File details
File name: avp.exe
Name: Kaspersky Anti-Virus
Description: Kaspersky Anti-Virus
Version: 12.0.1.513
Size: 201.61 KB
Original file name: AVP.EXE
Digital certificate
Certificate authority:
VeriSign
Resource utilization
 | CPU utilization averages |
Total CPU: 0.0006906845%
Privileged CPU:
0.0003398941%

User CPU:
0.00035079039548%

Privileged CPU time: 683560787.25 ms
Privileged CPU time /min: 0 ms
CPU cycle count:
1,018,700,402
Context switches /sec:
587
 | Memory utilization averages |
Committed memory:
488.49 MB
Peak committed memory: 708.43 MB
Paged memory:
228.01 MB
Peak paged memory: 405.71 MB
Paged system memory:
406.69 KB
Non-paged system memory: 217.03 KB
Working set memory:
54.62 MB
Peak working set memory: 203.16 MB
Min working set memory: 6.42 MB
Private memory:
228.01 MB
Page faults:
77,039,837
Page faults /min: 0
 | Process I/O averages |
Total read operations:
1,607,312
Total read transfer: 189.97 MB
Total write operations:
60,281
Total write transfer: 140.64 MB
Total other operations:
11,880,822
 | GUI Object Averages |
GDI objects:
80
Peak GDI objects: 88
USER objects:
37
Peak USER objects: 42
Resources
Handle count average: 1,714
Thread count average: 81
Thread resource averages
Total CPU: 0.107082461434%
Privileged CPU: 0.032625930035%
User CPU: 0.074456531399%
CPU Cycle count /sec: 3,890,613
Context switches /sec: 10
Module memory size: 208 KB
ntdll.dll

Total CPU: 0.003415670020%
Privileged CPU: 0.002703915083%
User CPU: 0.000711754938%
CPU Cycle count /sec: 1,488,288
Context switches /sec: 3
Module memory size: 1.66 MB
wow64.dll

Total CPU: 0.002579667502%
Privileged CPU: 0.000457445596%
User CPU: 0.002122221906%
CPU Cycle count /sec: 98,288
Module memory size: 252 KB
Process details
Runs as (owner): System
Integrety level: High
Windows platform: 32-bit
Runs as a service: Yes
Parent Process
Process Commands
"C:\Programas\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe" -r
"C:\Programas\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe"
"C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe"
"C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe" -r
"C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe"
Service details
Name: Servizio Kaspersky Anti-Virus
Service name: AVP
Service type:
Win32OwnProcess
Description: “Protegge il computer da virus, software pericolosi, attacchi provenienti dalla rete, frodi via Internet e spam.”
Startup files (all users) run details
Name: AVP
Command: "C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe"
Network connectivity
TCP: KD111111111111.ppp-bb.dion.ne.jp on port 55303
TCP: auth.marvelheroes.com on port 59424
Image hashes
MD5: 6c9d5badc8f83d410a278717c2eea6f6
SHA-1: 5ffd311df3385cd154dfcc7857ac635e021f4f9d
SHA-256: b047e3f21d153a2e32fa907ee9830a4a9a152c3aa95fd978e61189eef6564d40
PE image details
File packed: No
Import Table
kernel32.dll

HeapCreate
HeapAlloc
HeapFree
GetProcessHeap
SetErrorMode
CreateProcessW
LoadLibraryExW
GetSystemDirectoryW
WideCharToMultiByte
GetModuleFileNameW
GetLastError
GetProcAddress
CloseHandle
OpenMutexW
InterlockedIncrement
InterlockedDecrement
LocalAlloc
FreeLibrary
InterlockedExchange
LoadLibraryA
RaiseException
EncodePointer
DecodePointer
GetModuleHandleW
ExitProcess
HeapReAlloc
GetCommandLineW
HeapSetInformation
GetStartupInfoW
VirtualQuery
Sleep
HeapSize
WriteFile
GetStdHandle
InitializeCriticalSectionAndSpinCount
DeleteCriticalSection
LeaveCriticalSection
EnterCriticalSection
LoadLibraryW
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
TerminateProcess
GetCurrentProcess
TlsAlloc
TlsGetValue
TlsSetValue
TlsFree
SetLastError
GetCurrentThreadId
FreeEnvironmentStringsW
GetEnvironmentStringsW
SetHandleCount
GetFileType
QueryPerformanceCounter
GetTickCount
GetCurrentProcessId
GetSystemTimeAsFileTime
RtlUnwind
GetCPInfo
GetACP
GetOEMCP
IsValidCodePage
IsProcessorFeaturePresent
LCMapStringW
MultiByteToWideChar
GetStringTypeW