Should I block it?

No, this file is 100% safe to run.

Relationships

Parent process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
RegCloseKey, RegEnumValueA, RegEnumKeyExA, RegQueryValueExA, RegCreateKeyExA, RegOpenKeyExA, RegSetValueExA
gdi32.dll
CreateCompatibleDC, CreateCompatibleBitmap
kernel32.dll
FormatMessageA, LocalLock, GetPrivateProfileSectionA, lstrcmpA, GetUserDefaultLangID, WritePrivateProfileStringA, GetTempPathA, FindFirstFileA, FindClose, DeleteFileA, CloseHandle, GetPrivateProfileIntA, GetPrivateProfileStringA, GetLastError, SetEvent, GetShortPathNameA, GetModuleFileNameA, CreateEventA, GetModuleHandleA, WaitForSingleObject, FreeLibrary, SetThreadPriority, CreateThread, lstrcatA, lstrlenA, GetProcAddress, LoadLibraryA, GetFileAttributesA, lstrcpyA, GlobalUnlock, GlobalLock, WritePrivateProfileSectionA, GlobalFree, GlobalAlloc, lstrcmpiA, SetFileAttributesA, CopyFileA, CreateMutexA, WideCharToMultiByte, IsDBCSLeadByte, GetVersion, GetStartupInfoA, MoveFileA
mfc42.dll
DllMain
msvcrt.dll
DllMain
ole32.dll
CoUninitialize, CoInitialize
performocr.dll
PMOCR_IsReady, PMOCR_Initialize, PMOCR_BeginRcgOneIsm, PMOCR_Uninitialize
pmcommon.dll
MakeFullDirPath, IsForEpson, GetPMINIFileName, LoadStringFromFile, GetOSDefaultPrintDriver, CopyWholeDir, IsForLexmark, IsForCanon, GetPMFilePath, NetworkGroup_NetPrintFiles, ResetScanBarData, DelLastBackslash, _IsPathExist, GetPMINIFileNameEx, _GetNoPathName, IsForBulletScan, IsForRicoh, WriteLogInfo, _IsFileExist, PMAfxMessageBox, FormatToExt, PMLOG_AddOneFile, PMCreateProcess, _GetFileExtName, GetPMFolderName, DelWholeDir, IsForRetail
pmism.dll
ISM_AdjustImage, ISM_Rotate, ISM_SAVEISM
pmsave.dll
PMSAVE_SaveAsPDFFromIsmToOpen, PMSAVE_SaveAsPDFFromIsmToWriteIsmPage, PMSAVE_SaveAsPDFFromIsmToClose
pmscnset.dll
ShowScanBtnSetDlg
pmtoapp.dll
GetDefaultMailName, AB_Set_Link_Apps, Build_All_Links, GetSectionByMailName, Get_Link_Title, Build_All_Links_NoFirst, Get_Link_Count, Add_Link, Get_PMAppInfo, Set_Link_Title, Set_Link_TransferFormat, Set_Link_PathName, Section2Index, Get_Link_TransferFormat, Get_Link_Section, Send_To_Link, Set_Input_Source, Get_Link_ApInfo, Is_PrinterFax_Link, Get_Link_MultiplePage, Load_Link_Sequence, Set_Link_PrintHandle, Get_Link_PrinterOption, Get_Link_NetPrintInfo, Get_Link_PrintHandle, Is_NetPrinterFax_Link
shell32.dll
SHGetSpecialFolderPathA, Shell_NotifyIconA
shfolder.dll
SHGetFolderPathA
shlwapi.dll
PathCombineA, PathRemoveFileSpecA
user32.dll
MessageBoxA, GetDesktopWindow, FindWindowA, wsprintfA, PostMessageA, IsIconic, GetLastActivePopup, TrackPopupMenu, GetCursorPos, SetForegroundWindow, GetMenuItemCount, RemoveMenu, SetMenuDefaultItem, LoadIconA, GetWindowRect, GetClientRect, ReleaseDC, DrawIconEx, GetDC, EnableMenuItem, InsertMenuA, GetSystemMenu, GetSystemMetrics, IsWindow, DefWindowProcA, LoadCursorA, SetActiveWindow, EnableWindow, SendMessageA, PtInRect, GetParent, ClientToScreen, LoadMenuA, GetSubMenu, ModifyMenuA, DeleteMenu, RegisterWindowMessageA, AppendMenuA

Pmsb.exe

Presto! Scan Buttons by NewSoft Technology Corporation (Signed)

Remove Pmsb.exe
Version:   2, 0,10363, 0
MD5:   15664bee10ab58c7c835c3dd167cd78e
SHA1:   6b999e02f402ba7a8452648eab977586150671a2
SHA256:   fff7dbbbb8cdee3d8e22d19538da5791ee869f01287923e1e265027edd9d7e50

Overview

pmsb.exe executes as a process with the local user's privileges usually within the context of Windows Explorer. It is set to be run when the PC boots and the user logs into Windows (added to the Run registry key for the current user). The file is digitally signed by NewSoft Technology Corporation which was issued by the VeriSign certificate authority (CA). This particular version is usually found on Windows 7 Starter (6.1.7601.65536).

DetailsDetails

File name:pmsb.exe
Publisher:NewSoft Technology Corporation
Product name:Presto! Scan Buttons
Description:Pmsb MFC Application
Typical file path:C:\Program Files\newsoft\presto! pagemanager 9.03\pmsb.exe
File version:2, 0,10363, 0
Size:209.34 KB (214,360 bytes)
Certificate
Issued to:NewSoft Technology Corporation
Authority (CA):VeriSign
Digital DNA
PE subsystem:Windows GUI
File packed:No
Code language:Microsoft Visual C++
.NET CLR:No
More details

BehaviorsBehaviors

Startup files (user) run
Runs under the registry key 'HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run'
  • 'Scan Buttons' → C:\Program Files\NewSoft\Presto! PageManager 9.03\PMSB.EXE

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00062286%
0.028634%
Kernel CPU:0.00038154%
0.013761%
User CPU:0.00024132%
0.014873%
Kernel CPU time:46,875 ms/min
100,923,805ms/min
Memory
Private memory:4.99 MB
21.59 MB
Private (maximum):11.51 MB
Private (minimum):5.75 MB
Non-paged memory:4.99 MB
21.59 MB
Virtual memory:79.29 MB
140.96 MB
Virtual memory (peak):90.92 MB
169.69 MB
Working set:5.75 MB
18.61 MB
Working set (peak):11.51 MB
37.95 MB
Resource allocations
Threads:2
12
Handles:112
600
GUI GDI count:86
103
GUI GDI peak:101
142
GUI USER count:45
49
GUI USER peak:50
71

BehaviorsProcess properties

Integrety level:Medium
Platform:32-bit
Command line:"C:\Program Files\newsoft\presto! pagemanager 9.03\pmsb.exe"
Owner:User
Parent process:explorer.exe (Windows Explorer by Microsoft Corporation)

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Starter 100.00%

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Hewlett-Packard 100.00%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE