Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

4.6.3.24650 19.24%
4.6.3.24650 1.27%
4.6.2.22610 61.27%
4.6.2.22610 13.42%
4.6.1.10263 0.25%
4.6.0.1523 4.56%

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
RevertToSelf, OpenProcessToken, ImpersonateLoggedOnUser, RegOpenCurrentUser, RegCloseKey, RegNotifyChangeKeyValue, RegOpenKeyExW, TraceMessage, InitiateSystemShutdownExW, GetTraceEnableFlags, GetTraceEnableLevel, GetTraceLoggerHandle, RegisterTraceGuidsW, UnregisterTraceGuids, SetServiceStatus, ControlService, CloseServiceHandle, OpenServiceW, OpenSCManagerW, RegQueryValueExW, RegOpenKeyW, RegisterServiceCtrlHandlerW, StartServiceCtrlDispatcherW, ReportEventW, DeregisterEventSource, RegisterEventSourceW, LookupPrivilegeValueW, OpenThreadToken, AdjustTokenPrivileges, AddAce, InitializeAcl, GetAclInformation, GetSecurityDescriptorControl, MakeAbsoluteSD, GetSecurityDescriptorSacl, GetSecurityDescriptorDacl, GetSecurityDescriptorGroup, GetSecurityDescriptorOwner, InitializeSecurityDescriptor, MakeSelfRelativeSD, GetSecurityDescriptorLength, GetLengthSid, IsValidSid, CopySid, SetSecurityDescriptorOwner, SetSecurityDescriptorGroup, SetSecurityDescriptorDacl, GetSidSubAuthority, InitializeSid, GetSidLengthRequired, GetTokenInformation, RegQueryValueExA, RegOpenKeyExA, LookupAccountSidW, ConvertSidToStringSidW, DuplicateToken, EqualSid, CheckTokenMembership, RegisterServiceCtrlHandlerExW
comctl32.dll
GetMUILanguage
faultrep.dll
ReportFault
kernel32.dll
TerminateProcess, OutputDebugStringW, HeapReAlloc, HeapDestroy, GetTimeFormatW, GetDateFormatW, InterlockedIncrement, SetFileTime, GetTempFileNameW, MoveFileExW, LocalFree, HeapFree, HeapAlloc, GetVersionExW, DeleteFileW, GetModuleHandleW, GetCurrentThread, GetTempPathW, CreateFileMappingW, MapViewOfFile, UnmapViewOfFile, GetUserDefaultLCID, CreateProcessW, GetModuleFileNameW, GetLocalTime, IsDebuggerPresent, UnhandledExceptionFilter, GetCurrentProcessId, QueryPerformanceCounter, SetUnhandledExceptionFilter, GetStartupInfoW, InterlockedCompareExchange, ReleaseMutex, CreateMutexW, GetProcessHeap, FindFirstFileW, FindClose, CompareFileTime, FindNextFileW, GetSystemTimeAsFileTime, ExpandEnvironmentStringsW, GetFileAttributesExW, FileTimeToLocalFileTime, FileTimeToSystemTime, LoadLibraryW, GetProcAddress, FreeLibrary, ProcessIdToSessionId, QueueUserWorkItem, HeapSetInformation, HeapQueryInformation, HeapCompact, GetProcessHeaps, WaitForMultipleObjects, ResetEvent, CreateFileW, GetFileInformationByHandle, ReadFile, GetCurrentProcess, DuplicateHandle, GetTickCount, WaitForSingleObject, SetEvent, OpenEventW, CreateEventW, LeaveCriticalSection, EnterCriticalSection, GetCurrentThreadId, DeleteCriticalSection, InitializeCriticalSection, OpenProcess, RegisterWaitForSingleObject, UnregisterWaitEx, GetLastError, CloseHandle, InterlockedExchange, Sleep, WriteFile, HeapSize, RaiseException, GetNativeSystemInfo, GetDriveTypeW, InterlockedDecrement
msvcp90.dll
DllMain
msvcr90.dll
DllMain
ole32.dll
CoCreateInstance, StringFromGUID2, CoInitializeEx, CoUninitialize, CoSetProxyBlanket
rpcrt4.dll
RpcBindingFromStringBindingW, RpcBindingFree, RpcMgmtStopServerListening, RpcMgmtWaitServerListen, RpcServerUnregisterIf, RpcServerRegisterIf2, RpcServerListen, RpcServerRegisterAuthInfoW, RpcStringBindingComposeW, RpcServerUseProtseqEpW, RpcBindingInqAuthClientW, RpcBindingServerFromClient, RpcBindingToStringBindingW, RpcStringFreeW, RpcStringBindingParseW, RpcImpersonateClient, RpcRevertToSelf, NdrServerCall2, RpcBindingSetAuthInfoExW, RpcCancelThread, RpcMgmtSetCancelTimeout, NdrClientCall2
sftcore.dll
SWGetAppList, SWRegisterEventHandler, SWUnregisterEventHandler, SWForceDismountFilesystem, SWResetLog, SWIsOperationAllowed, SWCleanupForUser, SWInitForUser, SWInitInternals, SWInitialize, SWCleanupInternals, SWCleanup, SWUnhandledExceptionCleanup, SWNotifyClientShutdown, SWCleanupForPid, SWGetLogParams, SWSetLogParams, SWGetConnectType, SWSetConnectType, SWGetProxy, SWSetProxy, SWLogMessage, SWGetVersion, SWGetCacheProperties, SWSetCacheProperties, SWGetAssociationList, SWDeleteAssociation, SWEditAssociation, SWGetAssociation, SWCreateAssociation, SWDeleteAction, SWEditAction, SWGetActionList, SWGetDefaultAction, SWAddAction, SWDeleteType, SWEditType, SWGetType, SWGetTypeList, SWCreateType, SWDeleteServer, SWRefreshServerInternal, SWRefreshServer, SWGetServerList, SWGetServer, SWEditServer, SWCreateServer, SWSetImportSearchPath, SWGetImportSearchPath, SWDccEventNotification, SWSetDisconnectSettings, SWGetDisconnectSettings, SWGetDataDirectory, SWSetDataDirectory, SWSetPermissions, SWGetPermissions, SWIsOperationAllowedOnObj, SWRepairPackage, SWUnpublishPackage, SWPublishPackage, SWLockPackage, SWGetPackageInfo2, SWGetPackageList2, SWEditPackage, SWDeletePackage, SWUnloadPackage, SWCreateApp, SWLaunch, SWShutdown, SWLoad, SWImport, SWLoadPackageRange, SWLoadPackage, SWCreatePackage, SWGetAppInfoList, SWIsAppPublished, SWPublishShortcut, SWEditApp, SWGetAppInfo, SWGetAppStatistics, SWSetOnlineStatus, SWGetOnlineStatus, SWGetAppHandle, SWHandleDisconnect, SWClearSettings, SWDeleteApp, SWCloseHandle, SWUnload
shell32.dll
SHGetSpecialFolderPathW, SHChangeNotify
user32.dll
PostThreadMessageW, DispatchMessageW, GetMessageW
userenv.dll
UnloadUserProfile

sftlist.exe

Microsoft Application Virtualization by Microsoft Corporation (Signed)

Remove sftlist.exe
Version:   4.6.1.10263
MD5:   08d2b597cc4e26fde43be9f104476f65
SHA1:   4024a024f31f6318b2e52c16e956be462ab24b60
SHA256:   a761c5247758222edc6759445d00e1b154b313e58708c5b2dce26fd3654af63e

What is sftlist.exe?

Microsoft Application Virtualization (MS App-V) platform allows applications to be deployed in real-time to any client from a virtual application server. It removes the need for local installation of the applications. Instead, only the App-V client needs to be installed on the client machines. All application data is permanently stored on the virtual application server.

Overview

sftlist.exe runs as a service under the name sftlist (sftlist) with extensive SYSTEM privileges (full administrator access). The file is digitally signed by Microsoft Corporation.

DetailsDetails

File name:sftlist.exe
Publisher:Microsoft Corporation
Product name:Microsoft Application Virtualization
Description:Microsoft Application Virtualization Client Service
Typical file path:C:\Program Files\microsoft application virtualization client\sftlist.exe
File version:4.6.1.10263
Size:496.35 KB (508,264 bytes)
Certificate
Issued to:Microsoft Corporation
Authority (CA):Microsoft Corporation
Effective date:Monday, December 7, 2009
Expiration date:Monday, March 7, 2011
Digital DNA
PE subsystem:Windows GUI
Entropy:6.330596
File packed:No
Code language:Microsoft Visual C++ 9.0
.NET CLR:No
More details

BehaviorsBehaviors

Services
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
  • sftlist
  • 'sftlist' (Application Virtualization Client)

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00102337%
0.028634%
Kernel CPU:0.00077334%
0.013761%
User CPU:0.00025003%
0.014873%
Kernel CPU time:1,966 ms/min
100,923,805ms/min
CPU cycles:71,102/sec
17,470,203/sec
Memory
Private memory:9.72 MB
21.59 MB
Private (maximum):2.63 MB
Private (minimum):2.63 MB
Non-paged memory:9.72 MB
21.59 MB
Virtual memory:81.86 MB
140.96 MB
Virtual memory (peak):94.53 MB
169.69 MB
Working set:2.63 MB
18.61 MB
Working set (peak):20.62 MB
37.95 MB
Page faults:18,031/min
2,039/min
I/O
I/O read transfer:20.17 KB/sec
1.02 MB/min
I/O read operations:1/sec
343/min
I/O write transfer:15.9 KB/sec
274.99 KB/min
I/O write operations:1/sec
227/min
I/O other transfer:399 Bytes/sec
448.09 KB/min
I/O other operations:9/sec
1,671/min
Resource allocations
Threads:17
12
Handles:409
600

BehaviorsProcess properties

Integrety level:System
Platform:64-bit
Command line:"C:\Program Files\microsoft application virtualization client\sftlist.exe"
Owner:SYSTEM
Windows Service
Service name:sftlist
Display name:sftlist
Description:“Streams and manages applications.”
Type:Win32OwnProcess

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Home Premium 89.02%
Windows 7 Home Basic 8.54%
Windows 7 Starter 2.44%

Distribution by countryDistribution by country

United States installs about 60.00% of Microsoft Application Virtualization.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Toshiba 26.45%
Dell 18.18%
Hewlett-Packard 17.36%
Sony 13.22%
Acer 10.74%
ASUS 4.96%
MSI 3.31%
Lenovo 3.31%
Samsung 1.65%
GIGABYTE 0.83%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE