Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

8.5.1302.1018 27.27%
8.5.1302.1018 9.09%
8.5.1302.1018 27.27%
8.1.0178.00 9.09%
8.1.0178.00 9.09%
8.0.0812.00 9.09%
6.1.0207 9.09%

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
RegCloseKey, RegCreateKeyA, RegOpenKeyExA, RegCreateKeyExA, RegSetValueExA, RegQueryValueExA, RegDeleteValueA, RegQueryInfoKeyA, RegEnumKeyA, RegDeleteKeyA, FreeSid, RevertToSelf, AccessCheck, IsValidSecurityDescriptor, SetSecurityDescriptorOwner, SetSecurityDescriptorGroup, SetSecurityDescriptorDacl, AddAccessAllowedAce, InitializeAcl, GetLengthSid, InitializeSecurityDescriptor, AllocateAndInitializeSid, OpenProcessToken, OpenThreadToken, ImpersonateSelf, CryptReleaseContext, CryptDestroyHash, CryptCreateHash, CryptAcquireContextA, CryptHashData, CryptGetHashParam, RegOpenKeyA
gdi32.dll
Polygon, SetDIBitsToDevice, CreateCompatibleBitmap, FillRgn, CreatePolygonRgn, DPtoLP, SetStretchBltMode, SetBitmapBits, OffsetViewportOrgEx, SetDIBColorTable, SetDIBits, GetDIBits, SetViewportExtEx, GetCurrentObject, StretchDIBits, GetObjectType, GetPaletteEntries, CreatePalette, GetSystemPaletteEntries, Ellipse, GetNearestPaletteIndex, PatBlt, GetMapMode, GetViewportExtEx, GetWindowExtEx, DeleteMetaFile, SetBrushOrgEx, GetBrushOrgEx, GetEnhMetaFileHeader, GetObjectA, DeleteEnhMetaFile, SetTextAlign, CreatePatternBrush, PlayEnhMetaFile, OffsetRgn, CombineRgn, EqualRgn, CreateDIBPatternBrushPt, ExtTextOutA, CreateFontIndirectA, GetTextExtentPoint32A, GetTextExtentExPointA, GetWindowOrgEx, OffsetWindowOrgEx, CreateDCA, SetWorldTransform, SetGraphicsMode, SetRectRgn, Polyline, GetTextMetricsA, RectInRegion, GetRandomRgn, GetClipBox, CreateHalftonePalette, RealizePalette, SelectPalette, GetDIBColorTable, SetTextColor, SetBkMode, SetWindowExtEx, CloseMetaFile, GetClipRgn, CreateRectRgn, ExtSelectClipRgn, SelectClipRgn, SetBkColor, Rectangle, MoveToEx, LineTo, GetPixel, BitBlt, StretchBlt, CreateCompatibleDC, CreatePen, SelectObject, GetDeviceCaps, LPtoDP, SaveDC, SetMapMode, SetWindowOrgEx, SetViewportOrgEx, DeleteDC, RestoreDC, CreateRectRgnIndirect, CreateRoundRectRgn, GetStockObject, CreateDIBSection, CreateSolidBrush, DeleteObject
kernel32.dll
DllMain
ole32.dll
StgOpenStorageOnILockBytes, GetHGlobalFromILockBytes, OleLockRunning, CoTaskMemAlloc, CLSIDFromProgID, CoInitializeEx, CoFreeUnusedLibraries, ReleaseStgMedium, CreateILockBytesOnHGlobal, StgCreateDocfileOnILockBytes, CoInitialize, CoUninitialize, IIDFromString, CoCreateGuid, StringFromGUID2, OleRun, RegisterDragDrop, RevokeDragDrop, DoDragDrop, CoCreateFreeThreadedMarshaler, OleSaveToStream, WriteClassStm, OleLoadFromStream, GetHGlobalFromStream, OleDuplicateData, CreateStreamOnHGlobal, CreateDataAdviseHolder, CreateOleAdviseHolder, OleRegGetMiscStatus, OleRegGetUserType, OleRegEnumVerbs, OleFlushClipboard, StringFromCLSID, CoTaskMemFree, CLSIDFromString, CoRevokeClassObject, CoCreateInstance, CoRegisterClassObject, OleUninitialize, OleInitialize, CoDisconnectObject
shell32.dll
DragQueryPoint, DragAcceptFiles, DragFinish, SHAppBarMessage, ShellExecuteExA, SHGetMalloc, Shell_NotifyIconA, ShellExecuteA
shlwapi.dll
PathFileExistsW, StrCpyNW, wnsprintfW, StrCatBuffA
user32.dll
DllMain
ws2_32.dll
WSAIoctl, WSAEnumNetworkEvents, WSAEventSelect, WSASocketA

msnmsgr.exe

Messenger by Microsoft Corporation (Signed)

Remove msnmsgr.exe
Version:   8.1.0178.00
MD5:   7c16ec41031c572fdeeebecd189a57f5
SHA1:   d72da6ccd7ebe50c11d0b348a62f418740ef3995
SHA256:   f2d4ebca2aa8542a68975e54f6f663e1719fac000a6d5ae81c5a079c724c6bed

What is msnmsgr.exe?

Windows Messenger is a client by Microsoft that is included in Windows. It has a variety of features, such as instant messaging, presence awareness, support for Session Initiation Protocol (SIP), file transfer, application sharing and whiteboarding. The software integrates with Microsoft Exchange, Microsoft Outlook, Outlook Express, and the Remote Assistance feature of Windows XP.

Overview

MsnMsgr.Exe executes as a process with the local user's privileges. It is set to be run when the PC boots and the user logs into Windows (added to the Run registry key for the current user). It has been configured with a firewall exception which allows both inbound and outbound network communication without being blocked. The file is digitally signed by Microsoft Corporation.

DetailsDetails

File name:MsnMsgr.Exe
Publisher:Microsoft Corporation
Product name:Messenger
Typical file path:C:\Program Files\msn messenger\msnmsgr.exe
File version:8.1.0178.00
Product version:8.1.0178
Size:5.41 MB (5,674,352 bytes)
Build date:1/19/2007 12:43 PM
Certificate
Issued to:Microsoft Corporation
Authority (CA):Microsoft Corporation
Effective date:Tuesday, April 4, 2006
Expiration date:Thursday, October 4, 2007
Digital DNA
File packed:No
.NET CLR:No
More details

BehaviorsBehaviors

Startup files (user) run
Runs under the registry key 'HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run'
  • 'MsnMsgr' → "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
Windows firewall allowed programs
Exceptions allow programs to access to the Internet through an outbound connections
  • Firewall exception for 'C:\Program Files\Windows Live\Messenger\msnmsgr.exe'
  • Firewall exception for 'C:\Program Files\MSN Messenger\msnmsgr.exe'
  • Firewall exception for 'C:\Program Files\Windows Live\Messenger\msnmsgr.exe'

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Microsoft Windows XP 81.82%
Windows XP Professional 9.09%
Windows Vista Ultimate 9.09%

Distribution by countryDistribution by country

Germany installs about 33.33% of Messenger.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Dell 72.73%
Toshiba 18.18%
Sahara 9.09%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE