Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

6.3.9600.16384 (winblue_rtm.130821-1623) 3.51%
6.3.9600.16384 (winblue_rtm.130821-1623) 0.11%
6.3.9431.0 (winmain_bluemp.130615-1214) 0.16%
6.3.9431.0 (winmain_bluemp.130615-1214) 0.05%
6.2.9200.16398 (win8_gdr_oobssr.120820-1900) 1.17%
6.2.9200.16398 (win8_gdr_oobssr.120820-1900) 0.37%
6.2.9200.16384 (win8_rtm.120725-1247) 2.71%
6.2.9200.16384 (win8_rtm.120725-1247) 10.04%
6.2.8400.0 (winmain_win8rc.120518-1423) 0.11%
6.2.8400.0 (winmain_win8rc.120518-1423) 0.11%
6.2.8250.0 (winmain_win8beta.120217-1520) 0.05%
6.2.8102.0 (winmain_win8m3.110823-1455) 0.11%
6.1.7600.16385 (win7_rtm.090713-1255) 29.33%
6.1.7600.16385 (win7_rtm.090713-1255) 25.19%
6.1.7600.16385 (win7_rtm.090713-1255) 0.05%
6.1.7264.0 (win7_rtm.090622-1900) 0.05%
6.0.6000.16386 (vista_rtm.061101-2205) 0.90%
6.0.6000.16386 (vista_rtm.061101-2205) 0.37%
6.0.6000.16386 (vista_rtm.061101-2205) 6.48%
6.0.6000.16386 (vista_rtm.061101-2205) 0.48%
5.2.3790.3959 (srv03_sp2_rtm.070216-1710) 0.11%
5.1.2600.5512 (xpsp.080413-2108) 11.96%
5.1.2600.5512 (xpsp.080413-2108) 0.05%
5.1.2600.5512 (xpsp.080413-2108) 0.05%
5.1.2600.5512 (xpsp.080413-2108) 0.11%
View more

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
IsValidSid, GetLengthSid, RegQueryInfoKeyW, RegQueryInfoKeyA, RegOpenKeyExA, RegQueryValueExA, RegSetValueExA, RegCreateKeyExA, WmiQuerySingleInstanceW, WmiQueryAllDataW, WmiQueryGuidInformation, WmiFreeBuffer, RegEnumValueW, WmiMofEnumerateResourcesW, WmiOpenBlock, WmiReceiveNotificationsW, WmiCloseBlock, RegDeleteKeyW, ChangeServiceConfig2W, CreateServiceW, RegCreateKeyExW, OpenSCManagerW, OpenServiceW, QueryServiceConfigW, ChangeServiceConfigW, AllocateAndInitializeSid, FreeSid, CloseServiceHandle, RegOpenKeyW, LookupPrivilegeValueW, AdjustTokenPrivileges, ConvertStringSecurityDescriptorToSecurityDescriptorW, SetThreadToken, RevertToSelf, AddAce, SetSecurityDescriptorOwner, SetSecurityDescriptorGroup, SetSecurityDescriptorDacl, MakeAbsoluteSD, LookupAccountNameW, GetTokenInformation, OpenProcessToken, GetSecurityDescriptorLength, InitializeSecurityDescriptor, GetSecurityDescriptorControl, MakeSelfRelativeSD, GetAclInformation, GetAce, InitializeAcl, RegDeleteValueW, GetNamedSecurityInfoW, AccessCheck, OpenThreadToken, RegisterEventSourceW, ReportEventW, DeregisterEventSource, RegisterServiceCtrlHandlerExW, SetServiceStatus, RegSetValueExW, RegOpenKeyExW, RegQueryValueExW, RegCloseKey, IsValidSecurityDescriptor, IsValidAcl, LookupAccountSidW, CopySid, TraceMessage, GetTraceEnableFlags, GetTraceEnableLevel, GetTraceLoggerHandle, RegisterTraceGuidsW, UnregisterTraceGuids, RegDeleteKeyExW
api-ms-win-core-com-l1-1-0.dll
CoGetCallContext, CoFreeUnusedLibrariesEx, CoInitializeEx, CoUninitialize, StringFromGUID2, CoRevokeClassObject, CoTaskMemFree, CoRegisterClassObject, CoDisconnectContext, CLSIDFromString, StringFromCLSID, CoCreateInstance
api-ms-win-core-console-l1-1-0.dll
SetConsoleCtrlHandler
api-ms-win-core-debug-l1-1-0.dll
OutputDebugStringA
api-ms-win-core-debug-l1-1-1.dll
OutputDebugStringA
api-ms-win-core-delayload-l1-1-1.dll
DelayLoadFailureHook, ResolveDelayLoadedAPI
api-ms-win-core-errorhandling-l1-1-0.dll
SetLastError, GetLastError, SetUnhandledExceptionFilter, RaiseException, SetErrorMode, UnhandledExceptionFilter
api-ms-win-core-errorhandling-l1-1-1.dll
SetUnhandledExceptionFilter, UnhandledExceptionFilter, RaiseException, SetLastError, GetLastError, SetErrorMode
api-ms-win-core-file-l1-1-0.dll
CreateFileW, FindClose, WriteFile, FindNextFileW, FindNextChangeNotification, SetFileAttributesW, GetFileAttributesW, FindFirstFileW, FindFirstChangeNotificationW, RemoveDirectoryW, GetFileType, CreateDirectoryW, DeleteFileW, GetFullPathNameW
api-ms-win-core-file-l1-1-1.dll
CreateDirectoryW, FindNextChangeNotification, GetFileTime, FileTimeToLocalFileTime, CreateFileW, RemoveDirectoryW, WriteFile, GetFileType, FindClose, FindFirstChangeNotificationW, GetFullPathNameW, FindNextFileW, FindFirstFileW, DeleteFileW, SetFileAttributesW, GetFileAttributesW
api-ms-win-core-file-l1-2-0.dll
FindNextChangeNotification, GetFileType, FileTimeToLocalFileTime, GetFileTime, CreateDirectoryW, FindFirstChangeNotificationW, FindNextFileW, CreateFileW, DeleteFileW, SetFileAttributesW, WriteFile, GetFileAttributesW, FindFirstFileW, RemoveDirectoryW, GetFullPathNameW, FindClose
api-ms-win-core-file-l1-2-1.dll
CreateDirectoryW, GetFileTime, FileTimeToLocalFileTime, RemoveDirectoryW, GetFileType, FindClose, FindFirstChangeNotificationW, FindNextFileW, DeleteFileW, SetFileAttributesW, GetFileAttributesW, FindFirstFileW, GetFullPathNameW, WriteFile, CreateFileW, FindNextChangeNotification
api-ms-win-core-file-l2-1-0.dll
MoveFileExW, CopyFileExW
api-ms-win-core-file-l2-1-1.dll
CopyFileExW, MoveFileExW
api-ms-win-core-handle-l1-1-0.dll
CloseHandle
api-ms-win-core-heap-obsolete-l1-1-0.dll
LocalAlloc, LocalFree
api-ms-win-core-interlocked-l1-1-0.dll
InterlockedIncrement, InterlockedCompareExchange, InterlockedExchange, InterlockedDecrement
api-ms-win-core-interlocked-l1-1-1.dll
InterlockedCompareExchange, InterlockedExchange, InterlockedIncrement, InterlockedDecrement
api-ms-win-core-interlocked-l1-2-0.dll
InterlockedIncrement, InterlockedCompareExchange, InterlockedExchange, InterlockedDecrement
api-ms-win-core-libraryloader-l1-1-0.dll
FreeLibrary, DisableThreadLibraryCalls, GetProcAddress, LoadLibraryExW, GetModuleHandleExW, LoadStringW, LoadLibraryExA
api-ms-win-core-libraryloader-l1-1-1.dll
GetModuleHandleExW, LockResource, LoadResource, FreeLibrary, GetProcAddress, LoadLibraryExW, SizeofResource, FindResourceExW, DisableThreadLibraryCalls, LoadStringW, FreeResource
api-ms-win-core-libraryloader-l1-2-0.dll
FreeResource, GetModuleHandleExW, FindResourceExW, LoadResource, FreeLibrary, SizeofResource, LockResource, GetProcAddress, LoadLibraryExW, LoadStringW, DisableThreadLibraryCalls
api-ms-win-core-localization-l1-1-0.dll
LCMapStringW
api-ms-win-core-localization-l1-1-1.dll
LCMapStringW
api-ms-win-core-localization-l1-2-0.dll
LCMapStringW
api-ms-win-core-localization-l1-2-1.dll
LCMapStringW
api-ms-win-core-localregistry-l1-1-0.dll
RegCloseKey, RegQueryValueExW, RegOpenKeyExW, RegSetValueExW, RegDeleteValueW, RegCreateKeyExW, RegDeleteKeyExW
api-ms-win-core-misc-l1-1-0.dll
Sleep, LocalFree, lstrlenW
api-ms-win-core-processenvironment-l1-1-0.dll
ExpandEnvironmentStringsW
api-ms-win-core-processenvironment-l1-1-1.dll
ExpandEnvironmentStringsW
api-ms-win-core-processenvironment-l1-2-0.dll
ExpandEnvironmentStringsW
api-ms-win-core-processthreads-l1-1-0.dll
GetCurrentThreadId, SetProcessShutdownParameters, SetThreadPriority, GetThreadPriority, GetCurrentThread, OpenThreadToken, TerminateProcess, GetCurrentProcessId, GetCurrentProcess, CreateProcessW
api-ms-win-core-processthreads-l1-1-1.dll
IsProcessorFeaturePresent, GetCurrentThreadId, GetCurrentThread, TerminateProcess, GetCurrentProcessId, SetProcessShutdownParameters, OpenThreadToken, CreateProcessW, GetThreadPriority, SetThreadPriority, GetCurrentProcess
api-ms-win-core-processthreads-l1-1-2.dll
GetCurrentProcess, GetCurrentProcessId, GetThreadPriority, TerminateProcess, OpenThreadToken, GetCurrentThreadId, CreateProcessW, GetCurrentThread, SetProcessShutdownParameters, SetThreadPriority
api-ms-win-core-profile-l1-1-0.dll
QueryPerformanceCounter
api-ms-win-core-registry-l1-1-0.dll
RegDeleteValueW, RegEnumValueW, RegCreateKeyExW, RegQueryInfoKeyW, RegOpenKeyExW, RegQueryValueExW, RegCloseKey, RegDeleteKeyExW, RegSetValueExW
api-ms-win-core-rtlsupport-l1-1-0.dll
RtlCaptureStackBackTrace
api-ms-win-core-rtlsupport-l1-1-1.dll
RtlCaptureStackBackTrace
api-ms-win-core-rtlsupport-l1-2-0.dll
RtlCaptureStackBackTrace
api-ms-win-core-string-l1-1-0.dll
WideCharToMultiByte, CompareStringW
api-ms-win-core-string-obsolete-l1-1-0.dll
lstrlenW, lstrcmpW
api-ms-win-core-synch-l1-1-0.dll
CreateMutexW, CreateEventW, ReleaseMutex, EnterCriticalSection, DeleteCriticalSection, InitializeCriticalSectionAndSpinCount, WaitForSingleObject, SetEvent, LeaveCriticalSection
api-ms-win-core-synch-l1-1-1.dll
LeaveCriticalSection, ReleaseMutex, EnterCriticalSection, Sleep, CreateMutexW, InitializeCriticalSectionAndSpinCount, WaitForSingleObject, DeleteCriticalSection, CreateEventW, WaitForMultipleObjectsEx, SetEvent
api-ms-win-core-synch-l1-2-0.dll
Sleep, LeaveCriticalSection, WaitForSingleObject, ReleaseMutex, CreateEventW, SetEvent, CreateMutexW, WaitForMultipleObjectsEx, InitializeCriticalSectionAndSpinCount, DeleteCriticalSection, EnterCriticalSection
api-ms-win-core-sysinfo-l1-1-0.dll
GetTickCount, GetSystemTimeAsFileTime, GetVersionExA, GetSystemDirectoryW
api-ms-win-core-sysinfo-l1-1-1.dll
GetWindowsDirectoryW, GetVersionExW, GetVersionExA, GetTickCount, GetSystemTimeAsFileTime, GetSystemDirectoryW
api-ms-win-core-sysinfo-l1-2-0.dll
GetVersionExW, GetVersionExA, GetWindowsDirectoryW, GetSystemDirectoryW, GetTickCount, GetSystemTimeAsFileTime
api-ms-win-core-sysinfo-l1-2-1.dll
GetSystemDirectoryW, GetVersionExA, GetSystemTimeAsFileTime, GetTickCount, GetVersionExW, GetWindowsDirectoryW
api-ms-win-core-threadpool-l1-1-0.dll
DeleteTimerQueueTimer, UnregisterWaitEx, CreateTimerQueueTimer
api-ms-win-core-threadpool-l1-1-1.dll
RegisterWaitForSingleObjectEx, DeleteTimerQueueTimer, UnregisterWaitEx, CreateTimerQueueTimer
api-ms-win-core-threadpool-legacy-l1-1-0.dll
CreateTimerQueueTimer, UnregisterWaitEx, DeleteTimerQueueTimer
api-ms-win-core-threadpool-private-l1-1-0.dll
RegisterWaitForSingleObjectEx
api-ms-win-obsolete-kernelbase-l1-1-0.dll
LocalFree, lstrlenW, lstrcmpW, LocalAlloc
api-ms-win-security-base-l1-1-0.dll
FreeSid, AllocateAndInitializeSid, AccessCheck, GetFileSecurityW
api-ms-win-security-base-l1-2-0.dll
AllocateAndInitializeSid, GetFileSecurityW, AccessCheck, FreeSid
kernel32.dll
LoadLibraryExW, EnterCriticalSection, SetProcessShutdownParameters, CreateMutexW, GetModuleHandleExW, SetErrorMode, lstrlenW, SetEvent, GetTickCount, InterlockedIncrement, InterlockedDecrement, lstrcmpiW, FindClose, GetSystemTimeAsFileTime, GetFullPathNameW, FindNextFileW, MoveFileW, DeleteFileW, SetFileAttributesW, GetFileAttributesW, Sleep, CreateFileW, FindFirstFileW, FindFirstChangeNotificationW, GetSystemDirectoryW, LCMapStringW, InitializeCriticalSection, GetCurrentThread, LocalFree, ExpandEnvironmentStringsW, GetFileType, RemoveDirectoryW, CreateDirectoryW, CopyFileW, DeleteTimerQueueTimer, InterlockedCompareExchange, CreateTimerQueueTimer, UnregisterWaitEx, SetConsoleCtrlHandler, TerminateProcess, RegisterWaitForSingleObject, CreateProcessW, QueryPerformanceCounter, GetCurrentProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, GetProcessHeap, HeapAlloc, HeapReAlloc, HeapFree, GetFileSizeEx, SetFilePointerEx, WriteFile, CreateMutexA, ReadFile, SetFilePointer, GetFileSize, GetVersionExA, MultiByteToWideChar, WideCharToMultiByte, FreeResource, FindResourceW, WaitForMultipleObjects, FindNextChangeNotification, GetCurrentProcessId, LoadLibraryW, GetProcAddress, FreeLibrary, CloseHandle, CreateEventW, GetCurrentThreadId, DisableThreadLibraryCalls, ReleaseMutex, WaitForSingleObject, DebugBreak, LeaveCriticalSection, DeleteCriticalSection, InitializeCriticalSectionAndSpinCount, FindResourceExW, LoadResource, LockResource, SizeofResource, GetFileTime, FileTimeToLocalFileTime, IsBadReadPtr, GetWindowsDirectoryW, GetLastError, SetLastError, lstrcmpW, RaiseException, LocalAlloc, LoadLibraryA, OutputDebugStringA, SetThreadPriority, GetThreadPriority, InterlockedExchange, CompareStringW, DelayLoadFailureHook, LoadLibraryExA, WaitForMultipleObjectsEx, MoveFileExW, RtlCaptureStackBackTrace, CopyFileExW, RegisterWaitForSingleObjectEx, GetVersionExW, RegQueryInfoKeyW, RegEnumValueW
msvcrt.dll
DllMain
ntdll.dll
RtlCaptureStackBackTrace, EtwTraceMessage, EtwGetTraceEnableLevel, EtwGetTraceEnableFlags, EtwRegisterTraceGuidsW, EtwUnregisterTraceGuids, EtwGetTraceLoggerHandle
ole32.dll
CoRegisterClassObject, CoRevokeClassObject, CoUninitialize, CoFreeUnusedLibrariesEx, CoInitializeEx, CoCreateInstance, CLSIDFromString, StringFromGUID2, StringFromCLSID, CoTaskMemFree, CoGetCallContext, CoDisconnectContext
user32.dll
LoadStringW
wmiclnt.dll
WmiOpenBlock, WmiReceiveNotificationsW, WmiQueryAllDataW, WmiCloseBlock, WmiQueryGuidInformation, WmiFreeBuffer, WmiQuerySingleInstanceW, WmiMofEnumerateResourcesW
Export table
DllRegisterServer
DllUnregisterServer
DredgeRA
GetSystemEventsForShutdown
IsImproperShutdownDetected
IsShutDown
MoveToAlone
MoveToShared
ServiceMain

wmisvc.dll

WMI by Microsoft

Remove wmisvc.dll
Version:   6.2.9200.16398 (win8_gdr_oobssr.120820-1900)
MD5:   320b13f43726eb73b2d7ae8869afaace
SHA1:   9e80e3f17dcb21d9033d09c9743cd5720aea1edf
SHA256:   56e882aa2749f401c28ee3de2d23088c479cde54e4cd4fbcc18374f348332607
This is a Windows system installed file with Windows File Protection (WFP) enabled.

What is wmisvc.dll?

WMI provides a uniform interface for any local or remote applications or scripts that obtain management data from a computer system, a network, or an enterprise. The uniform interface is designed such that WMI client applications and scripts do not have to call a wide variety of operating system application programming interfaces (APIs). Many APIs cannot be called by automation clients like scripts or Visual Basic applications. Other APIs do not make calls to remote computers.

About wmisvc.dll (from Microsoft)

Windows Management Instrumentation (WMI) is the infrastructure for management data and operations on Windows-based operating systems. You can write WMI scripts or applications to automate administrati

DetailsDetails

File name:wmisvc.dll
Publisher:Microsoft Corporation
Product name:WMI
Description:Microsoft® Windows® Operating System
Typical file path:C:\Windows\System32\wbem\wmisvc.dll
File version:6.2.9200.16398 (win8_gdr_oobssr.120820-1900)
Product version:6.2.9200.16398
Size:160 KB (163,840 bytes)
Digital DNA
PE subsystem:Windows Console
File packed:No
Code language:Microsoft Visual C++
.NET CLR:No
More details

BehaviorsBehaviors

Hosted services
Runs as a shared service under the Windows svcHost
  • Shared name is 'Winmgmt'
  • Shared name is 'Winmgmt'
  • Shared name is 'Winmgmt'
  • Shared name is 'Winmgmt'
  • Shared name is 'Winmgmt'
  • Shared name is 'Winmgmt'
  • Shared name is 'Winmgmt'
  • Shared name is 'Winmgmt'
  • Shared name is 'Winmgmt'
  • Shared name is 'Winmgmt'
  • Shared name is 'Winmgmt'
  • Shared name is 'Winmgmt'
  • Shared name is 'Winmgmt'
  • Shared name is 'Winmgmt'
  • Shared name is 'Winmgmt'
  • Shared name is 'Winmgmt'
  • Shared name is 'Winmgmt'
  • Shared name is 'Winmgmt'
  • Shared name is 'Winmgmt'
  • Shared name is 'Winmgmt'
  • Shared name is 'Winmgmt'
  • Shared name is 'Winmgmt'

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Microsoft Windows XP 25.00%
Windows 8.1 18.50%
Windows 8 11.50%
Windows 8.1 Pro 9.50%
Windows 8 Pro 7.50%
Windows Vista Home Premium 7.00%
Windows 8 Single Language 3.00%
Windows 8.1 Single Language 2.50%
Windows 7 Ultimate 2.50%
Windows 7 Home Premium 2.00%
Windows 8.1 Pro with Media Center 1.50%
Windows 8.1 Pro Preview 1.50%
Windows 8 Enterprise N 1.00%
Windows 8.1 Enterprise 1.00%
Windows Vista Home Basic 1.00%
Windows Developer Preview 1.00%
Windows 8 Pro with Media Center 1.00%
Windows 8.1 Enterprise Evaluation 0.50%
Windows 8 Pro N 0.50%
Windows 7 Home Basic 0.50%
Windows 8 Enterprise 0.50%
23 other Windows OS version

Distribution by countryDistribution by country

United States installs about 42.86% of WMI.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Dell 22.55%
Hewlett-Packard 14.55%
ASUS 12.36%
Lenovo 10.91%
Toshiba 9.45%
Acer 7.64%
Intel 5.82%
Sony 5.82%
Compaq 2.91%
GIGABYTE 2.55%
American Megatrends 1.82%
Samsung 1.09%
Alienware 1.09%
Medion 0.73%
Sahara 0.73%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE