Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

9.0.29480.0 1.63%
9.0.29327.0 1.36%
9.0.28223.0 2.71%
9.0.26297.0 0.54%
9.0.24951.0 0.81%
8.0.26038.0 1.36%
8.0.22298.0 8.67%
8.0.20935.0 2.17%
8.0.20202.0 1.63%
8.0.19617.0 4.88%
8.0.19045.0 3.79%
8.0.18930.0 1.90%
8.0.18051.0 4.88%
8.0.17396.0 8.40%
8.0.17292.0 5.69%
8.0.16642.0 15.99%
8.0.16447.0 4.34%
8.0.15959.0 0.27%
7.0.17271.0 1.63%
7.0.15723.0 6.50%
7.0.14563.0 5.42%
7.0.14484.0 1.08%
7.0.13989.0 4.88%
7.0.12979.0 4.34%
7.0.12799.0 0.54%
View more

Relationships

Parent process
Child processes
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
DeleteService, RegDeleteKeyW, RegDeleteValueW, RegEnumKeyExW, RegQueryInfoKeyW, RevertToSelf, SetSecurityDescriptorDacl, InitializeSecurityDescriptor, SetNamedSecurityInfoW, DeleteAce, GetAce, GetNamedSecurityInfoW, SetEntriesInAclW, CloseServiceHandle, StartServiceW, QueryServiceStatus, ControlService, CreateProcessAsUserW, FreeSid, EqualSid, LookupAccountSidW, RegCloseKey, RegCreateKeyExW, DeregisterEventSource, ReportEventW, RegisterEventSourceW, SetServiceStatus, RegisterServiceCtrlHandlerExW, StartServiceCtrlDispatcherW, RegOpenKeyExW, RegSetValueExW, RegQueryValueExW, CryptGenRandom, CryptReleaseContext, CryptAcquireContextA, LsaLookupNames, LsaFreeMemory, LsaClose, ConvertSidToStringSidW, LsaOpenPolicy, GetUserNameW, RegFlushKey, ImpersonateLoggedOnUser, AllocateAndInitializeSid, GetSecurityInfo, SetSecurityInfo, RegCreateKeyW, InitiateSystemShutdownW, LogonUserW, RegOpenCurrentUser, OpenThreadToken, RegSetValueExA, LookupAccountNameW, ConvertStringSecurityDescriptorToSecurityDescriptorW
crypt32.dll
CertGetNameStringA, CertGetNameStringW, CryptVerifyMessageSignature, CertFreeCertificateContext, CryptHashCertificate
imagehlp.dll
ImageGetCertificateHeader, ImageGetCertificateData, ImageEnumerateCertificates
iphlpapi.dll
DeleteIPAddress, GetAdapterIndex, GetAdaptersInfo, SendARP, IpRenewAddress, FlushIpNetTable, GetBestInterface, GetIfEntry, GetIpAddrTable
kernel32.dll
DllMain, GetDriveTypeA, FindFirstFileA, LoadLibraryA, GetSystemDirectoryA, GetWindowsDirectoryA, GetModuleFileNameA, GetModuleHandleA, CompareStringA, FreeLibrary, InterlockedExchange, InterlockedIncrement, InterlockedExchangeAdd, InterlockedDecrement, SetLastError, SetConsoleCtrlHandler, Sleep, TlsFree, TlsAlloc, ExpandEnvironmentStringsA, GetThreadTimes, lstrlenA, SetEnvironmentVariableA, SetStdHandle, GetConsoleOutputCP, WriteConsoleA, CreateFileA, IsValidLocale, EnumSystemLocalesA, FlushFileBuffers, GetConsoleMode, GetConsoleCP, GetTimeZoneInformation, GetOEMCP, GetStartupInfoA, GetFileType, SetHandleCount, GetCommandLineW, GetCommandLineA, GetEnvironmentStrings, FreeEnvironmentStringsA, VirtualAlloc, VirtualFree, HeapCreate, HeapDestroy, HeapSize, GetStdHandle, ExitProcess, GetCurrentThreadId, GetLastError, GetFullPathNameA, GetCurrentDirectoryA, CreateSemaphoreA, GetStringTypeA, LCMapStringA, RtlUnwind, HeapReAlloc, GetDateFormatA, GetTimeFormatA, ExitThread, IsDebuggerPresent, UnhandledExceptionFilter, CreateWaitableTimerA, AreFileApisANSI, SetEndOfFile, FormatMessageA, GetThreadLocale, GetACP, GetVersionExA, FileTimeToLocalFileTime, SetUnhandledExceptionFilter, FileTimeToSystemTime, DeleteCriticalSection, CloseHandle, WaitForMultipleObjects, InitializeCriticalSectionAndSpinCount, GetCurrentProcessId, GetCurrentProcess, SetFilePointer, GetSystemTimeAsFileTime, WriteFile, GetTickCount, ReleaseMutex, SetWaitableTimer, GetFileSize, PostQueuedCompletionStatus, LeaveCriticalSection, WaitForSingleObject, SleepEx, SetEvent, EnterCriticalSection, CreateEventA, QueueUserAPC, InitializeCriticalSection, GetQueuedCompletionStatus, TerminateThread, LocalFree, OpenProcess, QueryPerformanceFrequency, FindClose, GetSystemDefaultLCID, GetUserDefaultLCID, GetLocaleInfoA, GetLocalTime, GetCurrentThread, QueryPerformanceCounter, DuplicateHandle, ReleaseSemaphore, InterlockedCompareExchange, TlsSetValue, TlsGetValue, OpenEventA, ResetEvent, HeapAlloc, GetProcessHeap, HeapFree, CreateIoCompletionPort, ReadFile, TerminateProcess, SizeofResource, LoadResource, RaiseException, CreateThread, ResumeThread, DeviceIoControl, SetThreadPriority, GetOverlappedResult, SystemTimeToFileTime, GetExitCodeThread, SetThreadAffinityMask, GetExitCodeProcess
mpr.dll
WNetCloseEnum, WNetEnumResourceW, WNetOpenEnumW
mswsock.dll
AcceptEx, GetAcceptExSockaddrs
netapi32.dll
NetApiBufferFree, NetWkstaGetInfo
ole32.dll
CoInitializeSecurity, CoTaskMemAlloc, StringFromGUID2, OleInitialize, OleUninitialize, CoTaskMemRealloc, CoCreateInstance, CoCreateGuid, CoTaskMemFree, CoRegisterClassObject, CoRevokeClassObject, ProgIDFromCLSID, CoUninitialize, CoInitializeEx, CoRevertToSelf, CoImpersonateClient
secur32.dll
GetUserNameExW
sensapi.dll
IsNetworkAlive
setupapi.dll
SetupDiDestroyDeviceInfoList, SetupDiEnumDeviceInfo, SetupDiGetClassDevsW, SetupDiGetDeviceRegistryPropertyW, SetupDiOpenDevRegKey
shell32.dll
SHGetPathFromIDListW, SHGetSpecialFolderLocation, ShellExecuteExW, SHGetMalloc, ShellExecuteW
user32.dll
MessageBoxW, GetMessageW, TranslateMessage, DispatchMessageW, MessageBoxA, PostThreadMessageW, CharNextW, DestroyWindow, SendMessageW, FindWindowW, PeekMessageW, MsgWaitForMultipleObjectsEx, ExitWindowsEx, UnregisterClassA, LoadStringA
userenv.dll
UnloadUserProfile, CreateEnvironmentBlock, LoadUserProfileW, DestroyEnvironmentBlock
wininet.dll
HttpSendRequestA, InternetErrorDlg, InternetQueryOptionW, InternetGoOnlineA, HttpOpenRequestA, HttpAddRequestHeadersA, HttpSendRequestExA, InternetWriteFile, HttpEndRequestA, InternetQueryDataAvailable, InternetReadFile, HttpQueryInfoW, InternetOpenW, InternetSetOptionW, InternetCloseHandle, InternetConnectW
winspool.drv
DeletePrinter, SetPrinterW, OpenPrinterW, GetPrinterW, ClosePrinter, AddPrinterW, SetJobW, EnumPrintersW
wintrust.dll
WinVerifyTrust, CryptCATCatalogInfoFromContext, CryptCATAdminEnumCatalogFromHash, CryptCATAdminCalcHashFromFileHandle, CryptCATAdminAcquireContext, CryptCATAdminReleaseCatalogContext, CryptCATAdminReleaseContext, WTHelperProvDataFromStateData, WTHelperGetProvSignerFromChain
ws2_32.dll
WSAResetEvent, WSADuplicateSocketW, WSACreateEvent, WSACloseEvent, WSAWaitForMultipleEvents, WSAEventSelect, WSASetEvent, WSARecv, WSARecvFrom, WSASocketW, WSASend, WSAAddressToStringA
wtsapi32.dll
WTSQuerySessionInformationW, WTSCloseServer, WTSEnumerateProcessesW, WTSFreeMemory, WTSEnumerateSessionsW

teamviewer_service.exe

TeamViewer by TeamViewer (Signed)

Remove teamviewer_service.exe
Version:   8.0.22298.0
MD5:   f67c21cc4195f6afc447418fe163e156
SHA1:   2bddb7407c88a5775abdae84352b96b0d139390e
SHA256:   01d245952c1af2b365dba6c36afe0ffb2332480b6a1d7d4b43a0de4fb7535b0b

What is teamviewer_service.exe?

TeamViewer Remote Control Application for TeamViewer is a proprietary computer software package for remote control, desktop sharing, online meetings, web conferencing and file transfer between computers. While the main focus of the application is remote control of computers, collaboration and presentation features are included. TeamViewer may be installed with an installation procedure, although the 'Quick Support' version will run without installation.

About teamviewer_service.exe (from TeamViewer)

Control computers remotely via the internet, as if you were sitting right in front of them. Whether you are providing spontaneous support, administering servers or working from your home office, TeamV

DetailsDetails

File name:teamviewer_service.exe
Publisher:TeamViewer GmbH
Product name:TeamViewer
Description:TeamViewer Remote Control Application
Typical file path:C:\Program Files\teamviewer\version6\teamviewer_service.exe
Original name:TeamViewer.exe
File version:8.0.22298.0
Product version:8.0
Size:4.85 MB (5,087,584 bytes)
Build date:10/1/2013 10:13 PM
Certificate
Issued to:TeamViewer
Authority (CA):VeriSign
Effective date:Sunday, August 7, 2011
Expiration date:Thursday, August 7, 2014
Digital DNA
Entropy:6.404721
File packed:No
.NET CLR:No
More details

ResourcesPrograms

The following programs will install this file
Piriform
3% remove
CCleaner developed by Piriform, is a utility program used to clean potentially unwanted files and invalid Windows Registry entries from a computer. CCleaner supports the cleaning of temporary or potentially unwanted files left by certain programs along with browsing history, cookies, recycle bin, memory dumps, file fragments, log files, system caches, application data, autocomplete form history, and various other data. The program also ...
Rainmeter
1% remove
Rainmeter is a desktop customization tool for Windows.
TeamViewer GmbH
10% remove
TeamViewer 8 is a proprietary computer software package for remote control, desktop sharing, online meetings, web conferencing and file transfer between computers. It is possible to access a machine running TeamViewer with a web browser. While the main focus of the application is remote control of computers, collaboration and presentation features are included. TeamViewer uses one of the servers of TeamViewer.com to start the connectio...

BehaviorsBehaviors

Windows firewall allowed programs
Exceptions allow programs to access to the Internet through an outbound connections
  • Firewall exception for 'C:\Program Files\TeamViewer\Version8\TeamViewer_Service.exe'
  • Firewall exception for 'C:\Programas\TeamViewer\Version8\TeamViewer_Service.exe'
  • Firewall exception for 'C:\Program Files\TeamViewer\Version8\TeamViewer_Service.exe'
  • Firewall exception for 'C:\Program Files\TeamViewer\Version7\TeamViewer_Service.exe'
  • Firewall exception for 'C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe'
Services
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
  • TeamViewer6
  • 'TeamViewer9' (TeamViewer 9)
  • 'TeamViewer6' (TeamViewer 6)
  • 'TeamViewer8' (TeamViewer 8)
  • 'TeamViewer7' (TeamViewer 7)
Network connections
Access through an approved Windows firewall exception
  • [TCP] 217.195.49.130:5938
  • [TCP] server21501.teamviewer.com (217.146.21.2:5938)
  • [TCP] server10010.teamviewer.com (87.230.58.23:5938)
  • [TCP] server6202.teamviewer.com (185.8.105.25:5938)
  • [TCP] server5301.teamviewer.com (85.25.99.76:5938)
  • [TCP] server10007.teamviewer.com (87.230.58.14:5938)
  • [TCP] server10002.teamviewer.com (87.230.83.13:5938)
  • [UDP] listens on port 52667

  • ResourcesResource utilization

    (Note: statistics below are averages based on a minimum sample size of 200 unique participants)
    Averages
     
    CPU
    Total CPU:0.00073651%
    0.028634%
    Kernel CPU:0.00040289%
    0.013761%
    User CPU:0.00033362%
    0.014873%
    Kernel CPU time:58,750,327 ms/min
    100,923,805ms/min
    CPU cycles:389,533/sec
    17,470,203/sec
    Context switches:12/sec
    284/sec
    Memory
    Private memory:6.28 MB
    21.59 MB
    Private (maximum):13.98 MB
    Private (minimum):11.01 MB
    Non-paged memory:6.28 MB
    21.59 MB
    Virtual memory:92.53 MB
    140.96 MB
    Virtual memory (peak):104.88 MB
    169.69 MB
    Working set:12.34 MB
    18.61 MB
    Working set (peak):21.59 MB
    37.95 MB
    Page faults:15,302/min
    2,039/min
    I/O
    I/O read transfer:16 Bytes/sec
    1.02 MB/min
    I/O read operations:1/sec
    343/min
    I/O write transfer:7.35 KB/sec
    274.99 KB/min
    I/O write operations:2/sec
    227/min
    I/O other transfer:181 Bytes/sec
    448.09 KB/min
    I/O other operations:7/sec
    1,671/min
    Resource allocations
    Threads:9
    12
    Handles:363
    600

    BehaviorsProcess properties

    Integrety level:System
    Platform:64-bit
    Command line:"C:\Program Files\teamviewer\version8\teamviewer_service.exe"
    Owner:SYSTEM
    Windows Service
    Service name:TeamViewer9
    Display name:TeamViewer6
    Description:“TeamViewer Remote Software”
    Type:Win32OwnProcess
    Parent process:services.exe (Services and Controller app by Microsoft)

    ResourcesThreads

    Averages
     
    wow64cpu.dll
    Total CPU:0.00402006%
    0.272967%
    Kernel CPU:0.00121360%
    0.107585%
    User CPU:0.00280646%
    0.165382%
    CPU cycles:50,727/sec
    5,741,424/sec
    Memory:32 KB
    1.16 MB
    ADVAPI32.dll
    Total CPU:0.00091964%
    Kernel CPU:0.00067565%
    User CPU:0.00024399%
    CPU cycles:18,842/sec
    Memory:792 KB
    TeamViewer_Service.exe (main module)
    Total CPU:0.00071547%
    Kernel CPU:0.00026903%
    User CPU:0.00044644%
    CPU cycles:139,212/sec
    Context switches:1/sec
    Memory:4.9 MB
    wow64.dll
    Total CPU:0.00055537%
    Kernel CPU:0.00018763%
    User CPU:0.00036773%
    CPU cycles:11,494/sec
    Memory:252 KB

    Common loaded modules

    These are modules that are typiclaly loaded within the context of this process.

    Windows OS versionsDistribution by Windows OS

    OS versiondistribution
    Windows 7 Ultimate 32.50%
    Windows 7 Home Premium 27.00%
    Microsoft Windows XP 11.50%
    Windows 7 Professional 11.00%
    Windows 8 Pro 5.00%
    Windows Vista Home Premium 2.50%
    Windows 8.1 Pro 2.00%
    Windows 8 2.00%
    Windows 8.1 1.50%
    Windows 7 Home Basic 1.50%
    Windows Vista Home Basic 1.00%
    Windows 8 Single Language 1.00%
    Windows 8 Enterprise 1.00%
    Windows 8.1 Pro with Media Center 0.50%

    Distribution by countryDistribution by country

    United States installs about 24.00% of TeamViewer.

    OEM distributionDistribution by PC manufacturer

    PC Manufacturerdistribution
    Dell 20.69%
    Hewlett-Packard 15.33%
    Acer 12.26%
    ASUS 10.73%
    Toshiba 9.96%
    Sony 9.20%
    Intel 6.90%
    Lenovo 5.36%
    GIGABYTE 4.21%
    Apple 1.53%
    American Megatrends 1.53%
    Sahara 1.15%
    Samsung 0.77%
    Alienware 0.38%
    Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

    Download it for FREE