Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

b892f 50.00%
3ad37 50.00%
(Note, Plura Processing L.P. publishes each variation of this file with the same version, but the hashes are unique.)

Relationships

Parent process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
RegQueryValueExW, RegOpenKeyExW, RegCloseKey, RegQueryValueExA, RegOpenKeyExA, RegFlushKey, RegEnumKeyExA, RegCreateKeyExW, OpenProcessToken, LookupPrivilegeNameA, LookupPrivilegeNameW, GetUserNameA, GetTokenInformation
comctl32.dll
ImageList_Destroy, ImageList_Add, ImageList_Create, InitializeFlatSB, FlatSB_SetScrollProp, FlatSB_SetScrollPos, FlatSB_SetScrollInfo, FlatSB_GetScrollPos, FlatSB_GetScrollInfo, _TrackMouseEvent, ImageList_SetIconSize, ImageList_GetIconSize, ImageList_Write, ImageList_Read, ImageList_GetDragImage, ImageList_DragShowNolock, ImageList_DragMove, ImageList_DragLeave, ImageList_DragEnter, ImageList_EndDrag, ImageList_BeginDrag, ImageList_Remove, ImageList_DrawEx, ImageList_GetBkColor, ImageList_SetBkColor, ImageList_SetImageCount, ImageList_GetImageCount
gdi32.dll
UnrealizeObject, TextOutA, StretchBlt, SetWindowOrgEx, SetWinMetaFileBits, SetViewportOrgEx, SetTextColor, SetStretchBltMode, SetROP2, SetPixel, SetMapMode, SetEnhMetaFileBits, SetDIBColorTable, SetBrushOrgEx, SetBkMode, SetBkColor, SelectPalette, SelectObject, SaveDC, RestoreDC, RectVisible, RealizePalette, PlayEnhMetaFile, PatBlt, MoveToEx, MaskBlt, LineTo, LPtoDP, IntersectClipRect, GetWindowOrgEx, GetWinMetaFileBits, GetTextMetricsW, GetTextExtentPoint32A, GetTextExtentPoint32W, GetSystemPaletteEntries, GetStockObject, GetRgnBox, GetPixel, GetPaletteEntries, GetObjectW, GetMapMode, GetEnhMetaFilePaletteEntries, GetEnhMetaFileHeader, GetEnhMetaFileDescriptionW, GetEnhMetaFileBits, GetDeviceCaps, GetDIBits, GetDIBColorTable, GetDCOrgEx, GetCurrentPositionEx, GetCurrentObject, GetClipBox, GetBrushOrgEx, GetBitmapBits, FrameRgn, ExcludeClipRect, DeleteObject, DeleteEnhMetaFile, DeleteDC, CreateSolidBrush, CreateRectRgnIndirect, CreateRectRgn, CreatePenIndirect, CreatePalette, CreateHalftonePalette, CreateFontIndirectA, CreateFontIndirectW, CreateFontA, CreateEnhMetaFileW, CreateDIBitmap, CreateDIBSection, CreateCompatibleDC, CreateCompatibleBitmap, CreateBrushIndirect, CreateBitmap, CopyEnhMetaFileW, CombineRgn, CloseEnhMetaFile, BitBlt, TranslateCharsetInfo
kernel32.dll
GetACP, Sleep, VirtualFree, VirtualAlloc, GetSystemInfo, GetVersion, GetCurrentThreadId, VirtualQuery, WideCharToMultiByte, SetCurrentDirectoryW, MultiByteToWideChar, lstrlenW, lstrcpynW, LoadLibraryExW, GetThreadLocale, GetStartupInfoA, GetProcAddress, GetModuleHandleW, GetModuleFileNameW, GetLocaleInfoW, GetLastError, GetCurrentDirectoryW, GetCommandLineW, FreeLibrary, FindFirstFileW, FindClose, ExitProcess, ExitThread, CreateThread, CompareStringW, WriteFile, UnhandledExceptionFilter, SetFilePointer, SetEndOfFile, RtlUnwind, ReadFile, RaiseException, GetStdHandle, GetFileSize, GetFileType, CreateFileW, CloseHandle, TlsSetValue, TlsGetValue, LocalAlloc, lstrcpyW, WritePrivateProfileStringA, WaitForSingleObject, WaitForMultipleObjectsEx, VirtualQueryEx, VirtualProtect, UnmapViewOfFile, TerminateThread, TerminateProcess, SwitchToThread, SuspendThread, SizeofResource, SignalObjectAndWait, SetUnhandledExceptionFilter, SetThreadPriority, SetThreadLocale, SetLastError, SetFileAttributesW, SetEvent, SetErrorMode, SetEnvironmentVariableA, SetEnvironmentVariableW, ResumeThread, ResetEvent, OutputDebugStringA, OpenProcess, MulDiv, MoveFileA, MapViewOfFile, LockResource, LoadResource, LoadLibraryExA, LoadLibraryA, LoadLibraryW, LeaveCriticalSection, IsBadReadPtr, InitializeCriticalSection, GlobalUnlock, GlobalSize, GlobalMemoryStatus, GlobalLock, GlobalFree, GlobalFindAtomW, GlobalDeleteAtom, GlobalAlloc, GlobalAddAtomW, GetWindowsDirectoryA, GetVersionExW, GetUserDefaultLCID, GetTickCount, GetThreadPriority, GetThreadContext, GetTempPathA, GetTempPathW, GetTempFileNameW, GetSystemTime, GetSystemDefaultLangID, GetProfileStringA, GetPrivateProfileStringA, GetPriorityClass, GetModuleHandleA, GetModuleFileNameA, GetLocaleInfoA, GetLocalTime, GetHandleInformation, GetFullPathNameW, GetFileAttributesA, GetFileAttributesW, GetExitCodeThread, GetExitCodeProcess, GetEnvironmentVariableA, GetDiskFreeSpaceW, GetDateFormatW, GetCurrentThread, GetCurrentProcessId, GetCurrentProcess, GetComputerNameA, GetComputerNameW, GetCPInfo, FreeResource, InterlockedIncrement, InterlockedExchangeAdd, InterlockedExchange, InterlockedDecrement, InterlockedCompareExchange, FormatMessageW, FlushInstructionCache, FindResourceA, FindResourceW, FindNextFileW, FindFirstFileA, FileTimeToLocalFileTime, FileTimeToDosDateTime, ExpandEnvironmentStringsW, EnumSystemLocalesA, EnumCalendarInfoA, EnterCriticalSection, DuplicateHandle, DeleteFileA, DeleteFileW, DeleteCriticalSection, CreateProcessA, CreateProcessW, CreateMutexW, CreateFileMappingW, CreateFileA, CreateEventW, CreateDirectoryW
msimg32.dll
AlphaBlend
ole32.dll
CreateStreamOnHGlobal, IsAccelerator, OleDraw, OleSetMenuDescriptor, OleUninitialize, OleInitialize, CoTaskMemFree, ProgIDFromCLSID, StringFromCLSID, CoCreateInstance, CoGetClassObject, CoUninitialize, CoInitialize, IsEqualGUID
oleaut32.dll
SysFreeString, SysReAllocStringLen, SysAllocStringLen, GetErrorInfo, GetActiveObject, SafeArrayPtrOfIndex, SafeArrayGetUBound, SafeArrayGetLBound, SafeArrayCreate, VariantChangeType, VariantCopy, VariantClear, VariantInit
shell32.dll
ShellExecuteA
user32.dll
GetKeyboardType, LoadStringW, MessageBoxA, CharNextW, DllMain
version.dll
VerQueryValueA, VerQueryValueW, GetFileVersionInfoSizeA, GetFileVersionInfoSizeW, GetFileVersionInfoA, GetFileVersionInfoW
Export table
EurekaLog_AttachedFilesRequestEvent
EurekaLog_CallCreateThread
EurekaLog_CallExceptObject
EurekaLog_CallExitThread
EurekaLog_CallGeneralRaise
EurekaLog_CallResumeThread
EurekaLog_CustomButtonClickEvent
EurekaLog_CustomDataRequestEventEx
EurekaLog_CustomWebFieldsRequestEvent
EurekaLog_ExceptionActionNotifyEvent
EurekaLog_ExceptionErrorNotifyEvent
EurekaLog_ExceptionNotifyEvent
EurekaLog_HandledExceptionNotifyEvent
EurekaLog_LastDelphiException
EurekaLog_PasswordRequestEvent
EurekaLog_PasswordRequestEventEx
ExceptionManager

cirrusprocessing.exe

By Plura Processing L.P. (Signed)

Remove cirrusprocessing.exe
MD5:   b892f07038a1df79c70eee75e8d84736
SHA1:   9081d3ea2ae4916f571f25d5d05c406b0afade4f
SHA256:   3a27892e7c7de500d779e9aa7fd2fd8eee320c3cd48b4b8e8383c387c16ca6dd

Overview

cirrusprocessing.exe executes as a process with the local user's privileges usually within the context of Windows Explorer. It is set to be run when the PC boots and the user logs into Windows (added to the Run registry key for the current user). The file is digitally signed by Plura Processing L.P. which was issued by the VeriSign certificate authority (CA).

DetailsDetails

File name:cirrusprocessing.exe
Typical file path:C:\Program Files\cirrus processing\cirrusprocessing.exe
Size:1.03 MB (1,084,416 bytes)
Certificate
Issued to:Plura Processing L.P.
Authority (CA):VeriSign
Digital DNA
PE subsystem:Windows GUI
File packed:No
.NET CLR:No
More details

BehaviorsBehaviors

Startup files (user) run
Runs under the registry key 'HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run'
  • 'CirrusProcessing' → C:\Program Files\Cirrus Processing\CirrusProcessing.exe
Network connections
  • [UDP] listens on port 58688

  • ResourcesResource utilization

    (Note: statistics below are averages based on a minimum sample size of 200 unique participants)
    Averages
     
    CPU
    Total CPU:0.01156064%
    0.028634%
    Kernel CPU:0.00088214%
    0.013761%
    User CPU:0.01067850%
    0.014873%
    Kernel CPU time:1,076 ms/min
    100,923,805ms/min
    Memory
    Private memory:21.04 MB
    21.59 MB
    Private (maximum):27.94 MB
    Private (minimum):26.64 MB
    Non-paged memory:21.04 MB
    21.59 MB
    Virtual memory:167.52 MB
    140.96 MB
    Virtual memory (peak):179.16 MB
    169.69 MB
    Working set:27.12 MB
    18.61 MB
    Working set (peak):28.63 MB
    37.95 MB
    Resource allocations
    Threads:9
    12
    Handles:350
    600
    GUI GDI count:57
    103
    GUI GDI peak:59
    142
    GUI USER count:46
    49
    GUI USER peak:61
    71

    BehaviorsProcess properties

    Integrety level:Medium
    Platform:32-bit
    Command line:"C:\Program Files\cirrus processing\cirrusprocessing.exe"
    Owner:User
    Parent process:explorer.exe (Windows Explorer by Microsoft Corporation)

    ResourcesThreads

    Averages
     
    CirrusProcessing.exe (main module)
    Total CPU:0.01481747%
    0.272967%
    Kernel CPU:0.00903504%
    0.107585%
    User CPU:0.00578243%
    0.165382%
    CPU cycles:423,389/sec
    5,741,424/sec
    Memory:1.14 MB
    1.16 MB
    msvcrt.dll
    Total CPU:0.00328003%
    Kernel CPU:0.00000000%
    User CPU:0.00328003%
    CPU cycles:102,269/sec
    Memory:688 KB
    WINMM.dll
    Total CPU:0.00036489%
    Kernel CPU:0.00018245%
    User CPU:0.00018245%
    CPU cycles:10,772/sec
    Memory:200 KB
    WININET.dll
    Total CPU:0.00036212%
    Kernel CPU:0.00036212%
    User CPU:0.00000000%
    CPU cycles:26,381/sec
    Memory:1.11 MB

    Windows OS versionsDistribution by Windows OS

    OS versiondistribution
    Windows 7 Ultimate 100.00%

    Distribution by countryDistribution by country

    United Kingdom installs about 50.00% of cirrusprocessing.exe.

    OEM distributionDistribution by PC manufacturer

    PC Manufacturerdistribution
    Dell 100.00%
    Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

    Download it for FREE