: Windows Console
File packed: No
Import Table
advapi32.dll

CloseServiceHandle
OpenServiceW
OpenSCManagerW
ReportEventW
RegisterEventSourceW
DeregisterEventSource
SetServiceStatus
RegOpenKeyW
RegCloseKey
RegSetValueExW
RegCreateKeyW
CreateServiceW
RegDeleteKeyW
DeleteService
RegisterServiceCtrlHandlerExW
StartServiceCtrlDispatcherW
AdjustTokenPrivileges
LookupPrivilegeValueW
OpenProcessToken
ConvertStringSecurityDescriptorToSecurityDescriptorW
RegOpenKeyExW
RegQueryValueExW
gdi32.dll

kernel32.dll

CloseHandle
CreateEventW
SetConsoleCtrlHandler
InitializeCriticalSectionAndSpinCount
DeleteCriticalSection
DeviceIoControl
LeaveCriticalSection
EnterCriticalSection
GetCurrentProcess
CreateFileW
SetLastError
GetVersionExW
ResetEvent
WaitForSingleObject
GetSystemPowerStatus
SetThreadExecutionState
OpenEventW
ReleaseMutex
CreateMutexW
LocalFree
GetModuleHandleW
Sleep
WaitForMultipleObjects
GetVersionExA
ExitProcess
GetProcAddress
GetModuleHandleA
WriteFile
GetStdHandle
GetModuleFileNameA
UnhandledExceptionFilter
FreeEnvironmentStringsA
GetModuleFileNameW
GetEnvironmentStrings
FreeEnvironmentStringsW
GetEnvironmentStringsW
GetCommandLineA
GetCommandLineW
SetHandleCount
GetFileType
GetStartupInfoA
TlsFree
GetCurrentThreadId
TlsSetValue
TlsGetValue
TlsAlloc
HeapDestroy
HeapCreate
VirtualFree
HeapFree
HeapAlloc
RtlUnwind
InterlockedExchange
VirtualQuery
LoadLibraryA
InitializeCriticalSection
GetACP
GetOEMCP
GetCPInfo
VirtualAlloc
HeapReAlloc
LCMapStringA
WideCharToMultiByte
LCMapStringW
GetLocaleInfoA
GetStringTypeA
GetStringTypeW
FlushFileBuffers
VirtualProtect
GetSystemInfo
SetFilePointer
SetStdHandle
GetLastError
SetEvent
MultiByteToWideChar
ntdll.dll

NtTerminateProcess
RtlUnhandledExceptionFilter
powrprof.dll

ReadProcessorPwrScheme
GetCurrentPowerPolicies
WriteGlobalPwrPolicy
WriteProcessorPwrScheme
SetActivePwrScheme
GetActivePwrScheme
setupapi.dll

SetupDiGetDeviceInterfaceDetailW
SetupDiDestroyDeviceInfoList
SetupDiGetClassDevsW
SetupDiEnumDeviceInterfaces
user32.dll

RegisterClassW
DispatchMessageW
TranslateMessage
PeekMessageW
CreateWindowExW
GetDesktopWindow
RegisterDeviceNotificationW
GetDC
GetSystemMetrics
KillTimer
SetTimer
UnregisterDeviceNotification
PostMessageW
LockWorkStation
SetWindowLongW
GetWindowLongW
SetFocus
PostQuitMessage
SetCursor
DefWindowProcW
SystemParametersInfoW
GetKeyState
ReleaseDC
keybd_event
winmm.dll

mixerGetID
mixerGetControlDetailsW
mixerGetNumDevs
mixerClose
mixerGetLineControlsW
mixerSetControlDetails
mixerOpen
mixerGetLineInfoW