Should I block it?

No, this file is 100% safe to run.

Relationships

Parent process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
DuplicateToken, DuplicateTokenEx, CreateRestrictedToken, SetThreadToken, ConvertStringSidToSidW, GetLengthSid, SetTokenInformation, ConvertStringSecurityDescriptorToSecurityDescriptorW, CheckTokenMembership, CreateWellKnownSid, CopySid, LookupPrivilegeValueW, EqualSid, RegSetValueExA, GetSecurityDescriptorSacl, RevertToSelf, RegDisablePredefinedCache, RegSetValueExW, RegOpenKeyExA, RegQueryValueExA, RegCreateKeyExA, RegOpenKeyExW, RegQueryValueExW, RegCloseKey, GetSecurityInfo, SetEntriesInAclW, SetSecurityInfo, FreeSid, AllocateAndInitializeSid, CreateProcessAsUserW, GetTokenInformation, OpenProcessToken, ConvertSidToStringSidW, RegQueryInfoKeyW, RegEnumKeyExW, RegCreateKeyExW
comdlg32.dll
CommDlgExtendedError, GetOpenFileNameW, GetSaveFileNameW
crypt32.dll
CertCreateCertificateContext, CertVerifySubjectCertificateContext, CertGetCertificateChain, CertFindCertificateInStore, CertEnumCertificatesInStore, CertFreeCertificateChain, CertOpenStore, CertFreeCertificateContext, CertAddStoreToCollection, CertVerifyRevocation, CertCloseStore, CertAddCertificateContextToStore, CertVerifyCertificateChainPolicy, CryptGetMessageCertificates, CryptVerifyMessageSignature, CertCompareCertificate
gdi32.dll
GetTextAlign, GetTextColor, CreateFontIndirectW, RemoveFontResourceW, CreateScalableFontResourceW, GetFontData, PlayEnhMetaFile, SetEnhMetaFileBits, CreateICW, GetCurrentObject, GetObjectW, GetEnhMetaFileBits, GetBkMode, CreateRectRgn, CombineRgn, CreateEnhMetaFileW, SetPolyFillMode, DeleteEnhMetaFile, GetObjectType, CloseEnhMetaFile, GetClipBox, SelectObject, DeleteDC, CreateDCW, DeleteObject, GetStretchBltMode, GetPolyFillMode, GetMiterLimit, AddFontResourceW, ExtEscape, CreateCompatibleBitmap, SetDIBits, Escape, CreateDCA, ResetDCW, SetWorldTransform, GetDeviceCaps, EndDoc, EndPage, StartPage, AbortDoc, GetRgnBox, StartDocW, GetEnhMetaFileHeader, GetDIBits, GetWorldTransform, EnumEnhMetaFile, PlayEnhMetaFileRecord, ModifyWorldTransform
imm32.dll
ImmGetOpenStatus, ImmCreateContext
kernel32.dll
DllMain
mpr.dll
WNetAddConnection2W, WNetGetResourceInformationW, WNetGetUniversalNameW
ole32.dll
CoUnmarshalInterface, CoInitialize, CreateBindCtx, CoInitializeEx, GetHGlobalFromStream, CoMarshalInterface, CreateStreamOnHGlobal, StringFromCLSID, MkParseDisplayName, CoTaskMemFree, CoTaskMemAlloc, CoCreateInstance, CoUninitialize, ReleaseStgMedium
psapi.dll
GetMappedFileNameW, GetProcessImageFileNameW
secur32.dll
FreeContextBuffer, FreeCredentialsHandle, DeleteSecurityContext, ApplyControlToken, EncryptMessage, DecryptMessage, AcquireCredentialsHandleA, InitializeSecurityContextA, QueryContextAttributesA, QueryCredentialsAttributesA
shell32.dll
SHFileOperationW, ShellExecuteExW, ShellExecuteW, SHGetFolderPathW, SHBrowseForFolderW, SHGetPathFromIDListW, SHGetFolderPathA, SHCreateDirectoryExW, CommandLineToArgvW
shlwapi.dll
PathIsDirectoryW, AssocQueryStringW, UrlCanonicalizeW, PathCanonicalizeW, PathIsRelativeW, PathFindExtensionW, PathFileExistsA, PathAppendW, PathAddBackslashW, PathRemoveFileSpecW, PathCreateFromUrlW, UrlIsW, PathIsURLW, PathFileExistsW
urlmon.dll
CoInternetParseUrl
user32.dll
GetDesktopWindow, GetThreadDesktop, GetProcessWindowStation, UserHandleGrantAccess, CloseWindowStation, CreateWindowStationW, CreateDesktopW, GetUserObjectInformationW, GetWindow, EnumWindows, LoadCursorW, LoadIconW, IsWindowEnabled, CloseWindow, GetAsyncKeyState, SetForegroundWindow, SetCursor, GetClientRect, MapWindowPoints, MonitorFromWindow, GetParent, GetTopWindow, ScreenToClient, SetCursorPos, ClientToScreen, GetWindowRect, EnumThreadWindows, GetActiveWindow, GetClipboardFormatNameA, GetClipboardData, GetPropW, GetDC, OpenClipboard, CloseClipboard, EmptyClipboard, SetClipboardData, IsClipboardFormatAvailable, EnumClipboardFormats, CountClipboardFormats, WaitMessage, GetClipboardSequenceNumber, GetClipboardOwner, GetPriorityClipboardFormat, GetOpenClipboardWindow, ChangeClipboardChain, GetClipboardViewer, SetClipboardViewer, RegisterClipboardFormatW, RegisterClipboardFormatA, DestroyWindow, RemovePropW, SetWindowsHookExW, GetQueueStatus, PeekMessageW, UnhookWindowsHookEx, AllowSetForegroundWindow, GetClassNameW, GetKeyState, UnregisterClassW, PostQuitMessage, CallMsgFilterW, TranslateMessage, DispatchMessageW, FindWindowExW, MsgWaitForMultipleObjectsEx, GetWindowThreadProcessId, AttachThreadInput, SetActiveWindow, SetFocus, GetFocus, EnableWindow, IsWindowVisible, UpdateWindow, GetAncestor, ShowWindow, CreateWindowExW, CloseDesktop, OpenInputDesktop, SetThreadDesktop, SetProcessWindowStation, SetWindowLongW, WaitForInputIdle, GetForegroundWindow, GetWindowLongW, SetTimer, KillTimer, MsgWaitForMultipleObjects, MessageBoxW, SetPropW, GetClassNameA, CallNextHookEx, DestroyIcon, InvalidateRect, GetUpdateRect, PostMessageW, SendMessageW, ValidateRect, RedrawWindow, IsWindow, GetClipboardFormatNameW, CallWindowProcW, DefWindowProcW, RegisterClassExW, RegisterWindowMessageW, WindowFromPoint, GetCursorPos, ReleaseDC, SetWindowPos
wininet.dll
InternetQueryDataAvailable, InternetWriteFile, HttpEndRequestA, InternetQueryOptionA, InternetErrorDlg, InternetSetOptionA, HttpAddRequestHeadersA, HttpSendRequestExA, InternetOpenA, InternetConnectA, HttpOpenRequestA, HttpSendRequestA, InternetCloseHandle, InternetReadFile, HttpQueryInfoA
winmm.dll
timeEndPeriod, timeGetTime, timeBeginPeriod
winspool.drv
EnumPrintersW, DocumentPropertiesW, GetPrinterW, ClosePrinter, SetPrinterW, DeviceCapabilitiesW, OpenPrinterW, EnumPrintersA

flashplayerplugin_11_6_602_175.exe

Shockwave Flash by Adobe Systems Incorporated (Signed)

Remove flashplayerplugin_11_6_602_175.exe
Version:   11,6,602,175
MD5:   2a7e4d5390a828fdc0aeac717d4f9b66
SHA1:   cfbbd4d30dc1f33956fa60138c93fa5583c8c45b
SHA256:   3976f2b317606f3159281509ac4f5b89b5c97be8dd4e6af9c3c89c6586c7f0b5

Overview

flashplayerplugin_11_6_602_175.exe executes as a process with the local user's privileges typically within the context of its parent plugin-container.exe (Firefox by Mozilla Corporation). It is installed with a couple of know programs including Adobe Flash Player 11 ActiveX published by Adobe Systems Incorporated, Adobe Flash Player 11 Plugin from Adobe Systems Incorporated and Adobe Flash Player 11 Plugin by Adobe Systems Incorporated. The file is digitally signed by Adobe Systems Incorporated which was issued by the VeriSign certificate authority (CA). This particular version is usually found on Windows 7 Ultimate (6.1.7600.0).

DetailsDetails

File name:flashplayerplugin_11_6_602_175.exe
Publisher:Adobe Systems, Inc.
Product name:Shockwave Flash
Description:Adobe Flash Player 11.6 r602
Typical file path:C:\Windows\System32\macromed\flash\flashplayerplugin_11_6_602_175.exe
Original name:SAFlashPlayer.exe
File version:11,6,602,175
Size:1.74 MB (1,820,016 bytes)
Certificate
Issued to:Adobe Systems Incorporated
Authority (CA):VeriSign
Effective date:Monday, September 24, 2012
Expiration date:Friday, October 2, 2015
Digital DNA
PE subsystem:Windows GUI
File packed:No
.NET CLR:No
More details

ResourcesPrograms

The following programs will install this file
Adobe Systems Incorporated
4% remove
The Adobe Flash Player is freeware software for viewing multimedia, executing Rich Internet Applications, and streaming video and audio, content created on the Adobe Flash platform. Flash Player can run from a web browser (as a browser plug-in) or on supported mobile devices. Adobe Flash Player 11 is available in three flavors: "ActiveX", "Plug-in" and "Projector". The "ActiveX" version is an ActiveX control for use in Internet Explorer...
Adobe Systems Incorporated
5% remove
The Adobe Flash Player is freeware software for viewing multimedia, executing Rich Internet Applications, and streaming video and audio, content created on the Adobe Flash platform. Adobe Flash Player 11 is available in three flavors: "ActiveX", "Plug-in" and "Projector". The "ActiveX" version is an ActiveX control for use in Internet Explorer and any other Windows applications that supports ActiveX technology. The "plug-in" version is ...
Adobe Systems Incorporated
5% remove
Adobe Flash Player 10 ActiveX is software for viewing multimedia, Rich Internet Applications, and streaming video and audio, on a computer web browser. Flash Player runs SWF files that can be created by the Adobe Flash authoring tool, by Adobe Flex or by a number of other Macromedia and third party tools. Flash Player is freely available as a plugin for recent versions of web browsers (such as Internet Explorer, Mozilla Firefox, Opera, ...
Adobe Systems Incorporated
8% remove
Cross-platform plugin plays animations, videos and sound files in .SWF format.
Adobe Systems Incorporated
3% remove
Adobe® Flash® Player 13 drives innovation for rich, engaging digital experiences with new features for cross-platform browser-based viewing of expressive rich internet applications, content, and videos across devices. This beta release provides access to the Flash Player 13 runtime for Mac OS and Windows desktop environments.
Adobe Systems Incorporated
4% remove
Cross-platform plugin plays animations, videos and sound files in .SWF format.
Adobe Systems Incorporated
11% remove
Adobe Flash Player is the standard for delivering high-impact, rich Web content. Designs, animation, and application user interfaces are deployed immediately across all browsers and platforms, attracting and engaging users with a rich Web experience.
Macromedia, Inc.
8% remove
The Adobe Flash Player is software for viewing multimedia, Rich Internet Applications, and streaming video and audio, on a computer web browser or on supported mobile devices. Flash Player runs SWF files that can be created by the Adobe Flash authoring tool, by Adobe Flex or by a number of other Macromedia and third party tools. Flash Player was created by Macromedia and now developed and distributed by Adobe Systems.

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00340554%
0.028634%
Kernel CPU:0.00227750%
0.013761%
User CPU:0.00112804%
0.014873%
Kernel CPU time:284,756 ms/min
100,923,805ms/min
CPU cycles:20,877,128/sec
17,470,203/sec
Memory
Private memory:9.58 MB
21.59 MB
Private (maximum):72.92 MB
Private (minimum):12.01 MB
Non-paged memory:9.58 MB
21.59 MB
Virtual memory:156.54 MB
140.96 MB
Virtual memory (peak):198.58 MB
169.69 MB
Working set:12.04 MB
18.61 MB
Working set (peak):73.76 MB
37.95 MB
Page faults:971,834/min
2,039/min
I/O
I/O read transfer:57.93 KB/sec
1.02 MB/min
I/O read operations:2,060/sec
343/min
I/O write transfer:49.46 KB/sec
274.99 KB/min
I/O write operations:2,057/sec
227/min
I/O other transfer:1.95 KB/sec
448.09 KB/min
I/O other operations:192/sec
1,671/min
Resource allocations
Threads:11
12
Handles:181
600
GUI GDI count:14
103
GUI GDI peak:84
142
GUI USER count:19
49
GUI USER peak:122
71

BehaviorsProcess properties

Integrety level:Low
Platform:32-bit
Command lines:
  • "C:\Windows\System32\macromed\flash\flashplayerplugin_11_6_602_175.exe" --channel=4036.0014f574.1438318873 --proxy-stub-channel=flash2388.63fb1d90.18549 --plugin-path="C:\Windows\System32\macromed\flash\npswf32_11_6_602_175.dll" --host-npapi-version=27 --type=renderer
  • "C:\Windows\System32\macromed\flash\flashplayerplugin_11_6_602_175.exe" --proxy-stub-channel=flash2388.63fb1d90.18549 --host-broker-channel=flash2388.63fb1d90.6672 --host-pid=2388 --host-npapi-version=27 --plugin-path="C:\Windows\System32\macromed\flash\npswf32_11_6_602_175.dll"
Owner:User
Parent processes:

ResourcesThreads

Averages
 
FlashPlayerPlugin_11_6_602_175.exe (main module)
Total CPU:5.82871511%
0.272967%
Kernel CPU:0.53368408%
0.107585%
User CPU:5.29503103%
0.165382%
CPU cycles:123,846,597/sec
5,741,424/sec
Context switches:171/sec
79/sec
Memory:1.75 MB
1.16 MB
npswf32_11_6_602_175.dll (Shockwave Flash by Adobe Systems)
Total CPU:0.17462163%
Kernel CPU:0.00440890%
User CPU:0.17021273%
CPU cycles:3,107,875/sec
Context switches:6/sec
Memory:15.02 MB
ntdll.dll
Total CPU:0.07900592%
Kernel CPU:0.05963478%
User CPU:0.01937114%
CPU cycles:3,725,968/sec
Context switches:149/sec
Memory:1.23 MB

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Ultimate 100.00%

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Hewlett-Packard 100.00%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE