PDA

View Full Version : C:\WINDOWS\system32\pgdfgsvc.exe -- Is this a legit xp file? anyone??


socom1
February 8th, 2004, 12:07 PM
C:\WINDOWS\system32\pgdfgsvc.exe

Searched the registry for pgdfgsvc. Nothing..

I found nothing searching Google.


I also did a local files search and noticed that the C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.BTR and C:\WINDOWS\system32\wbem\Repository\FS\INDEX.DATA were accessed at approximately the same time pgdfgsvc.exe was created.


help ???

Dan Perez
February 8th, 2004, 03:02 PM
Hi socom1,

That appears to be the name of a legitimate Pagefile Defrag utility. Refer to

http://www.windowsnetmag.com/WindowsScripting/Article/ArticleID/5285/5285.html

There is one of these utilities on Sysinternal's site but it has a slightly different name but maybe yours is an older version?

http://www.sysinternals.com/ntw2k/freeware/pagedefrag.shtml

Have you tried submitting the file for analysis? You might try

http://www.kaspersky.com/remoteviruschk.html

Hope this helps somewhat