File details
File name: plavservice.exe
Name: ParetoLogic Anti-Virus PLUS
Description: PLAV Service
Version: 2.0.0.0
Product version: 7.0.1.4
Size: 586.92 KB
Original file name: PLAVService.exe
Resource utilization
 | CPU utilization averages |
Total CPU: 0.0000374532%
Privileged CPU:
0.0000053105%

User CPU:
0.00003214264817%

Privileged CPU time: 1564190.83 ms
Privileged CPU time /min: 530 ms
CPU cycle count:
1,143,633,411
CPU cycle count /min: 1,272,940,137
 | Memory utilization averages |
Committed memory:
867.07 MB
Peak committed memory: 1.67 GB
Paged memory:
251.05 MB
Peak paged memory: 535.29 MB
Paged system memory:
892.8 KB
Non-paged system memory: 425.99 KB
Working set memory:
221.78 MB
Peak working set memory: 824.95 MB
Min working set memory: 4.55 MB
Private memory:
251.05 MB
Page faults:
84,399,001
Page faults /min: 28,595
 | Process I/O averages |
Total read operations:
2,348,514
Read operations /min: 796
Total read transfer: 226.92 MB
Read transfer /min: 8.4 MB
Total write operations:
79,214
Write operations /min: 27
Total write transfer: 83.61 MB
Write transfer /min: 29.01 KB
Total other operations:
18,631,190
Other operations /min: 6,312
Total other transfer: 1.7 GB
Other Transfer /min: 1.98 MB
Resources
Handle count average: 3,753
Thread count average: 49
Thread resource averages
Total CPU: 0.402429107423%
Privileged CPU: 0.027065202965%
User CPU: 0.375363904459%
CPU Cycle count /sec: 9,056,839
Module memory size: 600 KB
ntdll.dll

Total CPU: 0.002931421082%
Privileged CPU: 0.002858690183%
User CPU: 0.000072730899%
CPU Cycle count /sec: 78,796
Module memory size: 1.66 MB
wow64.dll

Total CPU: 0.001705191587%
Privileged CPU: 0.000852595793%
User CPU: 0.000852595793%
CPU Cycle count /sec: 2,504
Module memory size: 252 KB
Process details
Runs as (owner): System
Integrety level: System
Windows platform: 64-bit
Runs as a service: Yes
Parent Process
Process Command
"C:\Program Files\Common Files\PLAV\PLAVservice.exe"
Service details
Name: PLAVService
Service type:
Win32OwnProcess
Description: “Provides scanning, cleaning, and quarantining of malware items.”
Network connectivity
TCP: ec2-107-23-37-165.compute-1.amazonaws.com on port 64555
Image hashes
MD5: 43d214b7e6bc6c84a4e33e353d488caa
SHA-1: ed1d75c03ddde22ca29c048ee0be22be5322590a
SHA-256: f9c1fb4573a573fd9452875dd616709ad1830d2d8b550ba00190f61d3c9bff18
PE image details
File packed: No