Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

1.0.0.1 28.57%
1.0.0.1 71.43%
(Note, Alcatel-Lucent publishes each variation of this file with the same version, but the hashes are unique.)

Relationships

Parent process
Child process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
LsaNtStatusToWinError, ConvertStringSidToSidW, CheckTokenMembership, DuplicateTokenEx, CreateProcessAsUserA, LookupAccountSidA, EqualSid, IsValidSid, GetSidSubAuthorityCount, GetSidSubAuthority, GetTokenInformation, SetSecurityDescriptorDacl, GetSecurityDescriptorLength, MakeSelfRelativeSD, InitializeSecurityDescriptor, GetSecurityDescriptorOwner, GetSecurityDescriptorGroup, GetSecurityDescriptorDacl, GetSecurityDescriptorSacl, MakeAbsoluteSD, GetSecurityDescriptorControl, RegQueryValueExA, RegCreateKeyExA, RegOpenKeyExA, GetLengthSid, SetTokenInformation, StartServiceCtrlDispatcherW, RegisterServiceCtrlHandlerW, ChangeServiceConfigW, ChangeServiceConfig2W, StartServiceW, ConvertSidToStringSidW, LookupAccountNameW, CopySid, ControlService, QueryServiceStatus, DeleteService, CreateServiceW, OpenSCManagerW, OpenServiceW, RegEnumKeyExW, CloseServiceHandle, RegQueryInfoKeyW, RegDeleteKeyW, RegisterEventSourceW, ReportEventW, DeregisterEventSource, SetServiceStatus, RegDeleteValueW, RegCreateKeyExW, RegSetValueExW, RegQueryValueExW, RegOpenKeyExW, RegEnumValueA, RegDeleteValueA, RegCloseKey
kernel32.dll
CreateMutexA, ReleaseMutex, PulseEvent, WaitForMultipleObjects, CreateEventA, SetEnvironmentVariableA, CompareStringW, CreateFileA, SetStdHandle, IsBadCodePtr, LocalAlloc, CreateDirectoryA, GetWindowsDirectoryA, GetTickCount, GetCurrentProcessId, OutputDebugStringA, CreateFileMappingA, LoadLibraryA, GetModuleHandleA, GetACP, SetLastError, GetCurrentThread, GetVersionExA, GetCommandLineW, GetPrivateProfileStringW, LocalFree, LoadLibraryExW, FreeLibrary, InterlockedDecrement, GetCurrentThreadId, Sleep, lstrcmpiW, DeleteCriticalSection, InitializeCriticalSectionAndSpinCount, LeaveCriticalSection, EnterCriticalSection, RaiseException, GetModuleFileNameW, CreatePipe, SetHandleInformation, CreateProcessW, CreateEventW, GetCurrentProcess, DuplicateHandle, ResumeThread, WaitForSingleObject, GetExitCodeProcess, SetEvent, TerminateProcess, TerminateThread, ResetEvent, GetModuleFileNameA, PeekNamedPipe, OutputDebugStringW, lstrlenA, lstrlenW, UnmapViewOfFile, CreateFileMappingW, MapViewOfFileEx, SetEndOfFile, SetFilePointer, WriteFile, ReadFile, MultiByteToWideChar, CloseHandle, GetModuleHandleW, GetProcAddress, CreateFileW, WideCharToMultiByte, FindResourceExW, FindResourceW, LoadResource, LockResource, SizeofResource, GetLastError, InterlockedExchange, InterlockedCompareExchange, SuspendThread, WriteConsoleW, LoadLibraryW, FlushFileBuffers, GetConsoleMode, GetConsoleCP, GetTimeZoneInformation, GetStringTypeW, IsValidLocale, EnumSystemLocalesA, GetLocaleInfoA, GetLocaleInfoW, GetUserDefaultLCID, QueryPerformanceCounter, GetFileType, SetHandleCount, GetEnvironmentStringsW, FreeEnvironmentStringsW, GetStdHandle, ExitProcess, IsProcessorFeaturePresent, HeapCreate, LCMapStringW, IsValidCodePage, GetOEMCP, GetCPInfo, TlsFree, TlsSetValue, TlsGetValue, TlsAlloc, VirtualQuery, GetSystemInfo, VirtualAlloc, VirtualProtect, InterlockedIncrement, IsDebuggerPresent, SetUnhandledExceptionFilter, UnhandledExceptionFilter, GetStartupInfoW, HeapSetInformation, GetSystemTimeAsFileTime, DecodePointer, EncodePointer, CreateThread, ExitThread, RtlUnwind, GetProcessHeap, HeapSize, HeapReAlloc, HeapFree, HeapAlloc, HeapDestroy, InitializeCriticalSection
netapi32.dll
NetUserDel
ole32.dll
CoTaskMemFree, CoAddRefServerProcess, CoRevokeClassObject, CoCreateInstance, CoInitialize, CoUninitialize, CoInitializeEx, CoTaskMemRealloc, CoReleaseServerProcess, CoTaskMemAlloc
secur32.dll
LsaRegisterLogonProcess, LsaLogonUser, LsaDeregisterLogonProcess
shell32.dll
SHGetSpecialFolderLocation, SHGetPathFromIDListA, SHGetMalloc
shlwapi.dll
PathQuoteSpacesW, PathCanonicalizeW, PathIsDirectoryW, PathRemoveFileSpecW, PathAddExtensionW, PathUnquoteSpacesW, PathGetCharTypeW, PathAppendW, PathRemoveExtensionW, PathStripPathW, PathAddBackslashW, PathFileExistsA, PathIsDirectoryA, PathIsFileSpecA, PathIsFileSpecW, PathIsRelativeA, PathSkipRootW, PathSkipRootA, PathIsUNCW, PathIsUNCA, PathIsRelativeW, PathUnquoteSpacesA
user32.dll
GetFocus, LoadStringW, PostThreadMessageW, PeekMessageW, TranslateMessage, DispatchMessageW, CharUpperW, CharNextW
userenv.dll
CreateEnvironmentBlock, UnloadUserProfile, DeleteProfileW, LoadUserProfileA, DestroyEnvironmentBlock
wtsapi32.dll
WTSEnumerateSessionsW, WTSFreeMemory, WTSQuerySessionInformationW, WTSQueryUserToken

MAHostService.exe

MAHostService by Alcatel-Lucent

Remove MAHostService.exe
Version:   1.0.0.1
MD5:   4e8185a861a544800648af182684a7bc
SHA1:   a8192a80ec1494ec3e20d5d1235bddde5c99851e
SHA256:   d9c7aaf71fc6bda6a03b4c1399a02d6666353a7843390a564f2c839667834847

Overview

mahostservice.exe runs as a service under the name ATT MAHostService with extensive SYSTEM privileges (full administrator access). It is installed with a couple of know programs including ATT Management Agent published by AT&T Inc. and Windstream Setup Assistant published by Windstream.

DetailsDetails

File name:mahostservice.exe
Publisher:Alcatel-Lucent
Product name:MAHostService
Typical file path:C:\Program Files\att\8.2.1.6\ma\bin\mahostservice.exe
File version:1.0.0.1
Size:313.5 KB (321,024 bytes)
Build date:3/6/2013 5:29 PM
Digital DNA
PE subsystem:Windows GUI
File packed:No
.NET CLR:No
More details

ResourcesPrograms

The following programs will install this file
AT&T Inc.
7% remove
AT&T Management Agent is an easy-to-use software that allows you to manage your connection to the AT&T mobile data network and to Wi-Fi networks. The key features are: Simple installation and intuitive user interface, Access to our EDGE and 3G networks and roaming partners' networks, where applicable, Provides easy authentication at AT&T Wi-Fi hot spots for customers who meet certain eligibility requirements.
Windstream
3% remove

BehaviorsBehaviors

Service
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
  • 'ATT MAHostService'

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00971235%
0.028634%
Kernel CPU:0.00568884%
0.013761%
User CPU:0.00402351%
0.014873%
Kernel CPU time:5,968 ms/min
100,923,805ms/min
CPU cycles:3,974,943/sec
17,470,203/sec
Context switches:276/sec
284/sec
Memory
Private memory:1.17 MB
21.59 MB
Private (maximum):2.28 MB
Private (minimum):846.67 KB
Non-paged memory:1.17 MB
21.59 MB
Virtual memory:45.21 MB
140.96 MB
Virtual memory (peak):49.05 MB
169.69 MB
Working set:884 KB
18.61 MB
Working set (peak):4.91 MB
37.95 MB
Page faults:1,634/min
2,039/min
I/O
I/O read transfer:0 Bytes/sec
1.02 MB/min
I/O read operations:1/sec
343/min
I/O write transfer:0 Bytes/sec
274.99 KB/min
I/O write operations:1/sec
227/min
I/O other transfer:2 Bytes/sec
448.09 KB/min
I/O other operations:1/sec
1,671/min
Resource allocations
Threads:4
12
Handles:100
600
GUI GDI count:5
103
GUI USER count:2
49

BehaviorsProcess properties

Integrety level:System
Platform:64-bit
Command line:"C:\Program Files\att\8.3.1.7\ma\bin\mahostservice.exe"
Owner:SYSTEM
Windows Service
Service name:ATT MAHostService
Description:“ATT Management Agent Host Service”
Type:Win32OwnProcess
Parent process:services.exe (Services and Controller app by Microsoft)

ResourcesThreads

Averages
 
wow64.dll
Total CPU:0.01589693%
0.272967%
Kernel CPU:0.00695491%
0.107585%
User CPU:0.00894202%
0.165382%
CPU cycles:2,517,725/sec
5,741,424/sec
Memory:252 KB
1.16 MB
advapi32.dll (Advanced Windows 32 Base API by Microsoft)
Total CPU:0.00876709%
Kernel CPU:0.00437694%
User CPU:0.00439015%
Context switches:225/sec
Memory:620 KB
MAHostService.exe (main module)
Total CPU:0.00263863%
Kernel CPU:0.00167756%
User CPU:0.00096107%
CPU cycles:784,692/sec
Context switches:47/sec
Memory:332 KB
ntdll.dll
Total CPU:0.00099356%
Kernel CPU:0.00099356%
User CPU:0.00000000%
CPU cycles:238/sec
Memory:1.66 MB

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Microsoft Windows XP 28.57%
Windows 7 Home Premium 28.57%
Windows 8 Pro 28.57%
Windows 7 Ultimate 14.29%

Distribution by countryDistribution by country

United States installs about 100.00% of MAHostService.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Hewlett-Packard 66.67%
Dell 33.33%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE