Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

1, 0, 1, 35 38.89%
1, 0, 0, 0 27.78%
1, 0, 0, 0 5.56%
1, 0, 0, 0 11.11%
1, 0, 0, 0 16.67%

Relationships

Parent process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
ConvertStringSecurityDescriptorToSecurityDescriptorW, RegCloseKey, RegOpenKeyA, GetSecurityDescriptorSacl, SetSecurityInfo, RegDeleteValueA, RegOpenKeyExA, RegCreateKeyExA, RegQueryValueExA, RegSetValueExA
kernel32.dll
UnmapViewOfFile, FreeLibrary, GetTickCount, WriteFile, InitializeCriticalSection, Sleep, CreateDirectoryA, FindFirstFileA, GetProcAddress, RemoveDirectoryA, CopyFileA, FindClose, LoadLibraryA, CreateFileMappingA, MoveFileA, FindNextFileA, GetModuleHandleA, DeleteCriticalSection, CloseHandle, DeleteFileA, GetCurrentProcess, GlobalAlloc, GetLastError, GlobalFree, OpenMutexA, GetModuleFileNameA, CreateMutexA, GetVersionExA, LocalFree, MapViewOfFile, SystemTimeToFileTime, SetFileTime, GetFileAttributesA, ReadFile, GetCurrentDirectoryA, GetSystemTime, LocalFileTimeToFileTime, GetStringTypeW, GetStringTypeA, FlushFileBuffers, SetStdHandle, GetLocaleInfoA, GetCurrentProcessId, QueryPerformanceCounter, GetEnvironmentStringsW, FreeEnvironmentStringsW, GetEnvironmentStrings, FreeEnvironmentStringsA, GetConsoleMode, GetConsoleCP, LCMapStringW, MultiByteToWideChar, WideCharToMultiByte, LCMapStringA, IsValidCodePage, GetOEMCP, GetACP, CreateFileA, WriteConsoleA, GetConsoleOutputCP, WriteConsoleW, SetEndOfFile, GetProcessHeap, SetFilePointer, GetCPInfo, HeapReAlloc, VirtualAlloc, GetModuleHandleW, ExitProcess, TerminateProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsDebuggerPresent, GetSystemTimeAsFileTime, HeapFree, HeapAlloc, GetCommandLineA, GetStartupInfoA, RaiseException, RtlUnwind, TlsGetValue, TlsAlloc, TlsSetValue, TlsFree, InterlockedIncrement, SetLastError, GetCurrentThreadId, InterlockedDecrement, GetStdHandle, LeaveCriticalSection, EnterCriticalSection, InitializeCriticalSectionAndSpinCount, HeapSize, SetHandleCount, GetFileType, HeapCreate, VirtualFree
shell32.dll
SHGetFolderPathA, ShellExecuteA
user32.dll
wsprintfA, MessageBoxIndirectA, IsDialogMessageA, TranslateMessage, PeekMessageA, GetDesktopWindow, GetLastInputInfo, DispatchMessageA
version.dll
VerQueryValueA, GetFileVersionInfoA, GetFileVersionInfoSizeA
wininet.dll
HttpSendRequestA, InternetConnectA, HttpQueryInfoA, InternetOpenA, InternetCloseHandle, InternetReadFile, HttpOpenRequestA

adawarebp.exe

Anti-phishing Domain Advisor by Lavasoft Limited (Signed)

Remove adawarebp.exe
Version:   1, 0, 0, 0
MD5:   54cb57442f5ac8ba5e98a7745d455c18
SHA1:   4a990495bea47888cd66a1b0a76c43f3089a330b
SHA256:   362a87b8d5b7f5258301a6d5cd78d046f32dfd8826a2fdf6a0006a5695b389b3

What is adawarebp.exe?

Ad-Aware Browsing Protection is part of Ad-Aware, an anti-spyware and anti-virus program developed by Lavasoft that detects and removes malware, spyware and adware on a user's computer. According to Lavasoft, Ad-Aware detects spyware, computer viruses, dialers, Trojans, bots, rootkits, data miners, aggressive advertising, parasites, browser hijackers, and tracking components.

About adawarebp.exe (from Lavasoft Limited)

Built upon our legendary anti-spyware and antivirus protection, Ad-Aware real-time web-filtering technology safeguards your PC against phishing attacks and online scams, allowing you to stay protected

DetailsDetails

File name:adawarebp.exe
Publisher:Lavasoft
Product name:Anti-phishing Domain Advisor
Description:Ad-Aware Browsing Protection and Anti-Phishing
Typical file path:C:\ProgramData\ad-aware browsing protection\adawarebp.exe
File version:1, 0, 0, 0
Product version:1.0
Size:541.41 KB (554,408 bytes)
Build date:5/13/2013 3:46 PM
Certificate
Issued to:Lavasoft Limited
Authority (CA):VeriSign
Digital DNA
File packed:No
.NET CLR:No
More details

ResourcesPrograms

The following programs will install this file
Lavasoft
  52% remove
The Ad-Aware Browsing Protection add-in changes the default search and home page URLs of the user's web browsers. Installs a Visicom toolbar in your Web browser that collects and stores information about your web browsing habits and sends this information to Visicom via applicationstat.com so they can suggest services or provide ads via the toolbar. Ad-Aware Browsing Protection will also modify the web browser settings for DNS error pag...

BehaviorsBehaviors

Startup files (all users) run
Runs under the registry key 'HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run'
  • 'Ad-Aware Browsing Protection' → "C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe"

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00005710%
0.028634%
Kernel CPU:0.00000461%
0.013761%
User CPU:0.00005249%
0.014873%
Kernel CPU time:30,420,195 ms/min
100,923,805ms/min
Context switches:12/sec
284/sec
Memory
Private memory:5.84 MB
21.59 MB
Private (maximum):15.4 MB
Private (minimum):12.7 MB
Non-paged memory:5.84 MB
21.59 MB
Virtual memory:98.79 MB
140.96 MB
Virtual memory (peak):134.36 MB
169.69 MB
Working set:14.98 MB
18.61 MB
Working set (peak):25.42 MB
37.95 MB
Resource allocations
Threads:3
12
Handles:231
600
GUI GDI count:9
103
GUI GDI peak:9
142
GUI USER count:2
49
GUI USER peak:5
71

BehaviorsProcess properties

Integrety level:Medium
Platform:64-bit
Command line:"C:\ProgramData\ad-aware browsing protection\adawarebp.exe"
Owner:User
Parent process:svchost.exe (Host Process for Windows Services by Microsoft Corporation)

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Home Premium 55.56%
Windows 7 Ultimate 22.22%
Windows 7 Professional 11.11%
Windows 7 Ultimate N 5.56%
Windows 8 Pro 5.56%

Distribution by countryDistribution by country

United Kingdom installs about 37.50% of Anti-phishing Domain Advisor.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Dell 53.33%
Hewlett-Packard 26.67%
Acer 20.00%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE