Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

6.3.9431.0 (winmain_bluemp.130615-1214) 1.27%
6.3.9431.0 (winmain_bluemp.130615-1214) 0.64%
17.0.2015.0811 26.75%
17.0.2011.0627 5.73%
17.0.2010.0530 9.55%
17.0.2006.0314 18.47%
17.0.2003.1112 35.67%
16.4.6013.0910 1.91%

Relationships

Parent process
Related files

PE structurePE file structure

Show functions
Import table
api-ms-win-core-com-l1-1-1.dll
RoGetAgileReference, CoCreateFreeThreadedMarshaler, CoUninitialize, CoRevokeClassObject, PropVariantClear, CoInitializeSecurity, CoTaskMemFree, CoInitializeEx, CoTaskMemAlloc, CoTaskMemRealloc, CoGetMalloc, StringFromGUID2, CoCreateGuid, CoResumeClassObjects, CoCreateInstance, CoRegisterClassObject
api-ms-win-core-datetime-l1-1-1.dll
GetDateFormatW
api-ms-win-core-debug-l1-1-1.dll
OutputDebugStringA, DebugBreak
api-ms-win-core-errorhandling-l1-1-1.dll
UnhandledExceptionFilter, SetErrorMode, RaiseException, GetLastError, SetUnhandledExceptionFilter, SetLastError
api-ms-win-core-file-l1-2-1.dll
FindFirstFileW, GetFullPathNameW, GetFileAttributesW, FindNextFileW, SetFileInformationByHandle, FindClose, GetFileSizeEx, GetDiskFreeSpaceExW, GetVolumeInformationW, DeleteFileW, GetDriveTypeW, CreateFileW, GetLogicalDrives, ReadFile, GetVolumePathNameW, SetFileTime, FindFirstFileExW, SetFilePointerEx, SetFileAttributesW
api-ms-win-core-file-l2-1-1.dll
GetFileInformationByHandleEx
api-ms-win-core-handle-l1-1-0.dll
CloseHandle, DuplicateHandle
api-ms-win-core-io-l1-1-1.dll
DeviceIoControl
api-ms-win-core-libraryloader-l1-1-1.dll
FindResourceExW, LoadResource, SizeofResource, GetProcAddress, FreeLibrary, LoadLibraryExW, FindStringOrdinal, GetModuleFileNameW, GetModuleHandleW, GetModuleHandleA
api-ms-win-core-localization-l1-2-1.dll
FormatMessageW, GetLocaleInfoW
api-ms-win-core-path-l1-1-0.dll
PathCchCanonicalizeEx, PathCchStripPrefix, PathCchSkipRoot
api-ms-win-core-processenvironment-l1-2-0.dll
GetCommandLineW
api-ms-win-core-processthreads-l1-1-2.dll
GetCurrentProcess, TerminateProcess, OpenProcessToken, CreateProcessW, OpenProcess, GetCurrentProcessId, GetStartupInfoW, GetCurrentThreadId
api-ms-win-core-profile-l1-1-0.dll
QueryPerformanceCounter
api-ms-win-core-registry-l1-1-0.dll
RegGetValueW, RegQueryInfoKeyW, RegNotifyChangeKeyValue, RegEnumKeyExW, RegOpenKeyExW, RegCloseKey, RegSetValueExW, RegDeleteValueW, RegCreateKeyExW, RegEnumValueW
api-ms-win-core-string-l1-1-0.dll
CompareStringOrdinal, GetStringTypeW, WideCharToMultiByte, MultiByteToWideChar
api-ms-win-core-synch-l1-2-0.dll
ReleaseMutex, EnterCriticalSection, CreateMutexW, OpenEventW, Sleep, InitializeCriticalSection, OpenMutexW, AcquireSRWLockShared, ResetEvent, WaitForSingleObject, AcquireSRWLockExclusive, CreateEventW, LeaveCriticalSection, SetEvent, ReleaseSRWLockExclusive, DeleteCriticalSection, ReleaseSRWLockShared
api-ms-win-core-sysinfo-l1-2-1.dll
GetSystemTimeAsFileTime, GetTickCount64, GetComputerNameExW, GetSystemTime, GetProductInfo, GetVersionExW, GetLocalTime, GetTickCount
api-ms-win-core-timezone-l1-1-0.dll
GetTimeZoneInformation, SystemTimeToTzSpecificLocalTime
api-ms-win-core-util-l1-1-0.dll
DecodePointer, EncodePointer
api-ms-win-core-version-l1-1-0.dll
VerQueryValueW
api-ms-win-core-winrt-error-l1-1-1.dll
RoOriginateErrorW, RoOriginateError
api-ms-win-core-winrt-l1-1-0.dll
RoRevokeActivationFactories, RoRegisterActivationFactories
api-ms-win-core-winrt-string-l1-1-0.dll
WindowsCreateString, WindowsGetStringRawBuffer, WindowsStringHasEmbeddedNull, WindowsDeleteString, WindowsIsStringEmpty
api-ms-win-eventing-classicprovider-l1-1-0.dll
TraceEvent
api-ms-win-eventing-controller-l1-1-0.dll
EnableTraceEx2, ControlTraceW, StartTraceW
api-ms-win-eventing-provider-l1-1-0.dll
EventWrite
api-ms-win-security-base-l1-2-0.dll
GetTokenInformation, CheckTokenMembership, CreateWellKnownSid
api-ms-win-shcore-obsolete-l1-1-0.dll
CommandLineToArgvW
api-ms-win-shcore-registry-l1-1-1.dll
SHDeleteValueW, SHSetValueW
api-ms-win-shcore-stream-l1-1-0.dll
SHCreateStreamOnFileW, SHCreateStreamOnFileEx
dwmapi.dll
DwmIsCompositionEnabled, DwmSetWindowAttribute
kernel32.dll
FreeLibrary, GetProcAddress, LoadLibraryW, SetDllDirectoryW, CloseHandle, WriteConsoleW, GetCommandLineW, EncodePointer, DecodePointer, RaiseException, RtlUnwind, GetLastError, SetLastError, FlsAlloc, FlsGetValue, FlsSetValue, FlsFree, InterlockedIncrement, InterlockedDecrement, GetCurrentThreadId, ExitProcess, GetModuleHandleExW, MultiByteToWideChar, GetStdHandle, WriteFile, GetModuleFileNameW, GetProcessHeap, GetFileType, InitializeCriticalSectionAndSpinCount, DeleteCriticalSection, InitOnceExecuteOnce, GetStartupInfoW, QueryPerformanceCounter, GetSystemTimeAsFileTime, GetTickCount64, GetEnvironmentStringsW, FreeEnvironmentStringsW, UnhandledExceptionFilter, SetUnhandledExceptionFilter, GetCurrentProcess, TerminateProcess, GetModuleHandleW, IsProcessorFeaturePresent, HeapAlloc, HeapFree, HeapSize, Sleep, IsDebuggerPresent, EnterCriticalSection, LeaveCriticalSection, IsValidCodePage, GetACP, GetOEMCP, GetCPInfo, LoadLibraryExW, OutputDebugStringW, WideCharToMultiByte, HeapReAlloc, LCMapStringEx, GetStringTypeW, FlushFileBuffers, GetConsoleCP, GetConsoleMode, SetStdHandle, SetFilePointerEx, CreateFileW, CopyFileW, RaiseFailFastException, LocalFree, MoveFileW, WaitForMultipleObjects, WerUnregisterFile, LCIDToLocaleName, WerRegisterFile, lstrcmpiW
msvcrt.dll
DllMain
ntdll.dll
EtwGetTraceLoggerHandle, NtCreateFile, RtlNtStatusToDosError, RtlInitUnicodeString, EtwUnregisterTraceGuids, EtwRegisterTraceGuidsW, EtwGetTraceEnableFlags, EtwGetTraceEnableLevel, EtwTraceMessage
ole32.dll
CoGetObject, CoAllowSetForegroundWindow, CoInitialize, CreateBindCtx
propsys.dll
PSGetPropertyKeyFromName, PropVariantToStringVectorAlloc
rpcrt4.dll
UuidToStringW, RpcStringFreeW
shell32.dll
SHCreateItemFromParsingName, SHSetKnownFolderPath, SHBindToParent, SHGetDataFromIDListW, SHGetKnownFolderPath, SHGetFolderPathAndSubDirW, SHGetFolderPathW, Shell_NotifyIconW, ShellExecuteW, SHFileOperationW, SHGetSpecialFolderPathW, SHCreateDirectoryExW, SHChangeNotify, SHBrowseForFolderW, SHGetPathFromIDListW, SHAppBarMessage, SHGetKnownFolderItem, SHParseDisplayName
shlwapi.dll
SHGetValueW, PathRemoveExtensionW, SHRegGetUSValueW, SHRegGetBoolUSValueW, SHRegCreateUSKeyW, SHRegCloseUSKey, SHRegSetUSValueW, PathFileExistsW, AssocCreate, UrlEscapeW, PathFindFileNameW, SHQueryValueExW, StrStrW, PathIsDirectoryW, PathRemoveFileSpecW
sspicli.dll
GetUserNameExW
user32.dll
MessageBoxW, AdjustWindowRectEx, NotifyWinEvent, SetWindowPos, MsgWaitForMultipleObjects, CharNextW, UnregisterClassA, AllowSetForegroundWindow, SetFocus, GetLastActivePopup, SystemParametersInfoW, GetProcessDefaultLayout, UnhookWindowsHookEx, SetWindowsHookExW, GetIconInfo, GetWindowRect, TrackPopupMenu, GetDoubleClickTime, KillTimer, SetTimer, SetMenuDefaultItem, EnableMenuItem, GetMenuStringW, GetMenuItemCount, RemoveMenu, DeleteMenu, AppendMenuW, ModifyMenuW, EndDialog, SetForegroundWindow, FindWindowW, ShowWindow, SendMessageW, PeekMessageW, PostThreadMessageW, GetWindowThreadProcessId, PostMessageW, GetWindowLongW, PostQuitMessage, SetWindowLongW, CreateWindowExW, RegisterClassExW, UnregisterClassW, GetClassInfoExW, IsWindow, DispatchMessageW, TranslateMessage, GetMessageW, DestroyWindow, GetSubMenu, DefWindowProcW
version.dll
GetFileVersionInfoSizeW, GetFileVersionInfoW

SkyDrive.exe

Microsoft SkyDrive by Microsoft Corporation (Signed)

Remove SkyDrive.exe
Version:   16.4.6013.0910
MD5:   0d5ece83b01acee67f97eeed185773b1
SHA1:   5862280405e36de3e2cfae2f24037b8715d972f2
SHA256:   438f6428af31507f6df5ec5c58beeb015d136d1165fa3089fb674668a8a91b16

What is SkyDrive.exe?

SkyDrive is a file hosting service that allows users to upload and sync files to a cloud storage and then access them from a Web browser or their local device. It is part of the Windows Live range of online services and allows users to keep the files private, share them with contacts, or make the files public. Publicly shared files do not require a Microsoft account to access.

Overview

skydrive.exe executes as a process with the local user's privileges usually within the context of Windows Explorer. It is set to be run when the PC boots and the user logs into Windows (added to the Run registry key for the current user). The file is digitally signed by Microsoft Corporation.

DetailsDetails

File name:skydrive.exe
Publisher:Microsoft Corporation
Product name:Microsoft SkyDrive
Typical file path:C:\users\user\appdata\local\microsoft\skydrive\skydrive.exe
File version:16.4.6013.0910
Size:232.96 KB (238,552 bytes)
Certificate
Issued to:Microsoft Corporation
Authority (CA):Microsoft Corporation
Effective date:Thursday, July 26, 2012
Expiration date:Saturday, October 26, 2013
Digital DNA
PE subsystem:Windows GUI
File packed:No
Code language:Microsoft Visual C++
.NET CLR:No
More details

BehaviorsBehaviors

Startup files (user) run
Runs under the registry key 'HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run'
  • 'SkyDrive' → "C:\users\user\appdata\Local\Microsoft\SkyDrive\SkyDrive.exe" /background
Scheduled tasks
  • The task 'Microsoft SkyDrive Auto Update Task-S-1-5-21-1318870350-1538431248-2977772109-1001' in the path '\Microsoft SkyDrive Auto Update Task-S-1-5-21-1318870350-1538431248-2977772109-1001'
  • The job 'Microsoft SkyDrive Auto Update Task-S-1-5-21-3203543148-2324073305-2790340789-1001' in the path '\Microsoft SkyDrive Auto Update Task-S-1-5-21-3203543148-2324073305-2790340789-1001'
Network connections
  • [TCP] db3wns2010702.wns.windows.com (157.56.124.146:443)

  • ResourcesResource utilization

    (Note: statistics below are averages based on a minimum sample size of 200 unique participants)
    Averages
     
    CPU
    Total CPU:0.00236717%
    0.028634%
    Kernel CPU:0.00147857%
    0.013761%
    User CPU:0.00088860%
    0.014873%
    Kernel CPU time:3,042,020 ms/min
    100,923,805ms/min
    Memory
    Private memory:6.82 MB
    21.59 MB
    Private (maximum):23.79 MB
    Private (minimum):23.38 MB
    Non-paged memory:6.82 MB
    21.59 MB
    Virtual memory:122.4 MB
    140.96 MB
    Virtual memory (peak):124.18 MB
    169.69 MB
    Working set:21.38 MB
    18.61 MB
    Working set (peak):22.05 MB
    37.95 MB
    Resource allocations
    Threads:31
    12
    Handles:568
    600
    GUI GDI count:65
    103
    GUI GDI peak:74
    142
    GUI USER count:36
    49
    GUI USER peak:39
    71

    BehaviorsProcess properties

    Integrety level:Medium
    Platform:32-bit
    Command line:"C:\users\user\appdata\local\microsoft\skydrive\skydrive.exe" /background
    Owner:User
    Parent process:explorer.exe (Windows Explorer by Microsoft Corporation)

    Windows OS versionsDistribution by Windows OS

    OS versiondistribution
    Windows 7 Home Premium 28.66%
    Windows 8 Pro 15.92%
    Windows 8 14.65%
    Windows 8 Pro with Media Center 12.10%
    Windows 7 Ultimate 10.83%
    Windows 8.1 3.18%
    Windows Vista Home Premium 3.18%
    Windows 8 Enterprise 3.18%
    Windows 7 Professional 2.55%
    Windows 8.1 Pro Preview 1.27%
    Windows 7 Home Premium N 1.27%
    Windows 8 Pro N 1.27%
    Windows Server 2012 Standard Evaluation 1.27%
    Windows 8.1 Pro Preview with Media Center 0.64%

    Distribution by countryDistribution by country

    United States installs about 57.96% of Microsoft SkyDrive.

    OEM distributionDistribution by PC manufacturer

    PC Manufacturerdistribution
    Hewlett-Packard 25.81%
    ASUS 20.65%
    Dell 15.48%
    Toshiba 14.19%
    Sony 9.03%
    Acer 3.87%
    Lenovo 3.87%
    Intel 2.58%
    Samsung 1.94%
    GIGABYTE 1.29%
    Alienware 1.29%
    Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

    Download it for FREE