Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

4.5.0218.0 0.57%
1.1.1600.0 66.86%
1.1.1600.0 10.29%
1.1.1593.0 16.57%
1.1.1505.0 5.71%

Relationships

Parent process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
TraceEvent, OpenProcessToken, LookupPrivilegeValueW, AdjustTokenPrivileges, UnregisterTraceGuids, RegisterTraceGuidsW, RegCreateKeyExW, RegSetValueExW, RegCloseKey, RegOpenKeyExW, RegQueryValueExW, OpenThreadToken, GetLengthSid, GetTokenInformation, ConvertSidToStringSidW, LookupAccountSidW, RegOpenKeyW, CryptReleaseContext, CryptDestroyHash, CryptGetHashParam, CryptHashData, CryptCreateHash, CryptGenRandom, CryptAcquireContextW, GetTraceEnableFlags, GetTraceEnableLevel, GetTraceLoggerHandle
comctl32.dll
ImageList_Create, ImageList_ReplaceIcon, ImageList_LoadImageW, ImageList_Destroy, InitCommonControlsEx, HIMAGELIST_QueryInterface
gdi32.dll
GetTextExtentPoint32W, CreateCompatibleDC, CreateBitmap, BitBlt, SetBkMode, GetTextExtentPointW, GetTextColor, GetCurrentObject, SaveDC, SetGraphicsMode, ModifyWorldTransform, SetViewportOrgEx, SetWindowOrgEx, GetDeviceCaps, DPtoLP, GetTextMetricsW, RestoreDC, GetStockObject, GetObjectA, GetLayout, SetLayout, CreateSolidBrush, SetTextColor, GetObjectW, DeleteObject, CreateFontIndirectW, SelectObject, CreatePatternBrush, PatBlt, DeleteDC, CreateCompatibleBitmap, GetPixel, LineTo, MoveToEx, CreatePen, SetBkColor, ExtTextOutW, CreateDIBSection
gdiplus.dll
GdipAddPathLineI, GdipClosePathFigure, GdipCreateLineBrushFromRect, GdipCreateHICONFromBitmap, GdipImageRotateFlip, GdipGetImagePixelFormat, GdipReleaseDC, GdipGetDC, GdipDrawRectangleI, GdipDrawPath, GdipDrawImageRectRectI, GdipFillPath, GdipGetSmoothingMode, GdipDeletePath, GdipCreatePath, GdipAddPathArcI, GdipLoadImageFromStream, GdipSetSmoothingMode, GdipCloneBrush, GdipDeletePen, GdipCreateFontFromDC, GdipDrawImageRectI, GdipMeasureString, GdipDrawString, GdipFillRectangleI, GdipDrawLineI, GdipSetTextRenderingHint, GdipCreateFromHDC, GdipCreateLineBrushFromRectI, GdipCreateSolidFill, GdipGetImageHeight, GdipGetImageWidth, GdipDeleteFont, GdipDeleteGraphics, GdipDeleteStringFormat, GdipCreateStringFormat, GdipFillRectangle, GdipCloneBitmapAreaI, GdiplusStartup, GdipCreatePen1, GdipDeleteBrush, GdiplusShutdown, GdipCloneImage, GdipCreateBitmapFromStreamICM, GdipCreateBitmapFromStream, GdipDisposeImage, GdipAlloc, GdipFree, GdipLoadImageFromStreamICM, GdipCreateFontFromLogfontA
kernel32.dll
CreateThread, GetCurrentThread, WaitForMultipleObjects, QueueUserWorkItem, ReleaseMutex, OpenMutexW, MultiByteToWideChar, GetSystemInfo, GetSystemDefaultLCID, GetFileTime, GetFileSizeEx, CreateFileW, SystemTimeToFileTime, GetSystemTime, WideCharToMultiByte, SetEndOfFile, WriteFile, SetFilePointerEx, GlobalFree, InterlockedExchange, RaiseException, EnterCriticalSection, LeaveCriticalSection, FlushInstructionCache, GetCurrentProcess, InterlockedIncrement, InterlockedDecrement, GetCurrentThreadId, SetLastError, LocalFree, LocalAlloc, InitializeCriticalSection, DeleteCriticalSection, CloseHandle, GetLastError, CreateMutexW, LockResource, LoadResource, FindResourceW, FileTimeToLocalFileTime, GetSystemTimeAsFileTime, FindClose, FindNextFileW, SizeofResource, FindResourceExW, GetDriveTypeW, GetLogicalDriveStringsW, FindFirstFileW, SetErrorMode, lstrlenW, MulDiv, lstrcmpW, InterlockedCompareExchange, GetProcAddress, GetModuleHandleW, SetProcessWorkingSetSize, GetLocalTime, GetLocaleInfoW, FileTimeToSystemTime, GetDateFormatW, GetUserDefaultUILanguage, GetTimeFormatW, FreeLibrary, LoadLibraryW, FormatMessageW, GetVersionExW, QueryPerformanceCounter, GetTickCount, GetCurrentProcessId, TerminateProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, Sleep, GetStartupInfoW, HeapFree, GetProcessHeap, HeapAlloc, LoadLibraryA, IsProcessorFeaturePresent, VirtualFree, VirtualAlloc, GetVersionExA, HeapDestroy, HeapReAlloc, HeapSize, DeleteFileW, CreateProcessW, CreateDirectoryW, ExpandEnvironmentStringsW, GetFileSize, ReadFile, ResetEvent, LCMapStringW, GetSystemDirectoryW, GetFileAttributesW, WaitForSingleObject, SetEvent, CreateEventW, InitializeCriticalSectionAndSpinCount, TryEnterCriticalSection, CompareFileTime, RegisterApplicationRestart, OutputDebugStringA, GetModuleHandleA
mpclient.dll
MpScanOpen, MpScanResult, MpRegisterEventNotification, MpScanCancel, MpScan, MpScanThreatEnum, MpScanThreatOpen, MpScanHistoryEnum, MpScanHistoryOpen, MpConfigUnregisterNotifications, MpConfigRegisterForNotifications, MpElevationHandleClose, MpElevationHandleAttach, MpCleanThreats, MpCleanSetAction, MpCleanOpen, MpCleanPreCheck, MpConfigIteratorClose, MpConfigIteratorEnum, MpConfigIteratorOpen, MpClientUtilExportFunctions, MpConfigInitialize, MpConfigUninitialize, MpFreeMemory, MpConfigGetValue, MpConfigGetValueAlloc, MpConfigClose, MpConfigOpen, MpFormatVErrorMessage, MpClose, MpOpen, MpAllocMemory, MpConfigSetValue, MpConfigDelValue, MpUnregisterEventNotification, MpScanClose, MpScanThreatClose, MpScanHistoryClose, MpCleanClose, MpQuarantineClose, MpQuarantineQuery, MpQuarantineEnum, MpQuarantineOpen, MpGetThreatLocalizedInfo, MpGetThreatStaticInfo, MpSignaturesUpdateClose, MpSignaturesUpdateCancel, MpDownloadAndUpdateSignaturesEx, MpScanCreateReport
mprtmon.dll
MpGetRealtimeManager, MpShutdownRealtimeMonitoring, MpInitializeRealtimeMonitoring, MpConstructCDetections, MpConstructOnDemandDetection
msmpres.dll
GetMsMpResModuleHandle
msvcp80.dll
DllMain
msvcr80.dll
DllMain
msvcrt.dll
DllMain
netapi32.dll
NetGetJoinInformation, NetApiBufferFree
ole32.dll
CoCreateGuid, OleRun, CoTaskMemFree, CoCreateInstance, StringFromGUID2, CoInitialize, CoUninitialize, CoInitializeEx, CoGetObject
oleacc.dll
LresultFromObject, AccessibleObjectFromWindow
rpcrt4.dll
UuidFromStringW
shell32.dll
SHGetFileInfoW, Shell_NotifyIconW, ShellExecuteExW, SHGetPathFromIDListW, SHBrowseForFolderW, SHGetFolderLocation, SHGetFolderPathW
shlwapi.dll
StrCmpNW, StrDupW, StrStrIW, StrStrW, StrChrW, StrCmpNIW, StrCmpIW
urlmon.dll
IsValidURL
user32.dll
GetDC, ReleaseDC, SetWindowPos, GetWindow, SetTimer, DrawTextW, GetWindowTextLengthW, GetWindowTextW, AllowSetForegroundWindow, FindWindowExW, LoadIconW, GetDesktopWindow, LoadAcceleratorsW, SystemParametersInfoW, TrackMouseEvent, CallWindowProcW, IsRectEmpty, PostMessageW, GetParent, IsWindowEnabled, InvalidateRect, EndPaint, BeginPaint, GetWindowRect, GetWindowLongW, GetDlgCtrlID, DestroyMenu, TrackPopupMenu, TranslateAcceleratorW, IsDialogMessageW, TranslateMessage, DispatchMessageW, DestroyIcon, IsWindow, CharUpperW, MapWindowPoints, UnregisterClassA, MessageBoxW, CopyIcon, IsMenu, GetClassNameW, GetIconInfo, DrawIconEx, CreateIconIndirect, GetAncestor, GetCapture, GetMessagePos, DrawEdge, GetWindowDC, ReleaseCapture, SetCapture, SetRectEmpty, InflateRect, SetScrollInfo, GetScrollInfo, SetScrollPos, ScrollWindowEx, ScrollWindow, GetScrollPos, GetSystemMetrics, DrawIcon, ShowCursor, GetSysColorBrush, GetDoubleClickTime, MessageBeep, RegisterWindowMessageW, CreatePopupMenu, AppendMenuW, SetForegroundWindow, ExitWindowsEx, KillTimer, GetMessageW, EnableMenuItem, GetSubMenu, LoadMenuW, DialogBoxIndirectParamW, RegisterClassExW, DefWindowProcW, GetSysColor, CheckMenuItem, LoadCursorW, GetClassInfoExW, GetDlgItem, SetDlgItemTextW, GetClientRect, MoveWindow, CharNextW, DestroyWindow, SetWindowTextW, SendMessageW, CreateWindowExW, SetWindowLongW, EndDialog, SetFocus, LockWindowUpdate, ScreenToClient, GetWindowPlacement, GetNextDlgTabItem, PostQuitMessage, RegisterClassW, UnregisterClassW, RedrawWindow, IsChild, IsWindowVisible, GetFocus, DrawFocusRect, EqualRect, SetRect, LoadStringW, IsCharAlphaNumericW, CopyRect, GetKeyState, PtInRect, OffsetRect, SetCursor, GetCursorPos, EnableWindow, ShowWindow, FillRect, GetLastActivePopup, LoadImageW, SetMenuInfo, SetMenuItemInfoW
version.dll
GetFileVersionInfoSizeW, GetFileVersionInfoW, VerQueryValueW
winhttp.dll
WinHttpOpenRequest, WinHttpGetIEProxyConfigForCurrentUser, WinHttpGetProxyForUrl, WinHttpAddRequestHeaders, WinHttpWriteData, WinHttpQueryHeaders, WinHttpReceiveResponse, WinHttpConnect, WinHttpSetTimeouts, WinHttpCrackUrl, WinHttpSetOption, WinHttpSetStatusCallback, WinHttpQueryOption, WinHttpCloseHandle, WinHttpOpen, WinHttpReadData, WinHttpQueryDataAvailable, WinHttpSendRequest

MSASCUI.exe

Windows Defender by Microsoft Corporation (Signed)

Remove MSASCUI.exe
Version:   1.1.1600.0
MD5:   48dd40677817ce1053c2315f5a87e0d3
SHA1:   5202f110dbf904775055f663646a429293bf6402
SHA256:   27e6d67e0c62543a5b0bb14814a17240481ceed227a4a58e3e3bef122039024f

What is MSASCUI.exe?

MSASCui.exe is the Windows Defender User Interface, the main UI for Windows Defender.

About MSASCUI.exe (from Microsoft Corporation)

Windows Defender is a free program that helps you stay productive by protecting your computer against pop-ups, slow performance and security threats caused by spyware and other potentially unwanted so

DetailsDetails

File name:MSASCui.exe
Publisher:Microsoft Corporation
Product name:Windows Defender
Description:Windows Defender User Interface
Typical file path:C:\Program Files\windows defender\msascui.exe
File version:1.1.1600.0
Size:1.51 MB (1,584,184 bytes)
Certificate
Issued to:Microsoft Corporation
Authority (CA):Microsoft Corporation
Effective date:Tuesday, April 4, 2006
Expiration date:Thursday, October 4, 2007
Digital DNA
PE subsystem:Windows GUI
Entropy:6.322427
File packed:No
Code language:Microsoft Visual C++ 8.0
.NET CLR:No
More details

BehaviorsBehaviors

Startup files (all users) run
Runs under the registry key 'HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run'
  • 'Windows Defender User Interface' → "C:\Program Files\Windows Defender\MSASCui.exe" -hide
  • 'Windows Defender' → "C:\Program Files\Windows Defender\MSASCui.exe" -hide

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.07158539%
0.028634%
Kernel CPU:0.03685452%
0.013761%
User CPU:0.03473087%
0.014873%
Kernel CPU time:781,752 ms/min
100,923,805ms/min
CPU cycles:3,858,827/sec
17,470,203/sec
Memory
Private memory:11.8 MB
21.59 MB
Private (maximum):17.03 MB
Private (minimum):14.28 MB
Non-paged memory:11.8 MB
21.59 MB
Virtual memory:118.2 MB
140.96 MB
Virtual memory (peak):123.66 MB
169.69 MB
Working set:17.03 MB
18.61 MB
Working set (peak):17.05 MB
37.95 MB
Page faults:7,057/min
2,039/min
I/O
I/O read transfer:328 Bytes/sec
1.02 MB/min
I/O read operations:1/sec
343/min
I/O write transfer:292 Bytes/sec
274.99 KB/min
I/O write operations:1/sec
227/min
I/O other transfer:2.34 KB/sec
448.09 KB/min
I/O other operations:105/sec
1,671/min
Resource allocations
Threads:13
12
Handles:492
600
GUI GDI count:119
103
GUI USER count:115
49

BehaviorsProcess properties

Integrety level:Undefined
Platform:64-bit
Command line:"C:\Program Files\windows defender\msascui.exe" -hide
Owner:User
Parent process:explorer.exe (Windows Explorer by Microsoft Corporation)

ResourcesThreads

Averages
 
MSASCui.exe (main module)
Total CPU:0.08582028%
0.272967%
Kernel CPU:0.03651400%
0.107585%
User CPU:0.04930629%
0.165382%
CPU cycles:1,943,579/sec
5,741,424/sec
Context switches:5/sec
79/sec
Memory:1.52 MB
1.16 MB
ntdll.dll
Total CPU:0.02784606%
Kernel CPU:0.01389340%
User CPU:0.01395266%
CPU cycles:757,728/sec
Context switches:1/sec
Memory:1.52 MB
MpClient.dll
Total CPU:0.01798389%
Kernel CPU:0.01024664%
User CPU:0.00773726%
CPU cycles:432,858/sec
Context switches:3/sec
Memory:488 KB
gdiplus.dll
Total CPU:0.00884065%
Kernel CPU:0.00884065%
User CPU:0.00000000%
CPU cycles:29,258/sec
Memory:2.11 MB
RPCRT4.dll
Total CPU:0.00106330%
Kernel CPU:0.00106330%
User CPU:0.00000000%
CPU cycles:3,401/sec
Memory:1.26 MB
MpRtMon.DLL
Total CPU:0.00062597%
Kernel CPU:0.00041731%
User CPU:0.00020866%
CPU cycles:5,937/sec
Memory:1.06 MB

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows Vista Home Premium 46.50%
Windows Vista Home Basic 16.56%
Windows Vista Ultimate 10.83%
Microsoft Windows XP 9.55%
Windows Vista Business 6.37%
Windows XP Home Edition 5.73%
Microsoft Windows XP Home Edition 1.27%
Windows XP Professional 1.27%
Windows 7 Home Premium 1.27%
Windows 8.1 Pro with Media Center 0.64%

Distribution by countryDistribution by country

United States installs about 57.66% of Windows Defender.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Dell 37.50%
Hewlett-Packard 13.54%
Toshiba 12.50%
ASUS 10.42%
Intel 6.25%
Acer 5.21%
American Megatrends 4.17%
Gateway 4.17%
Sony 4.17%
Lenovo 2.08%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE