Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

9, 0, 1, 0 25.00%
8, 3, 1, 0 25.00%
8, 0, 0, 0 50.00%

Relationships

Parent process
Child process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
StartServiceW, RegQueryValueExW, RegCloseKey, AllocateAndInitializeSid, CheckTokenMembership, FreeSid, OpenProcessToken, GetTokenInformation, LookupAccountSidW, DuplicateTokenEx, LookupPrivilegeValueW, AdjustTokenPrivileges, SetTokenInformation, CreateProcessAsUserW, ImpersonateLoggedOnUser, SetSecurityDescriptorGroup, SetSecurityDescriptorSacl, CloseServiceHandle, SetServiceStatus, RegisterServiceCtrlHandlerW, StartServiceCtrlDispatcherW, OpenSCManagerW, CreateServiceW, ChangeServiceConfig2W, OpenServiceW, ChangeServiceConfigW, EnumServicesStatusExW, ControlService, QueryServiceStatusEx, DeleteService, RegOpenKeyExW, RegEnumValueW, RegisterEventSourceW, ReportEventW, DeregisterEventSource, InitializeSecurityDescriptor, SetSecurityDescriptorDacl, SetNamedSecurityInfoW, RevertToSelf, RegSetValueExW, RegCreateKeyExW
crypt32.dll
CertFindCertificateInStore, CertGetNameStringW, CertFreeCertificateContext, CertCloseStore, CryptMsgClose, CryptQueryObject, CryptMsgGetParam
kernel32.dll
ReadFile, WriteFile, CancelIo, FlushFileBuffers, DisconnectNamedPipe, CreateFileW, CreateNamedPipeW, ConnectNamedPipe, GetLogicalDriveStringsW, GetDriveTypeW, FindClose, FindFirstFileW, GetModuleFileNameW, FindFirstFileExW, FindNextFileW, ExpandEnvironmentStringsW, SearchPathW, GetCurrentThreadId, GetOverlappedResult, HeapFree, GetProcessHeap, OutputDebugStringW, FormatMessageW, HeapAlloc, TerminateProcess, SetUnhandledExceptionFilter, SetErrorMode, HeapSetInformation, LocalFree, GetModuleHandleW, QueryDosDeviceW, OpenProcess, CreateToolhelp32Snapshot, Process32FirstW, Process32NextW, GetVersionExW, GetLocalTime, CreateProcessW, GetSystemInfo, CreateMutexW, MultiByteToWideChar, WideCharToMultiByte, GetSystemTime, GetDateFormatW, GetComputerNameW, IsProcessorFeaturePresent, GetSystemDefaultUILanguage, GlobalMemoryStatusEx, GetTimeZoneInformation, SystemTimeToFileTime, InterlockedExchange, GetCurrentThread, SetThreadPriority, OpenMutexW, ResetEvent, GetFileAttributesW, GetCurrentProcessId, CopyFileW, ProcessIdToSessionId, CreateThread, InterlockedCompareExchange, GetCurrentProcess, SetProcessWorkingSetSize, TryEnterCriticalSection, DeleteFileW, InterlockedIncrement, InterlockedDecrement, GetTickCount, CreateEventW, DebugBreak, IsDebuggerPresent, SetCurrentDirectoryW, TerminateThread, WaitForSingleObject, WaitForMultipleObjects, SetConsoleScreenBufferSize, GetStdHandle, GetConsoleScreenBufferInfo, SetConsoleCtrlHandler, SetConsoleTitleW, AllocConsole, SetEvent, ReleaseMutex, GetLastError, CloseHandle, Sleep, GetSystemTimeAsFileTime, QueryPerformanceCounter, LoadLibraryW, GetProcAddress, FreeLibrary, LeaveCriticalSection, EnterCriticalSection, DeleteCriticalSection, MoveFileW, VirtualFree, VirtualAlloc, lstrlenA, UnhandledExceptionFilter, InitializeCriticalSection
msvcp90.dll
DllMain
msvcr90.dll
DllMain
ole32.dll
CoInitializeEx, CoUninitialize, CoInitializeSecurity, CoCreateInstance, CoSetProxyBlanket, CoInitialize, CoTaskMemFree
psapi.dll
GetModuleFileNameExW, GetModuleBaseNameW, EnumProcesses
rpapi.dll
RP_SetLogVerbosity, RP_SetReportCallback, RP_SetResponseCallback, RP_SetQueryCallback, RP_SetTimeoutCallback, RP_Start, RP_SetSubjectResponse, RP_SetCategoryResponse, RP_Enable, RP_Stop, RP_CreateCategoryRule
rpcrt4.dll
UuidToStringW, UuidCreate, RpcStringFreeW
shell32.dll
SHCreateDirectoryExW, SHGetFolderPathW
user32.dll
GetLastInputInfo, MessageBoxW, GetSystemMetrics, wsprintfW
userenv.dll
CreateEnvironmentBlock, DestroyEnvironmentBlock
version.dll
GetFileVersionInfoW, VerQueryValueW, GetFileVersionInfoSizeW
wininet.dll
HttpSendRequestW, InternetQueryOptionW, InternetOpenW, InternetSetStatusCallbackW, HttpOpenRequestW, InternetConnectW, InternetCloseHandle, InternetReadFile, HttpQueryInfoW, InternetSetOptionW
wintrust.dll
WinVerifyTrust, CryptCATAdminAcquireContext, CryptCATAdminEnumCatalogFromHash, CryptCATCatalogInfoFromContext, CryptCATAdminReleaseCatalogContext, CryptCATAdminReleaseContext, CryptCATAdminCalcHashFromFileHandle

AAWService.exe

Ad-Aware Service Application by Lavasoft AB (Signed)

Remove AAWService.exe
Version:   8, 0, 0, 0
MD5:   8defdefd8e46216a61c69458b40d1043
SHA1:   a7f0a9db01052332c0ebb87501f906c7aa8064b1
SHA256:   016ce71ef6d6065fa633bae1d62a4ff35b18b356119afad267183d114065e985

Overview

aawservice.exe runs as a service under the name Lavasoft Ad-Aware Service with extensive SYSTEM privileges (full administrator access). This is typically installed with the program Ad-Aware published by Lavasoft. The file is digitally signed by Lavasoft AB which was issued by the VeriSign certificate authority (CA).

DetailsDetails

File name:aawservice.exe
Publisher:Lavasoft
Product name:Ad-Aware Service Application
Typical file path:C:\Program Files\lavasoft\ad-aware\aawservice.exe
File version:8, 0, 0, 0
Size:1.12 MB (1,169,232 bytes)
Certificate
Issued to:Lavasoft AB
Authority (CA):VeriSign
Effective date:Thursday, October 9, 2008
Expiration date:Tuesday, October 11, 2011
Digital DNA
PE subsystem:Windows Console
File packed:No
Code language:Microsoft Visual C++ 9.0
.NET CLR:No
More details

ResourcesPrograms

The following program will install this file
Lavasoft
9% remove
Ad-Aware is an anti-spyware and anti-virus program developed by Lavasoft that detects and removes malware, spyware and adware on a user's computer. According to Lavasoft, Ad-Aware detects spyware, computer viruses, dialers, Trojans, bots, rootkits, data miners, aggressive advertising, parasites, browser hijackers, and tracking components.

BehaviorsBehaviors

Service
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
  • 'Lavasoft Ad-Aware Service'

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00202597%
0.028634%
Kernel CPU:0.00151360%
0.013761%
User CPU:0.00051237%
0.014873%
Kernel CPU time:140,417 ms/min
100,923,805ms/min
CPU cycles:31,958,396/sec
17,470,203/sec
Memory
Private memory:76.55 MB
21.59 MB
Private (maximum):95.98 MB
Private (minimum):42.34 MB
Non-paged memory:76.55 MB
21.59 MB
Virtual memory:414.51 MB
140.96 MB
Virtual memory (peak):479.11 MB
169.69 MB
Working set:95.78 MB
18.61 MB
Working set (peak):399.99 MB
37.95 MB
Page faults:26,073,838/min
2,039/min
I/O
I/O read transfer:2.16 MB/sec
1.02 MB/min
I/O read operations:432/sec
343/min
I/O write transfer:180.96 KB/sec
274.99 KB/min
I/O write operations:45/sec
227/min
I/O other transfer:16.67 KB/sec
448.09 KB/min
I/O other operations:486/sec
1,671/min
Resource allocations
Threads:25
12
Handles:801
600

BehaviorsProcess properties

Integrety level:System
Platform:32-bit
Command line:"C:\Program Files\lavasoft\ad-aware\aawservice.exe"
Owner:SYSTEM
Windows Service
Service name:Lavasoft Ad-Aware Service
Description:“Ad-Aware Service”
Type:Win32OwnProcess, InteractiveProcess
Parent process:services.exe (Services and Controller app by Microsoft)

ResourcesThreads

Averages
 
MSVCR90.dll
Total CPU:0.26194926%
0.272967%
Kernel CPU:0.11380311%
0.107585%
User CPU:0.14814615%
0.165382%
CPU cycles:7,690,308/sec
5,741,424/sec
Context switches:4/sec
79/sec
Memory:652 KB
1.16 MB
CRYPT32.dll
Total CPU:0.01832355%
Kernel CPU:0.00000000%
User CPU:0.01832355%
CPU cycles:9,732/sec
Memory:1.12 MB
AAWService.exe (main module)
Total CPU:0.00603409%
Kernel CPU:0.00395305%
User CPU:0.00208104%
CPU cycles:178,385/sec
Memory:1.14 MB
rpapi.dll
Total CPU:0.00365546%
Kernel CPU:0.00123949%
User CPU:0.00241596%
CPU cycles:121,152/sec
Memory:268 KB
ntdll.dll
Total CPU:0.00047117%
Kernel CPU:0.00041882%
User CPU:0.00005235%
CPU cycles:20,734/sec
Memory:1.23 MB

Common loaded modules

These are modules that are typiclaly loaded within the context of this process.

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Home Premium 75.00%
Windows Vista Home Premium 25.00%

Distribution by countryDistribution by country

United States installs about 75.00% of Ad-Aware Service Application.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Toshiba 66.67%
Hewlett-Packard 33.33%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE