Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

1.6.4.2 63.64%
1.6.4.2 4.55%
1.6.0.9 31.82%

Relationships

Parent process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
RegQueryValueExW, LookupPrivilegeValueW, OpenProcessToken, SetSecurityDescriptorDacl, SetSecurityDescriptorGroup, SetSecurityDescriptorOwner, SetEntriesInAclW, CreateWellKnownSid, InitializeSecurityDescriptor, RegOpenKeyExW, RegCreateKeyExW, RegDeleteKeyW, RegDeleteValueW, DeregisterEventSource, ReportEventW, RegisterEventSourceW, StartServiceCtrlDispatcherW, RegisterServiceCtrlHandlerW, ControlService, DeleteService, CreateServiceW, AdjustTokenPrivileges, OpenSCManagerW, OpenServiceW, CloseServiceHandle, SetServiceStatus, RegEnumKeyExW, RegQueryInfoKeyW, RegSetValueExW, RegCloseKey
dbghelp.dll
MiniDumpWriteDump
kernel32.dll
DeleteCriticalSection, InitializeCriticalSectionAndSpinCount, GetLastError, LeaveCriticalSection, EnterCriticalSection, RaiseException, GetProcessHeap, HeapSize, HeapReAlloc, HeapFree, HeapAlloc, HeapDestroy, SetPriorityClass, GetCurrentThread, SetThreadPriority, GetCommandLineW, CreateThread, SetProcessWorkingSetSize, CreateDirectoryW, LoadLibraryW, GetDriveTypeW, WaitForSingleObject, InterlockedExchange, Sleep, InterlockedCompareExchange, HeapSetInformation, GetStartupInfoW, EncodePointer, DecodePointer, TerminateProcess, GetCurrentProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsDebuggerPresent, QueryPerformanceCounter, GetTickCount, GetCurrentThreadId, GetCurrentProcessId, GetSystemTimeAsFileTime, CloseHandle, CreateFileW, GetLocalTime, LocalFree, LocalAlloc, lstrlenW, SizeofResource, LockResource, LoadResource, FindResourceW, FindResourceExW, GetProcAddress, GetModuleHandleW, lstrcmpiW, InterlockedDecrement, InterlockedIncrement, GetModuleFileNameW, FreeLibrary, MultiByteToWideChar, LoadLibraryExW, GetVolumeNameForVolumeMountPointW, GetVolumePathNameW, CreateEventW, InitializeCriticalSection, SetEvent, ResetEvent, WaitForMultipleObjects
mscoree.dll
DllMain
msvcr100.dll
DllMain
ole32.dll
CoReleaseServerProcess, CoResumeClassObjects, CoCreateInstance, StringFromGUID2, CoRegisterClassObject, CoRevokeClassObject, CoUninitialize, CoInitializeEx, ProgIDFromCLSID, CoTaskMemFree, CoTaskMemRealloc, CoTaskMemAlloc, CoInitializeSecurity, CoAddRefServerProcess
shell32.dll
SHGetSpecialFolderPathW
user32.dll
GetMessageW, LoadStringW, CharNextW, CharUpperW, TranslateMessage, PostThreadMessageW, MessageBoxW, DispatchMessageW

WDRulesEngine.exe

WD SmartWare by Western Digital Technologies (Signed)

Remove WDRulesEngine.exe
Version:   1.6.4.2
MD5:   f28bf838652f89294aa3fc3389e18dcc
SHA1:   d526ff707486c96684630dd3ad1309a5dd6a040c
SHA256:   c32b7c24f8e0981b6a640bb639898d9546df1fcf70d08804121bf712096eb807

Overview

wdrulesengine.exe runs as a service under the name WDRulesService (WDRulesService) with extensive SYSTEM privileges (full administrator access). It is installed with a couple of know programs including WD SmartWare published by Western Digital Technologies, Inc., WD SmartWare from Western Digital Technologies, Inc. and WD SmartWare by Western Digital Technologies, Inc.. The assembly utilizes the .NET run-time framework (which is required to be installed on the PC). The file is digitally signed by Western Digital Technologies which was issued by the VeriSign certificate authority (CA).

DetailsDetails

File name:wdrulesengine.exe
Publisher:Western Digital
Product name:WD SmartWare
Description:WD Rules Engine
Typical file path:C:\Program Files\western digital\wd smartware\wdrulesengine.exe
File version:1.6.4.2
Size:1.12 MB (1,178,128 bytes)
Certificate
Issued to:Western Digital Technologies
Authority (CA):VeriSign
Effective date:Friday, December 10, 2010
Digital DNA
PE subsystem:Windows GUI
File packed:No
Code language:Microsoft Visual C# / Basic .NET
.NET CLR:Yes
.NET NGENed:No
More details

ResourcesPrograms

The following programs will install this file
Western Digital Technologies, Inc.
6% remove
WD SmartWare™ software is an easy-to-use backup application that gives you the power to protect your data automatically—Relax! Your data is safe. Automatic, continuous backup instantly makes a second copy whenever you add or change a file. Bring back lost files effortlessly—Retrieve your valuable data to its original location whether you have lost everything, deleted a file, or just overwritten an important file. Customize your backup, ...

BehaviorsBehaviors

Services
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
  • WDRulesService
  • 'WDRulesService' (WD Rules)

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00015370%
0.028634%
Kernel CPU:0.00002258%
0.013761%
User CPU:0.00013112%
0.014873%
Kernel CPU time:23,166 ms/min
100,923,805ms/min
CPU cycles:605,144/sec
17,470,203/sec
Memory
Private memory:22.41 MB
21.59 MB
Private (maximum):12.64 MB
Private (minimum):228 KB
Non-paged memory:22.41 MB
21.59 MB
Virtual memory:161.55 MB
140.96 MB
Virtual memory (peak):163.82 MB
169.69 MB
Working set:4.83 MB
18.61 MB
Working set (peak):19.43 MB
37.95 MB
Page faults:910,695/min
2,039/min
I/O
I/O read transfer:161 Bytes/sec
1.02 MB/min
I/O read operations:7/sec
343/min
I/O write transfer:23 Bytes/sec
274.99 KB/min
I/O write operations:1/sec
227/min
I/O other transfer:12 Bytes/sec
448.09 KB/min
I/O other operations:200/sec
1,671/min
Resource allocations
Threads:8
12
Handles:302
600

BehaviorsProcess properties

Integrety level:System
Platform:32-bit
Command line:"C:\Program Files\western digital\wd smartware\wdrulesengine.exe"
Owner:SYSTEM
Windows Service
Service name:WDRulesService
Display name:WDRulesService
Description:“WD SmartWare Rules Engine”
Type:Win32OwnProcess
Parent process:services.exe (Services and Controller app by Microsoft)

ResourcesThreads

Averages
 
WDRulesEngine.exe (main module)
Total CPU:0.00012732%
0.272967%
Kernel CPU:0.00002971%
0.107585%
User CPU:0.00009762%
0.165382%
CPU cycles:9,374/sec
5,741,424/sec
Memory:1.21 MB
1.16 MB
clr.dll
Total CPU:0.00005093%
Kernel CPU:0.00002546%
User CPU:0.00002546%
CPU cycles:1,846/sec
Memory:6.43 MB
sechost.dll
Total CPU:0.00001698%
Kernel CPU:0.00000000%
User CPU:0.00001698%
CPU cycles:307/sec
Memory:100 KB

Common loaded modules

These are modules that are typiclaly loaded within the context of this process.

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Home Premium 36.36%
Windows 8 Pro 27.27%
Windows 8 Pro with Media Center 13.64%
Windows 7 Ultimate 9.09%
Windows 7 Professional 9.09%
Windows 8 4.55%

Distribution by countryDistribution by country

United States installs about 63.64% of WD SmartWare.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
ASUS 48.00%
Hewlett-Packard 16.00%
Dell 16.00%
Acer 8.00%
Sony 8.00%
GIGABYTE 4.00%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE