Should I block it?

No, this file is 100% safe to run.

Relationships

Parent process
Child process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
RegGetValueW, RegisterTraceGuidsW, ControlService, GetTraceEnableLevel, ConvertStringSecurityDescriptorToSecurityDescriptorW, UnregisterTraceGuids, SetServiceStatus, QueryServiceStatus, DuplicateTokenEx, GetTraceLoggerHandle, SetTokenInformation, GetTraceEnableFlags, RegisterServiceCtrlHandlerExW, OpenServiceW, StartServiceCtrlDispatcherW, OpenSCManagerW, DeleteService, OpenProcessToken, CloseServiceHandle, CreateServiceW, RegSetValueExW, RegEnumKeyExW, RegEnumValueW, RegQueryInfoKeyW, RegCreateKeyExW, TraceMessage, RegCloseKey, RegOpenKeyExW, RegDeleteValueW, RegDeleteKeyW, CreateProcessAsUserW, RegQueryValueExW
kernel32.dll
InterlockedCompareExchange, SetEvent, OutputDebugStringW, GetModuleHandleW, GetSystemTimeAsFileTime, WriteFile, GetProcessTimes, WideCharToMultiByte, InitializeCriticalSectionAndSpinCount, SizeofResource, CreateEventA, LeaveCriticalSection, CreateSemaphoreA, GetModuleFileNameW, CreateFileW, MultiByteToWideChar, lstrlenW, ReleaseSemaphore, RaiseException, InterlockedExchange, GetFileSizeEx, GetProcAddress, EnterCriticalSection, Process32FirstW, InterlockedExchangeAdd, WaitForMultipleObjects, Process32NextW, WaitForSingleObject, InterlockedIncrement, DeleteCriticalSection, GetCurrentThreadId, ReleaseMutex, ExpandEnvironmentStringsW, GetCommandLineW, InitializeCriticalSection, LoadLibraryW, Sleep, TerminateProcess, SetLastError, CreateEventW, OpenEventW, LocalFree, GetTickCount, DuplicateHandle, CreateThread, DeviceIoControl, GetLocaleInfoW, QueryPerformanceCounter, GetCurrentProcess, CreateToolhelp32Snapshot, InterlockedDecrement, LoadLibraryExW, LoadResource, FreeLibrary, FindResourceW, CreateMutexW, CloseHandle, lstrcmpiW, WTSGetActiveConsoleSessionId, GetLastError, GetSystemDirectoryW, RemoveDirectoryW, DeleteFileW, CreateDirectoryW, MoveFileW, ReadFile, FormatMessageA, QueryPerformanceFrequency, GetFileAttributesW, CreateWaitableTimerA, SetWaitableTimer, SystemTimeToFileTime, ResetEvent, OpenEventA, GetProcessHeap, SetEnvironmentVariableA, CompareStringW, FlushFileBuffers, WriteConsoleW, SetStdHandle, IsValidLocale, EnumSystemLocalesA, GetLocaleInfoA, GetUserDefaultLCID, GetConsoleMode, GetConsoleCP, SetFilePointer, RtlUnwind, LocalAlloc, LoadLibraryA, HeapFree, HeapAlloc, GetTimeFormatA, GetDateFormatA, EncodePointer, DecodePointer, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsDebuggerPresent, VirtualProtect, VirtualAlloc, GetSystemInfo, VirtualQuery, GetCommandLineA, HeapSetInformation, GetStartupInfoW, HeapCreate, ExitProcess, GetStdHandle, IsProcessorFeaturePresent, GetCPInfo, GetACP, GetOEMCP, IsValidCodePage, TlsAlloc, TlsGetValue, TlsSetValue, TlsFree, GetTimeZoneInformation, HeapSize, LCMapStringW, HeapReAlloc, GetStringTypeW, GetModuleFileNameA, FreeEnvironmentStringsW, GetEnvironmentStringsW, SetHandleCount, GetFileType, GetCurrentProcessId
ole32.dll
CoTaskMemFree, CoTaskMemAlloc, CoCreateInstance, StringFromGUID2, CoRevokeClassObject, StringFromCLSID, CoTaskMemRealloc, CoInitializeSecurity, CoInitializeEx, CoRegisterClassObject, CoResumeClassObjects, CoCreateInstanceEx, CoAddRefServerProcess
setupapi.dll
SetupDiEnumDeviceInfo, SetupDiGetClassDevsW, SetupDiOpenDevRegKey, SetupDiDestroyDeviceInfoList, SetupDiGetDeviceRegistryPropertyW, CM_Get_DevNode_Status, SetupDiGetDeviceInstanceIdW
shlwapi.dll
SHSetValueW, PathAddBackslashW, StrStrIW, PathFindFileNameW, SHDeleteValueW
userenv.dll
CreateEnvironmentBlock, DestroyEnvironmentBlock
wtsapi32.dll
WTSQueryUserToken

nvvsvc.exe

NVIDIA Driver Helper Service, Version 326.19 by NVIDIA Corporation (Signed)

Remove nvvsvc.exe
Version:   8.17.13.2619
MD5:   86c5e4fb8abe35095eb535eb0c8f3d8d
SHA1:   b8a6cdc4af36b0ad79f3880553e73d72c7d1db2b

Overview

nvvsvc.exe runs as a service under the name NVIDIA Display Driver Service (nvsvc) with extensive SYSTEM privileges (full administrator access). The file is digitally signed by NVIDIA Corporation which was issued by the VeriSign certificate authority (CA). This particular version is usually found on Windows 8 Pro (6.2.9200.0).

DetailsDetails

File name:nvvsvc.exe
Publisher:NVIDIA Corporation
Product name:NVIDIA Driver Helper Service, Version 326.19
Typical file path:C:\Windows\System32\nvvsvc.exe
Original name:nvsvc32.exe
File version:8.17.13.2619
Size:641.78 KB (657,184 bytes)
Build date:7/13/2013 4:06 PM
Certificate
Issued to:NVIDIA Corporation
Authority (CA):VeriSign
Effective date:Sunday, January 9, 2011
Expiration date:Thursday, January 9, 2014
Digital DNA
PE subsystem:Windows GUI
File packed:No
.NET CLR:No
More details

BehaviorsBehaviors

Service
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
  • 'nvsvc' (NVIDIA Display Driver Service)

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00006725%
0.028634%
Kernel CPU:0.00001328%
0.013761%
User CPU:0.00005397%
0.014873%
Kernel CPU time:9,375 ms/min
100,923,805ms/min
Context switches:2/sec
284/sec
Memory
Private memory:2.37 MB
21.59 MB
Private (maximum):8.06 MB
Private (minimum):7.12 MB
Non-paged memory:2.37 MB
21.59 MB
Virtual memory:75.24 MB
140.96 MB
Virtual memory (peak):79.89 MB
169.69 MB
Working set:7.32 MB
18.61 MB
Working set (peak):8.1 MB
37.95 MB
Resource allocations
Threads:4
12
Handles:166
600
GUI GDI count:12
103
GUI GDI peak:14
142
GUI USER count:5
49
GUI USER peak:5
71

BehaviorsProcess properties

Integrety level:System
Platform:32-bit
Command lines:
  • C:\Windows\System32\nvvsvc.exe -session -first
  • "C:\Windows\System32\nvvsvc.exe"
Owner:SYSTEM
Windows Service
Service name:nvsvc
Display name:NVIDIA Display Driver Service
Description:“Provides system and desktop level support to the NVIDIA display driver”
Type:Win32OwnProcess
Parent processes:

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 8 Pro 100.00%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE