Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

6.1.7600.16385 (win7_rtm.090713-1255) 1.25%
4.5.0218.0 0.63%
4.0.9200.16384 (win8_rtm.120725-1247) 0.63%
1.1.1600.0 73.13%
1.1.1593.0 18.13%
1.1.1505.0 6.25%

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
TraceEvent, OpenProcessToken, LookupPrivilegeValueW, AdjustTokenPrivileges, UnregisterTraceGuids, RegisterTraceGuidsW, RegCreateKeyExW, RegSetValueExW, RegCloseKey, RegOpenKeyExW, RegQueryValueExW, OpenThreadToken, GetLengthSid, GetTokenInformation, ConvertSidToStringSidW, LookupAccountSidW, RegOpenKeyW, CryptReleaseContext, CryptDestroyHash, CryptGetHashParam, CryptHashData, CryptCreateHash, CryptGenRandom, CryptAcquireContextW, GetTraceEnableFlags, GetTraceEnableLevel, GetTraceLoggerHandle
comctl32.dll
ImageList_Create, ImageList_ReplaceIcon, ImageList_LoadImageW, ImageList_Destroy, InitCommonControlsEx, HIMAGELIST_QueryInterface
gdi32.dll
GetTextExtentPoint32W, CreateCompatibleDC, CreateBitmap, BitBlt, SetBkMode, GetTextExtentPointW, GetTextColor, GetCurrentObject, SaveDC, SetGraphicsMode, ModifyWorldTransform, SetViewportOrgEx, SetWindowOrgEx, GetDeviceCaps, DPtoLP, GetTextMetricsW, RestoreDC, GetStockObject, GetObjectA, GetLayout, SetLayout, CreateSolidBrush, SetTextColor, GetObjectW, DeleteObject, CreateFontIndirectW, SelectObject, CreatePatternBrush, PatBlt, DeleteDC, CreateCompatibleBitmap, GetPixel, LineTo, MoveToEx, CreatePen, SetBkColor, ExtTextOutW, CreateDIBSection
gdiplus.dll
GdipAddPathLineI, GdipClosePathFigure, GdipCreateLineBrushFromRect, GdipCreateHICONFromBitmap, GdipImageRotateFlip, GdipGetImagePixelFormat, GdipReleaseDC, GdipGetDC, GdipDrawRectangleI, GdipDrawPath, GdipDrawImageRectRectI, GdipFillPath, GdipGetSmoothingMode, GdipDeletePath, GdipCreatePath, GdipAddPathArcI, GdipLoadImageFromStream, GdipSetSmoothingMode, GdipCloneBrush, GdipDeletePen, GdipCreateFontFromDC, GdipDrawImageRectI, GdipMeasureString, GdipDrawString, GdipFillRectangleI, GdipDrawLineI, GdipSetTextRenderingHint, GdipCreateFromHDC, GdipCreateLineBrushFromRectI, GdipCreateSolidFill, GdipGetImageHeight, GdipGetImageWidth, GdipDeleteFont, GdipDeleteGraphics, GdipDeleteStringFormat, GdipCreateStringFormat, GdipFillRectangle, GdipCloneBitmapAreaI, GdiplusStartup, GdipCreatePen1, GdipDeleteBrush, GdiplusShutdown, GdipCloneImage, GdipCreateBitmapFromStreamICM, GdipCreateBitmapFromStream, GdipDisposeImage, GdipAlloc, GdipFree, GdipLoadImageFromStreamICM, GdipCreateFontFromLogfontA
kernel32.dll
CreateThread, GetCurrentThread, WaitForMultipleObjects, QueueUserWorkItem, ReleaseMutex, OpenMutexW, MultiByteToWideChar, GetSystemInfo, GetSystemDefaultLCID, GetFileTime, GetFileSizeEx, CreateFileW, SystemTimeToFileTime, GetSystemTime, WideCharToMultiByte, SetEndOfFile, WriteFile, SetFilePointerEx, GlobalFree, InterlockedExchange, RaiseException, EnterCriticalSection, LeaveCriticalSection, FlushInstructionCache, GetCurrentProcess, InterlockedIncrement, InterlockedDecrement, GetCurrentThreadId, SetLastError, LocalFree, LocalAlloc, InitializeCriticalSection, DeleteCriticalSection, CloseHandle, GetLastError, CreateMutexW, LockResource, LoadResource, FindResourceW, FileTimeToLocalFileTime, GetSystemTimeAsFileTime, FindClose, FindNextFileW, SizeofResource, FindResourceExW, GetDriveTypeW, GetLogicalDriveStringsW, FindFirstFileW, SetErrorMode, lstrlenW, MulDiv, lstrcmpW, InterlockedCompareExchange, GetProcAddress, GetModuleHandleW, SetProcessWorkingSetSize, GetLocalTime, GetLocaleInfoW, FileTimeToSystemTime, GetDateFormatW, GetUserDefaultUILanguage, GetTimeFormatW, FreeLibrary, LoadLibraryW, FormatMessageW, GetVersionExW, QueryPerformanceCounter, GetTickCount, GetCurrentProcessId, TerminateProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, Sleep, GetStartupInfoW, HeapFree, GetProcessHeap, HeapAlloc, LoadLibraryA, IsProcessorFeaturePresent, VirtualFree, VirtualAlloc, GetVersionExA, HeapDestroy, HeapReAlloc, HeapSize, DeleteFileW, CreateProcessW, CreateDirectoryW, ExpandEnvironmentStringsW, GetFileSize, ReadFile, ResetEvent, LCMapStringW, GetSystemDirectoryW, GetFileAttributesW, WaitForSingleObject, SetEvent, CreateEventW, InitializeCriticalSectionAndSpinCount, TryEnterCriticalSection, CompareFileTime, RegisterApplicationRestart, OutputDebugStringA, GetModuleHandleA
mpclient.dll
MpScanOpen, MpScanResult, MpRegisterEventNotification, MpScanCancel, MpScan, MpScanThreatEnum, MpScanThreatOpen, MpScanHistoryEnum, MpScanHistoryOpen, MpConfigUnregisterNotifications, MpConfigRegisterForNotifications, MpElevationHandleClose, MpElevationHandleAttach, MpCleanThreats, MpCleanSetAction, MpCleanOpen, MpCleanPreCheck, MpConfigIteratorClose, MpConfigIteratorEnum, MpConfigIteratorOpen, MpClientUtilExportFunctions, MpConfigInitialize, MpConfigUninitialize, MpFreeMemory, MpConfigGetValue, MpConfigGetValueAlloc, MpConfigClose, MpConfigOpen, MpFormatVErrorMessage, MpClose, MpOpen, MpAllocMemory, MpConfigSetValue, MpConfigDelValue, MpUnregisterEventNotification, MpScanClose, MpScanThreatClose, MpScanHistoryClose, MpCleanClose, MpQuarantineClose, MpQuarantineQuery, MpQuarantineEnum, MpQuarantineOpen, MpGetThreatLocalizedInfo, MpGetThreatStaticInfo, MpSignaturesUpdateClose, MpSignaturesUpdateCancel, MpDownloadAndUpdateSignaturesEx, MpScanCreateReport
mprtmon.dll
MpGetRealtimeManager, MpShutdownRealtimeMonitoring, MpInitializeRealtimeMonitoring, MpConstructCDetections, MpConstructOnDemandDetection
msmpres.dll
GetMsMpResModuleHandle
msvcp80.dll
DllMain
msvcr80.dll
DllMain
msvcrt.dll
DllMain
netapi32.dll
NetGetJoinInformation, NetApiBufferFree
ole32.dll
CoCreateGuid, OleRun, CoTaskMemFree, CoCreateInstance, StringFromGUID2, CoInitialize, CoUninitialize, CoInitializeEx, CoGetObject
oleacc.dll
LresultFromObject, AccessibleObjectFromWindow
rpcrt4.dll
UuidFromStringW
shell32.dll
SHGetFileInfoW, Shell_NotifyIconW, ShellExecuteExW, SHGetPathFromIDListW, SHBrowseForFolderW, SHGetFolderLocation, SHGetFolderPathW
shlwapi.dll
StrCmpNW, StrDupW, StrStrIW, StrStrW, StrChrW, StrCmpNIW, StrCmpIW
urlmon.dll
IsValidURL
user32.dll
GetDC, ReleaseDC, SetWindowPos, GetWindow, SetTimer, DrawTextW, GetWindowTextLengthW, GetWindowTextW, AllowSetForegroundWindow, FindWindowExW, LoadIconW, GetDesktopWindow, LoadAcceleratorsW, SystemParametersInfoW, TrackMouseEvent, CallWindowProcW, IsRectEmpty, PostMessageW, GetParent, IsWindowEnabled, InvalidateRect, EndPaint, BeginPaint, GetWindowRect, GetWindowLongW, GetDlgCtrlID, DestroyMenu, TrackPopupMenu, TranslateAcceleratorW, IsDialogMessageW, TranslateMessage, DispatchMessageW, DestroyIcon, IsWindow, CharUpperW, MapWindowPoints, UnregisterClassA, MessageBoxW, CopyIcon, IsMenu, GetClassNameW, GetIconInfo, DrawIconEx, CreateIconIndirect, GetAncestor, GetCapture, GetMessagePos, DrawEdge, GetWindowDC, ReleaseCapture, SetCapture, SetRectEmpty, InflateRect, SetScrollInfo, GetScrollInfo, SetScrollPos, ScrollWindowEx, ScrollWindow, GetScrollPos, GetSystemMetrics, DrawIcon, ShowCursor, GetSysColorBrush, GetDoubleClickTime, MessageBeep, RegisterWindowMessageW, CreatePopupMenu, AppendMenuW, SetForegroundWindow, ExitWindowsEx, KillTimer, GetMessageW, EnableMenuItem, GetSubMenu, LoadMenuW, DialogBoxIndirectParamW, RegisterClassExW, DefWindowProcW, GetSysColor, CheckMenuItem, LoadCursorW, GetClassInfoExW, GetDlgItem, SetDlgItemTextW, GetClientRect, MoveWindow, CharNextW, DestroyWindow, SetWindowTextW, SendMessageW, CreateWindowExW, SetWindowLongW, EndDialog, SetFocus, LockWindowUpdate, ScreenToClient, GetWindowPlacement, GetNextDlgTabItem, PostQuitMessage, RegisterClassW, UnregisterClassW, RedrawWindow, IsChild, IsWindowVisible, GetFocus, DrawFocusRect, EqualRect, SetRect, LoadStringW, IsCharAlphaNumericW, CopyRect, GetKeyState, PtInRect, OffsetRect, SetCursor, GetCursorPos, EnableWindow, ShowWindow, FillRect, GetLastActivePopup, LoadImageW, SetMenuInfo, SetMenuItemInfoW
version.dll
GetFileVersionInfoSizeW, GetFileVersionInfoW, VerQueryValueW
winhttp.dll
WinHttpOpenRequest, WinHttpGetIEProxyConfigForCurrentUser, WinHttpGetProxyForUrl, WinHttpAddRequestHeaders, WinHttpWriteData, WinHttpQueryHeaders, WinHttpReceiveResponse, WinHttpConnect, WinHttpSetTimeouts, WinHttpCrackUrl, WinHttpSetOption, WinHttpSetStatusCallback, WinHttpQueryOption, WinHttpCloseHandle, WinHttpOpen, WinHttpReadData, WinHttpQueryDataAvailable, WinHttpSendRequest

MSASCUI.exe

Windows Defender by Microsoft Corporation (Signed)

Remove MSASCUI.exe
Version:   4.0.9200.16384 (win8_rtm.120725-1247)
MD5:   492815a4260a70a4f8f7c77313d00194
SHA1:   8e3859cd1c52cea5aa03db05690dd02e62eecfbd
SHA256:   dc1967831c034bb644898c195ba8546b73275f5387f8ca002f2fecc09eed5544

What is MSASCUI.exe?

MSASCui.exe is the Windows Defender User Interface, the main UI for Windows Defender.

About MSASCUI.exe (from Microsoft Corporation)

Windows Defender is a free program that helps you stay productive by protecting your computer against pop-ups, slow performance and security threats caused by spyware and other potentially unwanted so

DetailsDetails

File name:MSASCui.exe
Publisher:Microsoft Corporation
Product name:Windows Defender
Description:Windows Defender User Interface
Typical file path:C:\Program Files\windows defender\msascui.exe
File version:4.0.9200.16384 (win8_rtm.120725-1247)
Product version:4.0.9200.16384
Size:1.24 MB (1,304,064 bytes)
Certificate
Issued to:Microsoft Corporation
Authority (CA):Microsoft Corporation
Effective date:Tuesday, April 4, 2006
Expiration date:Thursday, October 4, 2007
Digital DNA
PE subsystem:Windows GUI
Entropy:6.322427
File packed:No
Code language:Microsoft Visual C++ 8.0
.NET CLR:No
More details

BehaviorsBehaviors

Startup files (all users) run
Runs under the registry key 'HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run'
  • 'Windows Defender User Interface' → "C:\Program Files\Windows Defender\MSASCui.exe" -hide
  • 'Windows Defender' → "C:\Program Files\Windows Defender\MSASCui.exe" -hide

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00015800%
0.028634%
Kernel CPU:0.00013362%
0.013761%
User CPU:0.00002438%
0.014873%
Memory
Private (maximum):11.77 MB
Private (minimum):11.14 MB

BehaviorsProcess properties

Platform:64-bit
Command line:"C:\Program Files\windows defender\msascui.exe"
Owner:User
Parent process:explorer.exe (Windows Explorer by Microsoft Corporation)

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows Vista Home Premium 46.50%
Windows Vista Home Basic 16.56%
Windows Vista Ultimate 10.83%
Microsoft Windows XP 9.55%
Windows Vista Business 6.37%
Windows XP Home Edition 5.73%
Microsoft Windows XP Home Edition 1.27%
Windows XP Professional 1.27%
Windows 7 Home Premium 1.27%
Windows 8.1 Pro with Media Center 0.64%

Distribution by countryDistribution by country

United States installs about 57.66% of Windows Defender.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Dell 37.50%
Hewlett-Packard 13.54%
Toshiba 12.50%
ASUS 10.42%
Intel 6.25%
Acer 5.21%
American Megatrends 4.17%
Gateway 4.17%
Sony 4.17%
Lenovo 2.08%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE