Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

6.3.9600.16384 (winblue_rtm.130821-1623) 0.44%
6.3.9600.16384 (winblue_rtm.130821-1623) 0.02%
6.3.9600.16384 (winblue_rtm.130821-1623) 0.70%
6.3.9600.16384 (winblue_rtm.130821-1623) 0.24%
6.3.9600.16384 (winblue_rtm.130821-1623) 0.65%
6.3.9431.0 (winmain_bluemp.130615-1214) 0.05%
6.3.9431.0 (winmain_bluemp.130615-1214) 0.05%
6.2.9200.16420 (win8_gdr.120919-1813) 0.02%
6.2.9200.16420 (win8_gdr.120919-1813) 0.07%
6.2.9200.16420 (win8_gdr.120919-1813) 0.46%
6.2.9200.16420 (win8_gdr.120919-1813) 1.45%
6.2.9200.16420 (win8_gdr.120919-1813) 0.29%
6.2.9200.16420 (win8_gdr.120919-1813) 2.55%
6.2.9200.16384 (win8_rtm.120725-1247) 0.15%
6.2.9200.16384 (win8_rtm.120725-1247) 0.19%
6.2.9200.16384 (win8_rtm.120725-1247) 0.07%
6.2.8400.0 (winmain_win8rc.120518-1423) 0.07%
6.2.8250.0 (winmain_win8beta.120217-1520) 0.02%
6.2.8250.0 (winmain_win8beta.120217-1520) 0.02%
6.2.8102.0 (winmain_win8m3.110823-1455) 0.05%
6.2.8102.0 (winmain_win8m3.110823-1455) 0.05%
6.1.7600.16385 (win7_rtm.090713-1255) 3.22%
6.1.7600.16385 (win7_rtm.090713-1255) 6.23%
6.1.7600.16385 (win7_rtm.090713-1255) 5.02%
6.1.7600.16385 (win7_rtm.090713-1255) 1.99%
View more

Relationships

Parent process
Child processes
Related files

PE structurePE file structure

Show functions
Import table
api-ms-win-core-apiquery-l1-1-0.dll
ApiSetQueryApiSetPresence
api-ms-win-core-com-l1-1-0.dll
CoInitializeSecurity, CoCreateInstance, CoEnableCallCancellation, CoDisableCallCancellation, CoCancelCall, CoUninitialize, CoInitializeEx, StringFromCLSID, CoTaskMemFree
api-ms-win-core-com-l1-1-1.dll
CoInitializeSecurity, CoCancelCall, CoDisableCallCancellation, CoEnableCallCancellation, CoCreateInstance, CoUninitialize, CoInitializeEx
api-ms-win-core-debug-l1-1-1.dll
IsDebuggerPresent, OutputDebugStringA
api-ms-win-core-delayload-l1-1-1.dll
ResolveDelayLoadedAPI, DelayLoadFailureHook
api-ms-win-core-errorhandling-l1-1-0.dll
UnhandledExceptionFilter, SetUnhandledExceptionFilter, GetLastError, SetLastError
api-ms-win-core-errorhandling-l1-1-1.dll
GetLastError, SetUnhandledExceptionFilter, UnhandledExceptionFilter, SetLastError
api-ms-win-core-handle-l1-1-0.dll
CloseHandle
api-ms-win-core-heap-l1-1-0.dll
GetProcessHeap, HeapAlloc, HeapSize, HeapReAlloc, HeapDestroy, HeapFree, HeapCreate
api-ms-win-core-heap-l1-2-0.dll
GetProcessHeap, HeapDestroy, HeapAlloc, HeapSize, HeapReAlloc, HeapFree, HeapCreate
api-ms-win-core-heap-obsolete-l1-1-0.dll
LocalFree
api-ms-win-core-interlocked-l1-1-0.dll
InterlockedCompareExchange, InterlockedDecrement, InterlockedIncrement, InterlockedExchange
api-ms-win-core-interlocked-l1-1-1.dll
InterlockedDecrement, InterlockedIncrement, InterlockedCompareExchange, InterlockedExchange
api-ms-win-core-interlocked-l1-2-0.dll
InterlockedDecrement, InterlockedIncrement, InterlockedCompareExchange, InterlockedExchange
api-ms-win-core-libraryloader-l1-1-1.dll
LoadStringW, GetModuleHandleW, GetModuleHandleA, GetProcAddress
api-ms-win-core-libraryloader-l1-2-0.dll
GetModuleHandleW, LoadStringW, GetModuleHandleA
api-ms-win-core-localregistry-l1-1-0.dll
RegGetValueW
api-ms-win-core-processthreads-l1-1-0.dll
OpenProcessToken
api-ms-win-core-processthreads-l1-1-1.dll
TerminateProcess, GetExitCodeThread, GetStartupInfoW, SetProcessShutdownParameters, GetCurrentProcess, GetCurrentThread, CreateThread, GetCurrentThreadId, SetThreadPriority, GetCurrentProcessId, GetThreadPriority, IsProcessorFeaturePresent, OpenProcessToken
api-ms-win-core-processthreads-l1-1-2.dll
GetThreadPriority, TerminateProcess, GetCurrentProcess, GetExitCodeThread, GetCurrentThreadId, GetCurrentProcessId, SetProcessShutdownParameters, CreateThread, GetStartupInfoW, GetCurrentThread, SetThreadPriority
api-ms-win-core-profile-l1-1-0.dll
QueryPerformanceCounter
api-ms-win-core-registry-l1-1-0.dll
RegGetValueW
api-ms-win-core-string-l1-1-0.dll
WideCharToMultiByte
api-ms-win-core-synch-l1-1-1.dll
DeleteCriticalSection, EnterCriticalSection, CreateEventW, InitializeSRWLock, InitOnceExecuteOnce, ReleaseSRWLockExclusive, InitializeCriticalSection, Sleep, SetEvent, WaitForSingleObject, LeaveCriticalSection, AcquireSRWLockExclusive, ResetEvent
api-ms-win-core-synch-l1-2-0.dll
EnterCriticalSection, ResetEvent, ReleaseSRWLockExclusive, AcquireSRWLockExclusive, WaitForSingleObject, InitializeSRWLock, SetEvent, InitializeCriticalSection, DeleteCriticalSection, LeaveCriticalSection, Sleep, InitOnceExecuteOnce, CreateEventW
api-ms-win-core-sysinfo-l1-1-1.dll
GetTickCount, GetSystemTimeAsFileTime
api-ms-win-core-sysinfo-l1-2-0.dll
GetTickCount, GetSystemTimeAsFileTime
api-ms-win-core-sysinfo-l1-2-1.dll
GetTickCount, GetSystemTimeAsFileTime
api-ms-win-core-threadpool-l1-1-1.dll
DeleteTimerQueueTimer, CreateTimerQueueTimer
api-ms-win-core-threadpool-legacy-l1-1-0.dll
CreateTimerQueueTimer, DeleteTimerQueueTimer
api-ms-win-eventing-classicprovider-l1-1-0.dll
GetTraceEnableLevel, UnregisterTraceGuids, GetTraceLoggerHandle, GetTraceEnableFlags, TraceMessage, RegisterTraceGuidsW
api-ms-win-obsolete-kernelbase-l1-1-0.dll
LocalFree
api-ms-win-security-base-l1-1-0.dll
GetSecurityDescriptorSacl, MakeAbsoluteSD, GetSecurityDescriptorControl, AddAce, InitializeSid, CopySid, InitializeAcl, GetTokenInformation, AllocateAndInitializeSid, FreeSid, GetSidLengthRequired, GetSecurityDescriptorGroup, GetLengthSid, GetSecurityDescriptorDacl, GetSidSubAuthority, SetSecurityDescriptorDacl, SetSecurityDescriptorGroup, SetSecurityDescriptorOwner, GetAclInformation, IsValidSid, InitializeSecurityDescriptor, GetSecurityDescriptorOwner
api-ms-win-security-base-l1-2-0.dll
FreeSid, InitializeAcl, GetLengthSid, AllocateAndInitializeSid, GetSecurityDescriptorSacl, GetSecurityDescriptorDacl, GetSecurityDescriptorGroup, GetSecurityDescriptorOwner, GetSecurityDescriptorControl, SetSecurityDescriptorOwner, IsValidSid, InitializeSecurityDescriptor, MakeAbsoluteSD, GetSidSubAuthority, InitializeSid, GetSidLengthRequired, SetSecurityDescriptorGroup, SetSecurityDescriptorDacl, AddAce, GetAclInformation, CopySid
kernel32.dll
InterlockedExchange, Sleep, InterlockedCompareExchange, GetStartupInfoW, SetUnhandledExceptionFilter, GetModuleHandleA, QueryPerformanceCounter, GetTickCount, GetCurrentThreadId, GetCurrentProcessId, GetSystemTimeAsFileTime, TerminateProcess, GetCurrentProcess, UnhandledExceptionFilter, GetLastError, WaitForSingleObject, ResetEvent, CloseHandle, CreateEventW, HeapFree, HeapDestroy, HeapCreate, HeapReAlloc, SetLastError, HeapAlloc, InitOnceExecuteOnce, SetProcessShutdownParameters, InterlockedIncrement, DeleteAtom, IsDebuggerPresent, AcquireSRWLockExclusive, ReleaseSRWLockExclusive, SetEvent, InterlockedDecrement, GetModuleHandleW, CreateThread, InitializeSRWLock, SetThreadPriority, GetThreadPriority, GetCurrentThread, GetExitCodeThread, DeleteTimerQueueTimer, CreateTimerQueueTimer, HeapSize, GetProcessHeap, LocalFree, OutputDebugStringA, GetTickCount64
msvcrt.dll
DllMain
ntdll.dll
RtlUnhandledExceptionFilter, EtwTraceMessage, DbgPrintEx, NtSetInformationProcess
ole32.dll
CoEnableCallCancellation, CoCancelCall, CoDisableCallCancellation, CoCreateInstance, CoInitializeSecurity, CoInitializeEx, CoUninitialize
rpcrt4.dll
RpcAsyncInitializeHandle, RpcBindingFree, RpcBindingSetAuthInfoExW, RpcStringFreeW, RpcBindingFromStringBindingW, RpcStringBindingComposeW, NdrClientCall2, NdrAsyncClientCall, RpcAsyncCompleteCall, RpcAsyncCancelCall
user32.dll
UpdateWindow, ShowWindow, DefWindowProcW, RegisterClassW, DispatchMessageW, TranslateMessage, MsgWaitForMultipleObjects, PostMessageW, GetWindowThreadProcessId, IsWindow, EnumThreadWindows, EnumWindows, PostQuitMessage, ShutdownBlockReasonDestroy, LoadStringW, ShutdownBlockReasonCreate, DestroyWindow, PeekMessageW, UnregisterClassW, CreateWindowExW

taskhost.exe

Host Process for Windows Tasks by Microsoft Corporation (Signed)

Remove taskhost.exe
Version:   6.0.6000.16386 (vista_rtm.061101-2205)
MD5:   3d50c4b10352367d5cb20ed1f50f8da2
SHA1:   ec2b60c6859e80f0e6a3dc964516fb40a062d3e5
SHA256:   03c2732f2df18ce8cc3cb9ebf2f811a2333c96d8bbc9111f6cce15a09d8e63e6
This is a Windows system installed file with Windows File Protection (WFP) enabled.

What is taskhost.exe?

Host Process for Windows Tasks is a generic process which acts as a host for processes that run from DLLs rather than EXEs. At startup TASKHOST checks the Services portion of the Registry to construct a list of DLL-based services that it needs to load, and then loads them.

Overview

taskhost.exe executes as a process under the SYSTEM account with extensive privileges (the system and the administrator accounts have the same file privileges) typically within the context of its parent svchost.exe (Host Process for Windows Services by Microsoft Corporation). The file is digitally signed by Microsoft Corporation. This version is designed to run on Windows Vista and is compiled as a 32 bit program.

DetailsDetails

File name:taskhost.exe
Publisher:Microsoft Corporation
Product name:Host Process for Windows Tasks
Description:Microsoft® Windows® Operating System
Typical file path:C:\Windows\System32\taskhost.exe
Original name:taskhost.exe.mui
File version:6.0.6000.16386 (vista_rtm.061101-2205)
Product version:6.0.6000.16386
Size:167.5 KB (171,520 bytes)
Certificate
Issued to:Microsoft Corporation
Authority (CA):Microsoft Corporation
Expiration date:Tuesday, July 9, 2013
Digital DNA
Entropy:6.163300
File packed:No
Code language:Microsoft Visual C++
.NET CLR:No
More details

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00251755%
0.028634%
Kernel CPU:0.00174096%
0.013761%
User CPU:0.00077660%
0.014873%
Kernel CPU time:523,419 ms/min
100,923,805ms/min
CPU cycles:93,843/sec
17,470,203/sec
Context switches:10/sec
284/sec
Memory
Private memory:4.99 MB
21.59 MB
Private (maximum):6.77 MB
Private (minimum):4.16 MB
Non-paged memory:4.99 MB
21.59 MB
Virtual memory:69.85 MB
140.96 MB
Virtual memory (peak):76.43 MB
169.69 MB
Working set:4.95 MB
18.61 MB
Working set (peak):7.79 MB
37.95 MB
Page faults:13,460/min
2,039/min
I/O
I/O read transfer:1.65 KB/sec
1.02 MB/min
I/O read operations:1/sec
343/min
I/O write transfer:2 Bytes/sec
274.99 KB/min
I/O write operations:1/sec
227/min
I/O other transfer:671 Bytes/sec
448.09 KB/min
I/O other operations:11/sec
1,671/min
Resource allocations
Threads:9
12
Handles:221
600
GUI GDI count:25
103
GUI USER count:19
49

BehaviorsProcess properties

Integrety level:System
Platform:32-bit
Command lines:
  • taskeng.exe {5fa423ef-f4dc-4aa1-91bd-6890b1b270a4}
  • taskeng.exe {b1549fdd-d04b-4792-9887-de380c37aa17}
  • taskeng.exe {5b3c3b14-b132-4323-a375-96f36c27489b}
  • taskeng.exe {8e37e143-7dce-41f6-b6f9-86e0a69a801f}
  • taskeng.exe {31396ef3-2767-4986-9464-d707715053c6}
  • taskeng.exe {0931f8b1-46c3-4844-b3da-09c544f49c39}
  • taskeng.exe {0928e030-f794-4077-9827-2d4048dadb90}
  • (200 more)
Owner:SYSTEM
Parent process:svchost.exe (Host Process for Windows Services by Microsoft Corporation)

ResourcesThreads

Averages
 
RPCRT4.dll
Total CPU:0.01003589%
0.272967%
Kernel CPU:0.00888555%
0.107585%
User CPU:0.00115033%
0.165382%
CPU cycles:210,206/sec
5,741,424/sec
Context switches:1/sec
79/sec
Memory:776 KB
1.16 MB
WINMM.dll
Total CPU:0.00388243%
Kernel CPU:0.00155297%
User CPU:0.00232946%
CPU cycles:42,512/sec
Memory:200 KB
TMM.dll
Total CPU:0.00282185%
Kernel CPU:0.00267492%
User CPU:0.00014693%
CPU cycles:218,627/sec
Memory:1.25 MB
taskeng.exe (Task Scheduler Engine by Microsoft)
Total CPU:0.00150386%
Kernel CPU:0.00085436%
User CPU:0.00064950%
CPU cycles:22,525/sec
Memory:176 KB
MsCtfMonitor.dll
Total CPU:0.00103196%
Kernel CPU:0.00081994%
User CPU:0.00021203%
CPU cycles:25,660/sec
Memory:32 KB
MSCTF.dll
Total CPU:0.00071362%
Kernel CPU:0.00064048%
User CPU:0.00007314%
CPU cycles:14,775/sec
Memory:800 KB
ole32.dll
Total CPU:0.00042905%
Kernel CPU:0.00041337%
User CPU:0.00001567%
CPU cycles:3,754/sec
Memory:1.27 MB
wdmaud.drv
Total CPU:0.00027448%
Kernel CPU:0.00008806%
User CPU:0.00018641%
CPU cycles:3,351/sec
Memory:188 KB
wdi.dll
Total CPU:0.00003867%
Kernel CPU:0.00000519%
User CPU:0.00003348%
CPU cycles:662/sec
Memory:84 KB
ntdll.dll
Total CPU:0.00003842%
Kernel CPU:0.00003645%
User CPU:0.00000197%
CPU cycles:580/sec
Memory:1.16 MB
HotStartUserAgent.dll
Total CPU:0.00003821%
Kernel CPU:0.00003641%
User CPU:0.00000180%
CPU cycles:431/sec
Memory:32 KB

Common loaded modules

These are modules that are typiclaly loaded within the context of this process.

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Home Premium 45.50%
Windows 7 Ultimate 19.50%
Windows 8.1 10.00%
Windows 7 Professional 8.00%
Windows 8.1 Pro 6.50%
Windows 7 Home Basic 2.50%
Windows 8.1 Single Language 2.00%
Windows 8 2.00%
Windows 8 Single Language 1.50%
Windows Seven Black Edition 0.50%
Windows 8.1 Enterprise Evaluation 0.50%
Windows 8.1 Pro with Media Center 0.50%
Windows 7 Starter 0.50%
Windows 8.1 Pro Preview 0.50%

Distribution by countryDistribution by country

United States installs about 48.24% of Host Process for Windows Tasks.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Dell 25.48%
Hewlett-Packard 18.92%
ASUS 17.76%
Acer 13.13%
Toshiba 8.49%
Lenovo 5.41%
Sony 5.41%
GIGABYTE 1.54%
Medion 1.54%
Alienware 1.16%
Samsung 0.77%
Sahara 0.39%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE