SMessaging.exe
Malwarebytes Secure Backup by Malwarebytes Corporation (Signed)
Version: | 5.6.0.3556 |
MD5: | 69f9087cb9bed6d0d5f5832fa846e3c7 |
SHA1: | ee1f8c06766626785656bf50b11f5b57c62be697 |
Overview
smessaging.exe executes as a process with the local user's privileges usually within the context of Windows Explorer. It is set to be start when the PC boots and any user logs into Windows (added to the Run registry key for the all users under the local machine). This is typically installed with the program Malwarebytes Secure Backup published by Malwarebytes Corporation. The assembly utilizes the .NET run-time framework (which is required to be installed on the PC). The file is digitally signed by Malwarebytes Corporation which was issued by the VeriSign certificate authority (CA). This particular version is usually found on Windows 7 Home Premium (6.1.7601.65536).
Details
File name: | smessaging.exe |
Publisher: | Malwarebytes Secure Backup |
Product name: | Malwarebytes Secure Backup |
Description: | Online Backup Messaging |
Typical file path: | C:\Program Files\malwarebytes secure backup\smessaging.exe |
File version: | 5.6.0.3556 |
Size: | 62.4 KB (63,896 bytes) |
Build date: | 4/1/2013 1:31 PM |
Certificate |
Issued to: | Malwarebytes Corporation |
Authority (CA): | VeriSign |
Effective date: | Tuesday, January 8, 2013 |
Expiration date: | Thursday, January 9, 2014 |
Digital DNA |
PE subsystem: | Windows GUI |
File packed: | No |
Code language: | Microsoft Visual C# / Basic .NET |
.NET CLR: | Yes |
.NET NGENed: | No |
More details
Programs
The following program will install this file
Behaviors
Startup files (all users) run
Runs under the registry key 'HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run'
- 'SMessaging' → C:\Program Files\Malwarebytes Secure Backup\SMessaging.exe
Resource utilization
(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
CPU |
Total CPU: | 0.00039242% | |
Kernel CPU: | 0.00024477% | |
User CPU: | 0.00014765% | |
Kernel CPU time: | 437 ms/min | |
CPU cycles: | 268,113/sec | |
Memory |
Private memory: | 34.59 MB | |
Private (maximum): | 36.51 MB | |
Private (minimum): | 30.02 MB | |
Non-paged memory: | 34.59 MB | |
Virtual memory: | 239.43 MB | |
Virtual memory (peak): | 243.43 MB | |
Working set: | 33.3 MB | |
Working set (peak): | 36.51 MB | |
Page faults: | 13,472/min | |
I/O |
I/O read transfer: | 336 Bytes/sec | |
I/O read operations: | 1/sec | |
I/O write transfer: | 85 Bytes/sec | |
I/O write operations: | 1/sec | |
I/O other transfer: | 123 Bytes/sec | |
I/O other operations: | 7/sec | |
Resource allocations |
Threads: | 12 | |
Handles: | 494 | |
GUI GDI count: | 31 | |
GUI GDI peak: | 31 | |
GUI USER count: | 23 | |
GUI USER peak: | 25 | |
Process properties
Threads
Averages
ntdll.dll |
Total CPU: | 0.00175113% | |
Kernel CPU: | 0.00001752% | |
User CPU: | 0.00173361% | |
CPU cycles: | 57,084/sec | |
Memory: | 1.23 MB | |
SMessaging.exe (main module) |
Total CPU: | 0.00136612% | |
Kernel CPU: | 0.00052543% | |
User CPU: | 0.00084069% | |
CPU cycles: | 30,818/sec | |
Memory: | 80 KB | |
mscorwks.dll |
Total CPU: | 0.00003503% | |
Kernel CPU: | 0.00000000% | |
User CPU: | 0.00003503% | |
CPU cycles: | 191/sec | |
Memory: | 5.68 MB | |
Common loaded modules
These are modules that are typiclaly loaded within the context of this process.
Distribution by Windows OS
OS version | distribution |
Windows 7 Home Premium |
100.00% |
|
Distribution by PC manufacturer
PC Manufacturer | distribution |
Gateway |
100.00% |
|