Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

6.3.9600.16384 (winblue_rtm.130821-1623) 14.29%
6.3.9600.16384 (winblue_rtm.130821-1623) 14.29%
6.2.9200.16384 (win8_rtm.120725-1247) 42.86%
6.2.9200.16384 (win8_rtm.120725-1247) 28.57%

Relationships

Parent process
Child process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
CloseServiceHandle, OpenSCManagerW, OpenServiceW, GetTraceEnableFlags, RegQueryValueExW, GetTraceLoggerHandle, AllocateAndInitializeSid, UnregisterTraceGuids, FreeSid, RegOpenKeyExW, GetTraceEnableLevel, CheckTokenMembership, QueryServiceConfigW, RegCloseKey, RegisterTraceGuidsW, RegSetKeyValueW, TraceMessage
kernel32.dll
OpenMutexW, LocalAlloc, lstrcmpiW, GetCurrentThreadId, SetProcessShutdownParameters, CloseHandle, LocalFree, ExpandEnvironmentStringsW, GetVersionExW, DeleteCriticalSection, LeaveCriticalSection, EnterCriticalSection, InitializeCriticalSection, RaiseException, GetProcessHeap, HeapSize, HeapFree, HeapReAlloc, HeapAlloc, HeapDestroy, Sleep, OpenJobObjectW, IsProcessInJob, RegEnumValueW, RegDeleteTreeW, RegNotifyChangeKeyValue, RegEnumKeyExW, FindResourceExW, LoadResource, LockResource, SizeofResource, DeleteFileW, GetFileAttributesW, CreateProcessW, GetLastError, InterlockedExchange, InterlockedCompareExchange, SetUnhandledExceptionFilter, GetModuleHandleA, QueryPerformanceCounter, GetCurrentProcessId, GetSystemTimeAsFileTime, GetTickCount, UnhandledExceptionFilter, GetCurrentProcess, TerminateProcess, RegLoadMUIStringW, K32EnumProcesses, ProcessIdToSessionId, OpenProcess, K32EnumProcessModules, K32GetModuleBaseNameW, MultiByteToWideChar, RegSetValueExW, RegCreateKeyExW, DeleteProcThreadAttributeList, UpdateProcThreadAttribute, InitializeProcThreadAttributeList
msvcrt.dll
DllMain
ntdll.dll
WinSqmAddToStream, WinSqmIsOptedIn
shell32.dll
ShellExecuteW
shlwapi.dll
PathFileExistsW
user32.dll
SendInput, SendMessageTimeoutW, GetKeyState, GetUserObjectInformationW, SystemParametersInfoW, UnregisterClassA, GetThreadDesktop, GetShellWindow, GetWindowThreadProcessId

atbroker.exe

Windows Assistive Technology Manager by Microsoft

Remove atbroker.exe
Version:   6.3.9600.16384 (winblue_rtm.130821-1623)
MD5:   0da4b7e7efb6cc0546fa407dfe8c531d
SHA1:   fdafdf021d5495b9038c1dcd89357d1935908ccb
This is a Windows system installed file with Windows File Protection (WFP) enabled.

Overview

atbroker.exe executes as a process with the local user's privileges typically within the context of its parent winlogon.exe (Windows Logon Application by Microsoft). The assembly utilizes the .NET run-time framework (which is required to be installed on the PC). and is compiled as a 64 bit program.

DetailsDetails

File name:atbroker.exe
Publisher:Microsoft Corporation
Product name:Windows Assistive Technology Manager
Description:Microsoft® Windows® Operating System
Typical file path:C:\Windows\System32\atbroker.exe
Original name:ATBroker.exe.mui
File version:6.3.9600.16384 (winblue_rtm.130821-1623)
Product version:6.3.9600.16384
Size:49.5 KB (50,688 bytes)
Build date:8/22/2013 12:09 PM
Digital DNA
File packed:No
Code language:Microsoft Visual C# / Basic .NET
.NET CLR:Yes
.NET NGENed:No
More details

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00004670%
0.028634%
Kernel CPU:0.00004670%
0.013761%
Kernel CPU time:47 ms/min
100,923,805ms/min
CPU cycles:2,178/sec
17,470,203/sec
Memory
Private memory:1.38 MB
21.59 MB
Private (maximum):6.91 MB
Private (minimum):6.86 MB
Non-paged memory:1.38 MB
21.59 MB
Virtual memory:74.99 MB
140.96 MB
Virtual memory (peak):82.8 MB
169.69 MB
Working set:6.86 MB
18.61 MB
Working set (peak):7.62 MB
37.95 MB
Page faults:2,094/min
2,039/min
I/O
I/O read transfer:222 Bytes/sec
1.02 MB/min
I/O read operations:1/sec
343/min
I/O other transfer:9 Bytes/sec
448.09 KB/min
I/O other operations:1/sec
1,671/min
Resource allocations
Threads:1
12
Handles:131
600
GUI GDI count:9
103
GUI GDI peak:9
142
GUI USER count:1
49
GUI USER peak:2
71

BehaviorsProcess properties

Integrety level:Medium
Platform:64-bit
Command line:atbroker.exe
Owner:User
Parent process:winlogon.exe (Windows Logon Application by Microsoft)

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 8 Pro 42.86%
Windows 8.1 28.57%
Windows 8 28.57%

Distribution by countryDistribution by country

United Kingdom installs about 28.57% of Windows Assistive Technology Manager.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Hewlett-Packard 50.00%
Lenovo 33.33%
Acer 16.67%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE