Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

8.17.13.2049 86.67%
8.17.13.2049 13.33%
(Note, NVIDIA Corporation publishes each variation of this file with the same version, but the hashes are unique.)

Relationships

Parent process
Child process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
RegEnumValueW, RegGetValueW, RegSetValueExW, RegisterTraceGuidsW, RegEnumKeyExW, ControlService, GetTraceEnableLevel, ConvertStringSecurityDescriptorToSecurityDescriptorW, UnregisterTraceGuids, SetServiceStatus, QueryServiceStatus, DuplicateTokenEx, GetTraceLoggerHandle, SetTokenInformation, RegQueryInfoKeyW, GetTraceEnableFlags, RegCreateKeyExW, RegisterServiceCtrlHandlerExW, OpenServiceW, TraceMessage, StartServiceCtrlDispatcherW, OpenSCManagerW, DeleteService, OpenProcessToken, CloseServiceHandle, CreateServiceW, RegCloseKey, RegOpenKeyExW, RegDeleteValueW, RegDeleteKeyW, CreateProcessAsUserW, RegQueryValueExW
kernel32.dll
WaitForSingleObject, InterlockedCompareExchange, SetEvent, OutputDebugStringW, GetModuleHandleW, GetSystemTimeAsFileTime, WriteFile, InitializeCriticalSection, GetProcessTimes, WideCharToMultiByte, LoadLibraryW, InitializeCriticalSectionAndSpinCount, Sleep, SizeofResource, CreateEventA, LeaveCriticalSection, TerminateProcess, GetModuleFileNameW, CreateFileW, MultiByteToWideChar, lstrlenW, RaiseException, InterlockedExchange, GetFileSizeEx, SetLastError, GetProcAddress, QueryPerformanceCounter, InterlockedExchangeAdd, CreateEventW, WaitForMultipleObjects, OpenEventW, QueryPerformanceFrequency, DeleteCriticalSection, GetCurrentThreadId, ReleaseMutex, LocalFree, ExpandEnvironmentStringsW, GetTickCount, CreateSemaphoreA, ReleaseSemaphore, DuplicateHandle, CreateThread, DeviceIoControl, GetLocaleInfoW, GetCurrentProcess, InterlockedDecrement, LoadLibraryExW, InterlockedIncrement, LoadResource, FreeLibrary, FindResourceW, CreateMutexW, GetCommandLineW, CloseHandle, lstrcmpiW, WTSGetActiveConsoleSessionId, GetLastError, GetSystemDirectoryW, RemoveDirectoryW, DeleteFileW, CreateDirectoryW, MoveFileW, ReadFile, FormatMessageA, EnterCriticalSection, GetFileAttributesW, CreateWaitableTimerA, SetWaitableTimer, SystemTimeToFileTime, ResetEvent, OpenEventA, GetProcessHeap, SetEnvironmentVariableA, CompareStringW, FlushFileBuffers, IsValidLocale, EnumSystemLocalesA, GetLocaleInfoA, GetUserDefaultLCID, WriteConsoleW, SetStdHandle, GetConsoleMode, GetConsoleCP, SetFilePointer, RtlUnwind, LocalAlloc, LoadLibraryA, HeapFree, HeapAlloc, GetTimeFormatA, GetDateFormatA, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsDebuggerPresent, EncodePointer, DecodePointer, VirtualProtect, VirtualAlloc, GetSystemInfo, VirtualQuery, GetCommandLineA, HeapSetInformation, GetStartupInfoW, HeapCreate, ExitProcess, GetStdHandle, IsProcessorFeaturePresent, GetCPInfo, GetACP, GetOEMCP, IsValidCodePage, TlsAlloc, TlsGetValue, TlsSetValue, TlsFree, GetTimeZoneInformation, HeapSize, HeapReAlloc, LCMapStringW, GetStringTypeW, GetModuleFileNameA, FreeEnvironmentStringsW, GetEnvironmentStringsW, SetHandleCount, GetFileType, GetCurrentProcessId
ole32.dll
CoTaskMemRealloc, StringFromGUID2, CoTaskMemFree, CoTaskMemAlloc, CoRevokeClassObject, StringFromCLSID, CoCreateInstance, CoInitializeSecurity, CoInitializeEx, CoRegisterClassObject, CoResumeClassObjects, CoCreateInstanceEx, CoAddRefServerProcess
setupapi.dll
SetupDiEnumDeviceInfo, SetupDiGetClassDevsW, SetupDiOpenDevRegKey, SetupDiDestroyDeviceInfoList, SetupDiGetDeviceRegistryPropertyW, CM_Get_DevNode_Status, SetupDiGetDeviceInstanceIdW
shlwapi.dll
SHSetValueW, PathAddBackslashW, StrStrIW, PathFindFileNameW, SHDeleteValueW
userenv.dll
CreateEnvironmentBlock, DestroyEnvironmentBlock
wtsapi32.dll
WTSQueryUserToken

nvvsvc.exe

NVIDIA Driver Helper Service, Version 320.49 by NVIDIA Corporation (Signed)

Remove nvvsvc.exe
Version:   8.17.13.2049
MD5:   25626309ad2f81d47c829ccb5e46e478
SHA1:   60f118674c16556560ef3662bdc802200ede38ad
SHA256:   d23f9f72c064b5d2a7979674703585345a78f7be88887794fc9ca2971818b3dc

Overview

nvvsvc.exe runs as a service under the name nvsvc (nvsvc) with extensive SYSTEM privileges (full administrator access). The assembly utilizes the .NET run-time framework (which is required to be installed on the PC). The file is digitally signed by NVIDIA Corporation which was issued by the VeriSign certificate authority (CA).

DetailsDetails

File name:nvvsvc.exe
Publisher:NVIDIA Corporation
Product name:NVIDIA Driver Helper Service, Version 320.49
Typical file path:C:\Windows\System32\nvvsvc.exe
Original name:nvsvc32.exe
File version:8.17.13.2049
Size:863.78 KB (884,512 bytes)
Build date:6/21/2013 5:22 AM
Certificate
Issued to:NVIDIA Corporation
Authority (CA):VeriSign
Effective date:Thursday, September 1, 2011
Expiration date:Monday, September 1, 2014
Digital DNA
File packed:No
Code language:Microsoft Visual C# / Basic .NET
.NET CLR:Yes
.NET NGENed:No
More details

BehaviorsBehaviors

Services
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
  • nvsvc
  • 'nvsvc' (NVIDIA Display Driver Service)

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00034041%
0.028634%
Kernel CPU:0.00022572%
0.013761%
User CPU:0.00011469%
0.014873%
Kernel CPU time:372,715 ms/min
100,923,805ms/min
CPU cycles:34,586/sec
17,470,203/sec
Context switches:2/sec
284/sec
Memory
Private memory:4.45 MB
21.59 MB
Private (maximum):13.18 MB
Private (minimum):7.64 MB
Non-paged memory:4.45 MB
21.59 MB
Virtual memory:78.88 MB
140.96 MB
Virtual memory (peak):83.13 MB
169.69 MB
Working set:11.59 MB
18.61 MB
Working set (peak):13.59 MB
37.95 MB
Page faults:5,162/min
2,039/min
I/O
I/O read transfer:0 Bytes/sec
1.02 MB/min
I/O read operations:1/sec
343/min
I/O write transfer:2 Bytes/sec
274.99 KB/min
I/O write operations:1/sec
227/min
I/O other transfer:739 Bytes/sec
448.09 KB/min
I/O other operations:3/sec
1,671/min
Resource allocations
Threads:5
12
Handles:160
600
GUI GDI count:12
103
GUI GDI peak:15
142
GUI USER count:6
49
GUI USER peak:6
71

BehaviorsProcess properties

Integrety level:System
Platform:64-bit
Command lines:
  • "C:\Windows\System32\nvvsvc.exe"
  • C:\Windows\System32\nvvsvc.exe -session -first
  • C:\Windows\System32\nvvsvc.exe -session
Owner:SYSTEM
Windows Service
Service name:nvsvc
Display name:nvsvc
Description:“Provides system and desktop level support to the NVIDIA display driver”
Type:Win32OwnProcess
Parent processes:

ResourcesThreads

Averages
 
ntdll.dll
Total CPU:0.00132291%
0.272967%
Kernel CPU:0.00132291%
0.107585%
User CPU:0.00000000%
0.165382%
CPU cycles:317/sec
5,741,424/sec
Memory:1.66 MB
1.16 MB
NVSVC64.DLL
Total CPU:0.00012438%
Kernel CPU:0.00005114%
User CPU:0.00007324%
CPU cycles:38,715/sec
Context switches:1/sec
Memory:3.4 MB
nvvsvc.exe (main module)
Total CPU:0.00004775%
Kernel CPU:0.00004403%
User CPU:0.00000372%
CPU cycles:2,304/sec
Memory:884 KB
nvapi64.dll (NVIDIA Windows drivers by NVIDIA)
Total CPU:0.00004467%
Kernel CPU:0.00004467%
User CPU:0.00000000%
CPU cycles:1,019/sec
Memory:2.95 MB

Common loaded modules

These are modules that are typiclaly loaded within the context of this process.

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Home Premium 43.33%
Windows 7 Ultimate 20.00%
Windows 8.1 Single Language 10.00%
Windows 8 Pro 10.00%
Windows 8 Pro with Media Center 10.00%
Windows Vista Ultimate 3.33%
Windows 7 Professional 3.33%

Distribution by countryDistribution by country

United States installs about 40.00% of NVIDIA Driver Helper Service, Version 320.49.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Intel 31.58%
Acer 23.68%
Lenovo 21.05%
ASUS 15.79%
Dell 5.26%
GIGABYTE 2.63%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE