Should I block it?

No, this file is 100% safe to run.

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
SetSecurityDescriptorSacl, RegQueryValueExA, RegCloseKey, RegOpenKeyExA, InitializeSecurityDescriptor, SetSecurityDescriptorDacl, GetSecurityDescriptorSacl
gdi32.dll
GetRegionData, CreateRectRgn, SetRectRgn, OffsetRgn, CombineRgn, ExtEscape, DeleteObject
kernel32.dll
lstrlenW, GlobalSize, GlobalFree, GlobalReAlloc, GlobalUnlock, GlobalLock, GlobalAlloc, GetModuleFileNameW, SetLastError, SetFilePointer, SetFileAttributesW, SetEndOfFile, CreateFileW, ReadFile, WriteFile, FlushFileBuffers, GetFileSize, GetFileType, LockFileEx, UnlockFile, GetFileInformationByHandle, SetFileTime, DeleteFileW, OutputDebugStringA, TlsAlloc, TlsSetValue, TlsGetValue, Sleep, SetThreadAffinityMask, GetProcessAffinityMask, GetCurrentProcess, GetTickCount, GetSystemTimeAsFileTime, SetSystemTime, FileTimeToSystemTime, FileTimeToLocalFileTime, GetTimeZoneInformation, SystemTimeToFileTime, SystemTimeToTzSpecificLocalTime, VirtualProtect, ResetEvent, WaitForSingleObjectEx, WideCharToMultiByte, MultiByteToWideChar, GetFileAttributesW, GetFullPathNameW, GetEnvironmentVariableW, FindClose, FindFirstFileW, GetFileAttributesExW, MoveFileExW, GetCurrentDirectoryW, SetCurrentDirectoryW, ExitThread, FreeLibrary, HeapFree, HeapAlloc, GetStartupInfoA, GetCommandLineA, GetCurrentProcessId, EnterCriticalSection, LeaveCriticalSection, HeapReAlloc, TlsFree, ExitProcess, TerminateProcess, UnhandledExceptionFilter, HeapDestroy, HeapCreate, VirtualFree, DeleteCriticalSection, FatalAppExitA, VirtualAlloc, IsBadWritePtr, GetStdHandle, GetModuleFileNameA, FreeEnvironmentStringsA, GetEnvironmentStrings, FreeEnvironmentStringsW, GetEnvironmentStringsW, SetHandleCount, HeapSize, GetTimeFormatA, GetDateFormatA, GetCPInfo, GetUserDefaultLCID, GetLocaleInfoA, EnumSystemLocalesA, IsValidLocale, IsValidCodePage, GetStringTypeA, GetStringTypeW, RtlUnwind, SetEnvironmentVariableA, SetEnvironmentVariableW, GetACP, GetOEMCP, InterlockedExchange, VirtualQuery, InitializeCriticalSection, GetSystemInfo, QueryPerformanceCounter, SetStdHandle, CompareStringA, CompareStringW, LCMapStringA, LCMapStringW, GetLocaleInfoW, DeviceIoControl, CreateMutexA, CreateFileA, GetLastError, LoadLibraryA, GetCurrentThread, SetThreadPriority, GetVersionExA, GetModuleHandleA, GetProcAddress, GetCurrentThreadId, SetEvent, CloseHandle, WaitForSingleObject, CreateThread, CreateEventA
ntdll.dll
NtSetInformationFile, RtlNtStatusToDosError
shell32.dll
Shell_NotifyIconA
user32.dll
MsgWaitForMultipleObjectsEx, LoadIconA, CreateWindowExA, RegisterClassA, LoadCursorA, GetWindowRgn, GetWindowTextA, GetWindowRect, GetWindowLongA, EnumWindows, PostMessageA, SystemParametersInfoA, CloseClipboard, GetClipboardFormatNameA, EnumClipboardFormats, OpenClipboard, SetClipboardViewer, ChangeClipboardChain, RegisterClipboardFormatA, GetClipboardData, SendMessageTimeoutA, GetClipboardOwner, EmptyClipboard, PeekMessageA, SendMessageCallbackA, GetClipboardViewer, SetWindowPos, EnumDisplaySettingsA, EnumDisplayDevicesA, ChangeDisplaySettingsA, DispatchMessageA, SetTimer, FindWindowA, FindWindowExA, SendMessageA, DestroyWindow, UnregisterClassA, GetDC, ReleaseDC, KillTimer, DefWindowProcA, GetCursorPos, WindowFromPoint, GetWindowThreadProcessId, AttachThreadInput, ShowCursor, SetClipboardData, TranslateMessage
Export table
ASMAtomicCmpXchgU8
g_aRTUniLowerRanges
g_aRTUniUpperRanges
g_pszRTAssertExpr
g_pszRTAssertFile
g_pszRTAssertFunction
g_szRTAssertMsg1
g_szRTAssertMsg2
g_u32RTAssertLine
RTAssertAreQuiet
RTAssertMayPanic
RTAssertMsg1
RTAssertMsg1Weak
RTAssertMsg2AddV
RTAssertMsg2AddWeak
RTAssertMsg2AddWeakV
RTAssertMsg2V
RTAssertMsg2Weak
RTAssertMsg2WeakV
RTAssertSetMayPanic
RTAssertSetQuiet
RTAssertShouldPanic
RTAvllU32Destroy
RTAvllU32DoWithAll
RTAvllU32Get
RTAvllU32GetBestFit
RTAvllU32Insert
RTAvllU32Remove
RTAvllU32RemoveBestFit
RTAvlPVDestroy
RTAvlPVDoWithAll
RTAvlPVGet
RTAvlPVGetBestFit
RTAvlPVInsert
RTAvlPVRemove
RTAvlPVRemoveBestFit
RTBldCfgRevision
RTBldCfgRevisionStr
RTBldCfgVersion
RTBldCfgVersionBuild
RTBldCfgVersionMajor
RTBldCfgVersionMinor
RTCritSectDelete
RTCritSectEnter
RTCritSectEnterDebug
RTCritSectEnterMultiple
RTCritSectEnterMultipleDebug
RTCritSectInit
RTCritSectInitEx
RTCritSectLeave
RTCritSectLeaveMultiple
RTCritSectSetSubClass
RTCritSectTryEnter
RTCritSectTryEnterDebug
RTEnvExist
RTEnvGet
RTEnvPut
RTEnvSet
RTEnvUnset
RTErrCOMGet
RTErrConvertFromErrno
RTErrConvertFromNtStatus
RTErrConvertFromWin32
RTErrGet
RTErrWinGet
RTFileChangeLock
RTFileClose
RTFileCopyByHandles
RTFileCopyByHandlesEx
RTFileCopyEx
RTFileDelete
RTFileFlush
RTFileFromNative
RTFileGetMaxSize
RTFileGetMaxSizeEx
RTFileGetSize
RTFileIsValid
RTFileLock
RTFileMove
RTFileOpen
RTFileOpenBitBucket
RTFileQueryFsSizes
RTFileQueryInfo
RTFileRead
RTFileReadAt
RTFileRename
RTFileSeek
RTFileSetForceFlags
RTFileSetMode
RTFileSetSize
RTFileSetTimes
RTFileTell
RTFileToNative
RTFileUnlock
RTFileWrite
RTFileWriteAt
RTFsTypeName
RTLatin1CalcUtf16Len
RTLatin1CalcUtf16LenEx
RTLatin1ToUtf16
RTLatin1ToUtf16Ex
RTLockValidatorClassAddPriorClass
RTLockValidatorClassCreate
RTLockValidatorClassCreateEx
RTLockValidatorClassCreateExV
RTLockValidatorClassCreateUnique
RTLockValidatorClassEnforceStrictReleaseOrder
RTLockValidatorClassFindForSrcPos
RTLockValidatorClassForSrcPos
RTLockValidatorClassRelease
RTLockValidatorClassRetain
RTLockValidatorHoldsLocksInClass
RTLockValidatorHoldsLocksInSubClass
RTLockValidatorIsBlockedThreadInValidator
RTLockValidatorIsEnabled
RTLockValidatorIsQuiet
RTLockValidatorMayPanic
RTLockValidatorQueryBlocking
RTLockValidatorReadLockDec
RTLockValidatorReadLockGetCount
RTLockValidatorReadLockInc
RTLockValidatorRecExclCheckBlocking
RTLockValidatorRecExclCheckOrder
RTLockValidatorRecExclCheckOrderAndBlocking
RTLockValidatorRecExclCreate
RTLockValidatorRecExclCreateV
RTLockValidatorRecExclDelete
RTLockValidatorRecExclDestroy
RTLockValidatorRecExclInit
RTLockValidatorRecExclInitV
RTLockValidatorRecExclRecursion
RTLockValidatorRecExclRecursionMixed
RTLockValidatorRecExclReleaseOwner
RTLockValidatorRecExclReleaseOwnerUnchecked
RTLockValidatorRecExclSetOwner
RTLockValidatorRecExclSetSubClass
RTLockValidatorRecExclUnwind
RTLockValidatorRecExclUnwindMixed
RTLockValidatorRecMakeSiblings
RTLockValidatorRecSharedAddOwner
RTLockValidatorRecSharedCheckAndRelease
RTLockValidatorRecSharedCheckBlocking
RTLockValidatorRecSharedCheckOrder
RTLockValidatorRecSharedCheckOrderAndBlocking
RTLockValidatorRecSharedCheckSignaller
RTLockValidatorRecSharedDelete
RTLockValidatorRecSharedInit
RTLockValidatorRecSharedInitV
RTLockValidatorRecSharedIsOwner
RTLockValidatorRecSharedRemoveOwner
RTLockValidatorRecSharedResetOwner
RTLockValidatorRecSharedSetSubClass
RTLockValidatorSetEnabled
RTLockValidatorSetMayPanic
RTLockValidatorSetQuiet
RTLockValidatorWriteLockDec
RTLockValidatorWriteLockGetCount
RTLockValidatorWriteLockInc
RTLogBackdoorPrintf
RTLogBackdoorPrintfV
RTLogCloneRC
RTLogCopyGroupsAndFlags
RTLogCreate
RTLogCreateEx
RTLogCreateExV
RTLogCreateForR0
RTLogDefaultInit
RTLogDefaultInstance
RTLogDestinations
RTLogDestroy
RTLogFlags
RTLogFlush
RTLogFlushRC
RTLogFlushToLogger
RTLogFormatV
RTLogGetDefaultInstance
RTLogGetDestinations
RTLogGetFlags
RTLogGetGroupSettings
RTLogGroupSettings
RTLogLogger
RTLogLoggerEx
RTLogLoggerExV
RTLogLoggerV
RTLogPrintf
RTLogPrintfV
RTLogRelDefaultInstance
RTLogRelLogger
RTLogRelLoggerV
RTLogRelPrintf
RTLogRelPrintfV
RTLogRelSetDefaultInstance
RTLogSetCustomPrefixCallback
RTLogSetDefaultInstance
RTLogWriteDebugger
RTLogWriteStdErr
RTLogWriteStdOut
RTLogWriteUser
RTMemAlloc
RTMemAllocVar
RTMemAllocZ
RTMemAllocZVar
RTMemDup
RTMemDupEx
RTMemExecAlloc
RTMemExecFree
RTMemFree
RTMemPageAlloc
RTMemPageAllocZ
RTMemPageFree
RTMemProtect
RTMemRealloc
RTMemTmpAlloc
RTMemTmpAllocZ
RTMemTmpFree
RTPathAbs
RTPathExists
RTPathExistsEx
RTPathFilename
RTPathGetCurrent
RTPathParse
RTPathQueryInfo
RTPathQueryInfoEx
RTPathReal
RTPathRename
RTPathSetCurrent
RTPathSetTimes
RTPathSetTimesEx
RTPathStripTrailingSlash
RTPathUserHome
RTProcGetExecutableName
RTProcGetPriority
RTProcSelf
RTProcSetPriority
RTR3Init
RTR3InitAndSUPLib
RTR3InitAndSUPLibWithProgramPath
RTR3InitEx
RTR3InitWithProgramPath
RTSemEventAddSignaller
RTSemEventCreate
RTSemEventCreateEx
RTSemEventDestroy
RTSemEventMultiAddSignaller
RTSemEventMultiCreate
RTSemEventMultiCreateEx
RTSemEventMultiDestroy
RTSemEventMultiRemoveSignaller
RTSemEventMultiReset
RTSemEventMultiSetSignaller
RTSemEventMultiSignal
RTSemEventMultiWait
RTSemEventMultiWaitNoResume
RTSemEventRemoveSignaller
RTSemEventSetSignaller
RTSemEventSignal
RTSemEventWait
RTSemEventWaitNoResume
RTSemRWCreate
RTSemRWCreateEx
RTSemRWDestroy
RTSemRWGetReadCount
RTSemRWGetWriteRecursion
RTSemRWGetWriterReadRecursion
RTSemRWIsReadOwner
RTSemRWIsWriteOwner
RTSemRWReleaseRead
RTSemRWReleaseWrite
RTSemRWRequestRead
RTSemRWRequestReadDebug
RTSemRWRequestReadNoResume
RTSemRWRequestReadNoResumeDebug
RTSemRWRequestWrite
RTSemRWRequestWriteDebug
RTSemRWRequestWriteNoResume
RTSemRWRequestWriteNoResumeDebug
RTSemRWSetSubClass
RTSemSpinMutexCreate
RTSemSpinMutexDestroy
RTSemSpinMutexRelease
RTSemSpinMutexRequest
RTSemSpinMutexTryRequest
RTSemXRoadsCreate
RTSemXRoadsDestroy
RTSemXRoadsEWEnter
RTSemXRoadsEWLeave
RTSemXRoadsNSEnter
RTSemXRoadsNSLeave
RTStrAAppend
RTStrAAppendExN
RTStrAAppendExNV
RTStrAAppendN
RTStrAlloc
RTStrAllocEx
RTStrAPrintf
RTStrAPrintf2
RTStrAPrintf2V
RTStrAPrintfV
RTStrATruncate
RTStrCalcUtf16Len
RTStrCalcUtf16LenEx
RTStrCmp
RTStrCurrentCPToUtf8
RTStrDup
RTStrDupEx
RTStrDupN
RTStrFormat
RTStrFormatNumber
RTStrFormatTypeDeregister
RTStrFormatTypeRegister
RTStrFormatTypeSetUser
RTStrFormatV
RTStrFree
RTStrGetCpExInternal
RTStrGetCpInternal
RTStrGetCpNExInternal
RTStrICmp
RTStrIStr
RTStrIsValidEncoding
RTStrNCmp
RTStrNICmp
RTStrNLen
RTStrPrevCp
RTStrPrintf
RTStrPrintfEx
RTStrPrintfExV
RTStrPrintfV
RTStrPurgeEncoding
RTStrPutCpInternal
RTStrRealloc
RTStrToInt16
RTStrToInt16Ex
RTStrToInt16Full
RTStrToInt32
RTStrToInt32Ex
RTStrToInt32Full
RTStrToInt64
RTStrToInt64Ex
RTStrToInt64Full
RTStrToInt8
RTStrToInt8Ex
RTStrToInt8Full
RTStrToLower
RTStrToUInt16
RTStrToUInt16Ex
RTStrToUInt16Full
RTStrToUInt32
RTStrToUInt32Ex
RTStrToUInt32Full
RTStrToUInt64
RTStrToUInt64Ex
RTStrToUInt64Full
RTStrToUInt8
RTStrToUInt8Ex
RTStrToUInt8Full
RTStrToUni
RTStrToUniEx
RTStrToUpper
RTStrToUtf16
RTStrToUtf16Ex
RTStrUniLen
RTStrUniLenEx
RTStrUtf8ToCurrentCP
RTStrValidateEncoding
RTStrValidateEncodingEx
RTStrVersionCompare
RTThreadAdopt
RTThreadBlocking
RTThreadCreate
RTThreadCreateF
RTThreadCreateV
RTThreadFromNative
RTThreadGetAffinity
RTThreadGetName
RTThreadGetNative
RTThreadGetReallySleeping
RTThreadGetState
RTThreadGetType
RTThreadIsMain
RTThreadNativeSelf
RTThreadSelf
RTThreadSelfAutoAdopt
RTThreadSelfName
RTThreadSetAffinity
RTThreadSetName
RTThreadSetType
RTThreadSleep
RTThreadStateName
RTThreadUnblocked
RTThreadUserReset
RTThreadUserSignal
RTThreadUserWait
RTThreadUserWaitNoResume
RTThreadWait
RTThreadWaitNoResume
RTThreadYield
RTTimeExplode
RTTimeImplode
RTTimeIsLeapYear
RTTimeLocalDeltaNano
RTTimeLocalExplode
RTTimeLocalNow
RTTimeMilliTS
RTTimeNanoTS
RTTimeNormalize
RTTimeNow
RTTimeProgramMicroTS
RTTimeProgramMilliTS
RTTimeProgramNanoTS
RTTimeProgramSecTS
RTTimeProgramStartNanoTS
RTTimeSet
RTTimeSpecToString
RTTimeSystemMilliTS
RTTimeSystemNanoTS
RTTimeToString
RTUtf16CalcLatin1Len
RTUtf16CalcLatin1LenEx
RTUtf16CalcUtf8Len
RTUtf16CalcUtf8LenEx
RTUtf16Cmp
RTUtf16Dup
RTUtf16DupEx
RTUtf16Free
RTUtf16GetCpExInternal
RTUtf16GetCpInternal
RTUtf16ICmp
RTUtf16Len
RTUtf16PutCpInternal
RTUtf16ToLatin1
RTUtf16ToLatin1Ex
RTUtf16ToLower
RTUtf16ToUpper
RTUtf16ToUtf8
RTUtf16ToUtf8Ex

VBoxTray.exe

Oracle VM VirtualBox Guest Additions by Sun Microsystems (Signed)

Remove VBoxTray.exe
Version:   3.2.10.66523
MD5:   907c481bb054fec8b0330786fbb778b3
SHA1:   15f938e948df2acf094c2180ddd930272b12523c
SHA256:   a2342562c276113f167daf70fc0d5b76da9119d474101a031385104055c24695

Overview

vboxtray.exe executes as a process with the local user's privileges. It is set to be start when the PC boots and any user logs into Windows (added to the Run registry key for the all users under the local machine). The file is digitally signed by Sun Microsystems which was issued by the VeriSign certificate authority (CA). This particular version is usually found on Microsoft Windows XP (5.1.2600.196608).

DetailsDetails

File name:vboxtray.exe
Publisher:Oracle Corporation
Product name:Oracle VM VirtualBox Guest Additions
Description:VirtualBox Guest Additions Tray Application
Typical file path:C:\Windows\System32\vboxtray.exe
File version:3.2.10.66523
Product version:3.2.10.r66523
Size:866.52 KB (887,312 bytes)
Build date:10/8/2010 6:28 AM
Certificate
Issued to:Sun Microsystems
Authority (CA):VeriSign
Effective date:Tuesday, June 10, 2008
Expiration date:Saturday, June 11, 2011
Digital DNA
PE subsystem:Windows GUI
File packed:No
.NET CLR:No
More details

BehaviorsBehaviors

Startup files (all users) run
Runs under the registry key 'HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run'
  • 'VBoxTray' → C:\WINDOWS\system32\VBoxTray.exe

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00007943%
0.028634%
Kernel CPU:0.00006985%
0.013761%
User CPU:0.00000959%
0.014873%
Kernel CPU time:511 ms/min
100,923,805ms/min
Memory
Private memory:856 KB
21.59 MB
Private (maximum):2.79 MB
Private (minimum):308 KB
Non-paged memory:856 KB
21.59 MB
Virtual memory:32.11 MB
140.96 MB
Virtual memory (peak):37.59 MB
169.69 MB
Working set:420 KB
18.61 MB
Working set (peak):6.13 MB
37.95 MB
Page faults:3,078/min
2,039/min
I/O
I/O other transfer:414 Bytes/sec
448.09 KB/min
I/O other operations:26/sec
1,671/min
Resource allocations
Threads:5
12
Handles:49
600
GUI GDI count:14
103
GUI USER count:11
49

BehaviorsProcess properties

Tray notification:Yes
Integrety level:Undefined
Platform:32-bit
Command line:"C:\Windows\System32\vboxtray.exe"
Owner:User
Parent process:Explorer.EXE (Windows Explorer by Microsoft)

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Microsoft Windows XP 100.00%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE