Should I block it?
Yes, 98% block recommendation.
Possible reasons:
Multiple malware detections
Performance resource utilization
Additional versions
Relationships
Parent process
Related files
PE file structure |
Show functions |
Import table
mscoree.dll
DllMain
StrongVaultApp.exe
StrongvaultApp by Strongvault Online Storage LLC (Signed)
Version: | 1.0.110.0 |
MD5: | f22f4a665eb0efbec86704da0cd94037 |
SHA1: | 28b29a0aa2f451ec3837933ce5b1bd353cf0df3e |
SHA256: | e3647e51442fda32994c10c5151d01f985d03fd62d21c86c4c854332ad3c324c |
Warning 5 antivirus scanners has detected malware.
What is StrongVaultApp.exe?
Strongvault is an ad-supported online backup program that is typically bundled though various third party software installations. StrongVault by StrongHold which markets the exact same software under a different name called StrongHold.
About StrongVaultApp.exe (from Strongvault Online Storage LLC)
“Strongvault is a pioneer and technology leader in online backup - dedicated to service consumers, small and medium businesses and IT/managed service providers.”
Overview
strongvaultapp.exe is malware that executes as a process with the local user's privileges usually within the context of Windows Explorer. During installation, it (or a shortcut) is added to the user's startup folder which is designed to automatically launch when the user logs into Windows. The assembly utilizes the .NET run-time framework (which is required to be installed on the PC). The file is digitally signed by Strongvault Online Storage LLC which was issued by the VeriSign certificate authority (CA).
Details
File name: | strongvaultapp.exe |
Product name: | StrongvaultApp |
Typical file path: | C:\users\user\appdata\local\strongvault\strongvaultapp.exe |
File version: | 1.0.110.0 |
Size: | 391.32 KB (400,712 bytes) |
Build date: | 3/19/2013 2:57 PM |
Certificate |
Issued to: | Strongvault Online Storage LLC |
Authority (CA): | VeriSign |
Expiration date: | Thursday, February 13, 2014 |
Digital DNA |
PE subsystem: | Windows GUI |
File packed: | No |
Code language: | Microsoft Visual C# / Basic .NET |
.NET CLR: | Yes |
.NET NGENed: | No |
More details
Behaviors
User start menu folder
Shortcut pointer placed in '%appdata%\Microsoft\Windows\Start Menu'
- Shortcut to 'strongvaultapp.exe'
Network connections
[UDP] listens on port 56309
Malware detections
Based on 40+ industry antivirus scanners, 5 of them detected the following malware.
Antivirus engine | Engine version | Detection |
CAT Quick Heal |
10.13.12.00 |
Adware.Strongvault (Not a Virus) |
Comodo Internet Security |
16891 |
ApplicUnwnt |
ESET NOD32 |
7.8771 |
MSIL/Adware.StrongVault.A |
Microsoft Security Essentials |
1.9800.0 |
Adware:MSIL/Strongvault |
VIPRE Antivirus |
21224 |
Pinball Corporation (fs) |
Resource utilization
(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
CPU |
Total CPU: | 0.00037007% | |
Kernel CPU: | 0.00024632% | |
User CPU: | 0.00012375% | |
Kernel CPU time: | 535,052 ms/min | |
Memory |
Private memory: | 41.26 MB | |
Private (maximum): | 93.12 MB | |
Private (minimum): | 14.47 MB | |
Non-paged memory: | 41.26 MB | |
Virtual memory: | 325.33 MB | |
Virtual memory (peak): | 346.41 MB | |
Working set: | 26.62 MB | |
Working set (peak): | 93.14 MB | |
Page faults: | 1,913,201/min | |
Resource allocations |
Threads: | 22 | |
Handles: | 679 | |
GUI GDI count: | 48 | |
GUI GDI peak: | 50 | |
GUI USER count: | 63 | |
GUI USER peak: | 75 | |
Process properties
Threads
Averages
StrongVaultApp.exe (main module) |
Total CPU: | 13.51200142% | |
Kernel CPU: | 6.06854866% | |
User CPU: | 7.44345277% | |
CPU cycles: | 277,120,977/sec | |
Memory: | 408 KB | |
ntdll.dll |
Total CPU: | 0.00399604% | |
Kernel CPU: | 0.00396813% | |
User CPU: | 0.00002791% | |
CPU cycles: | 84,203/sec | |
Memory: | 1.66 MB | |
Common loaded modules
These are modules that are typiclaly loaded within the context of this process.
Distribution by Windows OS
OS version | distribution |
Windows 7 Home Premium |
40.63% |
|
Windows 7 Ultimate N |
28.13% |
|
Microsoft Windows XP |
15.63% |
|
Windows Vista Home Premium |
12.50% |
|
Windows 7 Ultimate |
3.13% |
|
Distribution by country
United States installs about 96.88% of StrongvaultApp.
Distribution by PC manufacturer
PC Manufacturer | distribution |
Hewlett-Packard |
100.00% |
|