Should I block it?

No, this file is 100% safe to run.

Relationships

Parent process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
RegSetValueExW, RegCreateKeyExW, OpenThreadToken, OpenProcessToken, GetTokenInformation, AllocateAndInitializeSid, EqualSid, FreeSid, RegQueryValueExW, RegOpenKeyExW, RegQueryInfoKeyW, RegCloseKey, RegDeleteKeyW, RegDeleteValueW, RegEnumKeyExW
gdi32.dll
GetStockObject, GetDeviceCaps, DeleteObject, DeleteDC, SelectObject, BitBlt, CreateSolidBrush, CreateCompatibleDC, CreateCompatibleBitmap, CreateFontIndirectW, GetObjectW
kernel32.dll
InitializeCriticalSection, MultiByteToWideChar, FreeLibrary, SizeofResource, LoadResource, FindResourceW, LoadLibraryExW, lstrcmpiW, GetModuleHandleW, GetCommandLineW, GetCurrentThreadId, CreateEventW, GetLastError, SetEvent, WaitForSingleObject, GetVersionExA, ResetEvent, Sleep, lstrcpynA, lstrcpynW, lstrlenW, GetVersionExW, InterlockedDecrement, GetCurrentProcess, FlushInstructionCache, LeaveCriticalSection, GetModuleFileNameW, lstrcmpW, MulDiv, GlobalUnlock, GlobalLock, GlobalAlloc, GetVersion, SetLastError, EnterCriticalSection, CreateSemaphoreW, RaiseException, GetCurrentThread, IsValidLocale, GetUserDefaultLCID, GetACP, HeapFree, GetProcessHeap, HeapAlloc, InterlockedIncrement, DeleteCriticalSection, InterlockedCompareExchange, GetProcAddress, LoadLibraryA, IsProcessorFeaturePresent, VirtualFree, VirtualAlloc, InterlockedExchange, GetLocaleInfoA, GetThreadLocale, GetStartupInfoW, TerminateProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsDebuggerPresent, QueryPerformanceCounter, GetTickCount, GetCurrentProcessId, GetSystemTimeAsFileTime, CloseHandle
msvcr80.dll
DllMain
ole32.dll
CoCreateInstance, CoTaskMemAlloc, CoTaskMemFree, CoTaskMemRealloc, CoInitialize, CoRegisterClassObject, CoRevokeClassObject, CoUninitialize, OleUninitialize, StringFromGUID2, OleLockRunning, CoGetClassObject, CLSIDFromProgID, CLSIDFromString, CreateStreamOnHGlobal, OleInitialize
user32.dll
GetTopWindow, MoveWindow, GetWindowTextLengthW, GetWindowTextW, SetWindowTextW, DestroyAcceleratorTable, GetSysColor, BeginPaint, FillRect, EndPaint, GetDC, ReleaseDC, IsChild, GetDlgItem, RedrawWindow, DestroyWindow, GetClassNameW, CreateAcceleratorTableW, ClientToScreen, ScreenToClient, SetCapture, ReleaseCapture, InvalidateRect, InvalidateRgn, IsMenu, GetClassInfoExW, LoadCursorW, RegisterClassExW, CallWindowProcW, LoadAcceleratorsW, LoadMenuW, GetMessageW, TranslateMessage, wsprintfW, LoadImageW, DefWindowProcW, GetMenuItemInfoW, RemoveMenu, GetMenuItemCount, AppendMenuW, DestroyMenu, CreatePopupMenu, GetWindowRect, GetWindowLongW, PtInRect, TrackPopupMenuEx, IsWindow, MapWindowPoints, MessageBeep, SetWindowPos, SetRect, DeleteMenu, MessageBoxW, CreateWindowExW, RegisterWindowMessageA, GetParent, GetFocus, GetDesktopWindow, GetKeyState, SetWindowLongW, GetWindow, GetClientRect, LoadStringA, PostQuitMessage, SetFocus, IsWindowVisible, LoadStringW, CallNextHookEx, UnhookWindowsHookEx, DispatchMessageW, PeekMessageW, MsgWaitForMultipleObjects, PostThreadMessageW, SendMessageTimeoutW, GetLastActivePopup, SetForegroundWindow, PostMessageW, IsIconic, SetWindowsHookExW, CharNextW, SendMessageW, RegisterWindowMessageW, FindWindowW, UnregisterClassA, ShowWindow
wkwbl90.dll
WksSqmRegWinMsg, WksSqmOnBroadcast, WksSqmEnd, WksSqmBegin

WksCal.exe

Microsoft Works 9 by Microsoft Corporation (Signed)

Remove WksCal.exe
Version:   9.07.0613.0
MD5:   206ee4b42d11585eb53c47fb69f69e54
SHA1:   7e4d16fa4720f6ee2c1e10c63d801b4860c21b1d
SHA256:   61c78709dfb008bcd3c96be1f3350f79c005c11cc579f8d3fbe344135671b0af

Overview

WksCal.exe executes as a process with the local user's privileges typically within the context of its parent wkcalrem.exe (by Microsoft). This is typically installed with the program Microsoft Works published by Microsoft Corporation. The file is digitally signed by Microsoft Corporation. This particular version is usually found on Windows Vista (TM) Home Premium (6.0.6002.131072).

DetailsDetails

File name:WksCal.exe
Publisher:Microsoft® Corporation
Product name:Microsoft® Works 9
Description:Microsoft® Works Calendar
Typical file path:C:\Program Files\Microsoft Works\WksCal.exe
File version:9.07.0613.0
Product version:9.07.0613.0
Size:693.34 KB (709,984 bytes)
Build date:6/13/2007 4:40 AM
Certificate
Issued to:Microsoft Corporation
Authority (CA):Microsoft Corporation
Effective date:Tuesday, April 4, 2006
Expiration date:Thursday, October 4, 2007
Digital DNA
PE subsystem:Windows GUI
File packed:No
Code language:Microsoft Visual C++ 8.0
.NET CLR:No
More details

ResourcesPrograms

The following program will install this file
Microsoft Corporation
1% remove
Microsoft Works is an integrated package software that was produced by Microsoft. Works is smaller, less expensive, and has fewer features than Microsoft Office or other major office suites. Its core functionality includes a word processor, a spreadsheet and a database management system. Microsoft Works has built-in compatibility for the Microsoft Office document formats (DOC and XLS), including, but not limited to, the ability of the W...

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00117939%
0.028634%
Kernel CPU:0.00096450%
0.013761%
User CPU:0.00021489%
0.014873%
Kernel CPU time:1,966 ms/min
100,923,805ms/min
CPU cycles:5,438,327/sec
17,470,203/sec
Memory
Private memory:16.24 MB
21.59 MB
Private (maximum):18.26 MB
Private (minimum):1.18 MB
Non-paged memory:16.24 MB
21.59 MB
Virtual memory:206.16 MB
140.96 MB
Virtual memory (peak):211.66 MB
169.69 MB
Working set:6.36 MB
18.61 MB
Working set (peak):18.29 MB
37.95 MB
Page faults:68,962/min
2,039/min
I/O
I/O read transfer:7.63 KB/sec
1.02 MB/min
I/O read operations:12/sec
343/min
I/O write transfer:65 Bytes/sec
274.99 KB/min
I/O write operations:1/sec
227/min
I/O other transfer:57 Bytes/sec
448.09 KB/min
I/O other operations:4/sec
1,671/min
Resource allocations
Threads:12
12
Handles:203
600
GUI GDI count:94
103
GUI USER count:105
49

BehaviorsProcess properties

Integrety level:Medium
Platform:32-bit
Command line:C:\progra~1\micros~2\wkscal.exe /alarm
Owner:User
Parent process:wkcalrem.exe (by Microsoft)

ResourcesThreads

Averages
 
WksCal.exe (main module)
Total CPU:0.00751157%
0.272967%
Kernel CPU:0.00352202%
0.107585%
User CPU:0.00398955%
0.165382%
CPU cycles:5,385,985/sec
5,741,424/sec
Memory:684 KB
1.16 MB
WINMM.dll
Total CPU:0.00021818%
Kernel CPU:0.00015585%
User CPU:0.00006234%
CPU cycles:2,139/sec
Memory:200 KB
wdmaud.drv
Total CPU:0.00012468%
Kernel CPU:0.00006234%
User CPU:0.00006234%
CPU cycles:3,331/sec
Memory:188 KB
gdiplus.dll
Total CPU:0.00003117%
Kernel CPU:0.00003117%
User CPU:0.00000000%
CPU cycles:611/sec
Memory:1.67 MB

Common loaded modules

These are modules that are typiclaly loaded within the context of this process.

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows Vista Home Premium 100.00%

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Hewlett-Packard 100.00%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE