Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

17.0.1.181 0.03%
16.0.3.51 14.21%
16.0.2.32 11.91%
16.0.1.18 10.86%
16.0.0.282 33.27%
15.0.6.14 17.51%
15.0.5.109 1.90%
15.0.4.53 4.83%
15.0.3.37 0.15%
15.0.2.72 1.53%
15.0.1.13 0.93%
15.0.0.198 0.40%
12.0.1.669 0.03%
12.0.1.652 0.15%
12.0.1.647 0.65%
12.0.1.633 0.28%
12.0.1.609 0.15%
12.0.1.600 0.03%
12.0.0.756 0.03%
12.0.0.614 0.03%
12.0.0.343 0.03%
12.0.0.301 0.23%
12.0.0.297 0.03%
11.0.0.674 0.13%
11.0.0.663 0.03%
View more

Relationships

Parent process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
RegEnumKeyExA, RegCreateKeyExA, RegQueryInfoKeyA, RegEnumKeyA, RegDeleteKeyA, RegQueryValueA, RegDeleteValueA, RegOpenKeyA, RegOpenKeyExA, RegQueryValueExA, RegCloseKey, RegCreateKeyA, RegSetValueA, RegSetValueExA, RegCreateKeyW, RegSetValueW, RegOpenKeyW, RegQueryValueW
gdi32.dll
GetDeviceCaps
kernel32.dll
GetEnvironmentVariableA, GetProcAddress, LoadLibraryA, GetModuleHandleA, GetTickCount, InterlockedIncrement, InterlockedDecrement, FreeLibrary, QueryPerformanceCounter, QueryPerformanceFrequency, GetVersionExA, CreateFileA, FindClose, CreateDirectoryA, MoveFileA, GetSystemInfo, GetVersion, InitializeCriticalSection, DeleteCriticalSection, EnterCriticalSection, LeaveCriticalSection, GetModuleHandleExA, GetCurrentThreadId, RaiseException, Sleep, FindFirstFileW, GetModuleFileNameA, GetCurrentProcessId, SizeofResource, LockResource, LoadResource, FindResourceA, FindResourceExA, SetCurrentDirectoryA, GetCurrentDirectoryA, IsBadWritePtr, VirtualProtect, IsBadReadPtr, SetUnhandledExceptionFilter, TerminateThread, CreateThread, GetCurrentProcess, WriteFile, GetThreadContext, VirtualQuery, OpenProcess, SetFilePointer, GlobalMemoryStatus, UnmapViewOfFile, MapViewOfFile, CreateFileMappingA, GetSystemTimeAsFileTime, IsDebuggerPresent, UnhandledExceptionFilter, TerminateProcess, GetStartupInfoA, InterlockedCompareExchange, InterlockedExchange, GetProcessHeap, HeapSize, HeapReAlloc, HeapFree, HeapAlloc, HeapDestroy, SetEnvironmentVariableA, GetCommandLineW, WideCharToMultiByte, GetLastError, DeleteFileA, CreateMutexA, ReleaseMutex, CloseHandle, OpenMutexA, WaitForSingleObject, SetErrorMode, SetEvent, ResetEvent, CreateEventA, FindResourceW, FindResourceExW, lstrlenW, MultiByteToWideChar, GetStartupInfoW, HeapSetInformation, DecodePointer, EncodePointer, InitializeCriticalSectionAndSpinCount, lstrlenA, ExitProcess, GlobalAddAtomA, GlobalDeleteAtom
msvcp100.dll
DllMain
msvcp71.dll
DllMain
msvcp90.dll
DllMain
msvcr100.dll
DllMain
msvcr71.dll
DllMain
msvcr90.dll
DllMain
ole32.dll
OleInitialize, OleUninitialize
pncrt.dll
strrchr, strstr, _controlfp, _except_handler3, __set_app_type, __p__fmode, __p__commode, _adjust_fdiv, _putenv, _initterm, __getmainargs, __setusermatherr, printf, _assert, sprintf, getenv, _purecall, memmove, strchr, exit, _acmdln, __dllonexit, _onexit, _exit, _XcptFilter
shell32.dll
SHGetFolderPathA, SHGetFolderPathW, SHCreateDirectoryExW, SHCreateDirectoryExA
shlwapi.dll
PathAddBackslashA, PathAppendA, PathAppendW, PathAddBackslashW
user32.dll
GetDC, ReleaseDC, RegisterWindowMessageA, RegisterClassExA, GetClassInfoExA, CreateWindowExA, DefWindowProcA, PostThreadMessageA, DestroyWindow, UnregisterClassA, CharPrevA, CharNextA, GetSystemMetrics, SetMessageQueue, EnumWindows, GetPropA, SendMessageA
version.dll
VerQueryValueA, GetFileVersionInfoA

REALPLAY.exe

RealPlayer (32-bit) by RealNetworks (Signed)

Remove REALPLAY.exe
Version:   6.0.8.122
MD5:   29de369633df2bd3b0bc4cd08a7d4eb2
SHA1:   09d65b3f61f80f284c30919ecb726701576075db
SHA256:   945c7f6029f3a53ebd2145865ebb679f2fe45582475da8e47f97cf713ef2d953

What is REALPLAY.exe?

RealPlayer, by RealNetworks, is a cross-platform software product primarily used for the playing of recorded media. The media player is compatible with numerous formats within the multimedia realm, including MP3, MPEG-4, QuickTime, Windows Media, and multiple versions (proprietary) of RealAudio and RealVideo formats. The software is powered by an underlying open source media engine called Helix.

About REALPLAY.exe (from RealNetworks)

Real brings you RealPlayer, the only solution you’ll need for managing all your music and videos. It’s the best free media player around for enjoying all types of entertainment! You can also transfer

DetailsDetails

File name:realplay.exe
Publisher:RealNetworks, Inc.
Product name:RealPlayer (32-bit)
Description:RealPlayer
Typical file path:C:\Program Files\real\realplayer\\realplay.exe
File version:6.0.8.122
Size:20 KB (20,480 bytes)
Build date:3/9/2000 6:01 PM
Certificate
Issued to:RealNetworks
Authority (CA):Thawte
Expiration date:Tuesday, August 16, 2011
Digital DNA
PE subsystem:Windows GUI
File packed:No
Code language:Microsoft Visual C++ 9.0
.NET CLR:No
More details

BehaviorsBehaviors

Autoplay handlers
Runs under the registry key 'SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers'
  • Handler name 'RPPlayMediaOnArrival'
  • Handler name 'RPPlayDVDMovieOnArrival'
  • Handler name 'RPPlayCDAudioOnArrival'
  • Handler name 'RPDVDBurningOnArrival'
  • Handler name 'RPCDBurningOnArrival'
Scheduled tasks
  • The job 'RealCreateProcessScheduledTask1247296S-1-5-21-3669111873-1580353433-1935662099-1000' runs on registration in the path '\RealCreateProcessScheduledTask1247296S-1-5-21-3669111873-1580353433-1935662099-1000'
  • The task '{E26C2663-BEC4-4819-8D2D-15D312F1158A}' runs on registration in the path '\{E26C2663-BEC4-4819-8D2D-15D312F1158A}'
  • The job '{CD1D82FD-6C85-4BFE-9A55-66B729011AF4}' runs on registration in the path '\{CD1D82FD-6C85-4BFE-9A55-66B729011AF4}'
  • The task '{2D57B953-5798-4027-AD32-FB96E7FE4673}' runs on registration in the path '\{2D57B953-5798-4027-AD32-FB96E7FE4673}'
  • The task '{CAF98FFB-8246-4180-8543-CE4146F5E2AE}' runs on registration in the path '\{CAF98FFB-8246-4180-8543-CE4146F5E2AE}'
  • The task '{B815BF93-A61B-4EED-9AF4-402B5BA00560}' runs on registration in the path '\{B815BF93-A61B-4EED-9AF4-402B5BA00560}'
  • The job '{B00723DD-88CF-42AB-9272-85A4ACE0FC8B}' runs on registration in the path '\{B00723DD-88CF-42AB-9272-85A4ACE0FC8B}'
  • The job '{A5338D06-1807-4121-B5B0-69E6C2003821}' runs on registration in the path '\{A5338D06-1807-4121-B5B0-69E6C2003821}'
  • The task '{0895B815-A511-4D0A-B56A-6CF1E9D08C22}' runs on registration in the path '\{0895B815-A511-4D0A-B56A-6CF1E9D08C22}'
  • The job 'RealCreateProcessScheduledTask11318824S-1-5-21-1478862715-1088129902-3265764659-1000' runs on registration in the path '\RealCreateProcessScheduledTask11318824S-1-5-21-1478862715-1088129902-3265764659-1000'
  • The task '{AA7C5070-83A8-43BC-AF3F-225C1AC0CA71}' runs on registration in the path '\{AA7C5070-83A8-43BC-AF3F-225C1AC0CA71}'
  • The job '{A894CEF0-8569-4479-8ED4-3BFB4E6FB838}' runs on registration in the path '\{A894CEF0-8569-4479-8ED4-3BFB4E6FB838}'
  • The task '{471C618E-7BF8-43F7-B4A1-C55025E0F927}' runs on registration in the path '\{471C618E-7BF8-43F7-B4A1-C55025E0F927}'
  • The task '{D9F1E4D5-8621-48ED-B124-22C258F32FF6}' runs on registration in the path '\{D9F1E4D5-8621-48ED-B124-22C258F32FF6}'
  • The job '{4D69A9E0-ABF9-4C34-BF05-F5F743F30350}' runs on registration in the path '\{4D69A9E0-ABF9-4C34-BF05-F5F743F30350}'
  • The task '{07044237-9D30-413D-B8FB-35F47E7B82FA}' runs on registration in the path '\{07044237-9D30-413D-B8FB-35F47E7B82FA}'
  • The job '{ED98A541-D106-4B62-A208-5156B2F9CF19}' runs on registration in the path '\{ED98A541-D106-4B62-A208-5156B2F9CF19}'
  • The task '{DA53DD74-4B9B-49E2-9B64-F6FC940B430A}' runs on registration in the path '\{DA53DD74-4B9B-49E2-9B64-F6FC940B430A}'
  • The job '{788FD8F4-7015-4AF1-85D0-A2BFB1568852}' runs on registration in the path '\{788FD8F4-7015-4AF1-85D0-A2BFB1568852}'
  • The job '{6A797CBD-F1A4-464C-A6C7-F6A33CAEFB18}' runs on registration in the path '\{6A797CBD-F1A4-464C-A6C7-F6A33CAEFB18}'
  • The job '{502CA4E6-C85D-4FC7-A5BC-AE15D4F9FDEC}' runs on registration in the path '\{502CA4E6-C85D-4FC7-A5BC-AE15D4F9FDEC}'
  • The task '{3864C674-88EC-438C-805E-B5940EC59B79}' runs on registration in the path '\{3864C674-88EC-438C-805E-B5940EC59B79}'
Windows firewall allowed programs
Exceptions allow programs to access to the Internet through an outbound connections
  • Firewall exception for 'C:\Program Files\Real\RealPlayer\realplay.exe'
Startup files (all users) run
Runs under the registry key 'HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run'
  • 'RealTray' → C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00037558%
0.028634%
Kernel CPU:0.00023127%
0.013761%
User CPU:0.00014431%
0.014873%
Kernel CPU time:4,209,438 ms/min
100,923,805ms/min
Memory
Private memory:7.62 MB
21.59 MB
Private (maximum):8.66 MB
Private (minimum):6.91 MB
Non-paged memory:7.62 MB
21.59 MB
Virtual memory:87.82 MB
140.96 MB
Virtual memory (peak):90.76 MB
169.69 MB
Working set:7.76 MB
18.61 MB
Working set (peak):8.83 MB
37.95 MB
Resource allocations
Threads:9
12
Handles:166
600
GUI GDI count:50
103
GUI GDI peak:52
142
GUI USER count:26
49
GUI USER peak:26
71

BehaviorsProcess properties

Tray notification:Yes
Integrety level:Medium
Platform:32-bit
Command line:"C:\Program Files\real\realplayer\realplay.exe" systemboothideplayer
Owner:User
Parent process:explorer.exe (Windows Explorer by Microsoft Corporation)

ResourcesThreads

Averages
 
realplay.exe (main module)
Total CPU:8.67592017%
0.272967%
Kernel CPU:7.77567548%
0.107585%
User CPU:0.90024470%
0.165382%
CPU cycles:202,083,289/sec
5,741,424/sec
Context switches:211/sec
79/sec
Memory:32 KB
1.16 MB
rtutils.dll
Total CPU:0.00791561%
Kernel CPU:0.00502670%
User CPU:0.00288891%
CPU cycles:267,939/sec
Context switches:6/sec
Memory:52 KB
pncrt.dll (RealPlayer/RealServer by Real Networks, Inc)
Total CPU:0.00020220%
Kernel CPU:0.00014443%
User CPU:0.00005777%
CPU cycles:2,190,215/sec
Context switches:68/sec
Memory:288 KB

Common loaded modules

These are modules that are typiclaly loaded within the context of this process.

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Home Premium 54.50%
Windows 7 Ultimate 27.50%
Windows 8.1 8.00%
Microsoft Windows XP 5.00%
Windows 8 Enterprise N 5.00%

Distribution by countryDistribution by country

United States installs about 50.50% of RealPlayer (32-bit) .

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Toshiba 23.53%
Hewlett-Packard 19.61%
Dell 18.82%
Sony 15.69%
Acer 7.84%
Intel 7.84%
Lenovo 4.71%
GIGABYTE 1.96%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE