Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

6.3.9431.0 (winmain_bluemp.130615-1214) 1.27%
6.3.9431.0 (winmain_bluemp.130615-1214) 0.64%
17.0.2015.0811 26.75%
17.0.2011.0627 5.73%
17.0.2010.0530 9.55%
17.0.2006.0314 18.47%
17.0.2003.1112 35.67%
16.4.6013.0910 1.91%

Relationships

Parent process
Related files

PE structurePE file structure

Show functions
Import table
api-ms-win-core-com-l1-1-1.dll
RoGetAgileReference, CoCreateFreeThreadedMarshaler, CoUninitialize, CoRevokeClassObject, PropVariantClear, CoInitializeSecurity, CoTaskMemFree, CoInitializeEx, CoTaskMemAlloc, CoTaskMemRealloc, CoGetMalloc, StringFromGUID2, CoCreateGuid, CoResumeClassObjects, CoCreateInstance, CoRegisterClassObject
api-ms-win-core-datetime-l1-1-1.dll
GetDateFormatW
api-ms-win-core-debug-l1-1-1.dll
OutputDebugStringA, DebugBreak
api-ms-win-core-errorhandling-l1-1-1.dll
UnhandledExceptionFilter, SetErrorMode, RaiseException, GetLastError, SetUnhandledExceptionFilter, SetLastError
api-ms-win-core-file-l1-2-1.dll
FindFirstFileW, GetFullPathNameW, GetFileAttributesW, FindNextFileW, SetFileInformationByHandle, FindClose, GetFileSizeEx, GetDiskFreeSpaceExW, GetVolumeInformationW, DeleteFileW, GetDriveTypeW, CreateFileW, GetLogicalDrives, ReadFile, GetVolumePathNameW, SetFileTime, FindFirstFileExW, SetFilePointerEx, SetFileAttributesW
api-ms-win-core-file-l2-1-1.dll
GetFileInformationByHandleEx
api-ms-win-core-handle-l1-1-0.dll
CloseHandle, DuplicateHandle
api-ms-win-core-io-l1-1-1.dll
DeviceIoControl
api-ms-win-core-libraryloader-l1-1-1.dll
FindResourceExW, LoadResource, SizeofResource, GetProcAddress, FreeLibrary, LoadLibraryExW, FindStringOrdinal, GetModuleFileNameW, GetModuleHandleW, GetModuleHandleA
api-ms-win-core-localization-l1-2-1.dll
FormatMessageW, GetLocaleInfoW
api-ms-win-core-path-l1-1-0.dll
PathCchCanonicalizeEx, PathCchStripPrefix, PathCchSkipRoot
api-ms-win-core-processenvironment-l1-2-0.dll
GetCommandLineW
api-ms-win-core-processthreads-l1-1-2.dll
GetCurrentProcess, TerminateProcess, OpenProcessToken, CreateProcessW, OpenProcess, GetCurrentProcessId, GetStartupInfoW, GetCurrentThreadId
api-ms-win-core-profile-l1-1-0.dll
QueryPerformanceCounter
api-ms-win-core-registry-l1-1-0.dll
RegGetValueW, RegQueryInfoKeyW, RegNotifyChangeKeyValue, RegEnumKeyExW, RegOpenKeyExW, RegCloseKey, RegSetValueExW, RegDeleteValueW, RegCreateKeyExW, RegEnumValueW
api-ms-win-core-string-l1-1-0.dll
CompareStringOrdinal, GetStringTypeW, WideCharToMultiByte, MultiByteToWideChar
api-ms-win-core-synch-l1-2-0.dll
ReleaseMutex, EnterCriticalSection, CreateMutexW, OpenEventW, Sleep, InitializeCriticalSection, OpenMutexW, AcquireSRWLockShared, ResetEvent, WaitForSingleObject, AcquireSRWLockExclusive, CreateEventW, LeaveCriticalSection, SetEvent, ReleaseSRWLockExclusive, DeleteCriticalSection, ReleaseSRWLockShared
api-ms-win-core-sysinfo-l1-2-1.dll
GetSystemTimeAsFileTime, GetTickCount64, GetComputerNameExW, GetSystemTime, GetProductInfo, GetVersionExW, GetLocalTime, GetTickCount
api-ms-win-core-timezone-l1-1-0.dll
GetTimeZoneInformation, SystemTimeToTzSpecificLocalTime
api-ms-win-core-util-l1-1-0.dll
DecodePointer, EncodePointer
api-ms-win-core-version-l1-1-0.dll
VerQueryValueW
api-ms-win-core-winrt-error-l1-1-1.dll
RoOriginateErrorW, RoOriginateError
api-ms-win-core-winrt-l1-1-0.dll
RoRevokeActivationFactories, RoRegisterActivationFactories
api-ms-win-core-winrt-string-l1-1-0.dll
WindowsCreateString, WindowsGetStringRawBuffer, WindowsStringHasEmbeddedNull, WindowsDeleteString, WindowsIsStringEmpty
api-ms-win-eventing-classicprovider-l1-1-0.dll
TraceEvent
api-ms-win-eventing-controller-l1-1-0.dll
EnableTraceEx2, ControlTraceW, StartTraceW
api-ms-win-eventing-provider-l1-1-0.dll
EventWrite
api-ms-win-security-base-l1-2-0.dll
GetTokenInformation, CheckTokenMembership, CreateWellKnownSid
api-ms-win-shcore-obsolete-l1-1-0.dll
CommandLineToArgvW
api-ms-win-shcore-registry-l1-1-1.dll
SHDeleteValueW, SHSetValueW
api-ms-win-shcore-stream-l1-1-0.dll
SHCreateStreamOnFileW, SHCreateStreamOnFileEx
dwmapi.dll
DwmIsCompositionEnabled, DwmSetWindowAttribute
kernel32.dll
FreeLibrary, GetProcAddress, LoadLibraryW, SetDllDirectoryW, CloseHandle, WriteConsoleW, GetCommandLineW, EncodePointer, DecodePointer, RaiseException, RtlUnwind, GetLastError, SetLastError, FlsAlloc, FlsGetValue, FlsSetValue, FlsFree, InterlockedIncrement, InterlockedDecrement, GetCurrentThreadId, ExitProcess, GetModuleHandleExW, MultiByteToWideChar, GetStdHandle, WriteFile, GetModuleFileNameW, GetProcessHeap, GetFileType, InitializeCriticalSectionAndSpinCount, DeleteCriticalSection, InitOnceExecuteOnce, GetStartupInfoW, QueryPerformanceCounter, GetSystemTimeAsFileTime, GetTickCount64, GetEnvironmentStringsW, FreeEnvironmentStringsW, UnhandledExceptionFilter, SetUnhandledExceptionFilter, GetCurrentProcess, TerminateProcess, GetModuleHandleW, IsProcessorFeaturePresent, HeapAlloc, HeapFree, HeapSize, Sleep, IsDebuggerPresent, EnterCriticalSection, LeaveCriticalSection, IsValidCodePage, GetACP, GetOEMCP, GetCPInfo, LoadLibraryExW, OutputDebugStringW, WideCharToMultiByte, HeapReAlloc, LCMapStringEx, GetStringTypeW, FlushFileBuffers, GetConsoleCP, GetConsoleMode, SetStdHandle, SetFilePointerEx, CreateFileW, CopyFileW, RaiseFailFastException, LocalFree, MoveFileW, WaitForMultipleObjects, WerUnregisterFile, LCIDToLocaleName, WerRegisterFile, lstrcmpiW
msvcrt.dll
DllMain
ntdll.dll
EtwGetTraceLoggerHandle, NtCreateFile, RtlNtStatusToDosError, RtlInitUnicodeString, EtwUnregisterTraceGuids, EtwRegisterTraceGuidsW, EtwGetTraceEnableFlags, EtwGetTraceEnableLevel, EtwTraceMessage
ole32.dll
CoGetObject, CoAllowSetForegroundWindow, CoInitialize, CreateBindCtx
propsys.dll
PSGetPropertyKeyFromName, PropVariantToStringVectorAlloc
rpcrt4.dll
UuidToStringW, RpcStringFreeW
shell32.dll
SHCreateItemFromParsingName, SHSetKnownFolderPath, SHBindToParent, SHGetDataFromIDListW, SHGetKnownFolderPath, SHGetFolderPathAndSubDirW, SHGetFolderPathW, Shell_NotifyIconW, ShellExecuteW, SHFileOperationW, SHGetSpecialFolderPathW, SHCreateDirectoryExW, SHChangeNotify, SHBrowseForFolderW, SHGetPathFromIDListW, SHAppBarMessage, SHGetKnownFolderItem, SHParseDisplayName
shlwapi.dll
SHGetValueW, PathRemoveExtensionW, SHRegGetUSValueW, SHRegGetBoolUSValueW, SHRegCreateUSKeyW, SHRegCloseUSKey, SHRegSetUSValueW, PathFileExistsW, AssocCreate, UrlEscapeW, PathFindFileNameW, SHQueryValueExW, StrStrW, PathIsDirectoryW, PathRemoveFileSpecW
sspicli.dll
GetUserNameExW
user32.dll
MessageBoxW, AdjustWindowRectEx, NotifyWinEvent, SetWindowPos, MsgWaitForMultipleObjects, CharNextW, UnregisterClassA, AllowSetForegroundWindow, SetFocus, GetLastActivePopup, SystemParametersInfoW, GetProcessDefaultLayout, UnhookWindowsHookEx, SetWindowsHookExW, GetIconInfo, GetWindowRect, TrackPopupMenu, GetDoubleClickTime, KillTimer, SetTimer, SetMenuDefaultItem, EnableMenuItem, GetMenuStringW, GetMenuItemCount, RemoveMenu, DeleteMenu, AppendMenuW, ModifyMenuW, EndDialog, SetForegroundWindow, FindWindowW, ShowWindow, SendMessageW, PeekMessageW, PostThreadMessageW, GetWindowThreadProcessId, PostMessageW, GetWindowLongW, PostQuitMessage, SetWindowLongW, CreateWindowExW, RegisterClassExW, UnregisterClassW, GetClassInfoExW, IsWindow, DispatchMessageW, TranslateMessage, GetMessageW, DestroyWindow, GetSubMenu, DefWindowProcW
version.dll
GetFileVersionInfoSizeW, GetFileVersionInfoW

SkyDrive.exe

Microsoft SkyDrive by Microsoft Corporation (Signed)

Remove SkyDrive.exe
Version:   6.3.9431.0 (winmain_bluemp.130615-1214)
MD5:   bd17d751619c0bd51e4eac29bf622127
SHA1:   6f8423353f2777773b650b3ccfedd6a2291574be
SHA256:   5a75ff077a82d8fa3d97309942a29739f9ab384ebe08e452e1a9b9f24ff71579

What is SkyDrive.exe?

SkyDrive is a file hosting service that allows users to upload and sync files to a cloud storage and then access them from a Web browser or their local device. It is part of the Windows Live range of online services and allows users to keep the files private, share them with contacts, or make the files public. Publicly shared files do not require a Microsoft account to access.

Overview

skydrive.exe executes as a process with the local user's privileges typically within the context of its parent svchost.exe (Host Process for Windows Services by Microsoft Corporation). It is set to be run when the PC boots and the user logs into Windows (added to the Run registry key for the current user). The file is digitally signed by Microsoft Corporation. and is compiled as a 64 bit program.

DetailsDetails

File name:skydrive.exe
Publisher:Microsoft Corporation
Product name:Microsoft SkyDrive
Typical file path:C:\users\user\appdata\local\microsoft\skydrive\skydrive.exe
File version:6.3.9431.0 (winmain_bluemp.130615-1214)
Product version:6.3.9431.0
Size:623.5 KB (638,464 bytes)
Build date:6/15/2013 2:50 PM
Certificate
Issued to:Microsoft Corporation
Authority (CA):Microsoft Corporation
Effective date:Thursday, July 26, 2012
Expiration date:Saturday, October 26, 2013
Digital DNA
PE subsystem:Windows GUI
File packed:No
Code language:Microsoft Visual C++
.NET CLR:No
More details

BehaviorsBehaviors

Startup files (user) run
Runs under the registry key 'HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run'
  • 'SkyDrive' → "C:\users\user\appdata\Local\Microsoft\SkyDrive\SkyDrive.exe" /background
Scheduled tasks
  • The task 'Microsoft SkyDrive Auto Update Task-S-1-5-21-1318870350-1538431248-2977772109-1001' in the path '\Microsoft SkyDrive Auto Update Task-S-1-5-21-1318870350-1538431248-2977772109-1001'
  • The job 'Microsoft SkyDrive Auto Update Task-S-1-5-21-3203543148-2324073305-2790340789-1001' in the path '\Microsoft SkyDrive Auto Update Task-S-1-5-21-3203543148-2324073305-2790340789-1001'

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00374632%
0.028634%
Kernel CPU:0.00187788%
0.013761%
User CPU:0.00186844%
0.014873%
Kernel CPU time:141 ms/min
100,923,805ms/min
CPU cycles:449,956/sec
17,470,203/sec
Memory
Private memory:6.18 MB
21.59 MB
Private (maximum):14.06 MB
Private (minimum):11.19 MB
Non-paged memory:6.18 MB
21.59 MB
Virtual memory:143.5 MB
140.96 MB
Virtual memory (peak):148.45 MB
169.69 MB
Working set:13.54 MB
18.61 MB
Working set (peak):21.58 MB
37.95 MB
Page faults:20,680/min
2,039/min
I/O
I/O read transfer:2.71 KB/sec
1.02 MB/min
I/O read operations:4/sec
343/min
I/O write transfer:19.19 KB/sec
274.99 KB/min
I/O write operations:6/sec
227/min
I/O other transfer:3.92 KB/sec
448.09 KB/min
I/O other operations:64/sec
1,671/min
Resource allocations
Threads:22
12
Handles:558
600
GUI GDI count:10
103
GUI GDI peak:14
142
GUI USER count:8
49
GUI USER peak:10
71

BehaviorsProcess properties

Integrety level:Medium
Platform:64-bit
Command line:C:\Windows\System32\skydrive.exe -embedding
Owner:User
Parent process:svchost.exe (Host Process for Windows Services by Microsoft Corporation)

ResourcesThreads

Averages
 
msvcrt.dll
Total CPU:0.00250354%
0.272967%
Kernel CPU:0.00143478%
0.107585%
User CPU:0.00106876%
0.165382%
CPU cycles:69,471/sec
5,741,424/sec
Memory:664 KB
1.16 MB
skydrive.exe (main module)
Total CPU:0.00182787%
Kernel CPU:0.00003025%
User CPU:0.00179761%
CPU cycles:96,950/sec
Memory:652 KB
Telemetry.dll
Total CPU:0.00176939%
Kernel CPU:0.00000000%
User CPU:0.00176939%
CPU cycles:4,042/sec
Memory:884 KB
ntdll.dll
Total CPU:0.00006051%
Kernel CPU:0.00006051%
User CPU:0.00000000%
CPU cycles:421/sec
Memory:1.66 MB

Common loaded modules

These are modules that are typiclaly loaded within the context of this process.

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Home Premium 28.66%
Windows 8 Pro 15.92%
Windows 8 14.65%
Windows 8 Pro with Media Center 12.10%
Windows 7 Ultimate 10.83%
Windows 8.1 3.18%
Windows Vista Home Premium 3.18%
Windows 8 Enterprise 3.18%
Windows 7 Professional 2.55%
Windows 8.1 Pro Preview 1.27%
Windows 7 Home Premium N 1.27%
Windows 8 Pro N 1.27%
Windows Server 2012 Standard Evaluation 1.27%
Windows 8.1 Pro Preview with Media Center 0.64%

Distribution by countryDistribution by country

United States installs about 57.96% of Microsoft SkyDrive.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Hewlett-Packard 25.81%
ASUS 20.65%
Dell 15.48%
Toshiba 14.19%
Sony 9.03%
Acer 3.87%
Lenovo 3.87%
Intel 2.58%
Samsung 1.94%
GIGABYTE 1.29%
Alienware 1.29%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE