Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

6.3.9600.16384 (winblue_rtm.130821-1623) 19.23%
6.3.9600.16384 (winblue_rtm.130821-1623) 11.54%
6.3.9431.0 (winmain_bluemp.130615-1214) 3.85%
6.2.9200.16384 (win8_rtm.120725-1247) 42.31%
6.2.9200.16384 (win8_rtm.120725-1247) 7.69%
6.2.9200.16384 (win8_rtm.120725-1247) 3.85%
6.2.9200.16384 (win8_rtm.120725-1247) 3.85%
6.2.8400.0 (winmain_win8rc.120518-1423) 7.69%

Relationships

Parent process
Related files

PE structurePE file structure

Show functions
Import table
api-ms-win-appmodel-identity-l1-1-0.dll
AppXGetPackageSid, AppXFreeMemory
api-ms-win-appmodel-state-l1-1-0.dll
GetSystemAppDataKey, OpenStateExplicit, CloseState
api-ms-win-core-com-l1-1-0.dll
StringFromCLSID, CLSIDFromString, CoTaskMemAlloc, CoTaskMemFree, CoGetMalloc, CoCreateInstance, CoCreateFreeThreadedMarshaler, CoTaskMemRealloc, CoUninitialize, StringFromGUID2, CoInitializeEx, CoGetApartmentType, CoMarshalInterThreadInterfaceInStream, CoReleaseMarshalData, CoGetInterfaceAndReleaseStream, CoWaitForMultipleHandles, CreateStreamOnHGlobal, PropVariantClear, PropVariantCopy, CoGetStdMarshalEx, CoSetProxyBlanket
api-ms-win-core-localization-private-l1-1-0.dll
NlsCheckPolicy
api-ms-win-core-path-l1-1-0.dll
PathCchCombine, PathCchAppend
api-ms-win-core-timezone-private-l1-1-0.dll
IsTimeZoneRedirectionEnabled
api-ms-win-core-winrt-registration-l1-1-0.dll
RoGetActivatableClassRegistration
dui70.dll
DllMain
duser.dll
SetWindowResizeFlag, SetGadgetFlags, SetGadgetOrder, AddLayeredRef, SetGadgetStyle, DeleteHandle, CreateAction, InvalidateGadget, InvalidateLayeredDescendants, ChangeCurrentAnimationScenario, ReleaseLayeredRef, InitGadgets, DUserPostEvent, SetTransitionVisualProperties, GadgetTransCompositionChanged, SetHardwareDeviceUsage
gdi32.dll
GetDeviceCaps, DeleteObject, SetStretchBltMode, SetDIBitsToDevice, StretchDIBits, GetObjectW, CreateDIBSection
kernel32.dll
CreateThreadpoolWait, SetThreadpoolWait, WaitForThreadpoolWaitCallbacks, CloseThreadpoolWait, GetLocaleInfoW, GetSystemDefaultLCID, InitializeCriticalSectionEx, LCMapStringW, GetSystemPreferredUILanguages, ResolveLocaleName, CloseThreadpoolWork, SubmitThreadpoolWork, CreateThreadpoolWork, GetComputerNameW, ResetEvent, ResolveDelayLoadedAPI, DelayLoadFailureHook, DeleteFileW, GlobalFree, GlobalUnlock, GlobalAlloc, GlobalLock, FindStringOrdinal, GetSystemTime, GetDynamicTimeZoneInformation, GetTimeZoneInformation, SetDynamicTimeZoneInformation, CompareStringW, GetFirmwareType, GetTimeFormatW, GetNativeSystemInfo, GetDateFormatW, CompareStringEx, CreateMutexW, ReleaseMutex, DeleteCriticalSection, InitializeCriticalSection, LeaveCriticalSection, EnterCriticalSection, FormatMessageW, DuplicateHandle, OpenProcess, OpenEventW, TzSpecificLocalTimeToSystemTime, SystemTimeToTzSpecificLocalTime, FileTimeToSystemTime, RaiseException, LocaleNameToLCID, GetLocalTime, GetTimeFormatEx, GetLocaleInfoEx, SystemTimeToFileTime, CompareFileTime, QueryFullProcessImageNameW, WaitForMultipleObjectsEx, TlsGetValue, TlsFree, CreateSemaphoreW, TlsAlloc, OpenSemaphoreW, TlsSetValue, FreeLibraryAndExitThread, FreeLibraryWhenCallbackReturns, CallbackMayRunLong, CloseThreadpoolTimer, WaitForThreadpoolTimerCallbacks, SetThreadpoolTimer, CreateThreadpoolTimer, CreateThread, TrySubmitThreadpoolCallback, ReleaseSemaphore, LoadLibraryExW, SizeofResource, SetEvent, CreateEventExW, SetLastError, GetCurrentThread, MultiByteToWideChar, GetVersionExW, CreateFileW, ExpandEnvironmentStringsW, LoadLibraryW, GetModuleHandleW, FreeLibrary, QueueUserWorkItem, GetFileAttributesW, VirtualQuery, GetTickCount64, CloseHandle, CreateEventW, RegisterWaitForSingleObject, GetSystemDirectoryW, WaitForSingleObject, UnregisterWait, GetProcAddress, GetModuleHandleExW, AcquireSRWLockShared, InitializeSRWLock, GetLastError, ReleaseSRWLockShared, AcquireSRWLockExclusive, ReleaseSRWLockExclusive, HeapReAlloc, MulDiv, LockResource, CompareStringOrdinal, LoadResource, FindResourceExW, GetProcessHeap, HeapFree, InterlockedDecrement, InterlockedIncrement, HeapAlloc, TerminateProcess, GetCurrentProcess, UnhandledExceptionFilter, GetTickCount, GetSystemTimeAsFileTime, GetCurrentThreadId, GetCurrentProcessId, QueryPerformanceCounter, GetModuleHandleA, SetUnhandledExceptionFilter, GetStartupInfoW, InterlockedCompareExchange, InterlockedExchange, FindNLSString, SearchPathW, MapViewOfFile, UnmapViewOfFile, CreateFileMappingW, HeapSize, HeapDestroy, GetFileAttributesExW, GetThreadUILanguage, GetWindowsDirectoryW, GetDiskFreeSpaceExW, GetFileSize
kernelbase.dll
LocalReAlloc, Sleep, lstrlenA, LocalAlloc, lstrcmpA, StrChrW, StrDupW, lstrcmpiW, GetUserDefaultLocaleName, GetUserDefaultUILanguage, LocalFree
msvcrt.dll
DllMain
ntdll.dll
RtlInitUnicodeString, WinSqmIsOptedIn, NtAdjustPrivilegesToken, RtlDeleteResource, EtwGetTraceEnableLevel, EtwGetTraceEnableFlags, EtwEventRegister, EtwTraceMessage, EtwRegisterTraceGuidsW, EtwEventUnregister, EtwUnregisterTraceGuids, EtwGetTraceLoggerHandle, EtwEventWrite, WinSqmIncrementDWORD, NtQueryInformationToken, NtOpenProcessToken, NtClose, NtOpenThreadToken, WinSqmSetDWORD, WinSqmAddToStreamEx, RtlMapGenericMask, RtlNtStatusToDosError, RtlReleaseResource, RtlAcquireResourceExclusive, RtlInitializeResource
ole32.dll
CoGetObject, CreateBindCtx, CoRegisterInitializeSpy, CoRevokeInitializeSpy, CoAllowSetForegroundWindow, CoInitialize
powrprof.dll
PowerDeterminePlatformRole, PowerDeterminePlatformRoleEx, PowerReadACValue, PowerSetActiveScheme, GetPwrCapabilities, PowerWriteDCValueIndex, PowerGetActiveScheme, PowerSettingAccessCheck, PowerWriteACValueIndex, PowerReadDCValue
shcore.dll
SHStrDupW, IStream_Size, IUnknown_Set, GetScaleFactorForDevice, IUnknown_QueryService, SHGetThreadRef, SHCreateThreadRef, SHSetThreadRef, IStream_Copy, CreateStreamOverRandomAccessStream, SHCreateThread, SHCreateStreamOnFileEx, SHCreateMemStream, IStream_Reset, IsOS
shlwapi.dll
StrCmpW, StrStrIW, StrChrIW, PathMatchSpecExW, SHStrDupA, SHEnumKeyExW, SHEnumValueW, StrRChrW, SHSetValueW, PathFindFileNameW, PathFindExtensionW, SHDeleteKeyW, PathStripToRootW, StrFormatByteSizeEx
user32.dll
TranslateMessage, MapWindowPoints, UnregisterClassA, SetWindowCompositionAttribute, SendNotifyMessageW, SetClipboardData, OpenClipboard, EmptyClipboard, SetForegroundWindow, ActivateKeyboardLayout, GetKeyboardLayout, DestroyMenu, CloseClipboard, LoadImageW, ReleaseDC, GetDC, SetCursor, LoadCursorW, MsgWaitForMultipleObjectsEx, PeekMessageW, DispatchMessageW, GetMenuDefaultItem, GetMessageW, PostThreadMessageW, SystemParametersInfoW, GetAncestor, GetMonitorInfoW, MonitorFromPoint, CharUpperBuffW, CharUpperW, FindWindowW, GetSystemMetrics, SetDisplayAutoRotationPreferences, GetAutoRotationState, LoadStringW, DestroyWindow, SetTimer, PostQuitMessage, PostMessageW, KillTimer, GetFocus, GetClientRect, SetFocus, GetWindowLongW, GetWindowTextW, SetWindowLongW, SendMessageW, CallWindowProcW, DefWindowProcW, IsWindowEnabled, CreatePopupMenu, InflateRect, CharLowerBuffW, MonitorFromWindow
uxtheme.dll
GetThemeAnimationProperty, GetThemeAnimationTransform

systemsettings.exe

PC settings by Microsoft Corporation (Signed)

Remove systemsettings.exe
Version:   6.2.9200.16384 (win8_rtm.120725-1247)
MD5:   982595e74c19bddf7eb163720911c21e
SHA1:   b789d00b5501b945a1c2e58a367e49c69b13972f
SHA256:   5ff1b1ad00d9031a3b9bd0efb8609c145973e9bd88c31d8bdd0b77d7b5eeef57
This is a Windows system installed file with Windows File Protection (WFP) enabled.

Overview

systemsettings.exe executes as a process with the local user's privileges typically within the context of its parent svchost.exe (Host Process for Windows Services by Microsoft Corporation). The assembly utilizes the .NET run-time framework (which is required to be installed on the PC). The file is digitally signed by Microsoft Corporation. This version is installed on Windows 8 and is compiled as a 64 bit program.

DetailsDetails

File name:systemsettings.exe
Publisher:Microsoft Corporation
Product name:PC settings
Description:Microsoft® Windows® Operating System
Typical file path:C:\windows\immersivecontrolpanel\systemsettings.exe
Original name:SystemSettings.EXE.MUI
File version:6.2.9200.16384 (win8_rtm.120725-1247)
Product version:6.2.9200.16384
Size:909.81 KB (931,648 bytes)
Certificate
Issued to:Microsoft Corporation
Authority (CA):Microsoft Corporation
Effective date:Monday, April 9, 2012
Expiration date:Tuesday, July 9, 2013
Digital DNA
File packed:No
Code language:Microsoft Visual C# / Basic .NET
.NET CLR:Yes
.NET NGENed:No
More details

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00076678%
0.028634%
Kernel CPU:0.00040974%
0.013761%
User CPU:0.00035704%
0.014873%
Kernel CPU time:3,471 ms/min
100,923,805ms/min
CPU cycles:1,520,374/sec
17,470,203/sec
Memory
Private memory:17.51 MB
21.59 MB
Private (maximum):42.07 MB
Private (minimum):19.38 MB
Non-paged memory:17.51 MB
21.59 MB
Virtual memory:215.11 MB
140.96 MB
Virtual memory (peak):281.72 MB
169.69 MB
Working set:19.43 MB
18.61 MB
Working set (peak):43.75 MB
37.95 MB
Page faults:94,459/min
2,039/min
I/O
I/O read transfer:7.4 KB/sec
1.02 MB/min
I/O read operations:3/sec
343/min
I/O write transfer:1.34 KB/sec
274.99 KB/min
I/O write operations:1/sec
227/min
I/O other transfer:1.79 KB/sec
448.09 KB/min
I/O other operations:69/sec
1,671/min
Resource allocations
Threads:15
12
Handles:346
600
GUI GDI count:60
103
GUI GDI peak:72
142
GUI USER count:31
49
GUI USER peak:40
71

BehaviorsProcess properties

Integrety level:Medium
Platform:64-bit
Command line:"C:\windows\immersivecontrolpanel\systemsettings.exe" -servernamC:microsoft.windows.immersivecontrolpanel
Owner:User
Parent process:svchost.exe (Host Process for Windows Services by Microsoft Corporation)

ResourcesThreads

Averages
 
SHCORE.dll
Total CPU:0.01254240%
0.272967%
Kernel CPU:0.00678701%
0.107585%
User CPU:0.00575539%
0.165382%
CPU cycles:410,770/sec
5,741,424/sec
Memory:600 KB
1.16 MB
ntdll.dll
Total CPU:0.00071010%
Kernel CPU:0.00031033%
User CPU:0.00039978%
CPU cycles:18,886/sec
Memory:1.74 MB
SystemSettings.exe (main module)
Total CPU:0.00057008%
Kernel CPU:0.00054297%
User CPU:0.00002711%
CPU cycles:14,672/sec
Memory:920 KB
DUI70.dll
Total CPU:0.00005422%
Kernel CPU:0.00000000%
User CPU:0.00005422%
CPU cycles:283/sec
Memory:1.72 MB

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 8.1 42.86%
Windows 8 Release Preview 14.29%
Windows 8.1 N 7.14%
Windows 8.1 Pro 7.14%
Windows 8 Pro N 7.14%
Windows 8 7.14%
Windows 8.1 Pro Preview with Media Center 7.14%
Windows 8 Pro 7.14%

Distribution by countryDistribution by country

United States installs about 35.71% of PC settings.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Lenovo 42.86%
Hewlett-Packard 21.43%
Acer 14.29%
Sony 14.29%
Samsung 7.14%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE