Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

4.6.3.24650 19.24%
4.6.3.24650 1.27%
4.6.2.22610 61.27%
4.6.2.22610 13.42%
4.6.1.10263 0.25%
4.6.0.1523 4.56%

Relationships

Parent process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
RevertToSelf, OpenProcessToken, ImpersonateLoggedOnUser, RegOpenCurrentUser, RegCloseKey, RegNotifyChangeKeyValue, RegOpenKeyExW, TraceMessage, InitiateSystemShutdownExW, GetTraceEnableFlags, GetTraceEnableLevel, GetTraceLoggerHandle, RegisterTraceGuidsW, UnregisterTraceGuids, SetServiceStatus, ControlService, CloseServiceHandle, OpenServiceW, OpenSCManagerW, RegQueryValueExW, RegOpenKeyW, RegisterServiceCtrlHandlerW, StartServiceCtrlDispatcherW, ReportEventW, DeregisterEventSource, RegisterEventSourceW, LookupPrivilegeValueW, OpenThreadToken, AdjustTokenPrivileges, AddAce, InitializeAcl, GetAclInformation, GetSecurityDescriptorControl, MakeAbsoluteSD, GetSecurityDescriptorSacl, GetSecurityDescriptorDacl, GetSecurityDescriptorGroup, GetSecurityDescriptorOwner, InitializeSecurityDescriptor, MakeSelfRelativeSD, GetSecurityDescriptorLength, GetLengthSid, IsValidSid, CopySid, SetSecurityDescriptorOwner, SetSecurityDescriptorGroup, SetSecurityDescriptorDacl, GetSidSubAuthority, InitializeSid, GetSidLengthRequired, GetTokenInformation, RegQueryValueExA, RegOpenKeyExA, LookupAccountSidW, ConvertSidToStringSidW, DuplicateToken, EqualSid, CheckTokenMembership, RegisterServiceCtrlHandlerExW
comctl32.dll
GetMUILanguage
faultrep.dll
ReportFault
kernel32.dll
TerminateProcess, OutputDebugStringW, HeapReAlloc, HeapDestroy, GetTimeFormatW, GetDateFormatW, InterlockedIncrement, SetFileTime, GetTempFileNameW, MoveFileExW, LocalFree, HeapFree, HeapAlloc, GetVersionExW, DeleteFileW, GetModuleHandleW, GetCurrentThread, GetTempPathW, CreateFileMappingW, MapViewOfFile, UnmapViewOfFile, GetUserDefaultLCID, CreateProcessW, GetModuleFileNameW, GetLocalTime, IsDebuggerPresent, UnhandledExceptionFilter, GetCurrentProcessId, QueryPerformanceCounter, SetUnhandledExceptionFilter, GetStartupInfoW, InterlockedCompareExchange, ReleaseMutex, CreateMutexW, GetProcessHeap, FindFirstFileW, FindClose, CompareFileTime, FindNextFileW, GetSystemTimeAsFileTime, ExpandEnvironmentStringsW, GetFileAttributesExW, FileTimeToLocalFileTime, FileTimeToSystemTime, LoadLibraryW, GetProcAddress, FreeLibrary, ProcessIdToSessionId, QueueUserWorkItem, HeapSetInformation, HeapQueryInformation, HeapCompact, GetProcessHeaps, WaitForMultipleObjects, ResetEvent, CreateFileW, GetFileInformationByHandle, ReadFile, GetCurrentProcess, DuplicateHandle, GetTickCount, WaitForSingleObject, SetEvent, OpenEventW, CreateEventW, LeaveCriticalSection, EnterCriticalSection, GetCurrentThreadId, DeleteCriticalSection, InitializeCriticalSection, OpenProcess, RegisterWaitForSingleObject, UnregisterWaitEx, GetLastError, CloseHandle, InterlockedExchange, Sleep, WriteFile, HeapSize, RaiseException, GetNativeSystemInfo, GetDriveTypeW, InterlockedDecrement
msvcp90.dll
DllMain
msvcr90.dll
DllMain
ole32.dll
CoCreateInstance, StringFromGUID2, CoInitializeEx, CoUninitialize, CoSetProxyBlanket
rpcrt4.dll
RpcBindingFromStringBindingW, RpcBindingFree, RpcMgmtStopServerListening, RpcMgmtWaitServerListen, RpcServerUnregisterIf, RpcServerRegisterIf2, RpcServerListen, RpcServerRegisterAuthInfoW, RpcStringBindingComposeW, RpcServerUseProtseqEpW, RpcBindingInqAuthClientW, RpcBindingServerFromClient, RpcBindingToStringBindingW, RpcStringFreeW, RpcStringBindingParseW, RpcImpersonateClient, RpcRevertToSelf, NdrServerCall2, RpcBindingSetAuthInfoExW, RpcCancelThread, RpcMgmtSetCancelTimeout, NdrClientCall2
sftcore.dll
SWGetAppList, SWRegisterEventHandler, SWUnregisterEventHandler, SWForceDismountFilesystem, SWResetLog, SWIsOperationAllowed, SWCleanupForUser, SWInitForUser, SWInitInternals, SWInitialize, SWCleanupInternals, SWCleanup, SWUnhandledExceptionCleanup, SWNotifyClientShutdown, SWCleanupForPid, SWGetLogParams, SWSetLogParams, SWGetConnectType, SWSetConnectType, SWGetProxy, SWSetProxy, SWLogMessage, SWGetVersion, SWGetCacheProperties, SWSetCacheProperties, SWGetAssociationList, SWDeleteAssociation, SWEditAssociation, SWGetAssociation, SWCreateAssociation, SWDeleteAction, SWEditAction, SWGetActionList, SWGetDefaultAction, SWAddAction, SWDeleteType, SWEditType, SWGetType, SWGetTypeList, SWCreateType, SWDeleteServer, SWRefreshServerInternal, SWRefreshServer, SWGetServerList, SWGetServer, SWEditServer, SWCreateServer, SWSetImportSearchPath, SWGetImportSearchPath, SWDccEventNotification, SWSetDisconnectSettings, SWGetDisconnectSettings, SWGetDataDirectory, SWSetDataDirectory, SWSetPermissions, SWGetPermissions, SWIsOperationAllowedOnObj, SWRepairPackage, SWUnpublishPackage, SWPublishPackage, SWLockPackage, SWGetPackageInfo2, SWGetPackageList2, SWEditPackage, SWDeletePackage, SWUnloadPackage, SWCreateApp, SWLaunch, SWShutdown, SWLoad, SWImport, SWLoadPackageRange, SWLoadPackage, SWCreatePackage, SWGetAppInfoList, SWIsAppPublished, SWPublishShortcut, SWEditApp, SWGetAppInfo, SWGetAppStatistics, SWSetOnlineStatus, SWGetOnlineStatus, SWGetAppHandle, SWHandleDisconnect, SWClearSettings, SWDeleteApp, SWCloseHandle, SWUnload
shell32.dll
SHGetSpecialFolderPathW, SHChangeNotify
user32.dll
PostThreadMessageW, DispatchMessageW, GetMessageW
userenv.dll
UnloadUserProfile

sftlist.exe

Microsoft Application Virtualization by Microsoft Corporation (Signed)

Remove sftlist.exe
Version:   4.6.2.22610
MD5:   cb73bc422c07fb611f194da18d1e7f36
SHA1:   6661413c6f5b4afc39aab62f271ca597f1657ea2
SHA256:   f30c4d887d18fc32151c8a30fafd17e36bf8ec542d81cb94c286f448a640cac9

What is sftlist.exe?

Microsoft Application Virtualization (MS App-V) platform allows applications to be deployed in real-time to any client from a virtual application server. It removes the need for local installation of the applications. Instead, only the App-V client needs to be installed on the client machines. All application data is permanently stored on the virtual application server.

Overview

sftlist.exe runs as a service under the name sftlist (sftlist) with extensive SYSTEM privileges (full administrator access). The file is digitally signed by Microsoft Corporation.

DetailsDetails

File name:sftlist.exe
Publisher:Microsoft Corporation
Product name:Microsoft Application Virtualization
Description:Microsoft Application Virtualization Client Service
Typical file path:C:\Program Files\microsoft application virtualization client\sftlist.exe
File version:4.6.2.22610
Size:496.85 KB (508,776 bytes)
Certificate
Issued to:Microsoft Corporation
Authority (CA):Microsoft Corporation
Effective date:Monday, December 7, 2009
Expiration date:Monday, March 7, 2011
Digital DNA
PE subsystem:Windows GUI
Entropy:6.330596
File packed:No
Code language:Microsoft Visual C++ 9.0
.NET CLR:No
More details

BehaviorsBehaviors

Services
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
  • sftlist
  • 'sftlist' (Application Virtualization Client)

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00164732%
0.028634%
Kernel CPU:0.00054077%
0.013761%
User CPU:0.00110655%
0.014873%
Kernel CPU time:8,865,496 ms/min
100,923,805ms/min
CPU cycles:834,414/sec
17,470,203/sec
Context switches:2/sec
284/sec
Memory
Private memory:7.03 MB
21.59 MB
Private (maximum):11.96 MB
Private (minimum):5.82 MB
Non-paged memory:7.03 MB
21.59 MB
Virtual memory:74.84 MB
140.96 MB
Virtual memory (peak):82.8 MB
169.69 MB
Working set:6.7 MB
18.61 MB
Working set (peak):18.57 MB
37.95 MB
Page faults:40,941/min
2,039/min
I/O
I/O read transfer:11.52 KB/sec
1.02 MB/min
I/O read operations:1/sec
343/min
I/O write transfer:7.12 KB/sec
274.99 KB/min
I/O write operations:1/sec
227/min
I/O other transfer:1.52 KB/sec
448.09 KB/min
I/O other operations:34/sec
1,671/min
Resource allocations
Threads:15
12
Handles:441
600
GUI GDI count:4
103
GUI USER count:3
49

BehaviorsProcess properties

Integrety level:System
Platform:32-bit
Command line:"C:\Program Files\microsoft application virtualization client\sftlist.exe"
Owner:SYSTEM
Windows Service
Service name:sftlist
Display name:sftlist
Description:“Streams and manages applications.”
Type:Win32OwnProcess
Parent process:services.exe (Services and Controller app by Microsoft)

ResourcesThreads

Averages
 
sechost.dll
Total CPU:0.05256800%
0.272967%
Kernel CPU:0.04736293%
0.107585%
User CPU:0.00520507%
0.165382%
CPU cycles:823,062/sec
5,741,424/sec
Memory:100 KB
1.16 MB
ADVAPI32.dll
Total CPU:0.00984707%
Kernel CPU:0.00897584%
User CPU:0.00087123%
CPU cycles:203,068/sec
Memory:792 KB
sftlist.exe (main module)
Total CPU:0.00148313%
Kernel CPU:0.00109941%
User CPU:0.00038372%
CPU cycles:23,119/sec
Memory:504 KB
ntdll.dll
Total CPU:0.00147191%
Kernel CPU:0.00105930%
User CPU:0.00041261%
CPU cycles:36,436/sec
Memory:1.23 MB
MSVCR90.dll
Total CPU:0.00049370%
Kernel CPU:0.00042357%
User CPU:0.00007014%
CPU cycles:7,951/sec
Memory:652 KB
RPCRT4.dll
Total CPU:0.00042595%
Kernel CPU:0.00017038%
User CPU:0.00025557%
CPU cycles:8,057/sec
Memory:780 KB
sftfsi.dll
Total CPU:0.00015575%
Kernel CPU:0.00009830%
User CPU:0.00005745%
CPU cycles:23,513/sec
Memory:1.96 MB
SFTCORE.dll
Total CPU:0.00000962%
Kernel CPU:0.00000000%
User CPU:0.00000962%
CPU cycles:2/sec
Memory:2.36 MB

Common loaded modules

These are modules that are typiclaly loaded within the context of this process.

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Home Premium 89.02%
Windows 7 Home Basic 8.54%
Windows 7 Starter 2.44%

Distribution by countryDistribution by country

United States installs about 60.00% of Microsoft Application Virtualization.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Toshiba 26.45%
Dell 18.18%
Hewlett-Packard 17.36%
Sony 13.22%
Acer 10.74%
ASUS 4.96%
MSI 3.31%
Lenovo 3.31%
Samsung 1.65%
GIGABYTE 0.83%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE