Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

5, 1, 864, 0 16.67%
5, 1, 822, 0 16.67%
5, 0, 677, 0 16.67%
5, 0, 594, 0 50.00%

Relationships

Parent process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
InitializeSecurityDescriptor, RegQueryValueExA, RegEnumKeyExW, EqualSid, RegQueryValueExW, FreeSid, SetSecurityDescriptorDacl, AllocateAndInitializeSid, GetTokenInformation, OpenProcessToken, RegCloseKey, RegEnumValueW, RegOpenKeyExW, RegOpenKeyW, IsTextUnicode, RegOpenKeyExA
ashbase.dll
_strDecode@12, _basResPwdCheck@4, _basGetComputerName@0, _notRemEvent@4, _notFree@0, _basDeleteValue@8, _basStoreDWORDValue@12, _basCheck@0, _notInit@0, _notAddEvent@12, _basInitThreadLocale@0, _strEncode@12, _notEvent@4, _basFormatNumber@16, _CallOnSecureDesktop@12, _basCreatePath@16, _basFreeLibrary@0, _basA2U@16, _basGetProfileString@20, _basGetErrorString@12, _basGetProfileInt@12, _basWriteProfileString@12, _basInitLibrary@4, _basValidatePath@8, _basA2U@12
ashtask.dll
_tskAddArea@8, _tskFreeData@4, _tskExecData@16, _tskFreeLibrary@0, _tskInitLibrary@8
aswcmnbs.dll
fsGetAvastSumpPath, fsGetAvastTempFileName, fsGetAvastProgramPath
aswcmnis.dll
cyphSimpleCode, inflateInit_, inflate, inflateEnd, deflateEnd, deflate, inflateReset, deflateReset, deflateInit2_
aswcmnos.dll
dep_fsEnableWow64FsRedirection, dep_osIsWin64, dep_osIsWow64, dep_fsRemoveFolderRecursive, dep_fsDeleteFileX, dep_fsWriteFile, dep_fsCloseFile, dep_fsReadFile, dep_fsGetFileSizeHandle, dep_fsOpenFileX
aswlog.dll
_logFree@0, logDebugA, _logInit@8
comctl32.dll
ImageList_Draw, ImageList_GetImageInfo, ImageList_DrawEx, ImageList_GetIconSize
comdlg32.dll
GetOpenFileNameW
gdi32.dll
GetTextMetricsA, SetWindowOrgEx, SetLayout, SetViewportOrgEx, LPtoDP, SetWindowExtEx, GetWindowExtEx, SetTextColor, SetBkColor, ExcludeClipRect, CreateRectRgnIndirect, DPtoLP, CombineRgn, SetMapMode, GetMapMode, SaveDC, GetClipBox, SetViewportExtEx, GetViewportExtEx, GetObjectA, GetStockObject, RestoreDC, CreateSolidBrush, DeleteObject, GetTextExtentPointW, DeleteDC, BitBlt, CreateCompatibleBitmap, SetPixel, StretchBlt, CreatePen, GetTextExtentPoint32W, GetObjectW, CreateCompatibleDC, SetTextAlign, GetTextAlign, SelectObject, GetDeviceCaps, TextOutA, TextOutW, GetPixel, IntersectClipRect, RectVisible, CreatePatternBrush, GetTextExtentExPointW, Rectangle, SetBkMode, CreateBitmap, CreateHatchBrush, GetTextExtentPoint32A, PatBlt, GetWindowOrgEx, EnumFontFamiliesExW, AddFontMemResourceEx, EnumFontFamiliesExA, CreateFontA, SetStretchBltMode, StretchDIBits, GetDIBits, CreateDIBSection, CreateDIBPatternBrushPt, GetCurrentObject, CreateRoundRectRgn, CreateFontIndirectW, Escape, ExtTextOutW, PtVisible, GetCurrentPositionEx, Polygon, SetBrushOrgEx, CreateDCA, SelectClipRgn, CreateRectRgn, RoundRect
kernel32.dll
GetFileSize, CreateMutexW, SetFilePointer, DeleteFileW, LockResource, EnterCriticalSection, SizeofResource, LoadResource, FindResourceW, LeaveCriticalSection, GetDateFormatW, GetTimeFormatW, FileTimeToSystemTime, GetStringTypeA, FileTimeToLocalFileTime, GetLastError, Sleep, WideCharToMultiByte, SetProcessWorkingSetSize, GetCurrentProcess, DeleteCriticalSection, InitializeCriticalSectionAndSpinCount, WaitForSingleObject, GetExitCodeThread, FreeLibrary, GetProcAddress, LoadLibraryA, GetSystemDirectoryA, LocalFree, GetLocaleInfoW, GetUserDefaultLCID, GetVersionExW, LCMapStringW, GetThreadLocale, LoadLibraryW, GetModuleHandleW, TerminateProcess, ExitProcess, GetCurrentProcessId, CreateEventW, CreateThread, CloseHandle, InitializeCriticalSection, GetACP, GetTempPathW, MultiByteToWideChar, GetTickCount, SetEvent, GetModuleFileNameW, GlobalLock, GlobalUnlock, LoadLibraryExW, GetShortPathNameW, FindFirstFileW, FindNextFileW, FindClose, GetSystemDirectoryW, GetWindowsDirectoryW, WaitForMultipleObjects, TerminateThread, GetCurrentThreadId, CreateFileW, WriteFile, RaiseException, ExpandEnvironmentStringsA, SetLastError, Process32NextW, Process32FirstW, CreateToolhelp32Snapshot, LocalUnlock, CreateFileMappingA, FlushViewOfFile, SetEndOfFile, UnmapViewOfFile, MapViewOfFile, GetLocalTime, SystemTimeToFileTime, GetVersionExA, GlobalAlloc, SetThreadLocale, GetCPInfo, GetCurrencyFormatW, ExitThread, CreateEventA, ExpandEnvironmentStringsW, OpenProcess, HeapFree, GetProcessHeap, HeapAlloc, GetNumberFormatW, GetFileAttributesW, InterlockedIncrement, InterlockedDecrement, GetUserDefaultLangID, GetVersion, OpenEventW, ReadFile, IsBadReadPtr, MulDiv, TlsGetValue, GetLocaleInfoA, TlsSetValue, GetTempFileNameA, TlsAlloc, GetTempPathA, GetStringTypeW, CopyFileW, ReleaseMutex, GetDiskFreeSpaceExW, lstrcmpiW, CreateDirectoryW, lstrcmpW, GetExitCodeProcess, LocalAlloc, InterlockedExchange, InterlockedCompareExchange, GetStartupInfoW, SetUnhandledExceptionFilter, QueryPerformanceCounter, GetSystemTimeAsFileTime, UnhandledExceptionFilter, IsDebuggerPresent, FindResourceA, CreateFileA, FreeResource
mfc90u.dll
DllMain
msvcp90.dll
DllMain
msvcr90.dll
DllMain
ole32.dll
CoCreateInstance, StringFromCLSID, CoTaskMemFree, CoCreateGuid
oleacc.dll
AccessibleObjectFromWindow, LresultFromObject, CreateStdAccessibleObject
psapi.dll
EnumProcessModules, GetModuleFileNameExW
rpcrt4.dll
RpcStringFreeW, RpcBindingFree, NdrConformantArrayMarshall, RpcRaiseException, NdrClientInitializeNew, NdrConformantArrayBufferSize, NdrFreeBuffer, NdrGetBuffer, NdrConformantStringBufferSize, RpcBindingFromStringBindingW, NdrSendReceive, NdrConvert, NdrConformantStringMarshall, RpcStringBindingComposeW, RpcBindingServerFromClient, RpcBindingToStringBindingW, RpcStringBindingParseW, I_RpcGetBuffer, NdrAllocate, NdrServerInitializeNew, NdrConformantStringUnmarshall, NdrPointerFree, UuidCreate, NdrConformantArrayUnmarshall
shell32.dll
SHBrowseForFolderW, ShellExecuteW, SHGetDesktopFolder, SHGetPathFromIDListW, Shell_NotifyIconW, SHGetFileInfoW, SHGetMalloc, ShellExecuteExW, SHGetSpecialFolderLocation
shlwapi.dll
ColorRGBToHLS, PathFileExistsW, PathIsDirectoryW, ColorHLSToRGB, PathCompactPathW
urlmon.dll
FindMimeFromData
user32.dll
DllMain, DrawFrameControl, IsClipboardFormatAvailable, EnumClipboardFormats, RegisterClipboardFormatA, EmptyClipboard, RegisterClipboardFormatW, CountClipboardFormats, SetClipboardData, GetKeyState, MessageBeep, CharUpperBuffW, CharLowerBuffW, AdjustWindowRectEx, CreateWindowExA, GetActiveWindow, CreateWindowExW, ScrollDC, ShowWindow, DeferWindowPos, SystemParametersInfoA, ScrollWindowEx, BeginDeferWindowPos, EndDeferWindowPos, SetScrollInfo, GetWindow, SendMessageTimeoutA, RegisterClassExA, UnregisterClassW, RegisterWindowMessageA, GetWindowLongW, CallWindowProcW, SetWindowLongW, GrayStringW, DrawTextExW, TabbedTextOutW, MapVirtualKeyW, keybd_event, SetWindowRgn, GetCaretBlinkTime, InvertRect, DrawTextA, DrawFocusRect, DrawEdge, GetSysColorBrush, DrawIconEx, CreateIconFromResourceEx, UnregisterClassA, RegisterClassW, EndPaint, ClientToScreen, GetMessageA, GetWindowDC, FillRect, SetCapture, GetFocus, CreateCursor, IsWindowEnabled, WindowFromPoint, SetFocus, SendMessageA, BeginPaint, GetDoubleClickTime, GetCapture, TranslateMessage, InflateRect, OffsetRect, GetAsyncKeyState, SetWindowLongA, GetScrollInfo, GetAncestor, GetWindowLongA, PeekMessageA, ReleaseDC, IsWindowUnicode, DefWindowProcA, GetSysColor, DispatchMessageA, ReleaseCapture, MapWindowPoints, LoadCursorA, DefWindowProcW, GetWindowThreadProcessId, LoadCursorFromFileA, GetClassLongA, MoveWindow, PostMessageA, RegisterWindowMessageW, TrackPopupMenu, RegisterClassExW, PtInRect, GetDesktopWindow, SetMenuDefaultItem, SetParent, LoadMenuW, ModifyMenuW, GetSubMenu, GetMenuItemID, GetMenuItemCount, EnableMenuItem, CheckMenuItem, IsIconic, DrawIcon, wsprintfW, KillTimer, SetTimer, ScreenToClient, OpenClipboard, GetClipboardData, CloseClipboard, LoadImageW, DestroyIcon, GetDlgCtrlID, LoadBitmapW, DrawTextW, FindWindowW, DestroyWindow, NotifyWinEvent, SystemParametersInfoW, SetForegroundWindow, IsWindowVisible, LoadStringW, IsWindow, CopyRect, PostMessageW, LoadCursorW, SetCursor, LoadIconW, GetSystemMetrics, SetScrollRange, SetScrollPos, GetWindowPlacement, GetCursorPos, SendMessageW, GetWindowRect, GetClientRect, GetDC, UpdateWindow, InvalidateRect, RedrawWindow, GetParent, EnableWindow, GetScrollPos
version.dll
GetFileVersionInfoW, VerQueryValueW, GetFileVersionInfoSizeW
wininet.dll
InternetCloseHandle, HttpQueryInfoA, InternetConnectA, InternetGetLastResponseInfoA, InternetReadFile, InternetSetOptionA, InternetCombineUrlA, HttpOpenRequestA, HttpSendRequestA, InternetOpenA, InternetQueryOptionA, InternetErrorDlg
winmm.dll
PlaySoundA, timeGetDevCaps, timeKillEvent, timeSetEvent, timeGetTime
Export table
_ASWBrowseForFolders@16
_ASWBrowseForFoldersA@16

AvastUi.exe

avast! Antivirus by ALWIL Software (Signed)

Remove AvastUi.exe
Version:   5, 1, 864, 0
MD5:   01d052dc94969ad967521ba9358c6273
SHA1:   3d17891337f29a79fdddce25c3145e8c72117510
SHA256:   8bf89a045b7d7c266e912f116cebfc146648beab3ed438a07982fb1373e54e71

What is AvastUi.exe?

avast! Antivirus is a full-featured antivirus and anti-spyware scanning and removal product. Avast offers a web-reputation browser extension as well as virtualization technology. Accurate threat updates via avast updates are delivered automatically using PUSH update technology in Avast! Antivirus.

About AvastUi.exe (from ALWIL Software)

Free antivirus with anti-spyware protection for Windows. AVAST Software leads the security software industry – protecting 160 million PCs, Macs and Mobiles around the globe – by distributing FREE anti

DetailsDetails

File name:avastui.exe
Publisher:AVAST Software
Product name:avast! Antivirus
Description:avast! Antivirus
Typical file path:C:\Program Files\alwil software\avast5\avastui.exe
File version:5, 1, 864, 0
Product version:5, 1, 0, 0
Size:3.24 MB (3,395,600 bytes)
Build date:12/31/2010 11:34 PM
Certificate
Issued to:ALWIL Software
Authority (CA):VeriSign
Digital DNA
PE subsystem:Windows GUI
File packed:No
Code language:Microsoft Visual C++ 9.0
.NET CLR:No
More details

BehaviorsBehaviors

Startup files (all users) run
Runs under the registry key 'HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run'
  • 'avast5' → "C:\Program Files\Alwil Software\Avast5\avastUI.exe" /nogui

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00350270%
0.028634%
Kernel CPU:0.00188540%
0.013761%
User CPU:0.00161729%
0.014873%
Kernel CPU time:2,184,014 ms/min
100,923,805ms/min
Memory
Private memory:4.45 MB
21.59 MB
Private (maximum):6.04 MB
Private (minimum):1.36 MB
Non-paged memory:4.45 MB
21.59 MB
Virtual memory:78.66 MB
140.96 MB
Virtual memory (peak):85.48 MB
169.69 MB
Working set:1.36 MB
18.61 MB
Working set (peak):7.8 MB
37.95 MB
Resource allocations
Threads:8
12
Handles:170
600
GUI GDI count:89
103
GUI GDI peak:139
142
GUI USER count:26
49
GUI USER peak:32
71

BehaviorsProcess properties

Integrety level:Medium
Platform:32-bit
Command line:"C:\Program Files\alwil software\avast5\avastui.exe" /nogui
Owner:User
Parent process:explorer.exe (Windows Explorer by Microsoft Corporation)

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Ultimate 50.00%
Microsoft Windows XP 50.00%

Distribution by countryDistribution by country

Brazil installs about 33.33% of avast! Antivirus .

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Acer 50.00%
Hewlett-Packard 50.00%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE