Should I block it?

No, this file is 100% safe to run.

Relationships

Parent process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
SetSecurityDescriptorDacl, StartServiceCtrlDispatcherW, ChangeServiceConfigW, CreateServiceW, ChangeServiceConfig2W, RegisterServiceCtrlHandlerW, RegEnumKeyExW, OpenSCManagerW, OpenServiceW, CloseServiceHandle, DeleteService, RegQueryInfoKeyW, RegSetValueExW, RegQueryValueExW, RegCloseKey, RegDeleteValueW, RegDeleteKeyW, RegCreateKeyExW, RegOpenKeyExW, RegisterEventSourceW, ReportEventW, DeregisterEventSource, SetServiceStatus, ControlService, QueryServiceStatus, CryptReleaseContext, CryptDestroyKey, CryptAcquireContextW, CryptExportKey, CryptGenKey, CryptImportKey, CryptEncrypt, AllocateAndInitializeSid, SetEntriesInAclW, InitializeSecurityDescriptor, FreeSid
kernel32.dll
InterlockedIncrement, LoadLibraryW, GetCommandLineW, LoadLibraryExW, MultiByteToWideChar, FreeLibrary, InterlockedDecrement, GetCurrentThreadId, SetEvent, CreateEventW, CreateThread, GetModuleFileNameW, lstrcmpiW, GetModuleHandleW, GetProcAddress, FindResourceExW, DeleteCriticalSection, InitializeCriticalSectionAndSpinCount, LeaveCriticalSection, EnterCriticalSection, RaiseException, lstrlenW, WaitForSingleObject, CloseHandle, Sleep, GetModuleHandleExW, FindResourceW, SizeofResource, LoadResource, LockResource, GetLastError, WriteConsoleW, SetStdHandle, FlushFileBuffers, GetStringTypeW, LCMapStringW, GetConsoleMode, GetConsoleCP, SetFilePointer, WideCharToMultiByte, IsValidCodePage, GetSystemTimeAsFileTime, GetCurrentProcessId, GetTickCount, QueryPerformanceCounter, GetFileType, SetHandleCount, GetEnvironmentStringsW, FreeEnvironmentStringsW, GetOEMCP, GetACP, GetCPInfo, HeapDestroy, HeapAlloc, HeapFree, HeapReAlloc, HeapSize, GetProcessHeap, GetLocalTime, InterlockedCompareExchange, WriteFile, OutputDebugStringW, DeleteFileW, MoveFileExW, CreateDirectoryW, GetFileAttributesW, CreateFileW, SetCriticalSectionSpinCount, GetVersionExW, LocalFree, LocalAlloc, RtlUnwind, EncodePointer, DecodePointer, ExitThread, HeapSetInformation, GetStartupInfoW, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsDebuggerPresent, TerminateProcess, GetCurrentProcess, TlsAlloc, TlsGetValue, TlsSetValue, TlsFree, SetLastError, ExitProcess, GetStdHandle, HeapCreate, IsProcessorFeaturePresent
ole32.dll
CoReleaseServerProcess, CoInitializeSecurity, CoInitializeEx, CoUninitialize, CoTaskMemAlloc, CoTaskMemRealloc, CoRevokeClassObject, CoRegisterClassObject, CoTaskMemFree, CoCreateInstance, StringFromGUID2, CoResumeClassObjects, StringFromCLSID, CoCreateGuid, CoAddRefServerProcess
shell32.dll
SHGetFolderPathW
shlwapi.dll
PathAppendW, PathRemoveFileSpecW, PathStripPathW
user32.dll
TranslateMessage, DispatchMessageW, GetMessageW, PostThreadMessageW, CharNextW, CharUpperW, LoadStringW, DispatchMessageA, GetMessageA, IsWindowUnicode, PeekMessageW, MsgWaitForMultipleObjectsEx

PCKeeperService.exe

PCKeeper by ZeoBIT LLC (Signed)

Remove PCKeeperService.exe
Version:   2.0.138.10014
MD5:   7259b84297e9def10c1e5421ab25e10f
SHA1:   2cbae23968a74d246e1fcc0958d106e9ea7b26a2

About PCKeeperService.exe (from ZeoBIT LLC)

PCKeeper is an application that is like 911 for your PC. This all-in-one solution contains literally everything you and your PC may ever need. Its tools and system utilities will take care of your P

Overview

pckeeperservice.exe runs as a service under the name PCKeeper Service (PCKeeper2Service) with extensive SYSTEM privileges (full administrator access). The file is digitally signed by ZeoBIT LLC which was issued by the VeriSign certificate authority (CA). This particular version is usually found on Windows Vista (TM) Home Premium (6.0.6002.131072).

DetailsDetails

File name:pckeeperservice.exe
Publisher:ZeoBIT LLC
Product name:PCKeeper
Description:PCKeeper Worker Service
Typical file path:C:\Program Files\zeobit\pckeeper\pckeeperservice.exe
File version:2.0.138.10014
Size:132.09 KB (135,264 bytes)
Certificate
Issued to:ZeoBIT LLC
Authority (CA):VeriSign
Effective date:Wednesday, August 8, 2012
Digital DNA
PE subsystem:Windows GUI
File packed:No
.NET CLR:No
More details

BehaviorsBehaviors

Service
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
  • 'PCKeeper2Service' (PCKeeper Service)

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00001204%
0.028634%
Kernel CPU:0.00000248%
0.013761%
User CPU:0.00000956%
0.014873%
Kernel CPU time:30,015 ms/min
100,923,805ms/min
Memory
Private memory:32.78 MB
21.59 MB
Private (maximum):15.65 MB
Private (minimum):6.1 MB
Non-paged memory:32.78 MB
21.59 MB
Virtual memory:228.3 MB
140.96 MB
Virtual memory (peak):234.37 MB
169.69 MB
Working set:10.16 MB
18.61 MB
Working set (peak):31.87 MB
37.95 MB
Resource allocations
Threads:14
12
Handles:839
600

BehaviorsProcess properties

Integrety level:System
Platform:32-bit
Command line:"C:\Program Files\zeobit\pckeeper\pckeeperservice.exe"
Owner:SYSTEM
Windows Service
Service name:PCKeeper2Service
Display name:PCKeeper Service
Description:“PCKeeper's worker service”
Type:Win32OwnProcess
Parent process:services.exe (Services and Controller app by Microsoft)

ResourcesThreads

Averages
 
clr.dll
Total CPU:0.00172863%
0.272967%
Kernel CPU:0.00035258%
0.107585%
User CPU:0.00137605%
0.165382%
CPU cycles:45,061/sec
5,741,424/sec
Memory:6.43 MB
1.16 MB
PCKeeperService.exe (main module)
Total CPU:0.00079506%
Kernel CPU:0.00021533%
User CPU:0.00057973%
CPU cycles:8,086/sec
Memory:144 KB
ADVAPI32.dll
Total CPU:0.00002209%
Kernel CPU:0.00001104%
User CPU:0.00001104%
CPU cycles:106/sec
Memory:792 KB

Common loaded modules

These are modules that are typiclaly loaded within the context of this process.

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows Vista Home Premium 100.00%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE