Should I block it?

No, this file is 100% safe to run.

Relationships

Parent process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
RegQueryValueExW, ControlService, StartServiceW, DeleteService, OpenServiceW, CloseServiceHandle, CreateServiceW, OpenSCManagerW, SetServiceStatus, RegisterServiceCtrlHandlerW, StartServiceCtrlDispatcherW, RegDeleteValueW, RegCreateKeyExW, RegSetValueExW, RegOpenKeyExW, RegEnumKeyExW, RegQueryInfoKeyW, RegCloseKey, RegDeleteKeyW
kernel32.dll
GetLastError, lstrlenW, WideCharToMultiByte, FreeLibrary, GetProcAddress, GetModuleHandleW, lstrcmpiW, LeaveCriticalSection, RaiseException, EnterCriticalSection, LoadLibraryExW, GetModuleFileNameW, InitializeCriticalSection, DeleteCriticalSection, InterlockedDecrement, InterlockedIncrement, Sleep, LocalFree, LoadLibraryW, GetTempPathW, GetCurrentProcess, HeapAlloc, GetProcessHeap, HeapFree, GetSystemTime, InterlockedExchange, DeleteFileW, CreateFileW, SetLastError, GetTickCount, lstrlenA, GetFullPathNameA, CreateFileA, GetFileSize, SetFilePointer, MapViewOfFile, UnmapViewOfFile, SetEndOfFile, QueryPerformanceCounter, InterlockedCompareExchange, UnlockFile, LockFile, UnlockFileEx, GetSystemTimeAsFileTime, FormatMessageA, WriteFile, FormatMessageW, GetFileAttributesA, ReadFile, FlushFileBuffers, LockFileEx, GetDiskFreeSpaceW, LoadLibraryA, CreateFileMappingA, GetDiskFreeSpaceA, GetSystemInfo, GetFileAttributesExW, GetVersionExA, GetCurrentProcessId, GetTempPathA, AreFileApisANSI, DeleteFileA, GetCurrentThreadId, TlsFree, TlsSetValue, TlsAlloc, TlsGetValue, GetModuleFileNameA, ExitProcess, VirtualAlloc, VirtualFree, HeapCreate, GetStartupInfoA, GetFileType, GetStdHandle, SetHandleCount, GetCPInfo, LCMapStringW, GetFileAttributesW, GetPrivateProfileIntW, GetPrivateProfileStringW, CloseHandle, MultiByteToWideChar, FindResourceExW, FindResourceW, LoadResource, LockResource, SizeofResource, IsValidLocale, GetStringTypeA, GetStringTypeW, GetConsoleCP, GetConsoleMode, InitializeCriticalSectionAndSpinCount, SetStdHandle, GetLocaleInfoW, WriteConsoleA, GetConsoleOutputCP, WriteConsoleW, CompareStringA, CompareStringW, SetEnvironmentVariableA, FreeEnvironmentStringsW, GetEnvironmentStringsW, GetCommandLineW, GetACP, GetFullPathNameW, GetModuleHandleA, EnumSystemLocalesA, GetLocaleInfoA, GetUserDefaultLCID, GetTimeZoneInformation, IsValidCodePage, LCMapStringA, RtlUnwind, IsDebuggerPresent, SetUnhandledExceptionFilter, UnhandledExceptionFilter, TerminateProcess, GetStartupInfoW, HeapSize, HeapReAlloc, HeapDestroy, GetOEMCP
ole32.dll
CoTaskMemRealloc, CoTaskMemAlloc, CoCreateInstance, CoInitialize, CoUninitialize, CoTaskMemFree
user32.dll
CharNextW

guardbackgroundservice.exe

By No Organization Affiliation (Signed)

Remove guardbackgroundservice.exe
MD5:   d3699f603645debf545c41903031c2cc
SHA1:   ab53afa1c6a89cfab9117ffb2f18613f9f23fafb
SHA256:   b1ee12467cea503df2319c358c7ae4c7cfbb3d8c025c2c8b336f30cd5422a874

Overview

guardbackgroundservice.exe runs as a service under the name Active background guard service within the local user context. The file is digitally signed by No Organization Affiliation which was issued by the Thawte certificate authority (CA). This particular version is usually found on Windows 7 Home Basic (6.1.7601.65536). Note, some antivirus scanners have flagged this file, however it is not necessarily considered malware (see below for details).

DetailsDetails

File name:guardbackgroundservice.exe
Typical file path:C:\Program Files\gigabase\guard\guardbackgroundservice.exe
Size:761.55 KB (779,824 bytes)
Build date:4/22/2013 10:38 AM
Certificate
Issued to:No Organization Affiliation
Authority (CA):Thawte
Digital DNA
PE subsystem:Windows GUI
File packed:No
.NET CLR:No
More details

BehaviorsBehaviors

Service
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
  • 'Active background guard service'

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00367777%
0.028634%
Kernel CPU:0.00058876%
0.013761%
User CPU:0.00308901%
0.014873%
Kernel CPU time:131,664,844 ms/min
100,923,805ms/min
Memory
Private memory:5.37 MB
21.59 MB
Private (maximum):5.98 MB
Private (minimum):4.68 MB
Non-paged memory:5.37 MB
21.59 MB
Virtual memory:50.29 MB
140.96 MB
Virtual memory (peak):51.3 MB
169.69 MB
Working set:5.89 MB
18.61 MB
Working set (peak):5.99 MB
37.95 MB
Resource allocations
Threads:4
12
Handles:110
600

BehaviorsProcess properties

Integrety level:System
Platform:32-bit
Command line:"C:\Program Files\gigabase\guard\guardbackgroundservice.exe"
Owner:User
Windows Service
Service name:Active background guard service
Type:Win32OwnProcess
Parent process:services.exe (Services and Controller app by Microsoft)

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Home Basic 100.00%

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Lenovo 100.00%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE