Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

1, 0, 0, 1068 94.37%
1, 0, 0, 1066 5.63%

Relationships

Parent processes
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
OpenServiceW, StartServiceCtrlDispatcherA, DeleteService, QueryServiceStatusEx, OpenServiceA, StartServiceA, CreateServiceA, OpenSCManagerA, RegCreateKeyA, RegisterServiceCtrlHandlerA, SetServiceStatus, FreeSid, SetEntriesInAclA, AllocateAndInitializeSid, AdjustTokenPrivileges, LookupPrivilegeValueA, EnumServicesStatusExA, EnumServicesStatusExW, SetNamedSecurityInfoW, ChangeServiceConfig2A, ControlService, StartServiceW, CreateServiceW, ChangeServiceConfigW, CloseServiceHandle, OpenSCManagerW, RegSaveKeyW, RegQueryInfoKeyW, RegReplaceKeyW, RegOpenUserClassesRoot, OpenProcessToken, RevertToSelf, RegOpenCurrentUser, ImpersonateNamedPipeClient, RegEnumValueW, RegEnumKeyExW, RegEnumKeyW, RegSetValueExW, RegDeleteValueW, RegDeleteKeyW, RegQueryValueExW, RegOpenKeyExW, RegCreateKeyExW, ConvertStringSecurityDescriptorToSecurityDescriptorA, RegQueryInfoKeyA, RegOpenKeyA, SetNamedSecurityInfoA, RegEnumKeyA, RegEnumValueA, RegSetValueExA, RegQueryValueExA, RegOpenKeyExA, RegCloseKey, RegDeleteKeyA
kernel32.dll
SetPriorityClass, GetPriorityClass, DeleteFileW, CreateFileW, MoveFileExW, DeviceIoControl, GetTempFileNameW, FindFirstFileW, FindNextFileW, CopyFileW, CreateDirectoryW, GetFileAttributesW, SetFileAttributesW, TerminateProcess, CreateToolhelp32Snapshot, Toolhelp32ReadProcessMemory, ReadProcessMemory, OpenProcess, Module32First, Module32NextW, Module32Next, GetFileTime, GetShortPathNameW, CreateEventW, RemoveDirectoryW, Process32FirstW, Process32First, Process32NextW, Process32Next, GetCurrentProcess, Sleep, DisconnectNamedPipe, FlushFileBuffers, WaitForMultipleObjects, ConnectNamedPipe, CreateNamedPipeA, CreateThread, LocalFree, GetVersionExA, BackupSeek, BackupRead, UnmapViewOfFile, GetOverlappedResult, CreateEventA, SetFilePointer, ReadFile, CreateFileA, WideCharToMultiByte, FindNextFileA, FindClose, DeleteFileA, SetFileAttributesA, FindFirstFileA, RemoveDirectoryA, GetSystemTime, GetCurrentProcessId, TlsFree, TlsGetValue, TlsSetValue, TlsAlloc, GetCurrentThreadId, DeleteCriticalSection, InitializeCriticalSection, LeaveCriticalSection, EnterCriticalSection, GetLastError, WriteFile, lstrcatA, lstrcpyA, GetFileSize, lstrcmpiA, GetModuleFileNameA, CloseHandle, Module32FirstW, GetStringTypeW, GetStringTypeA, LCMapStringW, LCMapStringA, GetLocaleInfoA, MultiByteToWideChar, WriteConsoleW, GetConsoleOutputCP, WriteConsoleA, SetStdHandle, InitializeCriticalSectionAndSpinCount, IsValidCodePage, GetOEMCP, GetACP, GetCPInfo, GetSystemTimeAsFileTime, GetTickCount, QueryPerformanceCounter, GetStartupInfoA, GetFileType, LocalAlloc, GetProcAddress, FreeLibrary, InterlockedExchange, LoadLibraryA, RaiseException, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsDebuggerPresent, HeapFree, HeapAlloc, GetCommandLineA, RtlUnwind, GetModuleHandleW, InterlockedIncrement, SetLastError, InterlockedDecrement, HeapSize, ExitProcess, GetConsoleCP, GetConsoleMode, GetStdHandle, HeapCreate, VirtualFree, VirtualAlloc, HeapReAlloc, FreeEnvironmentStringsA, GetEnvironmentStrings, FreeEnvironmentStringsW, GetEnvironmentStringsW, SetHandleCount
shell32.dll
SHGetMalloc, SHGetSpecialFolderLocation, SHGetPathFromIDListA
shlwapi.dll
SHDeleteKeyW, SHSetValueW, SHGetValueW, SHSetValueA, SHDeleteKeyA, SHDeleteValueA, SHDeleteValueW, StrStrIA, PathAddBackslashA, PathRemoveFileSpecA, StrStrA, PathAppendA, StrCpyW, StrCatW, PathFileExistsW, PathIsDirectoryW, SHCopyKeyW, SHGetValueA
user32.dll
ExitWindowsEx
version.dll
GetFileVersionInfoW, GetFileVersionInfoSizeW

SASCore.exe

Core Service by SuperAdBlocker.com (Signed)

Remove SASCore.exe
Version:   1, 0, 0, 1068
MD5:   01e81c84ad1d0acc61cf3cfd06632210
SHA1:   f2832f8271ea98487b3fd1af18495ab8a12cb305
SHA256:   1140756ba2f28ca8dfcff8fd223654e6a78ba1b770a169cc557ece0e01381b17

What is SASCore.exe?

SUPERAntiSpyware is a software application distributed as shareware which can detect and remove spyware, adware, trojan horses, rogue security software, computer worms, rootkits, parasites and other potentially harmful software applications.

About SASCore.exe (from SuperAdBlocker.com)

Detect and Remove Spyware, Adware and Remove Malware, Trojans, Dialers, Worms, KeyLoggers, HiJackers, Parasites, Rootkits, Rogue Security Products and many other types of threats. Light on System Reso

DetailsDetails

File name:sascore.exe
Publisher:SUPERAntiSpyware.com
Product name:Core Service
Typical file path:C:\Program Files\superantispyware\sascore.exe
File version:1, 0, 0, 1068
Size:113.88 KB (116,608 bytes)
Certificate
Issued to:SuperAdBlocker.com
Authority (CA):Thawte
Expiration date:Friday, May 10, 2013
Digital DNA
PE subsystem:Windows Console
File packed:No
.NET CLR:No
More details

ResourcesPrograms

The following programs will install this file
BillP Studios
3% remove
WinPatrol monitors and exposes adware, keyloggers, spyware, worms, cookies, and other malicious software. This program puts you back in control of your computer with no need for constant updates. WinPatrol's goal is to help you understand what programs are running on your computer and to alert you to any new programs added without your permission. Unlike traditional security programs, WinPatrol doesn't scan your hard drive searching for...
SUPERAntiSpyware.com
25% remove
SUPERAntiSpyware is a software application distributed as shareware which can detect and remove spyware, adware, trojan horses, rogue security software, computer worms, rootkits, parasites and other potentially harmful software applications. Although it can detect malware, SUPERAntiSpyware is not designed to replace antivirus software. The product is available as freeware for personal use with limited functions, such as no automatic upd...
SUPERAntiSpyware.com
24% remove
SUPERAntiSpyware is a software application distributed as shareware which can detect and remove spyware, adware, trojan horses, rogue security software, computer worms, rootkits, parasites and other potentially harmful software applications. Although it can detect malware, SUPERAntiSpyware is not designed to replace antivirus software. The product is available as freeware for personal use with limited functions, such as no automatic upd...
SUPERAntiSpyware.com
19% remove
SUPERAntiSpyware is a software application distributed as shareware which can detect and remove spyware, adware, trojan horses, rogue security software, computer worms, rootkits, parasites and other potentially harmful software applications. Although it can detect malware, SUPERAntiSpyware is not designed to replace antivirus software. The product is available as freeware for personal use with limited functions, such as no automatic upd...
ToniArts
40% remove
EasyCleaner is a small program that searches through Windows registry for entries that are pointing nowhere. EasyCleaner also lets you delete all kinds of unnecessary files like temps and backups. You can search for duplicate files and you can view some intresting info about your disk space usage. You are also able to manage startup programs, invalid shortcuts, and add/remove software list.

BehaviorsBehaviors

Services
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
  • '!SASCORE' (SAS Core Service)
  • !SASCORE

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00120769%
0.028634%
Kernel CPU:0.00074107%
0.013761%
User CPU:0.00046662%
0.014873%
Kernel CPU time:13,121,100 ms/min
100,923,805ms/min
CPU cycles:1,750,026/sec
17,470,203/sec
Context switches:9/sec
284/sec
Memory
Private memory:2.32 MB
21.59 MB
Private (maximum):4.73 MB
Private (minimum):1.68 MB
Non-paged memory:2.32 MB
21.59 MB
Virtual memory:39.68 MB
140.96 MB
Virtual memory (peak):60.4 MB
169.69 MB
Working set:1.78 MB
18.61 MB
Working set (peak):14.65 MB
37.95 MB
Page faults:693,682/min
2,039/min
I/O
I/O read transfer:1.93 MB/sec
1.02 MB/min
I/O read operations:50/sec
343/min
I/O write transfer:3 MB/sec
274.99 KB/min
I/O write operations:50/sec
227/min
I/O other transfer:212 Bytes/sec
448.09 KB/min
I/O other operations:6/sec
1,671/min
Resource allocations
Threads:10
12
Handles:111
600
GUI GDI count:4
103
GUI USER count:1
49

BehaviorsProcess properties

Integrety level:System
Platform:32-bit
Command line:"C:\Program Files\superantispyware\sascore.exe"
Owner:SYSTEM
Windows Service
Service name:!SASCORE
Display name:SAS Core Service
Description:“SUPERAntiSpyware Core Service”
Type:Win32OwnProcess
Parent process:services.exe (Services and Controller app by Microsoft)

ResourcesThreads

Averages
 
SASCORE.EXE (main module)
Total CPU:0.03090569%
0.272967%
Kernel CPU:0.02878573%
0.107585%
User CPU:0.00211996%
0.165382%
CPU cycles:916,628/sec
5,741,424/sec
Memory:136 KB
1.16 MB
sechost.dll
Total CPU:0.00081780%
Kernel CPU:0.00048882%
User CPU:0.00032897%
CPU cycles:154,091/sec
Context switches:4/sec
Memory:100 KB
advapi32.dll (Advanced Windows 32 Base API by Microsoft)
Total CPU:0.00053200%
Kernel CPU:0.00026336%
User CPU:0.00026864%
Context switches:8/sec
Memory:620 KB
ntdll.dll
Total CPU:0.00000301%
Kernel CPU:0.00000152%
User CPU:0.00000149%
CPU cycles:33/sec
Memory:1.23 MB

Common loaded modules

These are modules that are typiclaly loaded within the context of this process.

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Microsoft Windows XP 45.07%
Windows 7 Ultimate 16.90%
Windows Vista Home Premium 15.49%
Windows 7 Home Premium 8.45%
Windows 7 Professional 5.63%
Windows 8 2.82%
Windows 8 Pro 2.82%
Windows Vista Home Basic 1.41%
Windows Vista Ultimate 1.41%

Distribution by countryDistribution by country

United States installs about 53.62% of Core Service.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Dell 30.30%
Hewlett-Packard 15.15%
Intel 12.12%
American Megatrends 9.09%
Sony 6.06%
Medion 6.06%
Toshiba 6.06%
Compaq 6.06%
Gateway 3.03%
GIGABYTE 3.03%
Samsung 3.03%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE