Should I block it?

60%
60% of PCs block this file from running.
Possible reason:
Performance resource utilization

VersionsAdditional versions

8.1.30.1349 1.15%
8.1.10.1300 0.46%
8.1.0.1281 2.76%
8.1.0.1281 0.92%
8.1.0.1281 0.23%
8.1.0.1281 0.23%
8.1.0.1281 0.69%
8.1.0.1281 0.69%
8.1.0.1281 0.23%
8.1.0.1281 0.23%
8.1.0.1252 13.33%
8.1.0.1252 14.94%
8.1.0.1191 0.23%
8.0.10.1464 0.23%
8.0.10.1464 0.46%
8.0.4.1441 2.30%
8.0.4.1441 0.46%
8.0.3.1427 0.69%
8.0.3.1427 2.30%
8.0.3.1427 0.46%
8.0.2.1410 2.99%
8.0.2.1410 0.92%
8.0.2.1410 0.23%
8.0.1.1399 1.38%
8.0.1.1399 0.92%
View more

Relationships

Parent process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
GetAce, SetSecurityDescriptorGroup, IsValidSid, GetLengthSid, CopySid, SetSecurityDescriptorOwner, InitializeSecurityDescriptor, RegQueryValueExW, RegQueryValueExA, RegOpenKeyExA, RegCloseKey, LookupAccountSidW, ConvertSidToStringSidA, EqualSid, ControlService, DeleteService, CreateServiceA, OpenServiceA, ChangeServiceConfigA, ChangeServiceConfig2A, SetServiceStatus, StartServiceCtrlDispatcherA, RegisterServiceCtrlHandlerExA, RegQueryInfoKeyA, RegEnumKeyExA, RegCreateKeyExW, OpenProcessToken, OpenThreadToken, GetTokenInformation, LookupAccountNameA, AddAccessAllowedAce, InitializeAcl, RegSetValueExW, AllocateAndInitializeSid, CreateWellKnownSid, SetEntriesInAclA, RegSetKeySecurity, FreeSid, RegDeleteValueA, RegOpenKeyExW, RegDeleteValueW, RegDeleteKeyA, RegSetValueExA, RegCreateKeyExA, ReportEventA, DeregisterEventSource, RegisterEventSourceA, OpenSCManagerA, EnumServicesStatusExA, CloseServiceHandle, GetAclInformation, AddAce, SetSecurityDescriptorDacl, RegQueryInfoKeyW
crypt32.dll
CryptProtectData, CryptUnprotectData, CertFindCertificateInStore, CertGetNameStringA, CertOpenStore, CertFreeCertificateContext, CryptQueryObject, CryptMsgClose, CertCloseStore, CryptMsgGetParam, CertCompareCertificateName
iphlpapi.dll
NotifyAddrChange, GetIpNetTable, GetIpAddrTable, GetPerAdapterInfo, GetAdaptersInfo, GetExtendedTcpTable, GetNetworkParams, CancelIPChangeNotify
kernel32.dll
TlsFree, SetHandleCount, GetACP, VirtualFree, IsValidCodePage, SetStdHandle, GetStringTypeA, GetStringTypeW, HeapCreate, LCMapStringW, LCMapStringA, FindFirstFileW, GetDriveTypeW, ExitProcess, GetOEMCP, UnlockFile, WriteConsoleA, GetConsoleOutputCP, WriteConsoleW, SetEndOfFile, FlushFileBuffers, HeapSize, FreeEnvironmentStringsA, GetEnvironmentStrings, FreeEnvironmentStringsW, GetEnvironmentStringsW, GetFullPathNameA, GetFileInformationByHandle, PeekNamedPipe, InitializeCriticalSectionAndSpinCount, GetFullPathNameW, CreateFileW, LockFile, SetConsoleMode, ReadConsoleInputA, ExitThread, FindFirstFileA, GetDriveTypeA, FileTimeToLocalFileTime, FileTimeToSystemTime, FindClose, SetConsoleCtrlHandler, GetStartupInfoA, GetCurrentDirectoryA, VirtualQuery, GetSystemInfo, VirtualAlloc, VirtualProtect, GetConsoleMode, GetConsoleCP, SetFilePointer, GetTimeZoneInformation, GetDateFormatA, GetTimeFormatA, GetCPInfo, GetSystemTimeAsFileTime, HeapReAlloc, IsDebuggerPresent, SetUnhandledExceptionFilter, UnhandledExceptionFilter, TerminateProcess, RtlUnwind, GetUserDefaultLCID, GetLocaleInfoA, EnumSystemLocalesA, IsValidLocale, GetLocaleInfoW, CompareStringA, CompareStringW, SetEnvironmentVariableA, CreateFileA, ReleaseSemaphore, CreateSemaphoreA, TlsGetValue, DuplicateHandle, TlsSetValue, TlsAlloc, CreateMutexA, SetThreadPriority, ResumeThread, OutputDebugStringA, InterlockedExchange, FlushConsoleInputBuffer, GetVersionExA, GlobalMemoryStatus, GetCurrentProcessId, QueryPerformanceCounter, GetTickCount, GetStdHandle, GetFileType, GetVersion, OpenEventA, ResetEvent, WaitForMultipleObjects, OpenProcess, CreateThread, GetModuleHandleW, GetCurrentThreadId, GetCommandLineA, SetErrorMode, RaiseException, GetSystemDefaultLCID, IsDBCSLeadByte, lstrcmpiA, LoadLibraryExA, FindResourceA, LoadResource, SizeofResource, WideCharToMultiByte, lstrlenW, GetComputerNameA, GlobalAlloc, GlobalFree, LocalAlloc, lstrlenA, GetModuleFileNameA, SetEvent, GetSystemTime, GetCurrentThread, MultiByteToWideChar, GetProcessHeap, HeapAlloc, HeapFree, Sleep, CloseHandle, GetLastError, GetOverlappedResult, WaitForSingleObject, ReadFile, CreateEventA, WriteFile, DeviceIoControl, FormatMessageA, GetModuleHandleA, GetProcAddress, DeleteCriticalSection, EnterCriticalSection, LeaveCriticalSection, InitializeCriticalSection, InterlockedIncrement, InterlockedDecrement, ReleaseMutex, SetLastError, LocalFree, FreeLibrary, GetCurrentProcess, LoadLibraryA, SetDllDirectoryA, EncodePointer, DecodePointer, InterlockedCompareExchange, HeapSetInformation, GetStartupInfoW
msvcp100.dll
DllMain
msvcr100.dll
DllMain
ole32.dll
CoCreateInstance, CoUninitialize, CoSetProxyBlanket, CoInitializeEx, CoInitializeSecurity, CoTaskMemAlloc, CoTaskMemRealloc, StringFromGUID2, CoResumeClassObjects, CoRevokeClassObject, CoRegisterClassObject, CoSuspendClassObjects, CoRevertToSelf, CoImpersonateClient, CoTaskMemFree, CoAddRefServerProcess, CoReleaseServerProcess
rpcrt4.dll
UuidCreate, UuidToStringA, RpcStringFreeA
setupapi.dll
SetupDiDestroyDeviceInfoList, SetupDiGetDeviceInterfaceDetailA, SetupDiEnumDeviceInterfaces, SetupDiGetClassDevsA
shell32.dll
SHGetFolderPathA
statusstrings.dll
GetStatusString
user32.dll
GetProcessWindowStation, GetUserObjectInformationW, PostThreadMessageA, LoadStringA, CharNextW, MessageBoxA, CharUpperA, GetMessageA, TranslateMessage, DispatchMessageA, CharNextA, wsprintfA, UnregisterDeviceNotification, RegisterDeviceNotificationA, GetDesktopWindow
version.dll
GetFileVersionInfoA, GetFileVersionInfoSizeA, VerQueryValueA
winhttp.dll
WinHttpQueryDataAvailable, WinHttpCloseHandle, WinHttpSetOption, WinHttpDetectAutoProxyConfigUrl, WinHttpGetProxyForUrl, WinHttpSendRequest, WinHttpReceiveResponse, WinHttpQueryHeaders, WinHttpQueryAuthSchemes, WinHttpSetStatusCallback, WinHttpReadData, WinHttpAddRequestHeaders, WinHttpCrackUrl, WinHttpConnect, WinHttpOpenRequest, WinHttpSetCredentials, WinHttpOpen
wintrust.dll
WinVerifyTrust
ws2_32.dll
WSACreateEvent, getnameinfo

UNS.exe

Intel Management and Security Application User Notification Service by Intel Corporation (Signed)

Remove UNS.exe
Version:   8.0.0.1351
MD5:   875a3b86d821151c84a4dfd40309c72d
SHA1:   9f619bcb0226110927447effdd6a8a28d9ef6034
SHA256:   fb251a3180f829b086c007807b68d7918276fedb33618bb22c28a3dceafb751e

What is UNS.exe?

User Notification Service for the Common User Interface is part of Intels Common User Interface for chipsets with integrated graphics controllers which allows user to change different driver properties through Windows User Interface. Quick access to the control panel via a System Tray icon.

Overview

uns.exe runs as a service under the name Intel(R) Management and Security Application User Notification Service (UNS) with extensive SYSTEM privileges (full administrator access). It is installed with a couple of know programs including Intel(R) Management Engine Components published by Intel Corporation, Intel(R) Management Engine Components from Intel Corporation and Intel(R) Management Engine Components by Intel Corporation. The file is digitally signed by Intel Corporation which was issued by the VeriSign certificate authority (CA).

DetailsDetails

File name:uns.exe
Publisher:Intel Corporation
Product name:Intel(R) Management and Security Application User Notification Service
Description:User Notification Service
Typical file path:C:\Program Files\intel\intel(r) management engine components\uns\uns.exe
File version:8.0.0.1351
Size:355.27 KB (363,800 bytes)
Certificate
Issued to:Intel Corporation
Authority (CA):VeriSign
Expiration date:Saturday, April 23, 2011
Digital DNA
PE subsystem:Windows GUI
File packed:No
Code language:Microsoft Visual C++ 10.0
.NET CLR:No
More details

ResourcesPrograms

The following programs will install this file
Intel Corporation
10% remove
This program provides the Intel Management Engine Components Driver for supported notebooks with supported operating systems. The Intel management Components monitor the installed Intel hardware, such as chip sets, storage, and other components. They will notify you if there are problems, updated drivers, and other information about those components. These components installed by the computer manufacturer automatically during the OS in...

BehaviorsBehaviors

Services
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
  • 'UNS' (Intel(R) Management and Security Application User Notification Service)
  • UNS

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00006617%
0.028634%
Kernel CPU:0.00003755%
0.013761%
User CPU:0.00002862%
0.014873%
Kernel CPU time:203 ms/min
100,923,805ms/min
Memory
Private memory:4.85 MB
21.59 MB
Private (maximum):12.57 MB
Private (minimum):212 KB
Non-paged memory:4.85 MB
21.59 MB
Virtual memory:57.04 MB
140.96 MB
Virtual memory (peak):65.68 MB
169.69 MB
Working set:404 KB
18.61 MB
Working set (peak):12.6 MB
37.95 MB
Page faults:11,918/min
2,039/min
Resource allocations
Threads:7
12
Handles:340
600

BehaviorsProcess properties

Integrety level:Undefined
Platform:64-bit
Command line:"C:\Program Files\intel\intel(r) management engine components\uns\uns.exe"
Owner:SYSTEM
Windows Service
Service name:UNS
Display name:Intel(R) Management and Security Application User Notification Service
Description:“Intel(R) Management and Security Application User Notification Service - Updates the Windows Event Log with notifications of pre defined events received from the local Intel(R) Management and Security Application Device.”
Type:Win32OwnProcess
Parent process:services.exe (Services and Controller app by Microsoft)

ResourcesThreads

Averages
 
wow64.dll (Win32 Emulation on NT64 by Microsoft)
Total CPU:0.00035953%
0.272967%
Kernel CPU:0.00000580%
0.107585%
User CPU:0.00035373%
0.165382%
CPU cycles:9,623/sec
5,741,424/sec
Memory:252 KB
1.16 MB
UNS.exe (main module)
Total CPU:0.00004059%
Kernel CPU:0.00001740%
User CPU:0.00002320%
CPU cycles:1,039/sec
Memory:364 KB
ntdll.dll
Total CPU:0.00001229%
Kernel CPU:0.00000000%
User CPU:0.00001229%
CPU cycles:366/sec
Memory:1.66 MB

Common loaded modules

These are modules that are typiclaly loaded within the context of this process.

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Home Premium 32.00%
Windows 7 Ultimate 16.00%
Windows 8 14.50%
Windows 8.1 12.00%
Windows 8 Single Language 6.50%
Windows 7 Home Basic 5.00%
Windows 7 Professional 5.00%
Windows 8 Pro 2.50%
Windows 8.1 Single Language 1.50%
Microsoft Windows XP 1.50%
Windows 8.1 Pro 0.50%
Windows Vista Home Premium 0.50%
Windows 8.1 Pro with Media Center 0.50%
Windows 8 Enterprise 0.50%
Windows 7 Enterprise 0.50%
Windows 8 Pro with Media Center 0.50%
Windows 8.1 Pro Preview with Media Center 0.50%

Distribution by countryDistribution by country

United States installs about 35.50% of Intel(R) Management and Security Application User Notification Service.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
ASUS 20.00%
Dell 16.55%
Lenovo 13.10%
Sony 11.72%
Acer 11.03%
Hewlett-Packard 10.34%
Toshiba 8.28%
Samsung 2.41%
GIGABYTE 1.38%
Intel 1.38%
NEC 1.38%
Alienware 1.03%
Apple 0.69%
MSI 0.69%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE