Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

4.0.30319.34209 built by: FX452RTMGDR 0.02%
4.0.30319.34209 built by: FX452RTMGDR 0.02%
4.0.30319.18408 built by: FX451RTMGREL 1.86%
4.0.30319.18408 built by: FX451RTMGREL 1.75%
4.0.30319.18331 built by: FX45GDRSTAGE 0.02%
4.0.30319.18331 built by: FX45GDRSTAGE 0.02%
4.0.30319.17929 built by: FX45RTMREL 1.73%
4.0.30319.17929 built by: FX45RTMREL 1.28%
4.0.30319.17626 built by: FX45RCREL 0.04%
4.0.30319.17626 built by: FX45RCREL 0.02%
4.0.30319.17379 built by: FXBETAREL 0.04%
4.0.30319.17379 built by: FXBETAREL 0.02%
4.0.30319.1 (RTMRel.030319-0100) 25.98%
4.0.30319.1 (RTMRel.030319-0100) 13.46%
4.0.30128.1 (RC1Rel.030128-0100) 0.02%
4.0.21006.1 (B2Rel.021006-0100) 0.02%
2.0.50727.6387 (Win8RTM.050727-6300) 0.04%
2.0.50727.4927 (NetFXspW7.050727-4900) 26.05%
2.0.50727.4927 (NetFXspW7.050727-4900) 16.48%
2.0.50727.42 (RTM.050727-4200) 0.02%
2.0.50727.4016 (NetFxQFE.050727-4000) 2.79%
2.0.50727.4016 (NetFxQFE.050727-4000) 0.53%
2.0.50727.3053 (netfxsp.050727-3000) 6.39%
2.0.50727.3053 (netfxsp.050727-3000) 0.05%
2.0.50727.3053 (netfxsp.050727-3000) 0.84%
View more

Relationships

Parent process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
RegQueryValueExW, RegCreateKeyExW, RegCreateKeyExA, RegSetValueExW, RegSetValueExA, RegDeleteKeyW, RegDeleteKeyA, RegQueryValueExA, RegOpenKeyExW, RegOpenKeyExA, RegCloseKey, TraceEvent, RegQueryInfoKeyW, DuplicateTokenEx, SetTokenInformation
kernel32.dll
GetEnvironmentVariableA, GetEnvironmentVariableW, GetCurrentProcessId, LocalAlloc, FormatMessageA, FormatMessageW, EnterCriticalSection, LeaveCriticalSection, InitializeCriticalSection, DeleteCriticalSection, ResetEvent, ReleaseSemaphore, TlsSetValue, TlsAlloc, TlsFree, HeapAlloc, GetProcessHeap, HeapFree, WaitForSingleObjectEx, ReleaseMutex, SleepEx, VirtualAlloc, VirtualFree, VirtualQuery, VirtualProtect, HeapCreate, HeapDestroy, HeapValidate, InterlockedExchange, Sleep, GetStartupInfoA, SetUnhandledExceptionFilter, GetTickCount, UnhandledExceptionFilter, GetProcAddress, InterlockedIncrement, IsDebuggerPresent, InterlockedDecrement, TerminateProcess, GetCurrentProcess, WaitForMultipleObjects, CreateThread, OpenProcess, SetEvent, DebugBreak, TlsGetValue, InterlockedCompareExchange, GetLastError, SetLastError, GetModuleHandleA, FreeLibrary, lstrlenW, CloseHandle, RaiseException, LocalFree, MultiByteToWideChar, GetCPInfo, GetACP, GetCurrentThreadId, QueryPerformanceCounter, GetSystemTimeAsFileTime, GetVersionExA, GetModuleHandleW, GetCommandLineW, WideCharToMultiByte, LoadLibraryExA, LoadLibraryExW, GetModuleFileNameA, GetModuleFileNameW, CreateSemaphoreA, CreateSemaphoreW, CreateMutexA, CreateMutexW, CreateEventA, CreateEventW, OpenEventA, OpenEventW, DecodePointer, EncodePointer, HeapSetInformation, GetStartupInfoW, LoadLibraryW, OutputDebugStringW, GetFileAttributesW, GetWindowsDirectoryW, GetVersionExW, SetEnvironmentVariableW, GetVersion, FindClose, FindFirstFileW, WaitForSingleObject, CreateFileW
mscoree.dll
DllMain
msvcr100_clr0400.dll
DllMain
msvcr80.dll
DllMain
ole32.dll
CoRevokeClassObject, CoAddRefServerProcess, CoUninitialize, CoInitializeEx, CoRegisterClassObject, CoReleaseServerProcess
user32.dll
PeekMessageA, PeekMessageW, DispatchMessageA, DispatchMessageW, MessageBoxA, MessageBoxW, LoadStringA, LoadStringW, MsgWaitForMultipleObjects, MsgWaitForMultipleObjectsEx

mscorsvw.exe

Microsoft .NET Framework by Microsoft Corporation (Signed)

Remove mscorsvw.exe
Version:   4.0.30319.1 (RTMRel.030319-0100)
MD5:   c5a75eb48e2344abdc162bda79e16841
SHA1:   ed4851c89bc80c7a38960bc14686513ac1b3fb47
SHA256:   6070a8aafd38fbc6a68a2b10c20117612354df21b4492d90ca522bfb6870d726
This is a Windows system installed file with Windows File Protection (WFP) enabled.

What is mscorsvw.exe?

.NET Runtime Optimization Service for the .NET Framework is a software framework developed by Microsoft that includes a large library and provides language interoperability. Programs written for the .NET Framework execute in a software environment known as the Common Language Runtime (CLR), an application virtual machine that provides services such as security, memory management, and exception handling. The class library and the CLR together make up the .NET Framework.

About mscorsvw.exe (from Microsoft Corporation)

.NET is an integral part of many applications running on Windows and provides common functionality for those applications to run. This download is for people who need .NET to run an application on the

DetailsDetails

File name:mscorsvw.exe
Publisher:Microsoft Corporation
Product name:Microsoft® .NET Framework
Description:.NET Runtime Optimization Service
Typical file path:C:\windows\microsoft.net\framework\v2.0.50727\mscorsvw.exe
File version:4.0.30319.1 (RTMRel.030319-0100)
Product version:4.0.30319.1
Size:127.33 KB (130,384 bytes)
Certificate
Issued to:Microsoft Corporation
Authority (CA):Microsoft Corporation
Effective date:Wednesday, October 22, 2008
Expiration date:Friday, January 22, 2010
Digital DNA
PE subsystem:Windows GUI
Entropy:6.492676
File packed:No
Code language:Microsoft Visual C# / Basic .NET
.NET CLR:No
More details

BehaviorsBehaviors

Services
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
  • 'clr_optimization_v2.0.50727_64' (Microsoft .NET Framework NGEN v2.0.50727_X64)
  • clr_optimization_v4.0.30128_32
  • 'clr_optimization_v4.0.30319_64' (Microsoft .NET Framework NGEN v4.0.30319_X64)
  • 'clr_optimization_v4.0.30319_32'
  • 'clr_optimization_v2.0.50727_32'
  • 'clr_optimization_v4.0.30319_64'
  • 'clr_optimization_v2.0.50727_64'

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.10883102%
0.028634%
Kernel CPU:0.03002749%
0.013761%
User CPU:0.07880352%
0.014873%
Kernel CPU time:2,352,980 ms/min
100,923,805ms/min
User CPU time:0 ms/min
0 ms/min
CPU cycles:788,335/sec
17,470,203/sec
Context switches:7/sec
284/sec
Memory
Private memory:18.67 MB
21.59 MB
Private (maximum):20.7 MB
Private (minimum):6.05 MB
Non-paged memory:18.67 MB
21.59 MB
Virtual memory:58.76 MB
140.96 MB
Virtual memory (peak):60.93 MB
169.69 MB
Working set:20.18 MB
18.61 MB
Working set (peak):23.08 MB
37.95 MB
Page faults:1,783,544/min
2,039/min
I/O
I/O read transfer:658.13 KB/sec
1.02 MB/min
I/O read operations:198/sec
343/min
I/O write transfer:9.78 KB/sec
274.99 KB/min
I/O write operations:51/sec
227/min
I/O other transfer:3.43 KB/sec
448.09 KB/min
I/O other operations:456/sec
1,671/min
Resource allocations
Threads:6
12
Handles:106
600
GUI GDI count:4
103
GUI USER count:2
49

BehaviorsProcess properties

Integrety level:System
Platform:32-bit
Command lines:
  • C:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe
  • C:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe -useclsid {3801adab-812b-4e53-b569-6481ff750296} -comment "ngen worker process"
Owner:SYSTEM
Windows Service
Service name:clr_optimization_v2.0.50727_64
Display name:Microsoft .NET Framework NGEN v2.0.50727_X64
Description:“Microsoft .NET Framework NGEN”
Type:Win32OwnProcess
Parent processes:

ResourcesThreads

Averages
 
sechost.dll
Total CPU:0.42434104%
0.272967%
Kernel CPU:0.06929778%
0.107585%
User CPU:0.35504326%
0.165382%
CPU cycles:12,878,657/sec
5,741,424/sec
Context switches:2/sec
79/sec
Memory:100 KB
1.16 MB
wow64.dll
Total CPU:0.35252760%
Kernel CPU:0.11549896%
User CPU:0.23702864%
CPU cycles:8,895,050/sec
Context switches:15/sec
Memory:252 KB
ntdll.dll
Total CPU:0.08779903%
Kernel CPU:0.08779903%
User CPU:0.00000000%
CPU cycles:1,885,326/sec
Context switches:4/sec
Memory:1.66 MB
wow64cpu.dll
Total CPU:0.02064600%
Kernel CPU:0.01348768%
User CPU:0.00715831%
CPU cycles:337,965/sec
Memory:32 KB
ADVAPI32.dll
Total CPU:0.01822319%
Kernel CPU:0.00881151%
User CPU:0.00941168%
Memory:620 KB
mscorsvw.exe (main module)
Total CPU:0.00843584%
Kernel CPU:0.00746464%
User CPU:0.00097120%
CPU cycles:123,928/sec
Memory:136 KB
mscorsvc.dll
Total CPU:0.00288034%
Kernel CPU:0.00261365%
User CPU:0.00026669%
CPU cycles:170,798/sec
Memory:336 KB
RPCRT4.dll
Total CPU:0.00151211%
Kernel CPU:0.00086406%
User CPU:0.00064805%
CPU cycles:36,983/sec
Memory:780 KB

Common loaded modules

These are modules that are typiclaly loaded within the context of this process.

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Home Premium 66.00%
Windows 7 Ultimate 21.00%
Windows 7 Professional 9.00%
Windows Seven Black Edition 2.00%
Windows 7 Home Basic 2.00%

Distribution by countryDistribution by country

United States installs about 57.00% of Microsoft® .NET Framework.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Dell 29.01%
Hewlett-Packard 20.61%
Acer 13.74%
Toshiba 13.74%
ASUS 9.16%
Sony 6.11%
Alienware 3.05%
Samsung 3.05%
GIGABYTE 1.53%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE