Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

6.2.8400.0 (winmain_win8rc.120518-1423) 1.07%
6.1.7600.16385 (win7_rtm.090713-1255) 9.42%
6.1.7600.16385 (win7_rtm.090713-1255) 56.27%
6.1.7600.16385 (win7_rtm.090713-1255) 28.53%
6.1.7600.16385 (win7_rtm.090713-1255) 4.44%
6.1.7600.16385 (win7_rtm.090713-1255) 0.09%
6.1.7600.16385 (win7_rtm.090713-1255) 0.09%
6.1.7600.16385 (win7_rtm.090713-1255) 0.09%

Relationships

Parent processes
Child processes
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
EventRegister, EventUnregister, EventWrite, RegCloseKey, RegOpenKeyExW, IsTextUnicode, RegQueryValueExW, RegNotifyChangeKeyValue, CryptGetHashParam, CryptHashData, CryptAcquireContextA, CryptCreateHash, CryptDestroyHash, RegisterEventSourceW, CryptReleaseContext, GetTokenInformation, OpenProcessToken, EventEnabled, RegDeleteKeyW, DeregisterEventSource, ReportEventW
crypt32.dll
CertCloseStore, CertFreeCertificateContext, CertGetNameStringW, CryptDecodeObject, CertFindCertificateInStore, CryptMsgGetParam, CryptQueryObject, CryptMsgClose
cryptui.dll
CryptUIDlgViewCertificateW
dwmapi.dll
DwmUpdateThumbnailProperties, DwmSetWindowAttribute
gdi32.dll
ExtTextOutW, GetDeviceCaps, CreateDIBSection, SetLayout, CreateFontIndirectW, SetBkColor, GetDIBits, SaveDC, RestoreDC, SetViewportOrgEx, GetWindowOrgEx, StretchBlt, SetStretchBltMode, GetPath, GdiGetBatchLimit, DeleteDC, DeleteObject, CreateCompatibleDC, OffsetWindowOrgEx, SetBkMode, GetClipBox, GetObjectW, BitBlt, GetStockObject, SelectObject, LineDDA, GetTextExtentExPointW, SetTextColor, GdiAlphaBlend
gdiplus.dll
DllMain
kernel32.dll
InterlockedIncrement, Sleep, InitializeCriticalSectionAndSpinCount, InterlockedCompareExchange, EnterCriticalSection, LeaveCriticalSection, DeleteFileW, GetTickCount, GetModuleHandleW, InterlockedExchange, InterlockedPushEntrySList, QueryDepthSList, OpenThread, GetCurrentThreadId, TlsSetValue, lstrcmpiW, ExpandEnvironmentStringsW, ReadFile, GetFileSizeEx, CreateFileW, CompareStringOrdinal, WritePrivateProfileStringW, WriteFile, HeapAlloc, GetProcessHeap, HeapFree, CloseHandle, SetEvent, CreateEventW, GetStartupInfoW, GetThreadPreferredUILanguages, CopyFileW, lstrcmpW, SetFileAttributesW, FreeLibrary, LoadLibraryExW, SetFilePointer, GetTempFileNameW, GetTempPathW, MultiByteToWideChar, SetCurrentDirectoryA, CreateDirectoryA, SetCurrentDirectoryW, CreateDirectoryW, ResetEvent, WaitForMultipleObjects, TlsGetValue, SearchPathW, GlobalFree, SetFilePointerEx, DelayLoadFailureHook, GetProcAddress, GetUserDefaultUILanguage, GetSystemDefaultUILanguage, CompareStringW, ReleaseMutex, WaitForSingleObject, GetLastError, CreateMutexW, lstrlenW, GetModuleFileNameW, TlsAlloc, RegisterApplicationRestart, LocalFree, UnmapViewOfFile, GetLocaleInfoW, CreateFileMappingW, MapViewOfFile, SetLastError, FindResourceExW, GetCommandLineW, DeleteCriticalSection, CreateThread, InitializeCriticalSection, SetErrorMode, HeapSetInformation, LocalAlloc, RegEnumKeyExW, IsValidLocale, GetTimeZoneInformation, GetDynamicTimeZoneInformation, FileTimeToSystemTime, SystemTimeToTzSpecificLocalTime, GlobalLock, GlobalUnlock, GetDiskFreeSpaceExW, SetVolumeLabelW, GetLogicalDrives, GetVolumeInformationW, GetDriveTypeW, GetSystemWindowsDirectoryW, GetSystemInfo, GetComputerNameW, GetSystemPowerStatus, GlobalMemoryStatusEx, OutputDebugStringW, RaiseException, GetEnvironmentVariableW, GetFileAttributesW, GetFileSize, QueueUserAPC, InterlockedFlushSList, InitializeSListHead, CompareFileTime, GetFileAttributesExW, GetSystemTime, SystemTimeToFileTime, FindFirstFileW, FindNextFileW, FindClose, DeleteAtom, GetTickCount64, GlobalGetAtomNameW, GlobalDeleteAtom, QueryPerformanceFrequency, CreateWaitableTimerW, SetWaitableTimer, TlsFree, CancelWaitableTimer, WideCharToMultiByte, GlobalAddAtomW, GetVersionExW, LoadLibraryW, GetFileTime, FindResourceW, SizeofResource, LoadResource, LockResource, FormatMessageW, MulDiv, RegLoadMUIStringW, GetSystemDirectoryW, RegDeleteValueW, RegSetValueExW, RegCreateKeyExW, InterlockedDecrement, UnhandledExceptionFilter, GetCurrentProcess, TerminateProcess, GetSystemTimeAsFileTime, GetCurrentProcessId, QueryPerformanceCounter, GetModuleHandleA, SetUnhandledExceptionFilter, GetStartupInfoA, LoadLibraryExA
msvcrt.dll
DllMain
ntdll.dll
WinSqmIncrementDWORD, RtlIpv4AddressToStringExW, NtQuerySystemInformation, WinSqmSetDWORD, WinSqmIsOptedIn, WinSqmAddToStreamEx, WinSqmAddToStream, RtlIpv6AddressToStringExW
ole32.dll
CoUninitialize, CoInitializeEx, OleUninitialize, CoTaskMemFree, CoCreateInstance, CreateBindCtx, CoTaskMemAlloc, CLSIDFromProgID, StringFromGUID2, CoCreateGuid, PropVariantClear, ReleaseStgMedium, StringFromCLSID, GetHGlobalFromStream, CLSIDFromString, CreateStreamOnHGlobal, CoInitialize, OleInitialize
sfc_os.dll
SfcIsFileProtected
shell32.dll
DragAcceptFiles, SHGetFileInfoW, SHBindToObject, DragFinish, SHCreateItemFromIDList, ShellExecuteW, SHFileOperationW, SHGetFolderPathAndSubDirW, CommandLineToArgvW, SHCreateDirectoryExW, DragQueryPoint, ShellExecuteExW, SHGetFolderPathEx, SHEmptyRecycleBinW, SHGetPathFromIDListW, SHBrowseForFolderW, SHGetFolderLocation, SHCreateItemWithParent, DragQueryFileW, SHParseDisplayName
shlwapi.dll
PathIsDirectoryW, PathFindFileNameW, PathFindExtensionW, PathRemoveExtensionW, PathIsRelativeW, PathCombineW, PathFileExistsW, PathIsURLW, UrlIsW, UrlEscapeW, PathRemoveFileSpecW, PathCreateFromUrlW, PathCanonicalizeW, UrlUnescapeW, StrStrNW, StrStrNIW, PathIsPrefixW, SHCreateStreamOnFileW, SHCreateStreamOnFileEx, PathGetDriveNumberW, AssocQueryStringW, PathCommonPrefixW, PathGetArgsW, StrToIntExW
urlmon.dll
URLOpenBlockingStreamW, CreateURLMoniker, CoInternetGetSession
user32.dll
SendMessageW, DispatchMessageW, TranslateMessage, PeekMessageW, SendMessageTimeoutW, RegisterWindowMessageW, CreateWindowExW, CharPrevW, GetThreadDesktop, OpenInputDesktop, RegisterPowerSettingNotification, MessageBoxIndirectW, CharUpperBuffW, CharUpperW, MessageBeep, UnhookWinEvent, GetUserObjectInformationW, FindWindowW, PostMessageW, GetWindowThreadProcessId, AllowSetForegroundWindow, GetShellWindow, LoadStringW, MessageBoxW, DrawFrameControl, LoadImageW, InsertMenuItemW, SetRectEmpty, CloseDesktop, GetMonitorInfoW, SetWinEventHook, UnregisterPowerSettingNotification, InflateRect, DrawTextExW, GetIconInfo, SwitchToThisWindow, ShowWindow, SetDlgItemTextW, SetForegroundWindow, SetFocus, OffsetRect, PtInRect, GetForegroundWindow, GetCursorPos, SetTimer, GetDlgItem, GetWindowRect, SetWindowPos, ScreenToClient, KillTimer, DestroyIcon, IsWindow, DestroyWindow, GetSystemMetrics, CharNextW, ReleaseDC, GetDC, GetWindowLongW, DestroyMenu, RemoveMenu, GetSubMenu, LoadMenuW, SetWindowLongW, GetWindow, DeleteMenu, GetMenuItemCount, EndPaint, MapWindowPoints, BeginPaint, GetParent, FillRect, SetRect, GetClientRect, RemovePropW, DefWindowProcW, SetPropW, GetPropW, RegisterClassW, LoadCursorW, CreateDialogParamW, GetKeyState, GetDoubleClickTime, SetCapture, ReleaseCapture, GetFocus, NotifyWinEvent, UpdateLayeredWindow, RedrawWindow, IsIconic, SetCursor, GetMessagePos, GetKeyboardState, GetMessageTime, MonitorFromPoint, IntersectRect, IsHungAppWindow, IsWindowVisible, PostQuitMessage, UnregisterHotKey, GetWindowTextW, SetParent, RegisterHotKey, GetSysColor, SystemParametersInfoW, MonitorFromWindow, GetDesktopWindow, EnumDisplayMonitors, TrackPopupMenu, CheckMenuItem, CopyRect, PrintWindow, SetLayeredWindowAttributes, CloseGestureInfoHandle, DeregisterShellHookWindow, RegisterShellHookWindow, GetWindowInfo, IsDialogMessageW, MsgWaitForMultipleObjectsEx, EndDeferWindowPos, DeferWindowPos, BeginDeferWindowPos, EqualRect, IsChild, SetActiveWindow, LoadIconW, AdjustWindowRectEx, AppendMenuW, CreatePopupMenu, EndDialog, EnableWindow, SetWindowTextW, GetAsyncKeyState
uxtheme.dll
DrawThemeTextEx, IsThemeActive, OpenThemeData, DrawThemeBackground, CloseThemeData, SetWindowThemeAttribute

sidebar.exe

Windows Desktop Gadgets by Microsoft

Remove sidebar.exe
Version:   6.1.7600.16385 (win7_rtm.090713-1255)
MD5:   e3bf29ced96790cdaafa981ffddf53a3
SHA1:   e513dd19714559226cd52169fbb4489ca5740e88
SHA256:   76cb27ef7b27e5636eda9d95229519b2a2870729a0bb694f1fd11cd602bac4dc
This is a Windows system installed file with Windows File Protection (WFP) enabled.

What is sidebar.exe?

Gadgets are simple mini-applications that give users fast access to personally relevant information and simple tasks—without getting in the way. For example, the Weather Gadget provides real-time information that is available at a glance, and the CPU Meter Gadget provides system information that users are interested in monitoring. Gadgets are part of the desktop, like the Start button, taskbar, and notification area. Unlike normal windows, they aren't represented with a taskbar button. In Window

About sidebar.exe (from Microsoft)

Gadgets put information and fun—like news, pictures, games, and the phases of the moon—right on your desktop. In Windows Vista, gadgets were corralled in the Sidebar. Windows 7 sets them free on the s

DetailsDetails

File name:sidebar.exe
Publisher:Microsoft Corporation
Product name:Windows Desktop Gadgets
Description:Microsoft® Windows® Operating System
Typical file path:C:\Program Files\windows sidebar\sidebar.exe
Original name:sidebar.EXE.MUI
File version:6.1.7600.16385 (win7_rtm.090713-1255)
Product version:1.0.7600.16385
Size:1.41 MB (1,475,584 bytes)
Digital DNA
PE subsystem:Windows GUI
Entropy:6.938492
File packed:No
Code language:Microsoft Visual C++
.NET CLR:No
More details

ResourcesPrograms

The following program will install this file
AWS Convergence Technologies
49% remove
WeatherBug manages and operates its own weather network that pin points weather conditions in your neighborhood like no other weather service can! WeatherBug Tracking Stations provide live weather information. Other weather companies' "live" data is often an hour or more old. Along with the National Weather Service alerts, WeatherBug issues additional more localized alerts.

BehaviorsBehaviors

Scheduled tasks
  • The job 'P4G Sidebar' runs on registration in the path '\P4G Sidebar'
  • The job 'SidebarExecute' runs on registration in the path '\SidebarExecute'
  • Entry path '\P4G Sidebar'
  • Entry path '\SidebarExecute'
Startup files (user) run
Runs under the registry key 'HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run'
  • 'Sidebar' → C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
User start menu folder
Shortcut pointer placed in '%appdata%\Microsoft\Windows\Start Menu'
  • Shortcut to 'sidebar.exe'
Startup files (all users) run
Runs under the registry key 'HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run'
  • 'Sidebar' → "C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
Network connections
  • [TCP] export.yandex.ru (77.88.21.27:80)
  • [TCP] server-54-230-144-187.sfo4.r.cloudfront.net (54.230.144.187:80)
  • [TCP] 65.55.17.76:80
  • [TCP] 199.59.243.118:80
  • [TCP] server-204-246-175-221.jax1.r.cloudfront.net (204.246.175.221:80)
  • [UDP] listens on port 56090
  • [UDP] listens on port 60749
  • [UDP] listens on port 64533
  • [UDP] listens on port 55256
  • [UDP] listens on port 49156
  • [UDP] listens on port 51377
  • [UDP] listens on port 61039
  • [UDP] listens on port 56671
  • [UDP] listens on port 64298
  • [UDP] listens on port 53113
  • [UDP] listens on port 55969
  • [UDP] listens on port 59237
  • [UDP] listens on port 61005
  • [UDP] listens on port 51697
  • [UDP] listens on port 61330
  • [UDP] listens on port 62628

  • ResourcesResource utilization

    (Note: statistics below are averages based on a minimum sample size of 200 unique participants)
    Averages
     
    CPU
    Total CPU:0.00354622%
    0.028634%
    Kernel CPU:0.00160496%
    0.013761%
    User CPU:0.00194126%
    0.014873%
    Kernel CPU time:329,146,461 ms/min
    100,923,805ms/min
    CPU cycles:489,742/sec
    17,470,203/sec
    Context switches:155/sec
    284/sec
    Memory
    Private memory:42.66 MB
    21.59 MB
    Private (maximum):58.2 MB
    Private (minimum):31.33 MB
    Non-paged memory:42.66 MB
    21.59 MB
    Virtual memory:304.98 MB
    140.96 MB
    Virtual memory (peak):312.26 MB
    169.69 MB
    Working set:47.65 MB
    18.61 MB
    Working set (peak):61.91 MB
    37.95 MB
    Page faults:8,922,855/min
    2,039/min
    I/O
    I/O read transfer:178.89 KB/sec
    1.02 MB/min
    I/O read operations:30/sec
    343/min
    I/O write transfer:3.21 KB/sec
    274.99 KB/min
    I/O write operations:22/sec
    227/min
    I/O other transfer:17.28 KB/sec
    448.09 KB/min
    I/O other operations:1,008/sec
    1,671/min
    Resource allocations
    Threads:26
    12
    Handles:495
    600
    GUI GDI count:52
    103
    GUI GDI peak:66
    142
    GUI USER count:53
    49
    GUI USER peak:67
    71

    BehaviorsProcess properties

    Integrety level:Medium
    Platform:64-bit
    Command lines:
    • "C:\Program Files\windows sidebar\sidebar.exe" /autorun
    • "C:\Program Files\windows sidebar\sidebar.exe" /showgadgets
    • "C:\Program Files\windows sidebar\sidebar.exe"
    • "C:\Program Files\windows sidebar\sidebar.exe" /addgadget
    Owner:User
    Parent processes:

    ResourcesThreads

    Averages
     
    sidebar.exe (main module)
    Total CPU:0.22180331%
    0.272967%
    Kernel CPU:0.04606055%
    0.107585%
    User CPU:0.17574276%
    0.165382%
    CPU cycles:8,664,017/sec
    5,741,424/sec
    Context switches:13/sec
    79/sec
    Memory:1.43 MB
    1.16 MB
    ntdll.dll
    Total CPU:0.02078118%
    Kernel CPU:0.00816571%
    User CPU:0.01261547%
    CPU cycles:349,042/sec
    Memory:1.66 MB
    Dxtrans.dll
    Total CPU:0.01216507%
    Kernel CPU:0.00155195%
    User CPU:0.01061312%
    CPU cycles:185,899/sec
    Memory:308 KB
    mscorwks.dll
    Total CPU:0.00792123%
    Kernel CPU:0.00105383%
    User CPU:0.00686740%
    CPU cycles:86,555/sec
    Memory:9.61 MB
    mshtml.dll
    Total CPU:0.00719993%
    Kernel CPU:0.00079065%
    User CPU:0.00640927%
    CPU cycles:458,566/sec
    Context switches:12/sec
    Memory:17.01 MB
    msvcrt.dll
    Total CPU:0.00253893%
    Kernel CPU:0.00056395%
    User CPU:0.00197498%
    CPU cycles:102,529/sec
    Memory:636 KB
    WININET.dll
    Total CPU:0.00087386%
    Kernel CPU:0.00081538%
    User CPU:0.00005847%
    CPU cycles:8,426/sec
    Memory:2.18 MB
    sapi.dll
    Total CPU:0.00056977%
    Kernel CPU:0.00046294%
    User CPU:0.00010683%
    CPU cycles:15,762/sec
    Memory:1.39 MB
    msvcr100.dll (Microsoft Visual Studio 2010 by Microsoft)
    Total CPU:0.00037320%
    Kernel CPU:0.00009821%
    User CPU:0.00027499%
    CPU cycles:112,779/sec
    Context switches:1/sec
    Memory:840 KB
    gdiplus.dll
    Total CPU:0.00027791%
    Kernel CPU:0.00005509%
    User CPU:0.00022283%
    CPU cycles:1,999/sec
    Memory:2.09 MB
    SensorsApi.dll
    Total CPU:0.00013182%
    Kernel CPU:0.00009612%
    User CPU:0.00003569%
    CPU cycles:1,871/sec
    Memory:192 KB
    LocationApi.dll
    Total CPU:0.00012804%
    Kernel CPU:0.00008634%
    User CPU:0.00004169%
    CPU cycles:5,581/sec
    Memory:300 KB

    Common loaded modules

    These are modules that are typiclaly loaded within the context of this process.

    Windows OS versionsDistribution by Windows OS

    OS versiondistribution
    Windows 7 Home Premium 52.00%
    Windows 7 Ultimate 30.50%
    Windows 7 Professional 11.50%
    Windows 7 Home Basic 3.00%
    Windows Seven Black Edition 1.00%
    Windows 7 Starter 1.00%
    Windows Se7en Titan 1.00%

    Distribution by countryDistribution by country

    United States installs about 42.93% of Windows Desktop Gadgets.

    OEM distributionDistribution by PC manufacturer

    PC Manufacturerdistribution
    ASUS 20.53%
    Dell 18.25%
    Toshiba 13.69%
    Acer 12.93%
    Hewlett-Packard 11.79%
    Sony 8.37%
    GIGABYTE 4.94%
    Samsung 2.28%
    Lenovo 2.28%
    Medion 1.52%
    Sahara 1.14%
    Alienware 0.76%
    MSI 0.76%
    NEC 0.76%
    Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

    Download it for FREE