Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

6.3.9600.16384 (winblue_rtm.130821-1623) 6.97%
6.3.9600.16384 (winblue_rtm.130821-1623) 0.61%
6.3.9600.16384 (winblue_rtm.130821-1623) 12.73%
6.3.9431.0 (winmain_bluemp.130615-1214) 1.21%
6.3.9431.0 (winmain_bluemp.130615-1214) 0.30%
6.2.9200.16384 (win8_rtm.120725-1247) 64.85%
6.2.9200.16384 (win8_rtm.120725-1247) 12.73%
6.2.8102.0 (winmain_win8m3.110823-1455) 0.61%

Relationships


PE structurePE file structure

Show functions
Import table
api-ms-win-core-apiquery-l1-1-0.dll
ApiSetQueryApiSetPresence
api-ms-win-core-delayload-l1-1-1.dll
ResolveDelayLoadedAPI, DelayLoadFailureHook
api-ms-win-core-errorhandling-l1-1-0.dll
RaiseException, GetLastError, SetUnhandledExceptionFilter, UnhandledExceptionFilter, SetLastError
api-ms-win-core-errorhandling-l1-1-1.dll
RaiseException, UnhandledExceptionFilter, SetUnhandledExceptionFilter, SetLastError, GetLastError
api-ms-win-core-file-l1-1-1.dll
GetFullPathNameW, FileTimeToSystemTime, GetFileAttributesW, CreateDirectoryW
api-ms-win-core-file-l1-2-0.dll
GetFullPathNameW, GetFileAttributesW, CreateDirectoryW
api-ms-win-core-file-l1-2-1.dll
GetFullPathNameW, GetFileAttributesW, CreateDirectoryW
api-ms-win-core-handle-l1-1-0.dll
DuplicateHandle, CloseHandle
api-ms-win-core-heap-l1-1-0.dll
GetProcessHeap, HeapAlloc, HeapFree
api-ms-win-core-heap-l1-2-0.dll
HeapFree, HeapAlloc, GetProcessHeap
api-ms-win-core-heap-obsolete-l1-1-0.dll
LocalFree
api-ms-win-core-interlocked-l1-1-0.dll
InterlockedCompareExchange64, InterlockedExchange, InterlockedDecrement, InterlockedPushEntrySList, InterlockedCompareExchange, InterlockedIncrement, InitializeSListHead, InterlockedPopEntrySList
api-ms-win-core-interlocked-l1-2-0.dll
InterlockedExchange, InitializeSListHead, InterlockedIncrement, InterlockedPopEntrySList, InterlockedCompareExchange, InterlockedPushEntrySList, InterlockedCompareExchange64, InterlockedDecrement
api-ms-win-core-libraryloader-l1-1-1.dll
DisableThreadLibraryCalls, FreeLibrary, GetProcAddress, LoadLibraryExW, GetModuleHandleExW
api-ms-win-core-libraryloader-l1-2-0.dll
GetModuleHandleExW, FreeLibrary, LoadLibraryExW, DisableThreadLibraryCalls, GetProcAddress
api-ms-win-core-processthreads-l1-1-1.dll
GetCurrentProcess, GetExitCodeProcess, OpenProcess, CreateProcessAsUserW, TerminateProcess, GetCurrentThreadId, GetCurrentProcessId, SetThreadToken, GetCurrentThread, OpenProcessToken, OpenThreadToken
api-ms-win-core-processthreads-l1-1-2.dll
TerminateProcess, GetExitCodeProcess, GetCurrentProcessId, OpenProcessToken, OpenThreadToken, GetCurrentProcess, GetCurrentThread, CreateProcessAsUserW, GetCurrentThreadId, SetThreadToken, OpenProcess
api-ms-win-core-profile-l1-1-0.dll
QueryPerformanceCounter
api-ms-win-core-registry-l1-1-0.dll
RegGetValueW, RegOpenKeyExW, RegEnumKeyExW, RegCloseKey
api-ms-win-core-string-l1-1-0.dll
CompareStringOrdinal
api-ms-win-core-string-obsolete-l1-1-0.dll
lstrlenW
api-ms-win-core-synch-l1-1-1.dll
DeleteCriticalSection, SetEvent, ReleaseSRWLockExclusive, AcquireSRWLockExclusive, InitializeCriticalSection, ResetEvent, LeaveCriticalSection, ReleaseSRWLockShared, SleepEx, EnterCriticalSection, InitializeSRWLock, CreateEventW, Sleep, AcquireSRWLockShared, WaitForSingleObjectEx, WaitForSingleObject, OpenEventW
api-ms-win-core-synch-l1-2-0.dll
DeleteCriticalSection, ReleaseSRWLockShared, OpenEventW, ReleaseSRWLockExclusive, Sleep, InitializeSRWLock, EnterCriticalSection, InitializeCriticalSection, SetEvent, SleepEx, AcquireSRWLockExclusive, ResetEvent, WaitForSingleObject, CreateEventW, AcquireSRWLockShared, WaitForSingleObjectEx, LeaveCriticalSection
api-ms-win-core-sysinfo-l1-1-1.dll
GetTickCount, GetSystemTimeAsFileTime, GetSystemWindowsDirectoryW
api-ms-win-core-sysinfo-l1-2-0.dll
GetSystemTimeAsFileTime, GetTickCount, GetSystemWindowsDirectoryW
api-ms-win-core-sysinfo-l1-2-1.dll
GetSystemWindowsDirectoryW, GetTickCount, GetSystemTimeAsFileTime
api-ms-win-core-threadpool-l1-1-1.dll
CloseThreadpoolCleanupGroupMembers, CreateThreadpoolTimer, WaitForThreadpoolWaitCallbacks, CreateThreadpoolCleanupGroup, SubmitThreadpoolWork, CloseThreadpoolWork, CreateThreadpoolWork, CreateThreadpoolWait, FreeLibraryWhenCallbackReturns, WaitForThreadpoolWorkCallbacks, SetThreadpoolTimer, CallbackMayRunLong, TrySubmitThreadpoolCallback, CloseThreadpoolTimer, WaitForThreadpoolTimerCallbacks, SetThreadpoolWait, CloseThreadpoolCleanupGroup
api-ms-win-core-threadpool-l1-2-0.dll
CallbackMayRunLong, CloseThreadpoolTimer, SetThreadpoolTimer, CreateThreadpoolTimer, TrySubmitThreadpoolCallback, SubmitThreadpoolWork, CreateThreadpoolWait, CloseThreadpoolWork, SetThreadpoolWait, CreateThreadpoolWork, CloseThreadpoolWait, CloseThreadpoolCleanupGroup, WaitForThreadpoolWaitCallbacks, FreeLibraryWhenCallbackReturns, CreateThreadpoolCleanupGroup, WaitForThreadpoolWorkCallbacks, WaitForThreadpoolTimerCallbacks, CloseThreadpoolCleanupGroupMembers
api-ms-win-devices-query-l1-1-1.dll
DevFreeObjectProperties, DevGetObjectPropertiesEx
api-ms-win-devices-swdevice-l1-1-0.dll
SwMemFree, SwDeviceInterfaceRegister, SwDeviceClose, SwDevicePropertySet, SwDeviceCreate, SwDeviceInterfaceSetState, SwDeviceInterfacePropertySet
api-ms-win-devices-swdevice-l1-1-1.dll
SwDeviceInterfaceRegister, SwMemFree, SwDeviceClose, SwDevicePropertySet, SwDeviceCreate, SwDeviceInterfaceSetState, SwDeviceInterfacePropertySet
api-ms-win-eventing-classicprovider-l1-1-0.dll
TraceMessage, GetTraceLoggerHandle, UnregisterTraceGuids, RegisterTraceGuidsW, GetTraceEnableLevel, GetTraceEnableFlags
api-ms-win-eventing-provider-l1-1-0.dll
EventUnregister, EventWrite, EventActivityIdControl, EventRegister
api-ms-win-obsolete-kernelbase-l1-1-0.dll
lstrlenW, LocalFree
api-ms-win-security-base-l1-1-0.dll
AllocateAndInitializeSid, GetKernelObjectSecurity, AdjustTokenPrivileges, DuplicateToken, CreateWellKnownSid, RevertToSelf, SetSecurityDescriptorOwner, ImpersonateLoggedOnUser, SetSecurityDescriptorDacl, InitializeSecurityDescriptor, DuplicateTokenEx
api-ms-win-security-base-l1-2-0.dll
GetKernelObjectSecurity, AdjustTokenPrivileges, SetSecurityDescriptorDacl, DuplicateToken, CreateWellKnownSid, DuplicateTokenEx, FreeSid, RevertToSelf, SetSecurityDescriptorOwner, AllocateAndInitializeSid, ImpersonateLoggedOnUser, InitializeSecurityDescriptor
api-ms-win-security-sddl-l1-1-0.dll
ConvertSecurityDescriptorToStringSecurityDescriptorW, ConvertSidToStringSidW, ConvertStringSecurityDescriptorToSecurityDescriptorW
api-ms-win-service-core-l1-1-1.dll
RegisterServiceCtrlHandlerExW, SetServiceStatus
api-ms-win-service-management-l1-1-0.dll
OpenServiceW, CloseServiceHandle, OpenSCManagerW
api-ms-win-service-management-l2-1-0.dll
ChangeServiceConfigW
msvcrt.dll
DllMain
ntdll.dll
RtlNtStatusToDosError, RtlCompareMemory, RtlTimeToTimeFields, RtlEqualUnicodeString, LdrGetProcedureAddress, RtlInitAnsiString, LdrGetDllHandle, RtlInitUnicodeString, RtlGetGroupSecurityDescriptor, RtlGetSaclSecurityDescriptor, RtlGetOwnerSecurityDescriptor, NtQueryValueKey, NtSetValueKey, NtDeleteValueKey, NtEnumerateValueKey, NtEnumerateKey, NtSetSecurityObject, NtQueryKey, NtDeleteKey, NtCreateKey, NtOpenKey, RtlAddAce, RtlCopySid, RtlGetDaclSecurityDescriptor, NtSetInformationThread, NtAdjustPrivilegesToken, NtDuplicateToken, NtQuerySecurityObject, NtOpenProcessToken, NtOpenThreadToken, RtlAbsoluteToSelfRelativeSD, RtlValidSecurityDescriptor, RtlSetGroupSecurityDescriptor, RtlSetOwnerSecurityDescriptor, RtlSetDaclSecurityDescriptor, RtlCreateSecurityDescriptor, RtlAddAccessAllowedAceEx, RtlLengthSid, RtlValidSid, RtlFreeUnicodeString, RtlPrefixUnicodeString, RtlFormatCurrentUserKeyPath, RtlGetVersion, RtlUnicodeStringToInteger, RtlGUIDFromString, RtlInitUnicodeStringEx, RtlLengthSecurityDescriptor, RtlValidRelativeSecurityDescriptor, NtClose, RtlEqualSid, RtlSubAuthoritySid, RtlInitializeSid, RtlLengthRequiredSid, NtQueryInformationToken, NtOpenProcessTokenEx, NtOpenThreadTokenEx, RtlFreeHeap, RtlAllocateHeap, WinSqmAddToStreamEx, WinSqmSetDWORD, RtlAddAccessAllowedAce, RtlCreateAcl, WinSqmIsOptedIn, RtlLookupElementGenericTableAvl, RtlEnumerateGenericTableAvl, RtlInitializeGenericTableAvl, RtlInsertElementGenericTableAvl, RtlDeleteElementGenericTableAvl, RtlStringFromGUID
rpcrt4.dll
MesEncodeIncrementalHandleCreate, UuidFromStringW, RpcAsyncCompleteCall, RpcAsyncAbortCall, I_RpcExceptionFilter, RpcRevertToSelf, RpcImpersonateClient, RpcServerUnsubscribeForNotification, RpcAsyncInitializeHandle, RpcBindingFromStringBindingW, RpcStringBindingComposeW, RpcBindingFree, RpcStringFreeW, RpcServerInterfaceGroupClose, RpcServerInterfaceGroupActivate, RpcServerInterfaceGroupCreateW, I_RpcMapWin32Status, I_RpcBindingInqLocalClientPID, RpcExceptionFilter, MesHandleFree, MesIncrementalHandleReset, RpcServerInterfaceGroupDeactivate, UuidCreate, MesDecodeIncrementalHandleCreate, NdrAsyncClientCall, NdrClientCall2, NdrMesTypeEncode2, NdrAsyncServerCall, NdrServerCall2, NdrMesTypeDecode2, NdrMesTypeAlignSize2, RpcServerSubscribeForNotification, MesDecodeBufferHandleCreate, RpcBindingSetOption, RpcSsDestroyClientContext, MesEncodeDynBufferHandleCreate, RpcEpUnregister, RpcBindingVectorFree, RpcServerUseProtseqW, RpcEpRegisterW, I_RpcBindingIsClientLocal, RpcServerInqBindings, RpcServerUnregisterIfEx, RpcServerRegisterIfEx

das.dll

Device Association Service by Microsoft

Remove das.dll
Version:   6.3.9431.0 (winmain_bluemp.130615-1214)
MD5:   119790a1d3ceb8fd3e01d357580aad10
SHA1:   c3797440c75b9d34ec37b63e4aab33593ee611b4
SHA256:   ad0a8f44e06e336b47634891ba11f6748ac517653e7d72ad661d44c6754ea809
This is a Windows system installed file with Windows File Protection (WFP) enabled.

What is das.dll?

Device Association Service enables pairing between the system and wired or wireless devices. This service is new for Windows 8.

Overview

das.dll is loaded as dynamic link library that runs in the context of a process. The assembly utilizes the .NET run-time framework (which is required to be installed on the PC). .

DetailsDetails

File name:das.dll
Publisher:Microsoft Corporation
Product name:Device Association Service
Description:Microsoft® Windows® Operating System
Typical file path:C:\Windows\System32\das.dll
Original name:das.dll.mui
File version:6.3.9431.0 (winmain_bluemp.130615-1214)
Product version:6.3.9431.0
Size:389 KB (398,336 bytes)
Build date:6/15/2013 3:35 PM
Digital DNA
File packed:No
Code language:Microsoft Visual C# / Basic .NET
.NET CLR:Yes
.NET NGENed:No
More details

BehaviorsBehaviors

Hosted services
Runs as a shared service under the Windows svcHost
  • Shared name is 'DeviceAssociationService'
  • Shared name is 'DeviceAssociationService'
  • Shared name is 'DeviceAssociationService'
  • Shared name is 'DeviceAssociationService'
  • Shared name is 'DeviceAssociationService'
  • Shared name is 'DeviceAssociationService'
  • Shared name is 'DeviceAssociationService'
  • Shared name is 'DeviceAssociationService'
  • Shared name is 'DeviceAssociationService'
  • Shared name is 'DeviceAssociationService'
  • Shared name is 'DeviceAssociationService'
  • Shared name is 'DeviceAssociationService'
  • Shared name is 'DeviceAssociationService'
  • Shared name is 'DeviceAssociationService'
  • Shared name is 'DeviceAssociationService'
  • Shared name is 'DeviceAssociationService'
  • Shared name is 'DeviceAssociationService'
  • Shared name is 'DeviceAssociationService'
  • Shared name is 'DeviceAssociationService'
  • Shared name is 'DeviceAssociationService'
  • Shared name is 'DeviceAssociationService'
  • Shared name is 'DeviceAssociationService'

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 8 28.50%
Windows 8 Pro 21.00%
Windows 8.1 18.50%
Windows 8.1 Pro 8.50%
Windows 8 Single Language 6.00%
Windows 8.1 Single Language 4.00%
Windows 8 Enterprise 3.50%
Windows 8 Pro with Media Center 3.50%
Windows 8.1 Pro Preview 1.50%
Windows 8.1 Pro with Media Center 1.00%
Windows Developer Preview 1.00%
Windows 8.1 N 0.50%
Windows 8.1 Enterprise Evaluation 0.50%
Windows 8 Enterprise Evaluation 0.50%
Windows 8.1 Single Language Preview 0.50%
Windows 8.1 Pro Preview with Media Center 0.50%
Windows 8 Pro N 0.50%

Distribution by countryDistribution by country

United States installs about 37.69% of Device Association Service.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Toshiba 15.91%
Hewlett-Packard 15.15%
ASUS 13.64%
Lenovo 13.64%
Dell 12.88%
Acer 11.74%
Sony 7.58%
GIGABYTE 3.03%
Intel 2.27%
Samsung 1.52%
Alienware 0.76%
American Megatrends 0.76%
MSI 0.76%
Packard Bell 0.38%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE