Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

9.2.33.0 40.00%
9.2.33.0 60.00%
(Note, Lexmark International publishes each variation of this file with the same version, but the hashes are unique.)

Relationships

Parent process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
InitializeSecurityDescriptor, RegEnumValueA, RegCreateKeyExA, RegEnumKeyExA, RegDeleteKeyA, RegSetValueExA, RegDeleteValueA, RegOpenKeyExA, RegQueryValueExA, RegCloseKey, AllocateAndInitializeSid, FreeSid, SetKernelObjectSecurity, GetSecurityDescriptorDacl, SetSecurityInfo, InitializeAcl, AddAccessAllowedAce, CloseServiceHandle, QueryServiceStatus, ControlService, OpenServiceA, OpenSCManagerA, StartServiceA, SetSecurityDescriptorDacl, IsValidSid, GetLengthSid, GetAce
kernel32.dll
FormatMessageA, WideCharToMultiByte, MultiByteToWideChar, InitializeCriticalSection, DeleteCriticalSection, EnterCriticalSection, LeaveCriticalSection, DeleteFileA, GetWindowsDirectoryA, GetCurrentThreadId, WriteFile, SetFilePointer, GetFileSize, CreateFileA, GetCurrentProcessId, GetLocalTime, SetLastError, ExpandEnvironmentStringsA, GetCurrentProcess, GetVersionExA, GetExitCodeProcess, WaitForSingleObject, SetPriorityClass, CreateProcessA, SetThreadPriority, SetEvent, ResetEvent, CreateEventA, OpenEventA, ReleaseMutex, CreateMutexA, lstrcpynA, lstrcatA, lstrcpyA, GetComputerNameA, DisconnectNamedPipe, FlushFileBuffers, WaitForMultipleObjects, GetOverlappedResult, ReadFile, ConnectNamedPipe, CreateNamedPipeA, WaitNamedPipeA, InterlockedIncrement, InterlockedExchange, TerminateProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsDebuggerPresent, RaiseException, RtlUnwind, HeapFree, HeapAlloc, GetProcessHeap, GetStartupInfoA, ExitThread, CreateThread, LCMapStringA, LCMapStringW, GetCPInfo, ExitProcess, TlsGetValue, TlsAlloc, TlsSetValue, TlsFree, HeapSize, GetACP, GetOEMCP, GetStdHandle, FreeEnvironmentStringsA, GetEnvironmentStrings, FreeEnvironmentStringsW, GetEnvironmentStringsW, SetHandleCount, GetFileType, HeapDestroy, HeapCreate, VirtualFree, QueryPerformanceCounter, GetSystemTimeAsFileTime, VirtualAlloc, HeapReAlloc, GetConsoleCP, GetConsoleMode, GetLocaleInfoA, GetStringTypeA, GetStringTypeW, GetUserDefaultLCID, EnumSystemLocalesA, IsValidLocale, IsValidCodePage, WriteConsoleA, GetConsoleOutputCP, WriteConsoleW, SetStdHandle, GetLocaleInfoW, CreateFileW, SetEndOfFile, GetCommandLineA, TerminateThread, CloseHandle, GetModuleFileNameA, GetSystemDirectoryA, GetTickCount, Sleep, GetModuleHandleA, LoadLibraryA, GetProcAddress, GetLastError, InterlockedDecrement, FreeLibrary
user32.dll
SendMessageA, FindWindowA
winspool.drv
DeleteMonitorA

lxeccoms.exe

Printer Communication System by Lexmark International (Signed)

Remove lxeccoms.exe
Version:   9.2.33.0
MD5:   951658d90f95ce120823129db362f667
SHA1:   632fcd95a2463b5c0989446e036c86d1de650dc5
SHA256:   cada059b216084c321394707076af0f7df49f8a07657c5470bb00c59a7c6e67a

Overview

lxeccoms.exe runs as a service under the name lxec_device with extensive SYSTEM privileges (full administrator access). The file is digitally signed by Lexmark International which was issued by the Thawte Consulting (Pty) Ltd. certificate authority (CA).

DetailsDetails

File name:lxeccoms.exe
Product name:Printer Communication System
Typical file path:C:\Windows\System32\lxeccoms.exe
Original name:GN__coms.exe
File version:9.2.33.0
Size:1 MB (1,052,328 bytes)
Certificate
Issued to:Lexmark International
Authority (CA):Thawte Consulting (Pty) Ltd.
Effective date:Monday, June 22, 2009
Expiration date:Wednesday, August 3, 2011
Digital DNA
PE subsystem:Windows GUI
File packed:No
.NET CLR:No
More details

BehaviorsBehaviors

Service
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
  • 'lxec_device'
Network connections
  • [UDP] listens on port 39048

  • ResourcesResource utilization

    (Note: statistics below are averages based on a minimum sample size of 200 unique participants)
    Averages
     
    CPU
    Total CPU:0.00008077%
    0.028634%
    Kernel CPU:0.00003346%
    0.013761%
    User CPU:0.00004731%
    0.014873%
    Kernel CPU time:186,483 ms/min
    100,923,805ms/min
    CPU cycles:3,518,367/sec
    17,470,203/sec
    Context switches:3/sec
    284/sec
    Memory
    Private memory:6.63 MB
    21.59 MB
    Private (maximum):11.15 MB
    Private (minimum):6.22 MB
    Non-paged memory:6.63 MB
    21.59 MB
    Virtual memory:72.75 MB
    140.96 MB
    Virtual memory (peak):76.26 MB
    169.69 MB
    Working set:7.82 MB
    18.61 MB
    Working set (peak):13.29 MB
    37.95 MB
    Page faults:84,430/min
    2,039/min
    I/O
    I/O read transfer:1.71 KB/sec
    1.02 MB/min
    I/O read operations:26/sec
    343/min
    I/O write transfer:1.82 KB/sec
    274.99 KB/min
    I/O write operations:2/sec
    227/min
    I/O other transfer:54.33 KB/sec
    448.09 KB/min
    I/O other operations:2,868/sec
    1,671/min
    Resource allocations
    Threads:14
    12
    Handles:188
    600

    BehaviorsProcess properties

    Integrety level:System
    Platform:64-bit
    Command line:C:\Windows\System32\lxeccoms.exe -service
    Owner:SYSTEM
    Windows Service
    Service name:lxec_device
    Type:Win32OwnProcess, InteractiveProcess
    Parent process:services.exe (by Microsoft)

    ResourcesThreads

    Averages
     
    lxeausb1.dll (Printer Communication System)
    Total CPU:0.13135113%
    0.272967%
    Kernel CPU:0.08606960%
    0.107585%
    User CPU:0.04528153%
    0.165382%
    CPU cycles:3,244,547/sec
    5,741,424/sec
    Context switches:6/sec
    79/sec
    Memory:1.3 MB
    1.16 MB
    lxeaserv.dll (Printer Communication System)
    Total CPU:0.02500133%
    Kernel CPU:0.02017673%
    User CPU:0.00482460%
    CPU cycles:849,142/sec
    Context switches:2/sec
    Memory:1.58 MB
    lxeccoms.exe (main module)
    Total CPU:0.00008711%
    Kernel CPU:0.00005893%
    User CPU:0.00002818%
    CPU cycles:3,465/sec
    Memory:1.07 MB
    lxechbn3.dll (Printer Communication System)
    Total CPU:0.00000989%
    Kernel CPU:0.00000908%
    User CPU:0.00000081%
    CPU cycles:27,614/sec
    Memory:1.08 MB

    Common loaded modules

    These are modules that are typiclaly loaded within the context of this process.

    Windows OS versionsDistribution by Windows OS

    OS versiondistribution
    Windows 8 40.00%
    Windows 7 Home Premium 20.00%
    Windows Vista Home Premium 20.00%
    Windows Vista Ultimate 20.00%

    Distribution by countryDistribution by country

    United States installs about 80.00% of Printer Communication System.

    OEM distributionDistribution by PC manufacturer

    PC Manufacturerdistribution
    ASUS 80.00%
    Hewlett-Packard 20.00%
    Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

    Download it for FREE