Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

6.3.9600.16384 (winblue_rtm.130821-1623) 4.56%
6.3.9600.16384 (winblue_rtm.130821-1623) 0.15%
6.3.9431.0 (winmain_bluemp.130615-1214) 0.25%
6.3.9431.0 (winmain_bluemp.130615-1214) 0.05%
6.2.9200.16384 (win8_rtm.120725-1247) 1.98%
6.2.9200.16384 (win8_rtm.120725-1247) 7.38%
6.2.9200.16384 (win8_rtm.120725-1247) 6.93%
6.2.8400.0 (winmain_win8rc.120518-1423) 0.10%
6.2.8400.0 (winmain_win8rc.120518-1423) 0.10%
6.2.8250.0 (winmain_win8beta.120217-1520) 0.05%
6.2.8102.0 (winmain_win8m3.110823-1455) 0.10%
6.1.7600.16385 (win7_rtm.090713-1255) 3.17%
6.1.7600.16385 (win7_rtm.090713-1255) 2.87%
6.1.7600.16385 (win7_rtm.090713-1255) 40.56%
6.1.7600.16385 (win7_rtm.090713-1255) 18.87%
6.1.7600.16385 (win7_rtm.090713-1255) 2.63%
6.1.7600.16385 (win7_rtm.090713-1255) 1.19%
6.1.7600.16385 (win7_rtm.090713-1255) 0.05%
6.1.7600.16385 (win7_rtm.090713-1255) 0.05%
6.0.6000.16386 (vista_rtm.061101-2205) 6.09%
6.0.6000.16386 (vista_rtm.061101-2205) 0.05%
6.0.6000.16386 (vista_rtm.061101-2205) 0.45%
6.0.6000.16386 (vista_rtm.061101-2205) 1.39%
6.0.6000.16386 (vista_rtm.061101-2205) 0.45%
6.0.6000.16386 (vista_rtm.061101-2205) 0.05%
View more

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
EventWrite, EventRegister, EventUnregister, RegCloseKey, RegOpenKeyExW, RegQueryValueExW, RegGetValueW, CloseServiceHandle, QueryServiceConfigW, OpenServiceW, OpenSCManagerW, RegQueryInfoKeyW, RegEnumValueW, RegDeleteKeyW, RegSetValueExW, RegCreateKeyExW, RegEnumKeyExW
comctl32.dll
PropertySheetW, ImageList_Draw, CreatePropertySheetPageW, ImageList_ReplaceIcon, ImageList_GetImageCount, ImageList_Remove
comdlg32.dll
GetFileTitleW, CommDlgExtendedError
gdi32.dll
CreateCompatibleDC, EnumFontFamiliesExW, GetTextFaceW, CreateFontW, Rectangle, GetViewportOrgEx, GetMetaFileBitsEx, CreateMetaFileA, SetWindowOrgEx, SetWindowExtEx, CloseMetaFile, DeleteMetaFile, CreateRectRgn, CreateRectRgnIndirect, CombineRgn, DeleteDC, GetObjectW, GetTextMetricsW, BitBlt, ScaleWindowExtEx, CreateSolidBrush, Escape, ExtTextOutW, RectVisible, PtVisible, GdiGradientFill, CreatePen, SelectObject, DeleteObject, Polyline, CreateICW, SetMetaFileBitsEx, GetTextExtentPoint32W, TextOutW, DPtoLP, CreateDCW, CreateFontIndirectW, DeleteEnhMetaFile, GetDeviceCaps
kernel32.dll
GetVersionExW, InterlockedExchange, FreeLibraryAndExitThread, Wow64RevertWow64FsRedirection, Wow64DisableWow64FsRedirection, IsWow64Process, GetCurrentProcess, CreateThread, GetProcessHeap, HeapAlloc, HeapFree, GetCurrentThreadId, GetTempPathW, GlobalAlloc, GetTempFileNameW, GetFileSize, GetModuleHandleA, GetProcAddress, GetShortPathNameW, CreateFileW, ReadFile, CloseHandle, AddAtomW, SetCurrentDirectoryW, GlobalDeleteAtom, GetVersion, GlobalAddAtomW, HeapSetInformation, WideCharToMultiByte, Sleep, DeleteAtom, lstrcmpA, ResumeThread, SetThreadPriority, GlobalSize, FindResourceW, GetModuleHandleW, GlobalGetAtomNameW, GetNumberFormatEx, GetModuleFileNameW, GetFileAttributesW, GetLocaleInfoW, GetLocalTime, GetLocaleInfoEx, EnumDateFormatsExW, LoadLibraryA, lstrcmpW, lstrcmpiW, GlobalLock, GlobalUnlock, GlobalFree, LoadLibraryW, EnumTimeFormatsW, GetTimeFormatW, GetDateFormatW, CopyFileW, MultiByteToWideChar, FileTimeToDosDateTime, WriteFile, SetFilePointer, LeaveCriticalSection, EnterCriticalSection, CreateDirectoryW, DeleteCriticalSection, InitializeCriticalSection, FileTimeToSystemTime, GetSystemTime, SystemTimeToFileTime, CompareFileTime, RegisterApplicationRestart, RegisterApplicationRecoveryCallback, ApplicationRecoveryFinished, ApplicationRecoveryInProgress, UnhandledExceptionFilter, TerminateProcess, GetSystemTimeAsFileTime, GetCurrentProcessId, GetTickCount, QueryPerformanceCounter, SetUnhandledExceptionFilter, OutputDebugStringA, GetStartupInfoW, InterlockedCompareExchange, GetLongPathNameW, LocalAlloc, InterlockedDecrement, InterlockedIncrement, LocalFree, GetLastError, CompareStringOrdinal, MoveFileW, DeleteFileW, lstrlenW, MulDiv, FreeLibrary, RaiseException
mfc42u.dll
DllMain
msvcrt.dll
DllMain
ntdll.dll
RtlInitUnicodeString, NtQueryLicenseValue, WinSqmStartSession, WinSqmEndSession, WinSqmSetDWORD, WinSqmAddToStream, WinSqmIncrementDWORD
ole32.dll
OleUninitialize, CoInitialize, CoUninitialize, OleInitialize, StgCreateDocfileOnILockBytes, CreateILockBytesOnHGlobal, CoGetMalloc, WriteClassStg, PropVariantCopy, OleRegGetUserType, StringFromGUID2, CoCreateGuid, OleSave, OleDuplicateData, PropVariantClear, StgOpenStorageEx, StringFromCLSID, CLSIDFromString, IIDFromString, StgOpenStorage, ReadClassStg, OleLoad, ReleaseStgMedium, ProgIDFromCLSID, CoCreateInstance, CreateStreamOnHGlobal, CoTaskMemFree
propsys.dll
PropVariantToString, PropVariantToUInt32, PropVariantToUInt32WithDefault
rpcrt4.dll
UuidToStringW, UuidCreate, RpcStringFreeW
shell32.dll
DragFinish, SHGetFolderPathW, ShellExecuteExW, SHGetSpecialFolderPathW, ShellAboutW, SHAddToRecentDocs, SHCreateItemInKnownFolder, SHCreateItemFromParsingName, DragQueryFileW, ShellExecuteW
shlwapi.dll
PathFileExistsW, StrCmpIW, PathIsFileSpecW, PathFindFileNameW, PathFindExtensionW, SHCreateStreamOnFileW, SHCreateStreamOnFileEx, SHStrDupW, StrCmpNIW, PathAddBackslashW
urlmon.dll
CreateUri
user32.dll
EndDialog, DialogBoxParamW, LoadStringW, SetWindowRgn, SetTimer, KillTimer, SetFocus, GetMenuItemCount, IsMenu, CreatePopupMenu, CreateMenu, GetMenuStringW, GetMenuItemInfoW, InsertMenuW, DeleteMenu, GetMenuItemID, GetKeyboardLayout, TrackMouseEvent, LoadImageW, GrayStringW, DrawTextW, GetPropW, GetSubMenu, OemToCharBuffA, CharToOemBuffA, SetRect, FindWindowW, EnumWindows, RegisterClipboardFormatW, RegisterWindowMessageW, GetDC, ReleaseDC, OffsetRect, GetWindowRect, GetClientRect, ClientToScreen, UpdateWindow, InvalidateRect, SetActiveWindow, SetCapture, GetParent, HideCaret, ShowCaret, GetCapture, GetKeyState, GetSystemMetrics, ReleaseCapture, IsClipboardFormatAvailable, CountClipboardFormats, GetMonitorInfoW, MonitorFromWindow, EnableWindow, SetWindowLongW, GetWindowLongW, SetWindowTextW, GetWindowTextW, GetClassNameW, SendMessageTimeoutW, IsIconic, SetForegroundWindow, SystemParametersInfoW, DrawEdge, LoadBitmapW, LoadCursorW, FillRect, SendDlgItemMessageW, ShowWindow, PtInRect, GetDlgCtrlID, IsWindow, GetWindow, IsRectEmpty, SetRectEmpty, IntersectRect, CopyRect, PostMessageW, ScreenToClient, TabbedTextOutW, IsWindowVisible, PostQuitMessage, GetGestureInfo, DefWindowProcW, UnhookWindowsHookEx, CallNextHookEx, SetWindowsHookExW, GetClassInfoW, ShowScrollBar, DestroyCursor, SetCursor, GetCursorPos, SetWindowPos, GetAncestor, SendMessageW, GetFocus, LoadIconW, GetSysColor, MonitorFromRect, GetDlgItem, IsDlgButtonChecked, SetGestureConfig, CloseGestureInfoHandle, DestroyMenu
version.dll
GetFileVersionInfoExW, VerQueryValueW, GetFileVersionInfoSizeExW
winmm.dll
timeGetTime
xmllite.dll
CreateXmlWriter

wordpad.exe

Windows Wordpad Application by Microsoft

Remove wordpad.exe
Version:   5.1.2600.6010 (xpsp_sp3_gdr.100712-1633)
MD5:   43ec11db43e3880bbab536fb9399d72d
SHA1:   04986eafc28c13e24a71b7f0327b9b1816d482e9
SHA256:   ec58df26d4522b352aac545422db045b5eecdf4f2694aec53c469c8f2ef4175e
This is a Windows system installed file with Windows File Protection (WFP) enabled.

What is wordpad.exe?

WordPad is a basic word processor that is included with almost all versions of Microsoft Windows. It is more advanced than Notepad but simpler than Microsoft Word. WordPad can format and print text, but lacks intermediate features such as a spell checker, thesaurus, and support for tables. As such, it is suitable for writing letters or short pieces, but underpowered for work that relies heavily on graphics or typesetting. WordPad natively supports the Rich Text Format.

About wordpad.exe (from Microsoft)

WordPad is a basic word processor that is included in Windows. A word processor is a computer program that you can use to create, edit, view, and print text documents. With WordPad, you can type let

DetailsDetails

File name:wordpad.exe
Publisher:Microsoft Corporation
Product name:Windows Wordpad Application
Description:Microsoft® Windows® Operating System
Typical file path:C:\Program Files\windows nt\accessories\wordpad.exe
Original name:WORDPAD.EXE.MUI
File version:5.1.2600.6010 (xpsp_sp3_gdr.100712-1633)
Product version:5.1.2600.6010
Size:205.5 KB (210,432 bytes)
Digital DNA
PE subsystem:Windows GUI
Entropy:4.973523
File packed:No
Code language:Microsoft Visual C++
.NET CLR:No
More details

BehaviorsBehaviors

Shell open command
  • rtffile

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.02338252%
0.028634%
Kernel CPU:0.00921680%
0.013761%
User CPU:0.01416572%
0.014873%
Kernel CPU time:203 ms/min
100,923,805ms/min
Context switches:3/sec
284/sec
Memory
Private memory:10.39 MB
21.59 MB
Private (maximum):15.76 MB
Private (minimum):928 KB
Non-paged memory:10.39 MB
21.59 MB
Virtual memory:114.2 MB
140.96 MB
Virtual memory (peak):116.41 MB
169.69 MB
Working set:1.82 MB
18.61 MB
Working set (peak):15.89 MB
37.95 MB
Page faults:6,828/min
2,039/min
I/O
I/O read transfer:5.9 KB/sec
1.02 MB/min
I/O read operations:1/sec
343/min
I/O write transfer:0 Bytes/sec
274.99 KB/min
I/O write operations:1/sec
227/min
I/O other transfer:88 Bytes/sec
448.09 KB/min
I/O other operations:4/sec
1,671/min
Resource allocations
Threads:2
12
Handles:143
600
GUI GDI count:103
103
GUI USER count:66
49

BehaviorsProcess properties

Integrety level:Undefined
Platform:32-bit
Command line:"C:\Program Files\windows nt\accessories\wordpad.exe" "C:\Documents and Settings\user\My documents\gomplayer\??????.txt"
Owner:User
Parent process:explorer.exe (Microsoft Windows Operating System by Microsoft)

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Home Premium 32.50%
Windows 8.1 18.00%
Windows 7 Ultimate 14.50%
Windows 8.1 Pro 7.50%
Windows 7 Professional 6.00%
Windows 8 4.00%
Windows 8.1 Single Language 3.50%
Windows 8 Single Language 3.00%
Windows 8 Pro 3.00%
Windows 8.1 Pro with Media Center 2.00%
Windows 7 Home Basic 1.50%
Windows Vista Home Premium 1.50%
Windows 8 Enterprise N 1.00%
Windows 8.1 N 0.50%
Windows Seven Black Edition 0.50%
Windows 8.1 Enterprise Evaluation 0.50%
Windows 8 Enterprise 0.50%

Distribution by countryDistribution by country

United States installs about 46.23% of Windows Wordpad Application.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Dell 19.69%
ASUS 18.11%
Hewlett-Packard 17.72%
Acer 12.20%
Toshiba 11.02%
Lenovo 8.66%
Sony 4.72%
Intel 2.36%
GIGABYTE 1.97%
Samsung 1.57%
Alienware 1.18%
Medion 0.79%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE