Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

16.4.3505.0912 50.00%
15.4.3555.0308 50.00%

Relationships

Parent process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
TraceMessage, EqualSid, RegCloseKey, RegQueryValueExW, RegOpenKeyExW, RegSetValueExW, RegGetValueW, GetTraceEnableFlags, GetTraceEnableLevel, GetTraceLoggerHandle, RegisterTraceGuidsW, UnregisterTraceGuids, LookupAccountSidW, ConvertSidToStringSidW, LookupAccountNameW, CreateWellKnownSid, GetLengthSid, CopySid, ConvertStringSidToSidW, FreeSid, AllocateAndInitializeSid, LogonUserW, RegCreateKeyExW, RegDeleteKeyW, RegDeleteValueW, RegEnumKeyExW, RegEnumValueW, CheckTokenMembership, CloseServiceHandle, OpenServiceW, OpenSCManagerW, ControlService, QueryServiceStatus, ChangeServiceConfigW, IsValidSid, IsWellKnownSid, EventWrite
crypt32.dll
CryptProtectData, CryptUnprotectData
fwpuclnt.dll
FwpmSubLayerDeleteByKey0, FwpmEngineOpen0, FwpmTransactionBegin0, FwpmEngineClose0, FwpmTransactionCommit0, FwpmTransactionAbort0, FwpmFilterDeleteByKey0, FwpmCalloutDeleteByKey0
gdi32.dll
DeleteObject, GetStockObject, GetObjectW, CreateSolidBrush, GetDeviceCaps, BitBlt, CreateCompatibleDC, CreateCompatibleBitmap, SelectObject, DeleteDC
gdiplus.dll
GdiplusStartup, GdipCloneImage, GdipCreateHBITMAPFromBitmap, GdipCreateBitmapFromFileICM, GdipCreateBitmapFromFile, GdipDisposeImage, GdipAlloc, GdipFree, GdiplusShutdown
kernel32.dll
FlushInstructionCache, GetCurrentProcess, lstrcmpW, MulDiv, GlobalUnlock, GlobalLock, GlobalAlloc, SetLastError, HeapSetInformation, SetDllDirectoryW, GlobalFree, LoadLibraryW, MultiByteToWideChar, lstrlenA, GlobalHandle, HeapFree, GetProcessHeap, HeapAlloc, HeapReAlloc, FormatMessageW, CreateFileW, GetTempPathW, GetLocaleInfoW, GetSystemTimeAsFileTime, GetProcAddress, FreeLibrary, GetThreadUILanguage, WideCharToMultiByte, CreateThread, SetThreadPriority, TlsGetValue, TlsSetValue, GetModuleHandleW, GetTickCount, SizeofResource, LockResource, LoadResource, FindResourceW, FindResourceExW, InterlockedIncrement, InterlockedDecrement, GetCurrentThreadId, InitializeSRWLock, AcquireSRWLockShared, ReleaseSRWLockShared, AcquireSRWLockExclusive, ReleaseSRWLockExclusive, EnterCriticalSection, LeaveCriticalSection, LocalFree, GetLastError, ProcessIdToSessionId, GetCurrentProcessId, InterlockedExchange, InitializeConditionVariable, Sleep, WaitForSingleObject, WakeAllConditionVariable, SleepConditionVariableSRW, SystemTimeToFileTime, GetComputerNameW, CompareFileTime, CloseHandle, GetProcessId, GetModuleFileNameW, OpenProcess, lstrlenW, RaiseException, InitializeCriticalSection, DeleteCriticalSection, CompareStringW, HeapDestroy, HeapSize, InterlockedCompareExchange, LoadLibraryA, IsProcessorFeaturePresent, GetTickCount64, GetFileAttributesW, CreateMutexW, IsWow64Process, GetVersionExW, VirtualUnlock, VirtualLock, TrySubmitThreadpoolCallback, CallbackMayRunLong, CreateThreadpool, SetThreadpoolThreadMinimum, SetThreadpoolThreadMaximum, CloseThreadpool, ConvertFiberToThread, WaitForMultipleObjectsEx, OpenThread, QueueUserAPC, IsThreadAFiber, TlsFree, TlsAlloc, ResetEvent, SetEvent, CreateEventW, LocalAlloc, IsDebuggerPresent, UnhandledExceptionFilter, TerminateProcess, QueryPerformanceCounter, VirtualFree, VirtualAlloc, GetStartupInfoW, SetUnhandledExceptionFilter, ReleaseMutex
msvcr90.dll
DllMain
netapi32.dll
NetUserGetLocalGroups, NetLocalGroupAddMembers, NetUserDel, NetUserAdd, NetApiBufferFree, NetGetJoinInformation, NetUserEnum
ole32.dll
CoInitializeSecurity, CLSIDFromProgID, CLSIDFromString, CoTaskMemAlloc, CreateStreamOnHGlobal, OleInitialize, OleUninitialize, CoCreateGuid, CoTaskMemFree, CoSetProxyBlanket, CoCreateInstance, CoUninitialize, CoInitializeEx, CoAllowSetForegroundWindow, StringFromGUID2, OleLockRunning, CoGetClassObject
secur32.dll
GetUserNameExW
shell32.dll
SHAppBarMessage, CommandLineToArgvW, Shell_NotifyIconW, FindExecutableW, ShellExecuteW, SHGetKnownFolderPath, ShellExecuteExW, SHFileOperationW, SHGetFolderPathW
shlwapi.dll
UrlCanonicalizeA, PathCombineW, PathFileExistsW, PathAppendW, StrRChrW
user32.dll
SetWindowLongW, GetWindowLongW, AttachThreadInput, PostQuitMessage, GetForegroundWindow, SetProcessDefaultLayout, SetFocus, SetForegroundWindow, GetSysColor, CharNextW, GetClientRect, ClientToScreen, ScreenToClient, GetDC, ReleaseDC, InvalidateRect, InvalidateRgn, RedrawWindow, UnregisterClassA, SetCapture, IsChild, GetParent, GetDlgItem, GetClassNameW, ReleaseCapture, FillRect, CallWindowProcW, EndPaint, BeginPaint, GetDesktopWindow, DestroyAcceleratorTable, GetWindow, GetFocus, RegisterWindowMessageW, GetClassInfoExW, RegisterClassExW, CreateWindowExW, CreateAcceleratorTableW, SetWindowTextW, GetWindowTextW, GetWindowTextLengthW, CloseClipboard, FindWindowW, OpenClipboard, GetKeyState, PtInRect, GetCursorPos, ShowWindow, UpdateLayeredWindow, EndDialog, MapDialogRect, SendDlgItemMessageW, SetWindowContextHelpId, GetMonitorInfoW, MonitorFromWindow, DialogBoxIndirectParamW, EmptyClipboard, CallNextHookEx, SetWindowsHookExW, UnhookWindowsHookEx, AppendMenuW, DestroyMenu, CreatePopupMenu, TrackPopupMenu, UnregisterClassW, IsIconic, ChangeWindowMessageFilter, LoadIconW, MsgWaitForMultipleObjects, IsWindowUnicode, GetMessageW, GetMessageA, TranslateMessage, DispatchMessageW, DispatchMessageA, PeekMessageW, AllowSetForegroundWindow, DestroyIcon, SendMessageW, SystemParametersInfoW, MoveWindow, GetWindowRect, SetWindowPos, SetTimer, PostMessageW, SetClipboardData, GetWindowThreadProcessId, KillTimer, DefWindowProcW, LoadCursorW, IsWindow, DestroyWindow, SetCursor
uxcore.dll
DllMain
wininet.dll
InternetCrackUrlA, InternetCreateUrlA
wlidux.dll
WlidUxInitProcess, WlidUxUninitProcess, WlidUxCreateObject
wtsapi32.dll
WTSUnRegisterSessionNotification, WTSRegisterSessionNotification, WTSFreeMemory, WTSEnumerateSessionsW, WTSQuerySessionInformationW

fsui.exe

Windows Live Family Safety Filter by Microsoft Corporation (Signed)

Remove fsui.exe
Version:   16.4.3505.0912
MD5:   9eb4cda2dfc1a555292cdc23205f10a8
SHA1:   6db1de7ae52bbf08127fb486946cee2f394768d3
SHA256:   6404f91a37d8db5aba81242be685296d15b678f78c588a1413f94d9066918f66

Overview

fsui.exe executes as a process with the local user's privileges usually within the context of Windows Explorer. It is set to be start when the PC boots and any user logs into Windows (added to the Run registry key for the all users under the local machine). It is installed with a couple of know programs including Windows Live Essentials published by Microsoft Corporation, Podstawowe programy Windows Live from Microsoft Corporation and Podstawowe programy Windows Live by Microsoft Corporation. The file is digitally signed by Microsoft Corporation.

DetailsDetails

File name:fsui.exe
Publisher:Microsoft Corporation
Product name:Windows Live Family Safety Filter
Typical file path:C:\Program Files\windows live\family safety\fsui.exe
File version:16.4.3505.0912
Size:871.5 KB (892,416 bytes)
Certificate
Issued to:Microsoft Corporation
Authority (CA):Microsoft Corporation
Digital DNA
PE subsystem:Windows GUI
File packed:No
Code language:Microsoft Visual C++ 9.0
.NET CLR:No
More details

ResourcesPrograms

The following programs will install this file
Microsoft Corporation
10% remove
Windows Live Essentials is a suite of freeware applications by Microsoft that aims to offer integrated and bundled e-mail, instant messaging, photo-sharing, blog publishing, and security services. Essentials programs are designed to integrate well with each other, with Microsoft Windows, and with other Microsoft web-based services such as SkyDrive and Outlook.com, so that they operate as a seamless whole.
Microsoft Corporation
8% remove
Windows Live is the former collective brand name for a set of services and software products from Microsoft; part of their software plus services platform. A majority of these services are Web applications, accessible from a browser, but there are also client-side binary applications that require installation. There are three ways in which Windows Live services are offered: Windows Essentials applications, web services, and mobile servi...
Microsoft Corporation
9% remove
Windows Live "is a way to extend the Windows user experience". Windows Vista provides a link in its user interface to download Windows Live Messenger, and Windows 7 saw the removal of applications such as Windows Mail, Windows Photo Gallery and Windows Movie Maker and replaced with the Windows Essentials suite, a software package that allows the downloading and installation of similar offerings from Windows Live. Windows Live offers int...

BehaviorsBehaviors

Startup files (all users) run
Runs under the registry key 'HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run'
  • 'fssui' → "C:\Program Files\Windows Live\Family Safety\fsui.exe" -autorun

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00246377%
0.028634%
Kernel CPU:0.00142749%
0.013761%
User CPU:0.00103628%
0.014873%
Kernel CPU time:343 ms/min
100,923,805ms/min
Memory
Private memory:26.99 MB
21.59 MB
Private (maximum):25.72 MB
Private (minimum):232 KB
Non-paged memory:26.99 MB
21.59 MB
Virtual memory:176.09 MB
140.96 MB
Virtual memory (peak):180.39 MB
169.69 MB
Working set:25.42 MB
18.61 MB
Working set (peak):25.88 MB
37.95 MB
Resource allocations
Threads:11
12
Handles:258
600
GUI GDI count:27
103
GUI GDI peak:40
142
GUI USER count:29
49
GUI USER peak:36
71

BehaviorsProcess properties

Tray notification:Yes
Integrety level:Medium
Platform:64-bit
Command line:"C:\Program Files\windows live\family safety\fsui.exe" -autorun
Owner:User
Parent process:explorer.exe (Windows Explorer by Microsoft Corporation)

ResourcesThreads

Averages
 
fsui.exe (main module)
Total CPU:0.00207503%
0.272967%
Kernel CPU:0.00116717%
0.107585%
User CPU:0.00090785%
0.165382%
CPU cycles:53,968/sec
5,741,424/sec
Memory:872 KB
1.16 MB
ntdll.dll
Total CPU:0.00169045%
Kernel CPU:0.00000000%
User CPU:0.00169045%
CPU cycles:27,862/sec
Memory:1.66 MB

Common loaded modules

These are modules that are typiclaly loaded within the context of this process.

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Home Premium 50.00%
Windows Vista Home Premium 50.00%

Distribution by countryDistribution by country

Mexico installs about 50.00% of Windows Live Family Safety Filter.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Hewlett-Packard 100.00%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE