Should I block it?
Yes, 98% block recommendation.
Possible reasons:
Multiple malware detections
Performance resource utilization
Additional versions
Relationships
Parent process
Related files
ActiveMailComServer.exe
ActiveMail Addon by ActivePath Ltd. (Signed)
Version: | 5.8.27.0 |
MD5: | 1c507877ca14c66ee87ee00c3548adcf |
SHA1: | 52ef7aeabc65d5e7383c2dd2a28caa26ecd8ec13 |
SHA256: | 201b79e12582b340871ac9fd1b8f1fdb5daa01e5743722c3fd2034987e5ab7eb |
Warning 4 antivirus scanners has detected malware.
What is ActiveMailComServer.exe?
ActiveMail COM Server is the core ActiveMail service that can modify the web page email content in order to apply its 'widgets'. activemailcomserver.exe connects with both ActiveMail BHO and ActiveMail Update.
About ActiveMailComServer.exe (from ActivePath Ltd.)
“ActiveMail brings life to your email, so you can finally enter the world of rich and interactive content without leaving your inbox. When you get an email with a link to an online video, ActiveMail au”
Details
File name: | activemailcomserver.exe |
Publisher: | ActivePath Ltd. |
Product name: | ActiveMail Addon |
Description: | ActiveMail COM Server |
Typical file path: | C:\ProgramData\activepath\activemail\activemailcomserver.exe |
File version: | 5.8.27.0 |
Size: | 266.36 KB (272,752 bytes) |
Certificate |
Issued to: | ActivePath Ltd. |
Authority (CA): | VeriSign |
Expiration date: | Thursday, September 18, 2014 |
Digital DNA |
PE subsystem: | Windows GUI |
File packed: | No |
.NET CLR: | No |
More details
Programs
The following program will install this file
“ActiveMail brings life to your email, so you can finally enter the world of rich and interactive
content without leaving your inbox. Here are some of the fun things you can expect: When you get an email with a link to an online video, ActiveMail automatically converts that link to the actual video to watch on the spot. View it mini-size or expanded, and immediately Like, Tweet or comment on your experience. We currently support more th...”
Network connections
[TCP] ec2-50-19-126-27.compute-1.amazonaws.com (50.19.126.27:80)
Malware detections
Based on 40+ industry antivirus scanners, 4 of them detected the following malware.
Antivirus engine | Engine version | Detection |
Jiangmin |
13.0.900 |
Trojan/Agent.iexa |
Kingsoft |
2012.9.22.155 |
Win32.Troj.Agent.(kcloud) |
Vba32 AntiVirus |
3.12.18.3 |
Trojan.Agent.edj |
ViRobot |
2011.4.7.4223 |
Trojan.Win32.A.Agent.272752 |
Resource utilization
(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
CPU |
Total CPU: | 0.00211803% | |
Kernel CPU: | 0.00167260% | |
User CPU: | 0.00044543% | |
Kernel CPU time: | 751 ms/min | |
CPU cycles: | 35,620/sec | |
Memory |
Private memory: | 2.86 MB | |
Private (maximum): | 2.77 MB | |
Private (minimum): | 504 KB | |
Non-paged memory: | 2.86 MB | |
Virtual memory: | 67.11 MB | |
Virtual memory (peak): | 73.03 MB | |
Working set: | 228 KB | |
Working set (peak): | 8.71 MB | |
Page faults: | 20,081/min | |
I/O |
I/O read transfer: | 13.09 KB/sec | |
I/O read operations: | 2/sec | |
I/O write transfer: | 152 Bytes/sec | |
I/O write operations: | 1/sec | |
I/O other transfer: | 114 Bytes/sec | |
I/O other operations: | 16/sec | |
Resource allocations |
Threads: | 9 | |
Handles: | 197 | |
GUI GDI count: | 9 | |
GUI GDI peak: | 9 | |
GUI USER count: | 3 | |
GUI USER peak: | 6 | |
Process properties
Threads
Averages
ntdll.dll |
Total CPU: | 0.00461839% | |
Kernel CPU: | 0.00461839% | |
User CPU: | 0.00000000% | |
CPU cycles: | 2,365/sec | |
Memory: | 1.23 MB | |
mswsock.dll |
Total CPU: | 0.00407008% | |
Kernel CPU: | 0.00407008% | |
User CPU: | 0.00000000% | |
CPU cycles: | 9,717/sec | |
Memory: | 240 KB | |
ActiveMailComServer.exe (main module) |
Total CPU: | 0.00063867% | |
Kernel CPU: | 0.00050499% | |
User CPU: | 0.00013367% | |
CPU cycles: | 7,836/sec | |
Memory: | 280 KB | |
Distribution by Windows OS
OS version | distribution |
Windows 7 Ultimate N |
100.00% |
|
Distribution by country
United States installs about 100.00% of ActiveMail Addon.