Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

6.3.9600.16384 (winblue_rtm.130821-1623) 12.09%
6.3.9600.16384 (winblue_rtm.130821-1623) 0.29%
6.3.9431.0 (winmain_bluemp.130615-1214) 0.72%
6.3.9431.0 (winmain_bluemp.130615-1214) 0.14%
6.2.9200.16384 (win8_rtm.120725-1247) 2.88%
6.2.9200.16384 (win8_rtm.120725-1247) 5.18%
6.2.9200.16384 (win8_rtm.120725-1247) 34.24%
6.2.9200.16384 (win8_rtm.120725-1247) 3.60%
6.2.8400.0 (winmain_win8rc.120518-1423) 0.29%
6.2.8400.0 (winmain_win8rc.120518-1423) 0.29%
6.2.8250.0 (winmain_win8beta.120217-1520) 0.14%
6.1.7600.16385 (win7_rtm.090713-1255) 19.86%
6.1.7600.16385 (win7_rtm.090713-1255) 0.43%
6.1.7600.16385 (win7_rtm.090713-1255) 13.38%
6.1.7600.16385 (win7_rtm.090713-1255) 1.87%
6.1.7600.16385 (win7_rtm.090713-1255) 0.58%
6.1.7600.16385 (win7_rtm.090713-1255) 0.86%
6.0.6000.16386 (vista_rtm.061101-2205) 0.29%
6.0.6000.16386 (vista_rtm.061101-2205) 0.14%
6.0.6000.16386 (vista_rtm.061101-2205) 2.01%
6.0.6000.16386 (vista_rtm.061101-2205) 0.14%
6.0.6000.16386 (vista_rtm.061101-2205) 0.58%

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
GetTokenInformation, RegQueryValueA, RegOpenKeyA, OpenSCManagerW, OpenServiceW, QueryServiceStatus, StartServiceW, CloseServiceHandle, AllocateAndInitializeSid, SetEntriesInAclA, InitializeSecurityDescriptor, SetSecurityDescriptorDacl, FreeSid, RegCreateKeyExW, DeregisterEventSource, ReportEventW, RegisterEventSourceA, RegisterServiceCtrlHandlerExW, SetServiceStatus, GetUserNameA, OpenProcessToken, RegSetValueExA, RegCreateKeyExA, RegOpenKeyExW, RegQueryValueExW, RegEnumValueW, OpenThreadToken, RevertToSelf, SetThreadToken, RegOpenKeyExA, RegQueryValueExA, RegCloseKey
api-ms-win-core-apiquery-l1-1-0.dll
ApiSetQueryApiSetPresence
api-ms-win-core-com-l1-1-0.dll
CoTaskMemAlloc, CoInitializeEx, CoUninitialize, CreateStreamOnHGlobal, GetHGlobalFromStream, CoCreateInstance, CoTaskMemRealloc, CoTaskMemFree
api-ms-win-core-com-l1-1-1.dll
GetHGlobalFromStream, CoInitializeEx, CoCreateInstance, CoTaskMemFree, CreateStreamOnHGlobal, CoTaskMemAlloc, CoUninitialize, CoTaskMemRealloc
api-ms-win-core-delayload-l1-1-1.dll
DelayLoadFailureHook, ResolveDelayLoadedAPI
api-ms-win-core-errorhandling-l1-1-1.dll
GetLastError, SetLastError, UnhandledExceptionFilter, SetUnhandledExceptionFilter
api-ms-win-core-file-l1-1-1.dll
FindNextFileW, GetFileAttributesW, FindFirstFileW, LocalFileTimeToFileTime, FileTimeToSystemTime, CompareFileTime, DeleteFileW, SetEndOfFile, CreateFileW, FindClose, RemoveDirectoryW, SetFilePointer, WriteFile, GetFileSizeEx, ReadFile, SetFileAttributesW, CreateDirectoryW
api-ms-win-core-file-l1-2-0.dll
GetFileSizeEx, WriteFile, CreateFileW, CompareFileTime, ReadFile, SetFileAttributesW, RemoveDirectoryW, DeleteFileW, SetFilePointer, SetEndOfFile, FindNextFileW, LocalFileTimeToFileTime, FindFirstFileW, CreateDirectoryW, FindClose, GetFileAttributesW
api-ms-win-core-file-l1-2-1.dll
ReadFile, SetFilePointer, CompareFileTime, WriteFile, CreateFileW, LocalFileTimeToFileTime, GetFileAttributesW, CreateDirectoryW, FindFirstFileW, FindNextFileW, SetFileAttributesW, RemoveDirectoryW, SetEndOfFile, DeleteFileW, FindClose, GetFileSizeEx
api-ms-win-core-handle-l1-1-0.dll
DuplicateHandle, CloseHandle
api-ms-win-core-heap-l1-1-0.dll
HeapAlloc, HeapFree, GetProcessHeap, HeapReAlloc
api-ms-win-core-heap-l1-2-0.dll
GetProcessHeap, HeapFree, HeapAlloc, HeapReAlloc
api-ms-win-core-heap-obsolete-l1-1-0.dll
GlobalLock, GlobalReAlloc, LocalAlloc, LocalFree, GlobalFree, GlobalUnlock, GlobalAlloc
api-ms-win-core-interlocked-l1-1-1.dll
InterlockedIncrement, InterlockedExchange, InterlockedDecrement, InterlockedPushEntrySList, InterlockedPopEntrySList, InterlockedCompareExchange, InitializeSListHead
api-ms-win-core-interlocked-l1-2-0.dll
InterlockedPopEntrySList, InterlockedIncrement, InterlockedPushEntrySList, InterlockedExchange, InterlockedDecrement, InitializeSListHead, InterlockedCompareExchange
api-ms-win-core-io-l1-1-1.dll
DeviceIoControl
api-ms-win-core-kernel32-legacy-l1-1-0.dll
RaiseFailFastException, LoadLibraryW
api-ms-win-core-kernel32-legacy-l1-1-1.dll
LoadLibraryW, RaiseFailFastException
api-ms-win-core-libraryloader-l1-1-1.dll
GetProcAddress, LoadLibraryExW, FreeLibrary, GetModuleHandleExA, LoadLibraryExA, GetModuleFileNameW
api-ms-win-core-libraryloader-l1-2-0.dll
GetModuleFileNameW, GetProcAddress, LoadLibraryExW, LoadLibraryExA, FreeLibrary, GetModuleHandleExA
api-ms-win-core-localization-l1-2-0.dll
IdnToAscii, FormatMessageW
api-ms-win-core-localization-l1-2-1.dll
FormatMessageW, IdnToAscii
api-ms-win-core-localization-obsolete-l1-1-0.dll
CompareStringA
api-ms-win-core-localization-obsolete-l1-2-0.dll
CompareStringA
api-ms-win-core-localregistry-l1-1-0.dll
RegCreateKeyExW, RegEnumKeyExW, RegQueryValueExW, RegOpenKeyExW, RegSetValueExA, RegCreateKeyExA, RegOpenKeyExA, RegQueryValueExA, RegCloseKey, RegGetValueA
api-ms-win-core-processenvironment-l1-1-1.dll
ExpandEnvironmentStringsW
api-ms-win-core-processenvironment-l1-2-0.dll
ExpandEnvironmentStringsW
api-ms-win-core-processthreads-l1-1-1.dll
GetCurrentProcess, OpenProcessToken, TerminateProcess, GetCurrentThread, OpenThreadToken, TlsAlloc, SetThreadToken, GetCurrentThreadId, ResumeThread, CreateThread, TlsFree, TlsGetValue, TlsSetValue, GetCurrentProcessId, IsProcessorFeaturePresent
api-ms-win-core-processthreads-l1-1-2.dll
TerminateProcess, OpenThreadToken, GetCurrentThread, OpenProcessToken, GetCurrentProcess, GetCurrentProcessId, TlsAlloc, GetCurrentThreadId, CreateThread, ResumeThread, TlsFree, TlsGetValue, TlsSetValue, SetThreadToken
api-ms-win-core-profile-l1-1-0.dll
QueryPerformanceCounter
api-ms-win-core-registry-l1-1-0.dll
RegOpenKeyExA, RegQueryValueExW, RegQueryValueExA, RegDeleteKeyExW, RegSetValueExA, RegGetValueW, RegCloseKey, RegCreateKeyExW, RegDeleteValueW, RegSetValueExW, RegOpenKeyExW, RegEnumKeyExW, RegCreateKeyExA, RegQueryInfoKeyA
api-ms-win-core-shlwapi-obsolete-l1-1-0.dll
StrCmpNICA, StrChrA, StrStrIA, StrCmpNW, StrStrA, StrChrW, StrCmpNCA
api-ms-win-core-string-l1-1-0.dll
WideCharToMultiByte, CompareStringW, MultiByteToWideChar
api-ms-win-core-string-l2-1-0.dll
CharLowerW
api-ms-win-core-string-obsolete-l1-1-0.dll
lstrcmpiW, lstrcmpA
api-ms-win-core-synch-l1-1-1.dll
InitializeSRWLock, WaitForMultipleObjectsEx, ReleaseSRWLockExclusive, ReleaseSRWLockShared, AcquireSRWLockExclusive, InitializeCriticalSection, DeleteCriticalSection, AcquireSRWLockShared, ResetEvent, WaitForSingleObject, CreateEventA, WaitForSingleObjectEx, InitOnceExecuteOnce, CreateEventW, EnterCriticalSection, LeaveCriticalSection, SetEvent, Sleep
api-ms-win-core-synch-l1-2-0.dll
InitializeSRWLock, ReleaseSRWLockExclusive, CreateEventW, WaitForSingleObject, WaitForSingleObjectEx, InitOnceExecuteOnce, ResetEvent, AcquireSRWLockShared, Sleep, SetEvent, AcquireSRWLockExclusive, ReleaseSRWLockShared, InitializeCriticalSection, CreateEventA, WaitForMultipleObjectsEx, CreateEventExA, EnterCriticalSection, LeaveCriticalSection, DeleteCriticalSection
api-ms-win-core-sysinfo-l1-1-1.dll
GetSystemTimeAsFileTime, GetTickCount, GetNativeSystemInfo, GetTickCount64, SystemTimeToFileTime, GetSystemTime
api-ms-win-core-sysinfo-l1-2-0.dll
GetSystemTime, GetSystemTimeAsFileTime, GetTickCount, GetNativeSystemInfo, GetTickCount64
api-ms-win-core-sysinfo-l1-2-1.dll
GetNativeSystemInfo, GetTickCount, GetSystemTimeAsFileTime, GetSystemTime, GetTickCount64
api-ms-win-core-threadpool-l1-2-0.dll
WaitForThreadpoolTimerCallbacks, SubmitThreadpoolWork, CreateThreadpoolTimer, CloseThreadpoolWait, CreateThreadpoolWait, CloseThreadpoolCleanupGroup, CloseThreadpoolCleanupGroupMembers, CloseThreadpoolWork, CreateThreadpoolWork, CreateThreadpoolCleanupGroup, WaitForThreadpoolWorkCallbacks, SetThreadpoolTimer, CloseThreadpoolTimer, FreeLibraryWhenCallbackReturns, CallbackMayRunLong, SetThreadpoolWait, WaitForThreadpoolWaitCallbacks
api-ms-win-core-threadpool-legacy-l1-1-0.dll
UnregisterWaitEx, QueueUserWorkItem
api-ms-win-core-threadpool-private-l1-1-0.dll
RegisterWaitForSingleObjectEx
api-ms-win-core-timezone-l1-1-0.dll
SystemTimeToFileTime, FileTimeToSystemTime
api-ms-win-core-url-l1-1-0.dll
UrlCanonicalizeW, UrlCombineW, UrlUnescapeA
api-ms-win-eventing-classicprovider-l1-1-0.dll
TraceMessageVa
api-ms-win-eventing-provider-l1-1-0.dll
EventActivityIdControl, EventWriteTransfer, EventWrite, EventUnregister, EventRegister
api-ms-win-obsolete-localization-l1-1-0.dll
CompareStringA
api-ms-win-obsolete-shlwapi-l1-1-0.dll
StrStrIA, StrCmpNW, StrCmpNCA, StrChrW, StrStrA, StrCmpNICA, StrChrA
api-ms-win-security-base-l1-1-0.dll
RevertToSelf, GetTokenInformation, DuplicateToken, CheckTokenMembership, CopySid, CreateWellKnownSid
api-ms-win-security-base-l1-2-0.dll
GetTokenInformation, RevertToSelf, DuplicateToken, CreateWellKnownSid, CheckTokenMembership, CopySid, ImpersonateLoggedOnUser
api-ms-win-security-sddl-l1-1-0.dll
ConvertStringSecurityDescriptorToSecurityDescriptorW, ConvertSidToStringSidW
kernel32.dll
GetLocalTime, GetCurrentProcessId, LocalAlloc, LocalFree, GetProcessHeap, RegisterWaitForSingleObject, UnregisterWaitEx, GlobalLock, GlobalUnlock, GetTickCount, FormatMessageW, GetModuleFileNameW, InterlockedIncrement, CreateEventA, LoadLibraryA, GetModuleFileNameA, GetSystemInfo, TlsFree, OutputDebugStringA, GetCurrentThreadId, TlsSetValue, TlsAlloc, ResetEvent, CreateEventW, WaitForMultipleObjects, WaitForSingleObject, CompareStringW, GetCurrentThread, GetCurrentProcess, InterlockedDecrement, CloseHandle, GetVersionExA, GetModuleHandleW, GetSystemDirectoryW, lstrcmpiW, WriteFile, SetEndOfFile, SetFilePointer, CreateFileW, Sleep, QueryPerformanceCounter, GetSystemTimeAsFileTime, TerminateProcess, UnhandledExceptionFilter, TlsGetValue, HeapFree, GetModuleHandleA, RegSetValueExW, CreateThreadpoolCleanupGroup, CreateThreadpoolWork, SubmitThreadpoolWork, CallbackMayRunLong, CloseThreadpoolWork, CloseThreadpoolCleanupGroupMembers, CloseThreadpoolCleanupGroup, InitializeCriticalSectionAndSpinCount, CreateThreadpoolTimer, SetThreadpoolTimer, FreeLibraryWhenCallbackReturns, CloseThreadpoolTimer, GetDateFormatA, WaitForSingleObjectEx, GetTickCount64, LoadLibraryW, CompareFileTime, lstrcmpA, InitializeCriticalSection, DeleteCriticalSection, DelayLoadFailureHook, GetProcAddress, GetLastError, FreeLibrary, InterlockedCompareExchange, LoadLibraryExA, GlobalFree, GlobalAlloc, lstrlenW, InterlockedExchange, HeapReAlloc, HeapAlloc, SetLastError, lstrlenA, WideCharToMultiByte, EnterCriticalSection, LeaveCriticalSection, MultiByteToWideChar, FileTimeToSystemTime, LocalFileTimeToFileTime, SystemTimeToFileTime, GetSystemTime, CompareStringA, SetEvent, SetUnhandledExceptionFilter, InterlockedExchangeAdd, SetErrorMode, CreateIoCompletionPort, GetQueuedCompletionStatus, CreateThread, FreeLibraryAndExitThread, PostQueuedCompletionStatus, GetExitCodeThread, lstrcmpiA, GetComputerNameA, IsDBCSLeadByte, IsDBCSLeadByteEx, GetCPInfo, RtlMoveMemory, LocalReAlloc
msvcrt.dll
DllMain
ntdll.dll
EtwEventWrite, RtlGUIDFromString, EtwEventActivityIdControl, EtwEventRegister, EtwEventUnregister, EtwEventWriteTransfer, RtlDllShutdownInProgress, RtlMoveMemory, RtlIpv4AddressToStringExW, RtlIpv6AddressToStringExW, RtlNtStatusToDosError, RtlImageNtHeader, NtOpenFile, RtlIpv6StringToAddressExW, RtlIpv4StringToAddressExW, RtlConvertSidToUnicodeString, EtwUnregisterTraceGuids, EtwRegisterTraceGuidsA, EtwGetTraceEnableFlags, EtwGetTraceEnableLevel, EtwGetTraceLoggerHandle, RtlPublishWnfStateData, EtwRegisterTraceGuidsW, RtlGetVersion
rpcrt4.dll
I_RpcBindingInqTransportType, RpcRevertToSelf, RpcAsyncCompleteCall, RpcBindingVectorFree, RpcEpRegisterW, RpcServerUnregisterIf, RpcServerInqBindings, RpcServerRegisterIf2, RpcServerUseProtseqW, RpcRaiseException, RpcAsyncAbortCall, RpcServerTestCancel, RpcImpersonateClient, NdrAsyncServerCall, RpcBindingFree, RpcBindingSetAuthInfoExW, RpcStringFreeW, RpcBindingFromStringBindingW, RpcStringBindingComposeW, RpcAsyncCancelCall, RpcAsyncInitializeHandle, NdrAsyncClientCall
shlwapi.dll
StrCmpNIW, StrStrW, StrCmpIW, StrCmpW, StrRChrW, StrChrA, StrStrIA, SHGetValueA, StrToIntA, StrRChrA, UrlCombineA, UrlCanonicalizeA, StrStrA, UrlUnescapeA
user32.dll
MessageBoxA, IntersectRect, EqualRect, CreateWindowExA, SetWindowLongA, MsgWaitForMultipleObjects, UnregisterClassA, RegisterClassA, PostMessageA, GetWindowLongA, DefWindowProcA, DestroyWindow, PeekMessageA, TranslateMessage, DispatchMessageA, CharLowerA
Export table
DllCanUnloadNow
DllGetClassObject
DllRegisterServer
DllUnregisterServer
Private1
SvchostPushServiceGlobals
WinHttpAddRequestHeaders
WinHttpAutoProxySvcMain
WinHttpCheckPlatform
WinHttpCloseHandle
WinHttpConnect
WinHttpCrackUrl
WinHttpCreateProxyResolver
WinHttpCreateUrl
WinHttpDetectAutoProxyConfigUrl
WinHttpFreeProxyResult
WinHttpGetDefaultProxyConfiguration
WinHttpGetIEProxyConfigForCurrentUser
WinHttpGetProxyForUrl
WinHttpGetProxyForUrlEx
WinHttpGetProxyResult
WinHttpOpen
WinHttpOpenRequest
WinHttpPalAcquireNextInterface
WinHttpPalAcquireNextInterfaceAsync
WinHttpPalCancelRequest
WinHttpPalCreateCmSessionReference
WinHttpPalCreateRequestCtx
WinHttpPalDllInit
WinHttpPalDllUnload
WinHttpPalFreeProxyInfo
WinHttpPalFreeRequestCtx
WinHttpPalGetProxyCreds
WinHttpPalGetProxyForCurrentInterface
WinHttpPalIsImplemented
WinHttpPalOnSendRequestComplete
WinHttpProbeConnectivity
WinHttpQueryAuthSchemes
WinHttpQueryDataAvailable
WinHttpQueryHeaders
WinHttpQueryOption
WinHttpReadData
WinHttpReceiveResponse
WinHttpResetAutoProxy
WinHttpSaveProxyCredentials
WinHttpSendRequest
WinHttpSetCredentials
WinHttpSetDefaultProxyConfiguration
WinHttpSetOption
WinHttpSetStatusCallback
WinHttpSetTimeouts
WinHttpTimeFromSystemTime
WinHttpTimeToSystemTime
WinHttpWebSocketClose
WinHttpWebSocketCompleteUpgrade
WinHttpWebSocketQueryCloseStatus
WinHttpWebSocketReceive
WinHttpWebSocketSend
WinHttpWebSocketShutdown
WinHttpWriteData

winhttp.dll

Windows HTTP Services by Microsoft

Remove winhttp.dll
Version:   6.3.9600.16384 (winblue_rtm.130821-1623)
MD5:   dd079ec8f44dca3a176b345c6adefb66
SHA1:   f0a60c7b0aec369289a9d8b711394a369a022169
This is a Windows system installed file with Windows File Protection (WFP) enabled.

Overview

winhttp.dll is loaded as dynamic link library that runs in the context of a process. The assembly utilizes the .NET run-time framework (which is required to be installed on the PC). .

DetailsDetails

File name:winhttp.dll
Publisher:Microsoft Corporation
Product name:Windows HTTP Services
Description:Microsoft® Windows® Operating System
Typical file path:C:\Windows\System32\winhttp.dll
Original name:winhttp.dll.mui
File version:6.3.9600.16384 (winblue_rtm.130821-1623)
Product version:6.3.9600.16384
Size:768 KB (786,432 bytes)
Build date:8/22/2013 5:41 AM
Digital DNA
PE subsystem:Windows GUI
File packed:No
Code language:Microsoft Visual C# / Basic .NET
.NET CLR:Yes
.NET NGENed:No
More details

BehaviorsBehaviors

Hosted services
Runs as a shared service under the Windows svcHost
  • Shared name is 'WinHttpAutoProxySvc'
  • Shared name is 'WinHttpAutoProxySvc'
  • Shared name is 'WinHttpAutoProxySvc'
  • Shared name is 'WinHttpAutoProxySvc'
  • Shared name is 'WinHttpAutoProxySvc'
  • Shared name is 'WinHttpAutoProxySvc'
  • Shared name is 'WinHttpAutoProxySvc'
  • Shared name is 'WinHttpAutoProxySvc'
  • Shared name is 'WinHttpAutoProxySvc'
  • Shared name is 'WinHttpAutoProxySvc'
  • Shared name is 'WinHttpAutoProxySvc'
  • Shared name is 'WinHttpAutoProxySvc'
  • Shared name is 'WinHttpAutoProxySvc'
  • Shared name is 'WinHttpAutoProxySvc'
  • Shared name is 'WinHttpAutoProxySvc'
  • Shared name is 'WinHttpAutoProxySvc'
  • Shared name is 'WinHttpAutoProxySvc'
  • Shared name is 'WinHttpAutoProxySvc'
  • Shared name is 'WinHttpAutoProxySvc'
  • Shared name is 'WinHttpAutoProxySvc'
  • Shared name is 'WinHttpAutoProxySvc'
  • Shared name is 'WinHttpAutoProxySvc'

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Home Premium 25.00%
Windows 8.1 23.50%
Windows 7 Ultimate 12.50%
Windows 8.1 Pro 11.50%
Windows 8 Pro 5.00%
Windows 8.1 Single Language 4.00%
Windows 7 Professional 4.00%
Windows 8.1 Pro Preview 2.00%
Windows 8.1 Pro with Media Center 1.50%
Windows Vista Home Premium 1.50%
Windows 7 Home Basic 1.50%
Windows 8 1.50%
Windows 8.1 Enterprise 1.00%
Windows 7 Starter 1.00%
Windows 8.1 N 0.50%
Windows 8 Enterprise N 0.50%
Windows 8.1 Enterprise Evaluation 0.50%
Windows 8 Single Language 0.50%
Windows 8 Pro with Media Center 0.50%
Windows 8 Pro N 0.50%
Windows 7 Enterprise 0.50%
23 other Windows OS version

Distribution by countryDistribution by country

United States installs about 43.22% of Windows HTTP Services.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Dell 17.62%
Hewlett-Packard 17.24%
ASUS 14.56%
Lenovo 12.26%
Toshiba 11.49%
Acer 11.49%
Sony 7.66%
Samsung 2.30%
Alienware 1.53%
Intel 1.53%
GIGABYTE 1.15%
Medion 0.77%
Packard Bell 0.38%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE