Should I block it?

No, this file is 100% safe to run.

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
StartServiceCtrlDispatcherW, RegisterServiceCtrlHandlerW, CreateServiceW, RegCreateKeyW, RegSetValueExW, RegCloseKey, ChangeServiceConfig2W, StartServiceW, SetServiceStatus, ControlService, DeleteService, OpenSCManagerW, OpenServiceW, CloseServiceHandle
kernel32.dll
GetTickCount, DeleteFileW, Sleep, GetModuleFileNameW, GetLastError, CopyFileW, CreateEventW, MultiByteToWideChar, CreateFileMappingW, UnmapViewOfFile, CloseHandle, WaitForSingleObject, SetEvent, OpenEventW, GetFileType, GetStartupInfoA, HeapDestroy, HeapCreate, VirtualFree, VirtualAlloc, HeapReAlloc, IsBadWritePtr, HeapSize, IsBadReadPtr, IsBadCodePtr, LoadLibraryA, InterlockedExchange, VirtualQuery, MapViewOfFile, SetHandleCount, GetCommandLineW, RtlUnwind, ExitProcess, RaiseException, GetModuleHandleA, GetStartupInfoW, GetVersionExA, HeapAlloc, HeapFree, QueryPerformanceCounter, GetCurrentThreadId, GetCurrentProcessId, GetSystemTimeAsFileTime, GetModuleFileNameA, SetUnhandledExceptionFilter, GetProcAddress, TerminateProcess, GetCurrentProcess, WriteFile, GetStdHandle, UnhandledExceptionFilter, FreeEnvironmentStringsA, GetEnvironmentStrings, FreeEnvironmentStringsW, GetEnvironmentStringsW, GetCommandLineA
shell32.dll
CommandLineToArgvW
shlwapi.dll
StrCpyW, PathCombineW

dctser.exe

Thunder7 by ShenZhen Thunder Networking Technologies Ltd. (Signed)

Remove dctser.exe
Version:   1.0.1.81
MD5:   8948a24540203c38ecdd00ffe07b08bc
SHA1:   b7541de5e30d97c492773aae5916020ad28921d0
SHA256:   cf6785c4f32c199f92fb70045e0f7194e049dbf6be2af929944108707c72d702

What is dctser.exe?

Xunlei is a download manager that supports HTTP, FTP, eDonkey, and BitTorrent protocols. Through Xunlei, users can access a large portion of the files available on the Internet. Features in Xunlei includes a built-in browser, offline downloading, hi-speed downloading, email service and more. As adware, Xunlei products feature banner advertisements, which can be disabled if logged in as a user.

Overview

dctser.exe runs as a service under the name XLDoctor Services with extensive SYSTEM privileges (full administrator access). The file is digitally signed by ShenZhen Thunder Networking Technologies Ltd. which was issued by the VeriSign certificate authority (CA).

DetailsDetails

File name:dctser.exe
Publisher:ShenZhen Xunlei Networking Technologies,LTD
Product name:Thunder7
Description:DoctorService
Typical file path:C:\Program Files\thunder network\thunder\program\dctser.exe
Original name:DoctorService
File version:1.0.1.81
Size:37.8 KB (38,704 bytes)
Certificate
Issued to:ShenZhen Thunder Networking Technologies Ltd.
Authority (CA):VeriSign
Digital DNA
PE subsystem:Windows GUI
File packed:No
.NET CLR:No
More details

BehaviorsBehaviors

Service
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
  • 'XLDoctor Services'

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00025880%
0.028634%
Kernel CPU:0.00022941%
0.013761%
User CPU:0.00002939%
0.014873%
Kernel CPU time:180 ms/min
100,923,805ms/min
Context switches:2/sec
284/sec
Memory
Private memory:634 KB
21.59 MB
Private (maximum):2.25 MB
Private (minimum):1.32 MB
Non-paged memory:634 KB
21.59 MB
Virtual memory:29.01 MB
140.96 MB
Virtual memory (peak):33.71 MB
169.69 MB
Working set:1.32 MB
18.61 MB
Working set (peak):2.33 MB
37.95 MB
Resource allocations
Threads:2
12
Handles:45
600
GUI GDI count:4
103
GUI USER count:1
49

BehaviorsProcess properties

Integrety level:Undefined
Platform:32-bit
Command line:"C:\Program Files\thunder network\thunder\program\dctser.exe"
Owner:SYSTEM
Windows Service
Service name:XLDoctor Services
Type:Win32OwnProcess
Parent process:services.exe (Microsoft Windows Operating System by Microsoft)

ResourcesThreads

Averages
 
ADVAPI32.dll
Total CPU:0.00027942%
0.272967%
Kernel CPU:0.00019959%
0.107585%
User CPU:0.00007983%
0.165382%
Context switches:2/sec
79/sec
Memory:668 KB
1.16 MB
DctSer.exe (main module)
Total CPU:0.00003992%
Kernel CPU:0.00003992%
User CPU:0.00000000%
Memory:44 KB

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Microsoft Windows XP 66.67%
Windows 8 Pro 33.33%

Distribution by countryDistribution by country

Hong Kong installs about 100.00% of Thunder7.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
American Megatrends 100.00%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE