Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

6.3.9600.16384 (winblue_rtm.130821-1623) 3.34%
6.3.9600.16384 (winblue_rtm.130821-1623) 0.06%
6.3.9431.0 (winmain_bluemp.130615-1214) 0.26%
6.3.9431.0 (winmain_bluemp.130615-1214) 0.06%
6.2.9200.16384 (win8_rtm.120725-1247) 11.76%
6.2.9200.16384 (win8_rtm.120725-1247) 1.93%
6.2.8400.0 (winmain_win8rc.120518-1423) 0.13%
6.2.8250.0 (winmain_win8beta.120217-1520) 0.06%
6.2.8102.0 (winmain_win8m3.110823-1455) 0.06%
6.1.7600.16385 (win7_rtm.090713-1255) 4.50%
6.1.7600.16385 (win7_rtm.090713-1255) 0.06%
6.1.7600.16385 (win7_rtm.090713-1255) 34.06%
6.1.7600.16385 (win7_rtm.090713-1255) 13.88%
6.1.7600.16385 (win7_rtm.090713-1255) 3.08%
6.1.7600.16385 (win7_rtm.090713-1255) 0.06%
6.0.6000.16386 (vista_rtm.061101-2205) 1.35%
6.0.6000.16386 (vista_rtm.061101-2205) 7.46%
6.0.6000.16386 (vista_rtm.061101-2205) 0.58%
6.0.6000.16386 (vista_rtm.061101-2205) 0.45%
5.2.3790.3959 (srv03_sp2_rtm.070216-1710) 0.13%
5.1.2600.5512 (xpsp.080413-0852) 11.12%
5.1.2600.5512 (xpsp.080413-0852) 0.06%
5.1.2600.5512 (xpsp.080413-0852) 0.51%
5.1.2600.5512 (xpsp.080413-0852) 0.13%
5.1.2600.5512 (xpsp.080413-0852) 0.77%
View more

PE structurePE file structure

Show functions
Import table
advapi32.dll
DeregisterEventSource, RegisterEventSourceW, RegEnumValueW, RegCreateKeyW, RegOpenKeyExA, DuplicateTokenEx, CreateProcessAsUserW, RegSetValueExA, RegQueryValueExA, RegCreateKeyExA, RegQueryValueA, AllocateAndInitializeSid, FreeSid, SetKernelObjectSecurity, AccessCheck, DestroyPrivateObjectSecurity, CreatePrivateObjectSecurity, GetSidSubAuthorityCount, GetSidSubAuthority, RegCloseKey, RegCreateKeyExW, RegEnumKeyW, RegOpenKeyExW, RegQueryInfoKeyW, RegQueryValueExW, RegSetValueExW, CloseServiceHandle, QueryServiceConfigW, OpenServiceW, OpenSCManagerW, ConvertStringSecurityDescriptorToSecurityDescriptorW, RegDeleteKeyW, RegEnumKeyExW, RegOpenKeyW, OpenThreadToken, InitializeSecurityDescriptor, CopySid, GetLengthSid, SetSecurityDescriptorOwner, SetSecurityDescriptorGroup, OpenProcessToken, AddAce, GetAce, GetAclInformation, InitializeAcl, AddAccessAllowedAce, SetSecurityDescriptorDacl, SetSecurityDescriptorSacl, GetSecurityDescriptorDacl, GetKernelObjectSecurity, RegDeleteValueW, RegQueryValueW, SetServiceStatus, RegisterServiceCtrlHandlerExW, DeleteService, QueryServiceStatus, ControlService, InitializeSid, GetSidLengthRequired, GetTokenInformation, LookupAccountSidW, StartServiceW, EventRegister, EventWrite, EventUnregister, RegDeleteKeyExW
cfgmgr32.dll
CM_Reenumerate_DevNode, CM_Open_DevNode_Key_Ex, CM_Get_DevNode_Registry_PropertyA, CM_Open_DevNode_Key, CM_Locate_DevNodeW, CM_Get_Device_ID_Size_Ex, CM_Get_Device_IDW, CM_Get_DevNode_Registry_PropertyW, CM_Set_DevNode_Registry_PropertyW, CM_Get_DevNode_Status
comdlg32.dll
GetFileTitleA
kernel32.dll
PurgeComm, SetCommMask, LocalFree, LocalAlloc, GetCurrentThreadId, EnterCriticalSection, LeaveCriticalSection, InitializeCriticalSectionAndSpinCount, DeleteCriticalSection, InterlockedDecrement, GetVolumeInformationW, GetDriveTypeW, lstrcmpiW, GetLastError, lstrlenW, lstrcpynW, SetEvent, ResetEvent, CloseHandle, CreateMutexW, FreeLibrary, InterlockedIncrement, IsBadWritePtr, CreateEventW, InterlockedExchange, WaitForSingleObject, InterlockedCompareExchange, GetModuleFileNameW, CreateThread, MapViewOfFileEx, DuplicateHandle, OpenProcess, GetCurrentProcess, GetCurrentThread, UnmapViewOfFile, IsBadReadPtr, MulDiv, CreateFileMappingW, GetFileType, SetupComm, DeleteFileW, lstrcmpW, lstrcpyW, InitializeCriticalSection, MultiByteToWideChar, WideCharToMultiByte, lstrlenA, HeapDestroy, GetModuleHandleW, FormatMessageW, GetTickCount, SetLastError, DisableThreadLibraryCalls, Sleep, GetCurrentProcessId, WaitForSingleObjectEx, GetLocalTime, GetVersionExA, HeapFree, HeapAlloc, GetProcessHeap, lstrcpyA, WaitForMultipleObjects, SystemTimeToFileTime, GetSystemTime, lstrcpynA, IsBadStringPtrW, WriteFile, SetFilePointer, QueryPerformanceCounter, GetSystemTimeAsFileTime, TerminateProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, SetCommTimeouts, EscapeCommFunction, ClearCommError, IsBadCodePtr, GetModuleHandleA, CreateFileW, GetTimeFormatW, CreateMutexA, ReleaseMutex, FlushFileBuffers, SetFilePointerEx, CreateFileA, ExpandEnvironmentStringsA, GetModuleFileNameA, ReadFile, GetProcAddress, LoadLibraryW, LoadLibraryA, lstrcmpiA, ExpandEnvironmentStringsW, OutputDebugStringW, GetFileInformationByHandle, GetDateFormatW, GetWindowsDirectoryW, SetEndOfFile, RaiseException, FormatMessageA, GetSystemDirectoryA, CreateDirectoryW, lstrcmpA, GetSystemDirectoryW, CompareStringW, GetTempFileNameW, GetTempPathW, GetFileSize, IsWow64Process, PowerClearRequest, PowerSetRequest, PowerCreateRequest, GetThreadId, LoadLibraryExA, IsProcessorFeaturePresent
mscms.dll
GetStandardColorSpaceProfileW
msvcrt.dll
DllMain
ntdll.dll
NtDuplicateToken, NtClose, WinSqmIncrementDWORD
ole32.dll
StringFromCLSID, CoRegisterClassObject, CoRevokeClassObject, CoSuspendClassObjects, CoAddRefServerProcess, CoTaskMemFree, CoCreateInstance, StgCreatePropStg, CreateStreamOnHGlobal, StgOpenPropStg, CoUninitialize, CoInitializeSecurity, CoCreateInstanceEx, CLSIDFromString, StringFromGUID2, MkParseDisplayName, CreateBindCtx, CoInitializeEx, CoRevertToSelf, CoImpersonateClient, FreePropVariantArray, PropVariantClear, CoTaskMemAlloc, CoInitialize, PropVariantCopy, CoGetCallContext, CoResumeClassObjects, CoDisconnectObject
rpcrt4.dll
RpcServerRegisterIfEx, RpcServerListen, RpcBindingInqAuthClientW, RpcBindingToStringBindingW, RpcStringBindingParseW, RpcImpersonateClient, RpcRevertToSelf, UuidToStringW, NdrServerCall2, RpcStringFreeW, RpcServerUseProtseqEpW, RpcMgmtWaitServerListen, UuidToStringA, RpcStringFreeA, UuidCreateNil, UuidCreate, RpcServerUnregisterIf, RpcMgmtStopServerListening, RpcAsyncCompleteCall, RpcAsyncAbortCall, RpcServerRegisterAuthInfoW, RpcServerInqDefaultPrincNameW, NdrAsyncServerCall, RpcServerUnsubscribeForNotification, RpcServerTestCancel, RpcServerSubscribeForNotification
setupapi.dll
SetupDiDestroyDeviceInfoList, SetupDiGetClassDevsExW, SetupDiOpenDevRegKey, SetupDiOpenDeviceInterfaceRegKey, SetupDiGetDeviceInterfaceDetailW, SetupDiEnumDeviceInterfaces, SetupDiOpenDeviceInterfaceW, SetupDiEnumDeviceInfo, SetupDiGetClassDevsW, SetupDiDeleteDeviceInterfaceData, SetupDiCreateDeviceInfoList
shlwapi.dll
SHDeleteKeyW
user32.dll
CharNextW, SendMessageTimeoutW, UnregisterDeviceNotification, RegisterDeviceNotificationW, wsprintfW, ShowWindow, IsWindow, PostQuitMessage, DestroyWindow, AllowSetForegroundWindow, CharUpperW, wvsprintfA, GetSystemMetrics, DefWindowProcW, BroadcastSystemMessageW, LoadStringW, CharUpperBuffW, CharUpperA, CharNextA, PostMessageW, UnregisterPowerSettingNotification, RegisterPowerSettingNotification, wvsprintfW
userenv.dll
CreateEnvironmentBlock, DestroyEnvironmentBlock
version.dll
GetFileVersionInfoSizeW, GetFileVersionInfoW, VerQueryValueW
winsta.dll
WinStationQueryInformationW
Export table
DllEntryPoint
DllRegisterServer
DllUnregisterServer
ServiceMain
SvchostPushServiceGlobals
wiasCreateChildAppItem
wiasCreateDrvItem
wiasCreateLogInstance
wiasCreatePropContext
wiasDebugError
wiasDebugTrace
wiasDownSampleBuffer
wiasFormatArgs
wiasFreePropContext
wiasGetChangedValueFloat
wiasGetChangedValueGuid
wiasGetChangedValueLong
wiasGetChangedValueStr
wiasGetChildrenContexts
wiasGetContextFromName
wiasGetDrvItem
wiasGetImageInformation
wiasGetItemType
wiasGetPropertyAttributes
wiasGetRootItem
wiasIsPropChanged
wiasParseEndorserString
wiasPrintDebugHResult
wiasQueueEvent
wiasReadMultiple
wiasReadPropBin
wiasReadPropFloat
wiasReadPropGuid
wiasReadPropLong
wiasReadPropStr
wiasSendEndOfPage
wiasSetItemPropAttribs
wiasSetItemPropNames
wiasSetPropChanged
wiasSetPropertyAttributes
wiasSetValidFlag
wiasSetValidListFloat
wiasSetValidListGuid
wiasSetValidListLong
wiasSetValidListStr
wiasSetValidRangeFloat
wiasSetValidRangeLong
wiasUpdateScanRect
wiasUpdateValidFormat
wiasValidateItemProperties
wiasWriteBufToFile
wiasWriteMultiple
wiasWritePageBufToFile
wiasWritePageBufToStream
wiasWritePropBin
wiasWritePropFloat
wiasWritePropGuid
wiasWritePropLong
wiasWritePropStr

WIASERVC.dll

Still Image Devices Service by Microsoft

Remove WIASERVC.dll
Version:   5.1.2600.3311 (xpsp.080211-1047)
MD5:   cc01384090411493d4f5439d0c70716b
SHA1:   49a1c3b5604201eee1b094a47778cddf98eb9182
SHA256:   f4e2b5ce16510ad143e95d384b3308105baeb6228018a32948f4ef4d119f2771
This is a Windows system installed file with Windows File Protection (WFP) enabled.

What is WIASERVC.dll?

Windows Image Acquisition is a Microsoft driver model and application programming interface (API) for Microsoft Windows that enables graphics software to communicate with imaging hardware such as scanners, digital cameras and Digital Video-equipment. WIA is a significant superset of the support for digital still imaging drivers that was provided by the Still Image Architecture (STI).

About WIASERVC.dll (from Microsoft)

The Microsoft Windows Driver Kit (WDK) includes an architecture called Windows Image Acquisition (WIA). WIA is built on the foundation of the Microsoft Still Image architecture (Microsoft STI), thus

DetailsDetails

File name:wiaservc.dll
Publisher:Microsoft Corporation
Product name:Still Image Devices Service
Description:Microsoft® Windows® Operating System
Typical file path:C:\Windows\System32\wiaservc.dll
File version:5.1.2600.3311 (xpsp.080211-1047)
Product version:5.1.2600.3311
Size:326 KB (333,824 bytes)
Build date:2/12/2008 1:28 AM
Digital DNA
PE subsystem:Windows GUI
File packed:No
Code language:Microsoft Visual C++
.NET CLR:No
More details

BehaviorsBehaviors

Hosted services
Runs as a shared service under the Windows svcHost
  • Shared name is 'stisvc'
  • Shared name is 'stisvc'
  • Shared name is 'stisvc'
  • Shared name is 'stisvc'
  • Shared name is 'stisvc'
  • Shared name is 'stisvc'
  • Shared name is 'stisvc'
  • Shared name is 'stisvc'
  • Shared name is 'stisvc'
  • Shared name is 'stisvc'
  • Shared name is 'stisvc'
  • Shared name is 'stisvc'
  • Shared name is 'stisvc'
  • Shared name is 'stisvc'
  • Shared name is 'stisvc'
  • Shared name is 'stisvc'
  • Shared name is 'stisvc'
  • Shared name is 'stisvc'
  • Shared name is 'stisvc'
  • Shared name is 'stisvc'
  • Shared name is 'stisvc'
  • Shared name is 'stisvc'

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Microsoft Windows XP 20.50%
Windows 8.1 16.50%
Windows 8 13.50%
Windows 8 Pro 10.00%
Windows Vista Home Premium 7.50%
Windows 7 Ultimate 5.00%
Windows 8 Single Language 4.00%
Windows 8.1 Pro 3.50%
Windows 8.1 Single Language 3.50%
Windows 7 Home Premium 2.50%
Windows 8.1 Pro with Media Center 2.00%
Windows 8 Enterprise 2.00%
Windows Vista Ultimate 2.00%
Windows 8.1 Pro Preview 1.50%
Windows Vista Home Basic 1.50%
Windows 8 Pro with Media Center 1.00%
Windows Vista Business 1.00%
Windows Seven Black Edition 0.50%
Windows 8 Enterprise N 0.50%
Windows 8.1 Enterprise 0.50%
Windows Developer Preview 0.50%
22 other Windows OS version

Distribution by countryDistribution by country

United States installs about 43.37% of Still Image Devices Service.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Dell 25.27%
Hewlett-Packard 14.08%
ASUS 12.27%
Lenovo 12.27%
Toshiba 11.55%
Acer 7.22%
Sony 5.05%
Intel 3.61%
GIGABYTE 2.53%
American Megatrends 2.17%
Compaq 2.17%
Alienware 0.72%
Sahara 0.72%
Samsung 0.36%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE