Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

6.0.5358.0 (WMP_11.060509-2009) 0.03%
6.0.5358.0 (WMP_11.060509-2009) 0.03%
12.0.9431.0 (winmain_bluemp.130615-1214) 0.21%
12.0.9431.0 (winmain_bluemp.130615-1214) 0.03%
12.0.9200.16384 (win8_rtm.120725-1247) 0.67%
12.0.9200.16384 (win8_rtm.120725-1247) 0.73%
12.0.9200.16384 (win8_rtm.120725-1247) 1.33%
12.0.9200.16384 (win8_rtm.120725-1247) 12.36%
12.0.8400.0 (winmain_win8rc.120518-1423) 0.06%
12.0.8400.0 (winmain_win8rc.120518-1423) 0.06%
12.0.8250.0 (winmain_win8beta.120217-1520) 0.03%
12.0.7600.16385 (win7_rtm.090713-1255) 5.54%
12.0.7600.16385 (win7_rtm.090713-1255) 43.53%
12.0.7600.16385 (win7_rtm.090713-1255) 3.60%
12.0.7600.16385 (win7_rtm.090713-1255) 16.27%
12.0.7600.16385 (win7_rtm.090713-1255) 0.03%
12.0.7600.16385 (win7_rtm.090713-1255) 0.03%
12.0.7600.16385 (win7_rtm.090713-1255) 0.03%
11.0.6000.6324 (vista_rtm.061101-2205) 7.00%
11.0.6000.6324 (vista_rtm.061101-2205) 0.33%
11.0.6000.6324 (vista_rtm.061101-2205) 1.09%
11.0.5721.5262 (WMP_11.090130-1421) 1.36%
11.0.5721.5262 (WMP_11.090130-1421) 0.06%
11.0.5721.5262 (WMP_11.090130-1421) 0.03%
11.0.5721.5262 (WMP_11.090130-1421) 0.15%
View more

Relationships

Parent process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
EventRegister, EventUnregister, TraceMessage, GetTraceEnableFlags, GetTraceEnableLevel, GetTraceLoggerHandle, RegisterTraceGuidsW, UnregisterTraceGuids, EventWrite, RegCloseKey, RegOpenKeyExW, QueryServiceStatusEx, ControlService, SetServiceStatus, CloseServiceHandle, OpenServiceW, OpenSCManagerW, DeleteService, ChangeServiceConfig2W, CreateServiceW, RegisterServiceCtrlHandlerExW, StartServiceCtrlDispatcherW, GetSecurityDescriptorControl, MakeAbsoluteSD, GetSecurityDescriptorSacl, GetSecurityDescriptorDacl, GetSecurityDescriptorGroup, GetSecurityDescriptorOwner, InitializeSecurityDescriptor, RegDeleteValueW, RegCreateKeyExW, RegQueryValueExW, RegSetValueExW, GetLengthSid, IsValidSid, CopySid, AddAce, InitializeAcl, GetAclInformation, SetSecurityDescriptorDacl, ConvertSecurityDescriptorToStringSecurityDescriptorW, ConvertStringSidToSidW, RegSetKeySecurity, ConvertStringSecurityDescriptorToSecurityDescriptorW, EqualSid, GetNamedSecurityInfoW, RegEnumKeyExW, RegNotifyChangeKeyValue, RegGetValueW, DeregisterEventSource, ReportEventW, RegisterEventSourceW, FreeSid, SetNamedSecurityInfoW, SetEntriesInAclW, AllocateAndInitializeSid, LsaClose, LsaFreeMemory, LsaLookupNames2, LsaOpenPolicy, SetSecurityDescriptorGroup, SetSecurityDescriptorOwner, ConvertSidToStringSidW, ImpersonateLoggedOnUser, RevertToSelf, OpenProcessToken, GetTokenInformation, TraceEvent, LookupAccountSidW, ChangeServiceConfigW, StartServiceW, SetSecurityInfo, GetAce, GetSecurityInfo, SetSecurityDescriptorControl, LookupAccountNameW, RegDeleteKeyW, RegGetKeySecurity, RegQueryInfoKeyW, RegCreateKeyExA, RegQueryValueExA, RegSetValueExA, CryptGenRandom, CryptAcquireContextW, CreateWellKnownSid, SetFileSecurityW, GetFileSecurityW, OpenThreadToken, CryptReleaseContext
faultrep.dll
ReportFault
gdi32.dll
DeleteObject
httpapi.dll
HttpInitialize, HttpTerminate, HttpSetServiceConfiguration, HttpDeleteServiceConfiguration
iphlpapi.dll
GetAdaptersAddresses, GetIpForwardTable, NotifyAddrChange, GetBestInterfaceEx, GetIpNetEntry2, SendARP, ResolveIpNetEntry2, CancelIPChangeNotify, GetIpAddrTable, CancelMibChangeNotify2, NotifyIpInterfaceChange
kernel32.dll
DllMain, InterlockedExchange, EnterCriticalSection, LeaveCriticalSection, IsDebuggerPresent, GetModuleFileNameW, LocalFree, IsWow64Process, GetCurrentProcess, lstrcmpW, ResetEvent, SetProcessWorkingSetSize, DeleteTimerQueueEx, DeleteTimerQueueTimer, CreateTimerQueue, CreateTimerQueueTimer, ChangeTimerQueueTimer, InterlockedExchangeAdd, CompareStringOrdinal, MultiByteToWideChar, WriteFile, CreateFileW, CompareStringA, MulDiv, GetLongPathNameW, CreateEventW, GetFileAttributesW, RemoveDirectoryW, UnregisterWaitEx, DeleteFileW, CopyFileW, RegisterWaitForSingleObject, FindNextFileW, FindFirstFileW, QueueUserWorkItem, FormatMessageW, lstrcmpiW, CreateThread, WaitForMultipleObjects, GetStringTypeExW, GetDynamicTimeZoneInformation, GetComputerNameW, WideCharToMultiByte, lstrlenA, LocalAlloc, HeapFree, GetProcessHeap, GetProductInfo, GetVersionExW, GetTempPathW, DelayLoadFailureHook, GetProcAddress, FreeLibrary, LoadLibraryExA, PowerCreateRequest, InterlockedCompareExchange64, SetLastError, GetTickCount64, PowerClearRequest, PowerSetRequest, WaitForSingleObject, Sleep, GetTickCount, GetLastError, InterlockedCompareExchange, HeapSetInformation, CompareStringW, OpenEventW, SetEvent, InterlockedDecrement, InterlockedIncrement, lstrlenW, ExitProcess, GetCommandLineW, GetStartupInfoW, RegSetValueExA, RegQueryValueExA, RegCreateKeyExA, GetLocalTime, GlobalMemoryStatus, GetDiskFreeSpaceA, GetEnvironmentStringsW, GetEnvironmentStrings, FreeEnvironmentStringsW, FreeEnvironmentStringsA, DeviceIoControl, GetModuleHandleA, LoadLibraryA, OpenMutexW, CreateMutexW, ReleaseMutex, GetFileAttributesExW, CompareFileTime, FreeLibraryAndExitThread, DuplicateHandle, LoadLibraryExW, FreeResource, GetFileSize, GetThreadPriority, SetThreadPriority, FileTimeToSystemTime, FileTimeToDosDateTime, FindClose, GetTempFileNameW, GlobalFree, ExpandEnvironmentStringsW, VirtualFree, OpenFileMappingW, VirtualAlloc, GetCurrentThread, SetFileAttributesW, CreateDirectoryW, GetFileSizeEx, SetFilePointerEx, ReadFile, HeapDestroy, HeapAlloc, HeapReAlloc, HeapSize, CloseHandle, FindResourceExW, FindResourceW, LoadResource, LockResource, SizeofResource, DeleteCriticalSection, InitializeCriticalSection, RaiseException, GetFullPathNameW, QueryPerformanceCounter, GetCurrentThreadId, GetCurrentProcessId, GetSystemTimeAsFileTime, TerminateProcess, UnhandledExceptionFilter, InitializeCriticalSectionAndSpinCount, CreateFileMappingW, MapViewOfFile, GetSystemTime, SystemTimeToFileTime, UnmapViewOfFile, RegEnumValueW, RegQueryInfoKeyW, RegGetKeySecurity, GetModuleHandleW, LoadLibraryW, OutputDebugStringA, SetUnhandledExceptionFilter, GetVersionExA, DebugBreak, SetThreadExecutionState, GetVersion, IsProcessorFeaturePresent, FileTimeToLocalFileTime, TzSpecificLocalTimeToSystemTime, FindCloseChangeNotification, FindFirstChangeNotificationW, FindNextChangeNotification, ResolveDelayLoadedAPI, GlobalMemoryStatusEx, GetDiskFreeSpaceW, GetUserGeoID, GetSystemDefaultLCID, GetNativeSystemInfo, GetModuleHandleExW, SetFilePointer, VerifyVersionInfoW, VerSetConditionMask, GetSystemWow64DirectoryW, GetSystemDirectoryW, WaitForMultipleObjectsEx, GetEnvironmentVariableW
mfplat.dll
MFShutdown, MFStartup, MFInvokeCallback, MFCreateAsyncResult, CreatePropertyStore
msvcrt.dll
DllMain
netapi32.dll
NetApiBufferFree, NetGetJoinInformation, NetShareGetInfo
ntdll.dll
NtQuerySystemTime, RtlFreeHeap, RtlAllocateHeap, RtlIpv4StringToAddressExW, RtlInitUnicodeString, RtlInitString, NtAllocateLocallyUniqueId, RtlFreeUnicodeString, RtlNtStatusToDosError, strchr, RtlUnwind, RtlGetVersion
ole32.dll
CoInitializeSecurity, CoInitializeEx, CoSetProxyBlanket, CoTaskMemFree, CoUninitialize, PropVariantClear, CoMarshalInterface, CreateStreamOnHGlobal, CoReleaseMarshalData, CoUnmarshalInterface, IIDFromString, CoTaskMemAlloc, PropVariantCopy, StringFromGUID2, CoCreateGuid, CoCreateInstance, CLSIDFromProgID
propsys.dll
PropVariantToString, PropVariantToStringAlloc, PSGetPropertyDescriptionByName, PSGetPropertyKeyFromName, InitPropVariantFromCLSID
shell32.dll
SHGetFolderPathW, SHCreateDirectoryExW, SHGetFolderPathAndSubDirW, SHGetKnownFolderItem, SHCreateItemWithParent, SHGetKnownFolderPath, SHCreateItemFromParsingName
shlwapi.dll
PathFileExistsW, StrCmpNW, PathFindFileNameW, StrStrIW, PathAppendW, HashData, PathRemoveExtensionW, PathFindExtensionW, PathCreateFromUrlW, SHStrDupW, SHDeleteKeyW
user32.dll
wvsprintfA, CharLowerBuffW, CharUpperBuffW, PeekMessageW, DispatchMessageW, CharNextA, TranslateMessage, MsgWaitForMultipleObjects, MsgWaitForMultipleObjectsEx, RegisterPowerSettingNotification, CharUpperW, wvsprintfW, UnregisterPowerSettingNotification, UnregisterClassA
userenv.dll
RegisterGPNotification, UnregisterGPNotification
winhttp.dll
WinHttpWriteData, WinHttpQueryHeaders, WinHttpAddRequestHeaders, WinHttpCrackUrl, WinHttpSetCredentials, WinHttpGetDefaultProxyConfiguration, WinHttpGetIEProxyConfigForCurrentUser, WinHttpGetProxyForUrl, WinHttpSetOption, WinHttpTimeFromSystemTime, WinHttpQueryDataAvailable, WinHttpCloseHandle, WinHttpReadData, WinHttpReceiveResponse, WinHttpSendRequest, WinHttpOpen, WinHttpSetTimeouts, WinHttpSetStatusCallback, WinHttpConnect, WinHttpOpenRequest
wmpmde.dll
MFCreateNetVRoot, MFCreateWMPMDEOpCenter
ws2_32.dll
GetAddrInfoW, getnameinfo, FreeAddrInfoW
wtsapi32.dll
WTSFreeMemory, WTSEnumerateSessionsW, WTSQuerySessionInformationW
xmllite.dll
CreateXmlReader, CreateXmlWriter

wmpnetwk.exe

Windows Media Player Network Sharing Service by Microsoft

Remove wmpnetwk.exe
Version:   11.0.6000.6324 (vista_rtm.061101-2205)
MD5:   56382a5eb85a25446745e3bd6d50a3a5
SHA1:   176a0ac16b167fed09fc90b9a884accb437fb323
SHA256:   94abca1238150b74271cc47f0bde5cce2cb2d734aee8e4b04074ece396482624
This is a Windows system installed file with Windows File Protection (WFP) enabled.

What is wmpnetwk.exe?

This service allows Media Player to share media with other computers on the network.

About wmpnetwk.exe (from Microsoft)

Designed by media lovers, for media lovers. Windows Media Player 12—available only in Windows 7—plays more music and video than ever, including Flip Video and unprotected songs from your iTunes librar

Overview

wmpnetwk.exe runs as a service under the name A Windows Media Player hálózatmegosztási szolgáltatása (WMPNetworkSvc) with minimal NETWORK SERVICE privileges on the local PC and acts as the computer on the network. This version is designed to run on Windows Vista and is compiled as a 64 bit program.

DetailsDetails

File name:wmpnetwk.exe
Publisher:Microsoft Corporation
Product name:Windows Media Player Network Sharing Service
Description:Microsoft® Windows® Operating System
Typical file path:C:\Program Files\windows media player\wmpnetwk.exe
Original name:WMPNetwk.exe.mui
File version:11.0.6000.6324 (vista_rtm.061101-2205)
Product version:11.0.6000.6324
Size:1.16 MB (1,216,000 bytes)
Digital DNA
Entropy:6.453524
File packed:No
Code language:Microsoft Visual C++
.NET CLR:No
More details

BehaviorsBehaviors

Services
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
Network connections
  • [UDP] listens on port 56122
  • [UDP] listens on port 5005
  • [UDP] listens on port 52951
  • [UDP] listens on port 64249

  • ResourcesResource utilization

    (Note: statistics below are averages based on a minimum sample size of 200 unique participants)
    Averages
     
    CPU
    Total CPU:0.00125952%
    0.028634%
    Kernel CPU:0.00048647%
    0.013761%
    User CPU:0.00077306%
    0.014873%
    Kernel CPU time:101,402 ms/min
    100,923,805ms/min
    CPU cycles:2,499,191/sec
    17,470,203/sec
    Context switches:39/sec
    284/sec
    Memory
    Private memory:12.99 MB
    21.59 MB
    Private (maximum):26.42 MB
    Private (minimum):14.25 MB
    Non-paged memory:12.99 MB
    21.59 MB
    Virtual memory:129.78 MB
    140.96 MB
    Virtual memory (peak):138.54 MB
    169.69 MB
    Working set:23.23 MB
    18.61 MB
    Working set (peak):26.97 MB
    37.95 MB
    Page faults:24,419/min
    2,039/min
    I/O
    I/O read transfer:10.3 KB/sec
    1.02 MB/min
    I/O read operations:2/sec
    343/min
    I/O write transfer:78 Bytes/sec
    274.99 KB/min
    I/O write operations:1/sec
    227/min
    I/O other transfer:3.73 KB/sec
    448.09 KB/min
    I/O other operations:116/sec
    1,671/min
    Resource allocations
    Threads:14
    12
    Handles:290
    600

    BehaviorsProcess properties

    Integrety level:System
    Platform:64-bit
    Command line:"C:\Program Files\windows media player\wmpnetwk.exe"
    Owner:NETWORK SERVICE
    Windows Service
    Service name:WMPNetworkSvc
    Display name:A Windows Media Player hálózatmegosztási szolgáltatása
    Description:“Consente di condividere il Catalogo multimediale di Windows Media Player con altri lettori e dispositivi multimediali in rete mediante Universal Plug and Play”
    Type:Win32OwnProcess
    Parent process:services.exe (Services and Controller app by Microsoft)

    ResourcesThreads

    Averages
     
    ole32.dll
    Total CPU:0.08880023%
    0.272967%
    Kernel CPU:0.03279097%
    0.107585%
    User CPU:0.05600926%
    0.165382%
    CPU cycles:2,951,547/sec
    5,741,424/sec
    Context switches:12/sec
    79/sec
    Memory:1.84 MB
    1.16 MB
    wmp.dll
    Total CPU:0.02693140%
    Kernel CPU:0.00830856%
    User CPU:0.01862284%
    CPU cycles:5,168,346/sec
    Context switches:9/sec
    Memory:12.87 MB
    msvcrt.dll (Windows NT CRT DLL by Microsoft)
    Total CPU:0.00319372%
    Kernel CPU:0.00206716%
    User CPU:0.00112656%
    CPU cycles:4,147,148/sec
    Context switches:100/sec
    Memory:624 KB
    ntdll.dll
    Total CPU:0.00085681%
    Kernel CPU:0.00071824%
    User CPU:0.00013857%
    CPU cycles:25,420/sec
    Memory:1.52 MB
    wmpnetwk.exe (main module)
    Total CPU:0.00022234%
    Kernel CPU:0.00015207%
    User CPU:0.00007027%
    CPU cycles:4,719/sec
    Memory:1.18 MB
    winhttp.dll (Windows HTTP Services by Microsoft)
    Total CPU:0.00009986%
    Kernel CPU:0.00009986%
    User CPU:0.00000000%
    CPU cycles:33/sec
    Memory:448 KB
    SSDPAPI.dll
    Total CPU:0.00003894%
    Kernel CPU:0.00002707%
    User CPU:0.00001187%
    CPU cycles:678/sec
    Memory:64 KB
    ADVAPI32.dll
    Total CPU:0.00003382%
    Kernel CPU:0.00002680%
    User CPU:0.00000702%
    CPU cycles:8,326/sec
    Memory:1.03 MB
    RPCRT4.dll
    Total CPU:0.00002610%
    Kernel CPU:0.00000000%
    User CPU:0.00002610%
    CPU cycles:226/sec
    Memory:1.26 MB

    Common loaded modules

    These are modules that are typiclaly loaded within the context of this process.

    Windows OS versionsDistribution by Windows OS

    OS versiondistribution
    Windows 7 Home Premium 58.50%
    Windows 7 Ultimate 23.50%
    Windows 7 Professional 9.50%
    Windows Vista Home Premium 3.50%
    Windows 7 Home Basic 2.00%
    Windows Seven Black Edition 1.00%
    Microsoft Windows XP 1.00%
    Windows 8 Pro 0.50%
    Windows 7 Starter 0.50%

    Distribution by countryDistribution by country

    United States installs about 51.52% of Windows Media Player Network Sharing Service.

    OEM distributionDistribution by PC manufacturer

    PC Manufacturerdistribution
    Dell 24.80%
    Hewlett-Packard 19.60%
    ASUS 16.80%
    Toshiba 13.60%
    Acer 12.00%
    Sony 6.40%
    Alienware 1.60%
    GIGABYTE 1.60%
    Lenovo 1.60%
    Samsung 1.20%
    Sahara 0.80%
    Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

    Download it for FREE