Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

6.3.9600.17031 (winblue_gdr.140221-1952) 14.29%
6.3.9600.16384 (winblue_rtm.130821-1623) 8.57%
6.3.9431.0 (winmain_bluemp.130615-1214) 2.86%
6.2.9200.16613 (win8_gdr.130515-1513) 17.14%
6.2.9200.16455 (win8_gdr.121109-1506) 42.86%
6.2.9200.16455 (win8_gdr.121109-1506) 2.86%
6.2.9200.16384 (win8_rtm.120725-1247) 8.57%
6.2.8400.0 (winmain_win8rc.120518-1423) 2.86%

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
RegOpenKeyExW, RegCloseKey, RegQueryValueExW, ConvertStringSidToSidW, CheckTokenMembership
kernel32.dll
Sleep, CreateDirectoryW, GetFileAttributesExW, LocalFree, TryEnterCriticalSection, LeaveCriticalSection, EnterCriticalSection, InitializeCriticalSection, GetModuleFileNameW, MoveFileExW, GetSystemTime, GetEnvironmentVariableW, GetWindowsDirectoryW, FindClose, DeleteFileW, FindNextFileW, CompareFileTime, FindFirstFileW, OutputDebugStringA, TerminateProcess, UnhandledExceptionFilter, GetTickCount, GetSystemTimeAsFileTime, GetCurrentThreadId, WaitForSingleObject, ResetEvent, GetCurrentProcess, DuplicateHandle, OpenProcess, DeleteCriticalSection, InterlockedIncrement, InterlockedDecrement, GetSystemDirectoryW, FreeLibrary, GetProcAddress, LoadLibraryW, HeapSetInformation, CreateEventW, CloseHandle, SetEvent, GetLastError, WaitForMultipleObjects, GetCurrentProcessId, InterlockedExchange, InterlockedCompareExchange, SetUnhandledExceptionFilter, GetModuleHandleA, QueryPerformanceCounter
msvcrt.dll
DllMain
ole32.dll
CoSuspendClassObjects, CoUninitialize, CoInitializeSecurity, CoInitializeEx, CoCreateInstance, CoDisconnectContext, CoRevokeClassObject, CoResumeClassObjects, CoRegisterClassObject, CoGetMalloc

TiWorker.exe

Windows Modules Installer Worker by Microsoft

Remove TiWorker.exe
Version:   6.2.9200.16613 (win8_gdr.130515-1513)
MD5:   f6b1c6e075b902d80391e3fda5b4527c
SHA1:   b638fc90d771fc73583b53d197015375518b2110
SHA256:   b4d515e329d1a5f7fb23a1803c1a58d3af8566ae4887ee4f7e5487d9156241e0

Overview

tiworker.exe executes as a process under the SYSTEM account with extensive privileges (the system and the administrator accounts have the same file privileges). The assembly utilizes the .NET run-time framework (which is required to be installed on the PC). This version is installed on Windows 8 and is compiled as a 64 bit program.

DetailsDetails

File name:tiworker.exe
Publisher:Microsoft Corporation
Product name:Windows Modules Installer Worker
Description:Microsoft® Windows® Operating System
Typical file path:C:\windows\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\tiworker.exe
File version:6.2.9200.16613 (win8_gdr.130515-1513)
Product version:6.2.9200.16613
Size:185 KB (189,440 bytes)
Build date:5/16/2013 12:23 AM
Digital DNA
File packed:No
Code language:Microsoft Visual C# / Basic .NET
.NET CLR:Yes
.NET NGENed:No
More details

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.06423999%
0.028634%
Kernel CPU:0.02844798%
0.013761%
User CPU:0.03579202%
0.014873%
Kernel CPU time:26,751,878 ms/min
100,923,805ms/min
CPU cycles:14,186,410/sec
17,470,203/sec
Context switches:214/sec
284/sec
Memory
Private memory:113.21 MB
21.59 MB
Private (maximum):127.74 MB
Private (minimum):26.92 MB
Non-paged memory:113.21 MB
21.59 MB
Virtual memory:285.44 MB
140.96 MB
Virtual memory (peak):387.12 MB
169.69 MB
Working set:87.04 MB
18.61 MB
Working set (peak):285.58 MB
37.95 MB
Page faults:2,519,454/min
2,039/min
I/O
I/O read transfer:30.87 MB/sec
1.02 MB/min
I/O read operations:696/sec
343/min
I/O write transfer:13.86 MB/sec
274.99 KB/min
I/O write operations:52,718/sec
227/min
I/O other transfer:422.19 KB/sec
448.09 KB/min
I/O other operations:3,380/sec
1,671/min
Resource allocations
Threads:4
12
Handles:1724
600

BehaviorsProcess properties

Integrety level:System
Platform:64-bit
Command lines:
  • C:\windows\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16683_none_62280e15510f8e79\tiworker.exe -embedding
  • C:\windows\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16613_none_6273bd8950d6cae2\tiworker.exe -embedding
Owner:SYSTEM
Parent process:svchost.exe (by Microsoft)

ResourcesThreads

Averages
 
cbscore.dll
Total CPU:49.76698082%
0.272967%
Kernel CPU:9.65525296%
0.107585%
User CPU:40.11172786%
0.165382%
CPU cycles:1,034,897,015/sec
5,741,424/sec
Context switches:403/sec
79/sec
Memory:1.13 MB
1.16 MB
TiWorker.exe (main module)
Total CPU:0.02496662%
Kernel CPU:0.00736725%
User CPU:0.01759938%
CPU cycles:586,274/sec
Memory:200 KB
ntdll.dll
Total CPU:0.02292489%
Kernel CPU:0.01146245%
User CPU:0.01146245%
CPU cycles:397,850/sec
Memory:1.75 MB
combase.dll
Total CPU:0.00000827%
Kernel CPU:0.00000827%
User CPU:0.00000000%
CPU cycles:93/sec
Memory:1.69 MB

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 8 37.14%
Windows 8 Pro 20.00%
Windows 8.1 14.29%
Windows 8 Pro with Media Center 8.57%
Windows 8.1 Pro with Media Center 2.86%
Windows 8.1 Enterprise 2.86%
Windows 8.1 Pro 2.86%
Windows 8.1 Pro Preview 2.86%
Windows 8 Single Language 2.86%
Windows 8 Enterprise 2.86%
Windows 8 Release Preview 2.86%

Distribution by countryDistribution by country

United States installs about 54.29% of Windows Modules Installer Worker.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
ASUS 25.81%
Toshiba 19.35%
Sony 12.90%
Dell 12.90%
Acer 9.68%
Hewlett-Packard 9.68%
Intel 6.45%
Samsung 3.23%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE