SBAMTray.exe
GFI Business Agent by GFI Software (Florida) Inc. (Signed)
Version: | 6.0.5481 |
MD5: | 163f6f7c001a7530e401666e9e953aaa |
SHA1: | d6e74eded944ee2f78ac71d28f3ead873b231a34 |
SHA256: | d1ed99808b7bc22c4cd99ecba679200ef80fb4c448b52e3709c63ce1e72c5518 |
Overview
sbamtray.exe executes as a process with the local user's privileges typically within the context of its parent
sbamsvc.exe (GFI AntiMalware Common SDK Merge Module by GFI Software (Florida) Inc.). It is set to be start when the PC boots and any user logs into Windows (added to the Run registry key for the all users under the local machine). This is typically installed with the program GFI Business Agent published by GFI Software. The file is digitally signed by GFI Software (Florida) Inc. which was issued by the VeriSign certificate authority (CA).
Details
File name: | sbamtray.exe |
Publisher: | GFI Software |
Product name: | GFI Business Agent |
Description: | SBAMTray Application |
Typical file path: | C:\Program Files\gfi software\gfiagent\sbamtray.exe |
File version: | 6.0.5481 |
Size: | 3.08 MB (3,226,504 bytes) |
Certificate |
Issued to: | GFI Software (Florida) Inc. |
Authority (CA): | VeriSign |
Effective date: | Wednesday, January 25, 2012 |
Expiration date: | Sunday, January 25, 2015 |
Digital DNA |
File packed: | No |
.NET CLR: | No |
More details
Programs
The following program will install this file
“GFI VIPRE® Antivirus Business is a scalable Endpoint Solution that protects your networked machines from all types of malware and viruses and includes a firewall (Premium only). Its Bad URL Blocking feature under web filtering prevents end users from accidentally opening known bad websites (Premium only). VIPRE Business can be installed at more than one physical location and still be centrally managed. Its policy-based architecture allo...”
Behaviors
Startup files (all users) run
Runs under the registry key 'HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run'
- 'SBAMTray' → "C:\Program Files\GFI Software\GFIAgent\SBAMTray.exe"
Resource utilization
(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
CPU |
Total CPU: | 0.00057087% | |
Kernel CPU: | 0.00040307% | |
User CPU: | 0.00016779% | |
Kernel CPU time: | 1,120 ms/min | |
CPU cycles: | 385,007/sec | |
Context switches: | 3/sec | |
Memory |
Private memory: | 2.57 MB | |
Private (maximum): | 6.37 MB | |
Private (minimum): | 2.91 MB | |
Non-paged memory: | 2.57 MB | |
Virtual memory: | 88.38 MB | |
Virtual memory (peak): | 100.74 MB | |
Working set: | 4.01 MB | |
Working set (peak): | 8.22 MB | |
Page faults: | 36,449/min | |
I/O |
I/O write transfer: | 51 Bytes/sec | |
I/O write operations: | 1/sec | |
I/O other transfer: | 3 Bytes/sec | |
I/O other operations: | 2/sec | |
Resource allocations |
Threads: | 3 | |
Handles: | 136 | |
GUI GDI count: | 89 | |
GUI GDI peak: | 90 | |
GUI USER count: | 25 | |
GUI USER peak: | 26 | |
Process properties
Threads
Averages
SBAMTray.exe (main module) |
Total CPU: | 0.00493449% | |
Kernel CPU: | 0.00275022% | |
User CPU: | 0.00218428% | |
CPU cycles: | 344,334/sec | |
Context switches: | 3/sec | |
Memory: | 3.13 MB | |
wow64.dll |
Total CPU: | 0.00026273% | |
Kernel CPU: | 0.00000000% | |
User CPU: | 0.00026273% | |
CPU cycles: | 1,119/sec | |
Memory: | 276 KB | |
Common loaded modules
These are modules that are typiclaly loaded within the context of this process.
Distribution by Windows OS
OS version | distribution |
Windows 8 Pro with Media Center |
75.00% |
|
Windows 7 Professional |
25.00% |
|
Distribution by country
United States installs about 100.00% of GFI Business Agent.
Distribution by PC manufacturer
PC Manufacturer | distribution |
ASUS |
80.00% |
|
Samsung |
20.00% |
|