Should I block it?

No, this file is 100% safe to run.

Relationships

Child processes
Related files

PE structurePE file structure

Show functions
Import table
ntdll.dll
NtTerminateProcess, NtRaiseHardError, RtlInitUnicodeString, RtlAdjustPrivilege, RtlFreeHeap, RtlUpcaseUnicodeChar, RtlUnicodeStringToInteger, RtlAllocateHeap, RtlFreeUnicodeString, DbgPrintEx, RtlExtendedIntegerMultiply, NtQueryVolumeInformationFile, NtOpenFile, NtClose, wcslen, wcscpy, NtQueryInformationProcess, NtCreatePagingFile, NtSetInformationFile, NtQueryInformationFile, DbgPrint, NtQuerySystemInformation, _allmul, NtSetSecurityObject, RtlSetOwnerSecurityDescriptor, RtlSetDaclSecurityDescriptor, RtlAddAccessAllowedAce, RtlCreateAcl, RtlCreateSecurityDescriptor, RtlAllocateAndInitializeSid, RtlDosPathNameToNtPathName_U, RtlExpandEnvironmentStrings_U, NtQueryValueKey, swprintf, NtOpenKey, NtSetValueKey, NtCreateKey, NtCreateFile, NtReadFile, _chkstk, wcsstr, _wcsupr, NtMakeTemporaryObject, NtCreateSymbolicLinkObject, NtOpenDirectoryObject, wcsncpy, RtlAnsiStringToUnicodeString, RtlInitAnsiString, _stricmp, NtCreateSection, LdrVerifyImageMatchesChecksum, NtCreateDirectoryObject, RtlSetEnvironmentVariable, LdrUnloadDll, LdrGetProcedureAddress, RtlInitString, LdrLoadDll, RtlCompareUnicodeString, RtlEqualString, memmove, _wcsicmp, RtlCreateUnicodeString, RtlDosSearchPath_U, RtlQueryEnvironmentVariable_U, RtlEqualUnicodeString, RtlAppendUnicodeToString, RtlAppendUnicodeStringToString, NtWaitForSingleObject, NtResumeThread, RtlDestroyProcessParameters, RtlCreateUserProcess, RtlCreateProcessParameters, RtlUnlockBootStatusData, RtlGetSetBootStatusData, RtlLockBootStatusData, NtDisplayString, sprintf, NtDuplicateObject, RtlLengthSid, RtlGetAce, RtlPrefixUnicodeString, NtQuerySymbolicLinkObject, NtOpenSymbolicLinkObject, NtQueryDirectoryObject, NtRequestWaitReplyPort, RtlFindMessage, NtSetEvent, NtSetSystemInformation, NtCreateEvent, RtlLeaveCriticalSection, RtlEnterCriticalSection, wcscat, LdrQueryImageFileExecutionOptions, NtDelayExecution, NtInitializeRegistry, RtlQueryRegistryValues, NtDeleteValueKey, RtlCreateEnvironment, RtlCreateUserThread, NtCreatePort, RtlInitializeCriticalSection, NtSetInformationProcess, RtlCreateTagHeap, NtSetInformationThread, NtQueryInformationToken, NtOpenThreadToken, NtImpersonateClientOfPort, NtConnectPort, NtCompleteConnectPort, NtAcceptConnectPort, NtOpenProcess, NtReplyWaitReceivePort, RtlExitUserThread, NtReplyPort, RtlSetThreadIsCritical, NtWaitForMultipleObjects, RtlSetProcessIsCritical, RtlUnicodeStringToAnsiString, NtAdjustPrivilegesToken, NtOpenProcessToken, RtlUnhandledExceptionFilter, RtlUnwind, NtQueryVirtualMemory, DbgBreakPoint, RtlNormalizeProcessParams

smss.exe

Menedżer sesji Windows NT by Microsoft

Remove smss.exe
Version:   5.1.2600.5512 (xpsp.080413-2111)
MD5:   059568113b0940bcdfd5f17b698ce9e9
SHA1:   fb36ec08805c937ac39edf8b92b6b844aa46d3df
This is a Windows system installed file with Windows File Protection (WFP) enabled.

Overview

smss.exe executes as a process with the local user's privileges. This version is installed on Windows XP and is compiled as a 32 bit program.

DetailsDetails

File name:smss.exe
Publisher:Microsoft Corporation
Product name:Menedżer sesji Windows NT
Description:System operacyjny Microsoft® Windows®
Typical file path:C:\Windows\System32\smss.exe
File version:5.1.2600.5512 (xpsp.080413-2111)
Product version:5.1.2600.5512
Size:49.5 KB (50,688 bytes)
Build date:4/13/2008 8:34 PM
Digital DNA
PE subsystem:Native (none required)
File packed:No
.NET CLR:No
More details

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00065084%
0.028634%
Kernel CPU:0.00049080%
0.013761%
User CPU:0.00016004%
0.014873%
Kernel CPU time:46,875 ms/min
100,923,805ms/min
Memory
Private memory:168 KB
21.59 MB
Private (maximum):416 KB
Private (minimum):312 KB
Non-paged memory:168 KB
21.59 MB
Virtual memory:3.73 MB
140.96 MB
Virtual memory (peak):11.82 MB
169.69 MB
Working set:312 KB
18.61 MB
Working set (peak):508 KB
37.95 MB
Page faults:230/min
2,039/min
I/O
I/O read transfer:303 Bytes/sec
1.02 MB/min
I/O read operations:1/sec
343/min
I/O write transfer:0 Bytes/sec
274.99 KB/min
I/O write operations:1/sec
227/min
I/O other transfer:269 Bytes/sec
448.09 KB/min
I/O other operations:2/sec
1,671/min
Resource allocations
Threads:3
12
Handles:19
600

BehaviorsProcess properties

Integrety level:Undefined
Platform:32-bit
Command line:\systemroot\system32\smss.exe
Owner:User

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Microsoft Windows XP 100.00%

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
ASUS 100.00%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE