Should I block it?

90%
90% of PCs block this file from running.
Possible reason:
Multiple malware detections

VersionsAdditional versions

1.2.2.1 10.00%
1.2.2.1 90.00%
(Note, Bitdefender SRL publishes each variation of this file with the same version, but the hashes are unique.)

Relationships


PE structurePE file structure

Show functions
Import table
api-ms-win-core-winrt-l1-1-0.dll
RoGetActivationFactory
api-ms-win-core-winrt-string-l1-1-0.dll
WindowsCreateStringReference, WindowsDeleteString
kernel32.dll
HeapSize, WriteConsoleW, SetFilePointerEx, SetStdHandle, GetConsoleMode, SetThreadErrorMode, InterlockedIncrement, InterlockedDecrement, WaitForSingleObject, InterlockedCompareExchange, SetEvent, InitializeCriticalSection, Sleep, LeaveCriticalSection, GetFileAttributesW, RaiseException, InterlockedExchange, EnterCriticalSection, CreateEventW, DeleteCriticalSection, CloseHandle, CreateThread, HeapAlloc, HeapFree, HeapDestroy, HeapCreate, GetSystemInfo, GetConsoleCP, FlushFileBuffers, GetStringTypeW, LCMapStringEx, LoadLibraryW, OutputDebugStringW, GetLastError, EncodePointer, DecodePointer, GetCommandLineA, GetCurrentThreadId, IsDebuggerPresent, IsProcessorFeaturePresent, GetProcessHeap, ExitProcess, GetModuleHandleExW, GetProcAddress, MultiByteToWideChar, CreateFileW, HeapReAlloc, GetStdHandle, WriteFile, GetModuleFileNameW, RtlUnwind, SetLastError, GetFileType, InitializeCriticalSectionAndSpinCount, InitOnceExecuteOnce, GetStartupInfoW, GetModuleFileNameA, QueryPerformanceCounter, GetSystemTimeAsFileTime, GetTickCount64, GetEnvironmentStringsW, FreeEnvironmentStringsW, WideCharToMultiByte, UnhandledExceptionFilter, SetUnhandledExceptionFilter, FlsAlloc, FlsGetValue, FlsSetValue, FlsFree, GetCurrentProcess, TerminateProcess, GetModuleHandleW, LoadLibraryExW, IsValidCodePage, GetACP, GetOEMCP, GetCPInfo
ole32.dll
CoInitializeEx, CoCreateInstance, CoTaskMemFree, CoUninitialize
shell32.dll
GetCurrentProcessExplicitAppUserModelID
user32.dll
EnumDisplayMonitors, PostQuitMessage, PeekMessageW, GetMessageW, PostThreadMessageW
Export table
AddMetroCallback
CloseAllToasts
CloseToast
DiscardToast
DisplayToast
IdentifyDLL
Init
IsMetro
MakeToast
RemoveMetroCallback
UnInit

win8ui.dll

Bitdefender by Bitdefender SRL (Signed)

Remove win8ui.dll
Version:   1.2.2.1
MD5:   d135319c81d502f98ba42212e14f8ba0
SHA1:   c72c3768ad8b94312bccafc989302072825d393f
SHA256:   8c7620f838b124d024e92e01ef1a0cb010e26648b412a8e8c00adb2e82c1c417
Warning 3 antivirus scanners has detected malware.

Overview

win8ui.dll is malware that is loaded as dynamic link library that runs in the context of a process. The file is digitally signed by Bitdefender SRL which was issued by the VeriSign certificate authority (CA).

DetailsDetails

File name:win8ui.dll
Publisher:Bitdefender
Product name:Bitdefender
Description:Windows 8 User Interface Extensions
Typical file path:C:\Program Files\bitdefender\bitdefender 2013\win8ui.dll
File version:1.2.2.1
Size:95.98 KB (98,280 bytes)
Certificate
Issued to:Bitdefender SRL
Authority (CA):VeriSign
Effective date:Wednesday, December 14, 2011
Expiration date:Friday, December 14, 2012
Digital DNA
PE subsystem:Windows GUI
File packed:No
.NET CLR:No
More details

MalwareMalware detections

Based on 40+ industry antivirus scanners, 3 of them detected the following malware.
Antivirus engineEngine versionDetection
NANO AntiVirus 0.24.0.52214 Trojan.Win32.Panda.bbwqxz
nProtect 2013-04-28.01 Trojan-Spy/W32.ZBot.98280
Trend Micro HouseCall 9.700.0.1001 TROJ_GEN.F47V0403

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 8 Pro 30.00%
Windows 8 20.00%
Windows 8 Pro with Media Center 20.00%
Windows 8.1 10.00%
Windows 8.1 Pro with Media Center 10.00%
Windows 8.1 Pro 10.00%

Distribution by countryDistribution by country

United States installs about 50.00% of Bitdefender.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Lenovo 50.00%
Hewlett-Packard 16.67%
Dell 16.67%
Acer 8.33%
GIGABYTE 8.33%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE