Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

6.3.9600.17031 (winblue_gdr.140221-1952) 44.79%
6.3.9600.17031 (winblue_gdr.140221-1952) 1.04%
6.3.9600.16500 (winblue_gdr.131226-1506) 5.21%
6.3.9600.16500 (winblue_gdr.131226-1506) 1.04%
6.3.9600.16474 (winblue_gdr.131122-1506) 3.13%
6.3.9600.16456 (winblue_gdr.131105-0117) 4.17%
6.3.9600.16412 (winblue_gdr.130925-1958) 20.83%
6.3.9600.16412 (winblue_gdr.130925-1958) 1.04%
6.3.9600.16384 (winblue_rtm.130821-1623) 1.04%
6.3.9431.0 (winmain_bluemp.130615-1214) 3.13%
6.3.9431.0 (winmain_bluemp.130615-1214) 1.04%
6.2.9200.16420 (win8_gdr.120919-1813) 1.04%
6.2.9200.16420 (win8_gdr.120919-1813) 11.46%
6.2.9200.16384 (win8_rtm.120725-1247) 1.04%

Relationships

Parent process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
EventWrite, TraceMessage, GetTraceLoggerHandle, GetTraceEnableLevel, GetTraceEnableFlags, RegisterTraceGuidsW, UnregisterTraceGuids, EventRegister, EventUnregister, RegCloseKey, RegDeleteTreeW, RegCreateKeyExW, RegGetValueW, RegSetValueExW, RegOpenKeyExW, LookupPrivilegeValueW, AdjustTokenPrivileges, OpenProcessToken, RegSetKeyValueW, RegEnumKeyExW
api-ms-win-core-apiquery-l1-1-0.dll
ApiSetQueryApiSetPresence
api-ms-win-core-com-l1-1-1.dll
CoReleaseMarshalData, PropVariantClear, StringFromCLSID, CoTaskMemFree, CoCreateInstance, CoCreateGuid, CoResumeClassObjects, CoRegisterClassObject, CoTaskMemRealloc, CoReleaseServerProcess, CoGetCallContext, CoSetProxyBlanket, CoAddRefServerProcess, CoRevokeClassObject, CoMarshalInterThreadInterfaceInStream, CoTaskMemAlloc, CoGetInterfaceAndReleaseStream, RoGetAgileReference, CoUninitialize, CoFreeUnusedLibraries, CoGetApartmentType, CoGetMalloc, StringFromGUID2, CoInitializeEx, CLSIDFromString, CoCreateFreeThreadedMarshaler, StringFromIID, CoWaitForMultipleHandles, CoGetClassObject
api-ms-win-core-delayload-l1-1-1.dll
ResolveDelayLoadedAPI, DelayLoadFailureHook
api-ms-win-core-errorhandling-l1-1-1.dll
UnhandledExceptionFilter, GetLastError, SetUnhandledExceptionFilter, RaiseException
api-ms-win-core-file-l1-2-1.dll
CompareFileTime, GetFileAttributesW, SetFileAttributesW, DeleteFileW, FindNextFileW, FindClose, RemoveDirectoryW, FindFirstFileW
api-ms-win-core-handle-l1-1-0.dll
CloseHandle, DuplicateHandle
api-ms-win-core-heap-l1-2-0.dll
HeapSetInformation, HeapFree, GetProcessHeap
api-ms-win-core-heap-obsolete-l1-1-0.dll
LocalAlloc, LocalReAlloc, LocalFree
api-ms-win-core-kernel32-legacy-l1-1-1.dll
CreateSemaphoreW
api-ms-win-core-libraryloader-l1-1-1.dll
GetModuleFileNameW, FreeLibraryAndExitThread, FreeLibrary, GetModuleHandleA, GetModuleHandleExW
api-ms-win-core-libraryloader-l1-2-0.dll
GetModuleFileNameW, FreeLibrary, FreeLibraryAndExitThread, GetModuleHandleA, GetModuleHandleExW
api-ms-win-core-localization-l1-2-1.dll
GetUserDefaultLCID, GetGeoInfoW, GetUserGeoID
api-ms-win-core-path-l1-1-0.dll
PathAllocCombine, PathCchAppend
api-ms-win-core-processthreads-l1-1-2.dll
CreateThread, OpenThreadToken, GetCurrentThread, SetPriorityClass, TlsSetValue, TlsAlloc, TlsFree, GetStartupInfoW, GetCurrentProcessId, GetCurrentThreadId, OpenProcessToken, TlsGetValue, ProcessIdToSessionId, TerminateProcess, GetCurrentProcess, SetThreadPriority
api-ms-win-core-profile-l1-1-0.dll
QueryPerformanceCounter
api-ms-win-core-registry-l1-1-0.dll
RegQueryValueExW, RegDeleteTreeW, RegEnumKeyExW, RegDeleteValueW, RegGetValueW, RegOpenCurrentUser, RegCreateKeyExW, RegOpenKeyExW, RegEnumValueW, RegSetValueExW, RegCloseKey, RegQueryInfoKeyW
api-ms-win-core-registry-l2-1-0.dll
RegDeleteKeyValueW
api-ms-win-core-shlwapi-legacy-l1-1-0.dll
PathFindFileNameW
api-ms-win-core-shlwapi-obsolete-l1-1-0.dll
StrToIntExW, StrToIntW, StrStrIW, StrRChrW, QISearch
api-ms-win-core-string-l1-1-0.dll
CompareStringOrdinal, WideCharToMultiByte, MultiByteToWideChar
api-ms-win-core-string-l2-1-0.dll
CharLowerBuffW
api-ms-win-core-synch-l1-2-0.dll
CreateEventExW, InitOnceExecuteOnce, WaitForSingleObject, AcquireSRWLockExclusive, ReleaseSRWLockExclusive, CreateEventW, SetEvent, EnterCriticalSection, ResetEvent, CreateMutexExW, ReleaseMutex, DeleteCriticalSection, OpenEventW, InitializeCriticalSectionEx, InitializeCriticalSection, ReleaseSRWLockShared, LeaveCriticalSection, InitializeSRWLock, ReleaseSemaphore, OpenSemaphoreW, AcquireSRWLockShared, Sleep
api-ms-win-core-sysinfo-l1-2-1.dll
GetSystemTime, GetSystemDirectoryW, GetTickCount, GetVersionExW, GetTickCount64, GetSystemTimeAsFileTime, GetOsSafeBootMode
api-ms-win-core-threadpool-l1-2-0.dll
SetThreadpoolTimer, WaitForThreadpoolTimerCallbacks, CloseThreadpoolTimer, CallbackMayRunLong, TrySubmitThreadpoolCallback, CreateThreadpoolTimer, FreeLibraryWhenCallbackReturns, SetThreadpoolWait, CreateThreadpoolWait, CloseThreadpoolWait
api-ms-win-core-timezone-l1-1-0.dll
SystemTimeToFileTime, FileTimeToSystemTime
api-ms-win-core-url-l1-1-0.dll
UrlEscapeW
api-ms-win-core-util-l1-1-0.dll
EncodePointer, DecodePointer
api-ms-win-core-winrt-error-l1-1-1.dll
RoTransformError, RoOriginateError, RoOriginateErrorW
api-ms-win-core-winrt-l1-1-0.dll
RoRevokeActivationFactories, RoGetActivationFactory, RoActivateInstance, RoRegisterActivationFactories
api-ms-win-core-winrt-string-l1-1-0.dll
WindowsCreateString, WindowsGetStringRawBuffer, WindowsCreateStringReference, WindowsStringHasEmbeddedNull, WindowsIsStringEmpty, WindowsDeleteString
api-ms-win-eventing-classicprovider-l1-1-0.dll
TraceMessage, GetTraceEnableFlags, GetTraceLoggerHandle, RegisterTraceGuidsW, UnregisterTraceGuids, GetTraceEnableLevel
api-ms-win-eventing-provider-l1-1-0.dll
EventRegister, EventWrite, EventUnregister
api-ms-win-power-base-l1-1-0.dll
PowerDeterminePlatformRoleEx
api-ms-win-security-base-l1-2-0.dll
AdjustTokenPrivileges, GetSidSubAuthority, GetTokenInformation, CreateWellKnownSid
api-ms-win-security-lsalookup-l1-1-1.dll
ReleaseIdentityProviderEnumContext, GetIdentityProviderInfoByGUID, EnumerateIdentityProviders, GetDefaultIdentityProvider
api-ms-win-security-provider-l1-1-0.dll
GetNamedSecurityInfoW, SetNamedSecurityInfoW, SetEntriesInAclW
api-ms-win-security-sddl-l1-1-0.dll
ConvertStringSecurityDescriptorToSecurityDescriptorW, ConvertSidToStringSidW
api-ms-win-shcore-obsolete-l1-1-0.dll
SHStrDupW, CommandLineToArgvW, SHStrDupA
api-ms-win-shcore-registry-l1-1-1.dll
SHRegGetValueW, SHSetValueW, SHDeleteKeyW, SHRegSetPathW, SHDeleteValueW, SHRegGetPathW
api-ms-win-shcore-stream-l1-1-0.dll
IStream_Copy, IStream_Write, IStream_Reset, IStream_Size, IStream_Read, SHOpenRegStream2W, SHCreateMemStream
api-ms-win-shcore-thread-l1-1-0.dll
SHCreateThreadWithHandle, SHGetThreadRef, SHSetThreadRef, SHCreateThread, SHCreateThreadRef
api-ms-win-shell-shellfolders-l1-1-0.dll
SHGetKnownFolderPath
kernel32.dll
GetCurrentProcess, HeapSetInformation, SetProcessInformation, CompareStringOrdinal, LocalFree, CompareFileTime, ResetEvent, AcquireSRWLockShared, ReleaseSRWLockShared, Sleep, GetTickCount64, SetThreadpoolTimer, WaitForMultipleObjects, AcquireSRWLockExclusive, ReleaseSRWLockExclusive, CreateEventExW, SetPriorityClass, OpenEventW, ResolveDelayLoadedAPI, DelayLoadFailureHook, InitializeSRWLock, SetThreadPriority, GetModuleFileNameW, GetModuleHandleExW, TlsSetValue, TlsGetValue, DuplicateHandle, TlsFree, TlsAlloc, GetCurrentThread, LocalAlloc, TerminateProcess, UnhandledExceptionFilter, GetTickCount, QueryPerformanceCounter, GetModuleHandleA, SetUnhandledExceptionFilter, GetStartupInfoW, InterlockedExchange, GetCurrentProcessId, LeaveCriticalSection, EnterCriticalSection, GetSystemTimeAsFileTime, DeleteCriticalSection, InitializeCriticalSection, GetCurrentThreadId, WaitForSingleObject, GetLastError, CloseHandle, InterlockedCompareExchange, CloseThreadpoolTimer, CreateThreadpoolTimer, InterlockedDecrement, InterlockedIncrement, CreateEventW, SetEvent
msvcrt.dll
DllMain
ntdll.dll
WinSqmAddToAverageDWORD, RtlInitUnicodeString, EtwTraceMessage, WinSqmAddToStream, RtlFreeHeap, RtlAllocateHeap, ZwAlpcCancelMessage, ZwAlpcSendWaitReceivePort, ZwAlpcConnectPort, RtlWaitOnAddress, TpAllocAlpcCompletion, AlpcGetMessageAttribute, RtlWakeAddressAll, TpWaitForAlpcCompletion, ZwAlpcDisconnectPort, ZwClose, TpReleaseAlpcCompletion, ZwAlpcQueryInformation, AlpcInitializeMessageAttribute, vDbgPrintEx, WinSqmIsOptedIn, WinSqmAddToStreamEx, WinSqmSetDWORD, WinSqmIncrementDWORD, WinSqmSetDWORD64, NtPowerInformation, EtwEventWrite, NtSetInformationProcess, NtSetInformationThread
propsys.dll
PSCreateMemoryPropertyStore, PropVariantToBoolean, PropVariantToStringAlloc, PropVariantToUInt32
user32.dll
SystemParametersInfoW, GetKeyboardLayout, DefWindowProcW, DestroyWindow, CharLowerBuffW, SetWindowLongW, GetWindowLongW, ActivateKeyboardLayout
userenv.dll
GetProfileType

SettingSyncHost.exe

Host Process for Setting Synchronization by Microsoft

Remove SettingSyncHost.exe
Version:   6.3.9431.0 (winmain_bluemp.130615-1214)
MD5:   89efe9ae9520e9ebb095395c824f130c
SHA1:   8921f61249162434b8d6341394e8c193e970df1c
SHA256:   7d8e68a56da91bbcd3d8ff7f51710d7458a94969deb47057f226057c097299f4
This is a Windows system installed file with Windows File Protection (WFP) enabled.

Overview

settingsynchost.exe executes as a process with the local user's privileges typically within the context of its parent svchost.exe (Host Process for Windows Services by Microsoft Corporation). and is compiled as a 64 bit program.

DetailsDetails

File name:settingsynchost.exe
Publisher:Microsoft Corporation
Product name:Host Process for Setting Synchronization
Description:Microsoft® Windows® Operating System
Typical file path:C:\Windows\System32\settingsynchost.exe
File version:6.3.9431.0 (winmain_bluemp.130615-1214)
Product version:6.3.9431.0
Size:536.5 KB (549,376 bytes)
Build date:6/15/2013 3:14 PM
Digital DNA
PE subsystem:Windows GUI
File packed:No
Code language:Microsoft Visual C++
.NET CLR:No
More details
Network connections
  • [TCP] 65.55.93.46:80

  • ResourcesResource utilization

    (Note: statistics below are averages based on a minimum sample size of 200 unique participants)
    Averages
     
    CPU
    Total CPU:0.00746694%
    0.028634%
    Kernel CPU:0.00420917%
    0.013761%
    User CPU:0.00325777%
    0.014873%
    Kernel CPU time:4,786 ms/min
    100,923,805ms/min
    CPU cycles:1,048,904/sec
    17,470,203/sec
    Context switches:1/sec
    284/sec
    Memory
    Private memory:9.61 MB
    21.59 MB
    Private (maximum):17.82 MB
    Private (minimum):3.64 MB
    Non-paged memory:9.61 MB
    21.59 MB
    Virtual memory:449.38 MB
    140.96 MB
    Virtual memory (peak):482.6 MB
    169.69 MB
    Working set:8.24 MB
    18.61 MB
    Working set (peak):41.36 MB
    37.95 MB
    Page faults:79,064/min
    2,039/min
    I/O
    I/O read transfer:149.44 KB/sec
    1.02 MB/min
    I/O read operations:4/sec
    343/min
    I/O write transfer:32.04 KB/sec
    274.99 KB/min
    I/O write operations:2/sec
    227/min
    I/O other transfer:4.31 KB/sec
    448.09 KB/min
    I/O other operations:84/sec
    1,671/min
    Resource allocations
    Threads:7
    12
    Handles:531
    600
    GUI GDI count:10
    103
    GUI GDI peak:13
    142
    GUI USER count:7
    49
    GUI USER peak:13
    71

    BehaviorsProcess properties

    Integrety level:Medium
    Platform:64-bit
    Command line:"C:\Windows\System32\settingsynchost.exe" -embedding
    Owner:User
    Parent process:svchost.exe (Host Process for Windows Services by Microsoft Corporation)

    ResourcesThreads

    Averages
     
    ntdll.dll
    Total CPU:0.00539904%
    0.272967%
    Kernel CPU:0.00539904%
    0.107585%
    User CPU:0.00000000%
    0.165382%
    CPU cycles:284,912/sec
    5,741,424/sec
    Context switches:1/sec
    79/sec
    Memory:1.66 MB
    1.16 MB
    SettingSyncHost.exe (main module)
    Total CPU:0.00211980%
    Kernel CPU:0.00153431%
    User CPU:0.00058549%
    CPU cycles:24,216/sec
    Memory:556 KB
    combase.dll
    Total CPU:0.00181980%
    Kernel CPU:0.00000000%
    User CPU:0.00181980%
    CPU cycles:39,098/sec
    Memory:1.86 MB
    winbici.dll
    Total CPU:0.00035330%
    Kernel CPU:0.00000000%
    User CPU:0.00035330%
    CPU cycles:1,665/sec
    Memory:132 KB

    Windows OS versionsDistribution by Windows OS

    OS versiondistribution
    Windows 8.1 41.05%
    Windows 8.1 Pro 21.05%
    Windows 8.1 Single Language 9.47%
    Windows 8.1 Pro with Media Center 6.32%
    Windows 8 Pro 5.26%
    Windows 8 4.21%
    Windows 8.1 Enterprise 2.11%
    Windows 8.1 Pro Preview 2.11%
    Windows 8 Pro with Media Center 2.11%
    Windows 8.1 N 1.05%
    Windows 8 Single Language 1.05%
    Windows 8.1 Enterprise Evaluation 1.05%
    Windows 8.1 Single Language Preview 1.05%
    Windows 8.1 Pro Preview with Media Center 1.05%
    Windows 8 Enterprise 1.05%

    Distribution by countryDistribution by country

    United States installs about 44.68% of Host Process for Setting Synchronization.

    OEM distributionDistribution by PC manufacturer

    PC Manufacturerdistribution
    ASUS 25.93%
    Hewlett-Packard 15.74%
    Acer 14.81%
    Lenovo 12.96%
    Toshiba 9.26%
    Dell 9.26%
    Sony 5.56%
    Alienware 1.85%
    Samsung 1.85%
    Medion 1.85%
    GIGABYTE 0.93%
    Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

    Download it for FREE