Should I block it?

No, this file is 100% safe to run.

Relationships

Parent process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
SetSecurityDescriptorDacl, InitializeSecurityDescriptor
crypt32.dll
CryptUnprotectData, CryptProtectData
kernel32.dll
QueryPerformanceFrequency, DeleteCriticalSection, ReleaseMutex, CloseHandle, GetProcAddress, GetStringTypeA, GetCurrentDirectoryA, LeaveCriticalSection, GetVersionExW, InitializeCriticalSection, FormatMessageW, WaitForSingleObject, QueryPerformanceCounter, CreateMutexA, GetModuleFileNameW, GetModuleHandleW, GetUserDefaultLCID, EnumSystemLocalesA, IsValidLocale, InitializeCriticalSectionAndSpinCount, WriteConsoleA, GetConsoleOutputCP, WriteConsoleW, LocalAlloc, OpenMutexA, PeekNamedPipe, GetFileInformationByHandle, GetFullPathNameW, EnterCriticalSection, GetLastError, ExitThread, SetStdHandle, CreateMutexW, lstrlenW, MoveFileW, DeleteFileW, RemoveDirectoryW, IsValidCodePage, GetOEMCP, GetACP, SetEnvironmentVariableA, GetProcessHeap, FileTimeToSystemTime, GetFileAttributesW, SetLastError, LoadLibraryA, GetModuleHandleA, GetCPInfo, WideCharToMultiByte, MultiByteToWideChar, CreateFileA, GetFileSize, SetFilePointer, lstrlenA, MoveFileExA, SetEndOfFile, FormatMessageA, WriteFile, CopyFileA, GetLocalTime, DeleteFileA, GetCurrentProcess, TerminateProcess, FindFirstFileA, FindClose, FindNextFileA, GetCurrentProcessId, LocalFree, FreeLibrary, LoadLibraryW, CreateProcessW, SystemTimeToTzSpecificLocalTime, CreateDirectoryW, GetLocaleInfoW, GetCalendarInfoW, CreateFileW, GetStartupInfoW, FindResourceExW, FindResourceW, LoadResource, SizeofResource, GetTimeZoneInformation, LockResource, FindFirstChangeNotificationW, SetEvent, TerminateThread, CreateEventW, FindNextChangeNotification, WaitForMultipleObjects, CreateThread, lstrcpynW, ReadFile, SetNamedPipeHandleState, GetWindowsDirectoryW, Sleep, ResetEvent, LoadLibraryExW, InterlockedIncrement, InterlockedDecrement, InterlockedCompareExchange, InterlockedExchange, GetLocaleInfoA, HeapFree, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsDebuggerPresent, GetSystemTimeAsFileTime, HeapAlloc, GetTickCount, FileTimeToLocalFileTime, GetDriveTypeW, FindFirstFileW, RtlUnwind, RaiseException, LCMapStringA, LCMapStringW, GetStringTypeW, GetTimeFormatA, GetDateFormatA, CompareStringA, CompareStringW, GetStdHandle, GetModuleFileNameA, TlsGetValue, TlsAlloc, TlsSetValue, TlsFree, GetCurrentThreadId, SetHandleCount, GetFileType, GetStartupInfoA, HeapCreate, HeapDestroy, VirtualFree, VirtualAlloc, HeapReAlloc, GetConsoleCP, GetConsoleMode, FlushFileBuffers, HeapSize, ExitProcess, FreeEnvironmentStringsW, GetEnvironmentStringsW, GetCommandLineW, GetDriveTypeA
ole32.dll
CoInitialize, CoUninitialize, CLSIDFromProgID, CoCreateInstance, OleRun
rpcrt4.dll
RpcBindingFromStringBindingW, RpcMgmtSetCancelTimeout, RpcBindingFree, RpcStringFreeW, RpcStringBindingComposeW, NdrClientCall2
sfhtml.dll
HTMLayoutWindowAttachEventHandler, HTMLayoutSetElementHtml, HTMLayoutInsertElement, HTMLayoutLoadHtml, ValueClear, HTMLayoutCreateElement, HTMLayoutControlSetValue, ValueInit, HTMLayoutGetElementHtml, HTMLayoutSetCallback, HTMLayoutProcND, HTMLayoutDataReady, ValueStringDataSet, HTMLayoutGetAttributeByName, HTMLayoutDeleteElement, HTMLayoutVisitElements, HTMLayoutSelectElementsW, HTMLayoutGetStyleAttribute, HTMLayoutSetStyleAttribute, HTMLayoutUpdateElement, HTMLayoutSetElementInnerText16, HTMLayoutGetRootElement, HTMLayoutGetParentElement, HTMLayoutSetAttributeByName, HTMLayout_UnuseElement, HTMLayoutGetMinHeight, HTMLayoutGetMinWidth, HTMLayout_UseElement
shell32.dll
Shell_NotifyIconW, SHGetFolderPathW, ShellExecuteExW
user32.dll
GetClientRect, LoadIconW, SetForegroundWindow, GetWindowRect, MoveWindow, DispatchMessageA, PostMessageA, GetActiveWindow, ShowWindow, SetWindowPos, DefWindowProcA, GetDesktopWindow, GetWindowLongA, UnregisterClassA, SetWindowLongA, RegisterClassExW, TranslateMessage, IsDialogMessageA, SendMessageA, GetMessageA, DestroyWindow, LoadStringW, DefWindowProcW, DestroyMenu, CreatePopupMenu, AppendMenuW, TrackPopupMenuEx, GetWindowThreadProcessId, KillTimer, SendMessageW, AllowSetForegroundWindow, CreateWindowExA, MessageBoxW, FindWindowW, PostMessageW, GetCursorPos, SetWindowTextW, SetTimer, PostQuitMessage, RegisterWindowMessageW
version.dll
VerQueryValueW, GetFileVersionInfoSizeW, GetFileVersionInfoW

swprotray.exe

SPYWAREfighter by SPAMfighter ApS (Signed)

Remove swprotray.exe
Version:   4.1.265.0
MD5:   355632bea695f3b4f07a4abf8f5b5f9d
SHA1:   8006074edab0173dd7ea52b9428a046787b5b297

Overview

swprotray.exe executes as a process with the local user's privileges usually within the context of Windows Explorer. It is set to be start when the PC boots and any user logs into Windows (added to the Run registry key for the all users under the local machine). The file is digitally signed by SPAMfighter ApS which was issued by the Thawte certificate authority (CA). This particular version is usually found on Windows 7 Home Premium (6.1.7601.65536).

DetailsDetails

File name:swprotray.exe
Publisher:SPAMfighter
Product name:SPYWAREfighter
Description:SPYWAREfighter Application
Typical file path:C:\Program Files\fighters\spywarefighter\swprotray.exe
Original name:SpywarefighterTray.exe
File version:4.1.265.0
Size:1.15 MB (1,207,920 bytes)
Certificate
Issued to:SPAMfighter ApS
Authority (CA):Thawte
Effective date:Tuesday, March 27, 2012
Expiration date:Sunday, March 9, 2014
Digital DNA
PE subsystem:Windows GUI
File packed:No
.NET CLR:No
More details

BehaviorsBehaviors

Startup files (all users) run
Runs under the registry key 'HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run'
  • 'SWPROguard' → C:\Program Files\Fighters\SPYWAREfighter\swprotray.exe

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.01583850%
0.028634%
Kernel CPU:0.00898759%
0.013761%
User CPU:0.00685091%
0.014873%
Kernel CPU time:265 ms/min
100,923,805ms/min
CPU cycles:51,686/sec
17,470,203/sec
Memory
Private memory:4.89 MB
21.59 MB
Private (maximum):11.8 MB
Private (minimum):8.1 MB
Non-paged memory:4.89 MB
21.59 MB
Virtual memory:73.73 MB
140.96 MB
Virtual memory (peak):77.74 MB
169.69 MB
Working set:8.1 MB
18.61 MB
Working set (peak):11.8 MB
37.95 MB
Page faults:3,082/min
2,039/min
I/O
I/O read transfer:1.82 KB/sec
1.02 MB/min
I/O read operations:3/sec
343/min
I/O write transfer:61 Bytes/sec
274.99 KB/min
I/O write operations:1/sec
227/min
I/O other transfer:95 Bytes/sec
448.09 KB/min
I/O other operations:11/sec
1,671/min
Resource allocations
Threads:6
12
Handles:136
600
GUI GDI count:53
103
GUI GDI peak:56
142
GUI USER count:20
49
GUI USER peak:21
71

BehaviorsProcess properties

Integrety level:Medium
Platform:32-bit
Command line:"C:\Program Files\fighters\spywarefighter\swprotray.exe"
Owner:User
Parent process:explorer.exe (Windows Explorer by Microsoft Corporation)

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Home Premium 100.00%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE