Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

17.28.0.1187 104620 50.00%
17.24.0.1024 102838 8.33%
17.21.0.908 102416 8.33%
17.20.0.873 102352 8.33%
17.18.0.802 102146 8.33%
17.13.0.553 101440 8.33%
17.13.0.537 101386 8.33%

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
RegOpenKeyExW, InitiateSystemShutdownExW, IsValidSid, SetSecurityDescriptorDacl, InitializeSecurityDescriptor, RegCloseKey, RegSetValueExW, RegCreateKeyExW, RegQueryValueExW, RegOpenCurrentUser, RegDeleteValueW, AdjustTokenPrivileges, LookupPrivilegeValueW, OpenProcessToken, GetUserNameW, GetTokenInformation, RegDeleteKeyW, RegEnumKeyExW, RegQueryValueExA, RegOpenKeyExA, SetNamedSecurityInfoW, SetEntriesInAclW, BuildExplicitAccessWithNameW, ConvertSidToStringSidW
comctl32.dll
InitializeFlatSB, FlatSB_SetScrollProp
gdi32.dll
CreateRoundRectRgn, CreatePolygonRgn
htmlayout.dll
HTMLayoutSetElementState, HTMLayoutGetNthChild, HTMLayoutUpdateElementEx, HTMLayoutUpdateElement, HTMLayoutVisitElements, HTMLayoutGetRootElement, HTMLayoutPostEvent, HTMLayoutSetElementHtml, HTMLayoutSetElementInnerText16, HTMLayoutGetElementHwnd, HTMLayoutSetAttributeByName, HTMLayoutGetElementHtml, HTMLayout_UnuseElement, HTMLayout_UseElement, HTMLayoutWindowDetachEventHandler, HTMLayoutGetElementLocation, HTMLayoutWindowAttachEventHandler, HTMLayoutSelectElementsW, HTMLayoutDataReady, HTMLayoutProcND, HTMLayoutSetCallback, HTMLayoutLoadFile, HTMLayoutSelectElements, HTMLayoutLoadHtmlEx, HTMLayoutGetAttributeByName, HTMLayoutSetOption, HTMLayoutSetStyleAttribute
kernel32.dll
GetCurrentThreadId, GetUserDefaultLCID, WideCharToMultiByte, MultiByteToWideChar, lstrlenA, InitializeCriticalSection, CreateSemaphoreW, ReleaseSemaphore, DeleteCriticalSection, GetModuleFileNameW, LoadLibraryExW, lstrlenW, QueryPerformanceCounter, GetCommandLineW, FindClose, FindFirstFileW, WTSGetActiveConsoleSessionId, ResumeThread, CreateDirectoryW, GetACP, CopyFileW, LocalFree, InterlockedDecrement, QueryPerformanceFrequency, WaitForMultipleObjects, CreateProcessW, GlobalAddAtomW, OutputDebugStringW, OpenMutexW, OpenEventW, ReleaseMutex, GetCurrentProcessId, GetSystemInfo, GetLastError, HeapAlloc, GetProcessHeap, GetTempFileNameW, GetTempPathW, DeleteFileW, OpenProcess, GetFileSizeEx, CreateFileW, GetDriveTypeW, ProcessIdToSessionId, Process32NextW, Process32FirstW, CreateToolhelp32Snapshot, GetDiskFreeSpaceExW, ResetEvent, SetPriorityClass, GlobalUnlock, GlobalLock, GlobalAlloc, GetPrivateProfileStringW, MoveFileW, CompareFileTime, GetFileTime, GetVersion, GetShortPathNameW, InterlockedIncrement, ReadFile, FileTimeToSystemTime, FindNextFileA, FindFirstFileA, GetModuleFileNameA, SetLastError, ExpandEnvironmentStringsW, GetModuleHandleW, GetTimeFormatW, GetDateFormatW, GetEnvironmentVariableW, GetCurrentProcess, CreateMutexW, CreateEventW, CreateThread, GetTickCount, GetFileAttributesW, TryEnterCriticalSection, SetEvent, WaitForSingleObject, TerminateThread, LeaveCriticalSection, EnterCriticalSection, CloseHandle, LoadLibraryW, GetVersionExW, FindResourceExW, FindResourceW, Sleep, LoadResource, LockResource, SizeofResource, InitializeCriticalSectionAndSpinCount, HeapDestroy, HeapReAlloc, HeapSize, GetProcAddress, FreeLibrary, HeapFree, IsProcessorFeaturePresent, IsDebuggerPresent, UnhandledExceptionFilter, TerminateProcess, GetSystemTimeAsFileTime, SetUnhandledExceptionFilter, DecodePointer, EncodePointer, GetStartupInfoW, HeapSetInformation, RaiseException, InterlockedExchange, SetErrorMode, InterlockedCompareExchange
mfc100u.dll
DllMain
msvcp100.dll
DllMain
msvcr100.dll
DllMain
ole32.dll
CoInitialize, StringFromGUID2, CoGetObject, CoTaskMemAlloc, CoCreateInstance, CoUninitialize
rasapi32.dll
RasGetEntryPropertiesW
shell32.dll
ShellExecuteExW, SHGetSpecialFolderPathW, SHGetFolderPathW, ShellExecuteW, DragFinish, DragQueryFileW, Shell_NotifyIconW
shlwapi.dll
SHGetValueW, PathIsRelativeW, PathRemoveFileSpecW, PathAddBackslashW, UrlCanonicalizeW, PathStripPathW, PathRemoveExtensionW, PathAppendW, PathCombineW, PathFileExistsW, StrStrIW, PathQuoteSpacesW, PathCanonicalizeW, PathIsDirectoryA, StrDupW
user32.dll
SetActiveWindow, DefDlgProcW, IsClipboardFormatAvailable, IsDialogMessageW, CreateDialogIndirectParamW, GetClipboardData, GetActiveWindow, wsprintfW, GetClientRect, GetMessagePos, TrackPopupMenu, SetMenuDefaultItem, LoadMenuW, GetSubMenu, LoadIconW, MonitorFromRect, GetParent, SetWindowTextW, SetClassLongW, OpenClipboard, EmptyClipboard, SetClipboardData, CloseClipboard, RegisterWindowMessageW, GetMessageW, TranslateMessage, CreateWindowExW, UpdateWindow, RegisterClassExW, PostQuitMessage, SetPropW, DefWindowProcW, BeginPaint, EndPaint, UnregisterDeviceNotification, GetDesktopWindow, RegisterDeviceNotificationW, RegisterHotKey, FindWindowW, DestroyWindow, DestroyIcon, UnregisterHotKey, GetLastInputInfo, GetLastActivePopup, IsWindowVisible, SendInput, EnumWindows, GetPropW, LoadStringW, RemoveMenu, ModifyMenuW, EnableMenuItem, DeleteMenu, GetThreadDesktop, GetUserObjectInformationW, GetAncestor, InvalidateRect, MapWindowPoints, MoveWindow, OffsetRect, SetWindowRgn, GetWindowRect, MonitorFromWindow, GetMonitorInfoW, SetWindowPos, IsIconic, ShowWindow, GetForegroundWindow, SetForegroundWindow, BringWindowToTop, GetWindowThreadProcessId, AttachThreadInput, IsWindow, GetClassNameW, SendMessageW, GetSystemMetrics, PeekMessageW, DispatchMessageW, MsgWaitForMultipleObjects, AllowSetForegroundWindow, GetWindowLongW, SetWindowLongW, SystemParametersInfoW, EnableWindow, SetLayeredWindowAttributes, KillTimer, SetTimer, PostMessageW, SetRect
version.dll
GetFileVersionInfoSizeA, GetFileVersionInfoA, VerQueryValueA
winmm.dll
timeGetTime
wtsapi32.dll
WTSEnumerateSessionsW, WTSFreeMemory

bdagent.exe

Bitdefender 2014 by Bitdefender SRL (Signed)

Remove bdagent.exe
Version:   17.13.0.537 101386
MD5:   d5e98b96daacacabc623333709a29f41
SHA1:   ef5cd6d1f18ac4f1160eedd53cce9436875e6fbd
SHA256:   520011d549969353d93af05a05c10f827678e6bb549f55465ca28c55f627faf4

Overview

bdagent.exe executes as a process with the local user's privileges. It is set to be start when the PC boots and any user logs into Windows (added to the Run registry key for the all users under the local machine). It is installed with a couple of know programs including Bitdefender Total Security published by Bitdefender, Bitdefender Antivirus Plus from Bitdefender and Bitdefender Antivirus Plus by Bitdefender. The assembly utilizes the .NET run-time framework (which is required to be installed on the PC). The file is digitally signed by Bitdefender SRL which was issued by the VeriSign certificate authority (CA).

DetailsDetails

File name:bdagent.exe
Publisher:Bitdefender
Product name:Bitdefender 2014
Description:Bitdefender Agent
Typical file path:C:\Program Files\bitdefender\bitdefender\bdagent.exe
File version:17.13.0.537 101386
Size:1.64 MB (1,716,832 bytes)
Build date:6/20/2013 9:15 AM
Certificate
Issued to:Bitdefender SRL
Authority (CA):VeriSign
Effective date:Saturday, May 12, 2012
Expiration date:Thursday, May 1, 2014
Digital DNA
File packed:No
Code language:Microsoft Visual C# / Basic .NET
.NET CLR:Yes
.NET NGENed:No
More details

ResourcesPrograms

The following programs will install this file
Bitdefender
12% remove
Bitdefender Total Security is the acknowledged Antivirus of the Year. With a non-intrusive and extremely fast scanning technology, it offers the ultimate silent security against e-threats. Experience the ultimate anti-malware defense at an incredible speed, without slowdowns! Bitdefender Photon™ is an innovative antivirus technology that accelerates scanning speed by gradually adapting to your PC. Keeps hackers at bay by automatically o...
Bitdefender
9% remove
Bitdefender Antivirus Plus is the acknowledged Antivirus of the Year. With a non-intrusive and extremely fast scanning technology, it offers essential silent security against e-threats. Experience the best antivirus at an incredible speed, without slowdowns! Bitdefender Photon™ is an innovative antivirus technology that accelerates scanning speed by gradually adapting to your PC. Bitdefender Safepay™ safeguards your payments and also au...
Bitdefender
9% remove
Bitdefender Internet Security is the acknowledged Antivirus of the Year. With a non-intrusive and extremely fast scanning technology, it offers enhanced silent security against e-threats. Bitdefender Safepay™ safeguards your payments and also automatically fills in your account information. Surf the Internet and socialize without worries. Your private information cannot be seen or stolen by hackers. Keeps hackers at bay by automatical...

BehaviorsBehaviors

Startup files (all users) run
Runs under the registry key 'HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run'
  • 'Bdagent' → "C:\Program Files\Bitdefender\Bitdefender\bdagent.exe"
Network connections
  • [UDP] listens on port 63601

  • ResourcesResource utilization

    (Note: statistics below are averages based on a minimum sample size of 200 unique participants)
    Averages
     
    CPU
    Total CPU:0.00047307%
    0.028634%
    Kernel CPU:0.00021291%
    0.013761%
    User CPU:0.00026016%
    0.014873%
    Kernel CPU time:23,712 ms/min
    100,923,805ms/min
    CPU cycles:8,726,628/sec
    17,470,203/sec
    Context switches:75/sec
    284/sec
    Memory
    Private memory:16.64 MB
    21.59 MB
    Private (maximum):23 MB
    Private (minimum):560 KB
    Non-paged memory:16.64 MB
    21.59 MB
    Virtual memory:159.55 MB
    140.96 MB
    Virtual memory (peak):174.99 MB
    169.69 MB
    Working set:5.07 MB
    18.61 MB
    Working set (peak):24.48 MB
    37.95 MB
    Page faults:20,525,567/min
    2,039/min
    I/O
    I/O read transfer:22.69 KB/sec
    1.02 MB/min
    I/O read operations:693/sec
    343/min
    I/O write transfer:9.25 KB/sec
    274.99 KB/min
    I/O write operations:286/sec
    227/min
    I/O other transfer:63 Bytes/sec
    448.09 KB/min
    I/O other operations:16/sec
    1,671/min
    Resource allocations
    Threads:23
    12
    Handles:638
    600
    GUI GDI count:154
    103
    GUI GDI peak:161
    142
    GUI USER count:35
    49
    GUI USER peak:41
    71

    BehaviorsProcess properties

    Tray notification:Yes
    Integrety level:High
    Platform:64-bit
    Command line:"C:\Program Files\bitdefender\bitdefender\bdagent.exe"
    Owner:User

    ResourcesThreads

    Averages
     
    bdagent.exe (main module)
    Total CPU:0.03218526%
    0.272967%
    Kernel CPU:0.02097173%
    0.107585%
    User CPU:0.01121353%
    0.165382%
    CPU cycles:7,424,013/sec
    5,741,424/sec
    Context switches:52/sec
    79/sec
    Memory:1.65 MB
    1.16 MB
    connector.dll (Bitdefender 2014 by Bitdefender)
    Total CPU:0.00462730%
    Kernel CPU:0.00307865%
    User CPU:0.00154865%
    CPU cycles:253,050/sec
    Context switches:3/sec
    Memory:152 KB
    npcomm.dll (BitDefender 16 by BitDefender LLC)
    Total CPU:0.00273347%
    Kernel CPU:0.00208975%
    User CPU:0.00064372%
    CPU cycles:195,731/sec
    Context switches:2/sec
    Memory:136 KB
    popup.dll (Bitdefender 2014 by Bitdefender)
    Total CPU:0.00054134%
    Kernel CPU:0.00005600%
    User CPU:0.00048534%
    CPU cycles:21,222/sec
    Memory:496 KB
    framework.dll (Bitdefender 2014 by Bitdefender)
    Total CPU:0.00046656%
    Kernel CPU:0.00003733%
    User CPU:0.00042923%
    CPU cycles:53,404/sec
    Memory:196 KB

    Common loaded modules

    These are modules that are typiclaly loaded within the context of this process.

    Windows OS versionsDistribution by Windows OS

    OS versiondistribution
    Windows 8 33.33%
    Windows 7 Ultimate 16.67%
    Windows 8.1 8.33%
    Windows 8.1 Pro with Media Center 8.33%
    Windows 8.1 Pro 8.33%
    Windows 7 Home Premium 8.33%
    Microsoft Windows XP 8.33%
    Windows 7 Professional 8.33%

    Distribution by countryDistribution by country

    United States installs about 58.33% of Bitdefender 2014.

    OEM distributionDistribution by PC manufacturer

    PC Manufacturerdistribution
    Hewlett-Packard 33.33%
    Lenovo 33.33%
    Apple 16.67%
    Acer 8.33%
    Samsung 8.33%
    Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

    Download it for FREE