Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

2, 0, 4, 0 50.00%
2, 0, 4, 0 50.00%
(Note, CA publishes each variation of this file with the same version, but the hashes are unique.)

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
RegQueryInfoKeyW, GetUserNameW, RegEnumKeyExW, RegDeleteKeyW, RegEnumValueW, RegQueryValueExW, RegSetValueExW, RegDeleteValueW, RegCreateKeyExW, RegCloseKey, RegOpenKeyExW
comdlg32.dll
GetFileTitleW
kernel32.dll
WaitForSingleObject, CloseHandle, CreateMutexW, ReleaseMutex, FreeLibrary, LoadLibraryExW, GetProcAddress, GetVersionExW, GetCurrentProcess, MultiByteToWideChar, WideCharToMultiByte, LocalFree, TlsGetValue, TlsSetValue, TlsAlloc, GetCurrentThreadId, LeaveCriticalSection, EnterCriticalSection, DeleteCriticalSection, InitializeCriticalSection, InterlockedCompareExchange, DeleteFileW, SetCurrentDirectoryW, GetFullPathNameW, GetShortPathNameW, FindFirstFileW, GetCurrentDirectoryW, GetModuleFileNameW, GetSystemDirectoryW, GetWindowsDirectoryW, GetTempPathW, GetTimeFormatW, GetDateFormatW, GetLocaleInfoW, GetTickCount, LocalAlloc, lstrlenW, OutputDebugStringA, OutputDebugStringW, CreateFileW, MoveFileW, WriteFile, FlushFileBuffers, GetThreadTimes, GetCurrentThread, FileTimeToSystemTime, SystemTimeToFileTime, FileTimeToLocalFileTime, GetSystemTimeAsFileTime, GetLocalTime, GetSystemTime, LocalFileTimeToFileTime, GetFileAttributesW, TryEnterCriticalSection, GetFileAttributesExW, InterlockedExchange, InterlockedDecrement, Sleep, HeapFree, TerminateProcess, UnhandledExceptionFilter, GetLastError, IsDebuggerPresent, GetCommandLineA, RtlUnwind, SetCurrentDirectoryA, GetFileInformationByHandle, PeekNamedPipe, GetFileType, RaiseException, GetTimeFormatA, GetDateFormatA, LCMapStringA, LCMapStringW, GetCPInfo, GetStringTypeW, CompareStringA, CompareStringW, HeapAlloc, HeapCreate, HeapDestroy, VirtualFree, VirtualAlloc, HeapReAlloc, GetModuleHandleW, TlsFree, SetLastError, HeapSize, ExitProcess, GetStdHandle, GetModuleFileNameA, SetHandleCount, GetStartupInfoA, FreeEnvironmentStringsA, GetEnvironmentStrings, FreeEnvironmentStringsW, GetEnvironmentStringsW, QueryPerformanceCounter, GetCurrentProcessId, SetStdHandle, CreateFileA, GetTimeZoneInformation, GetModuleHandleA, GetACP, GetOEMCP, IsValidCodePage, GetUserDefaultLCID, EnumSystemLocalesA, IsValidLocale, GetStringTypeA, InitializeCriticalSectionAndSpinCount, LoadLibraryA, SetFilePointer, GetConsoleCP, GetConsoleMode, SetEndOfFile, GetProcessHeap, ReadFile, WriteConsoleA, GetConsoleOutputCP, WriteConsoleW, SetEnvironmentVariableA, SetUnhandledExceptionFilter, FormatMessageW, GetLocaleInfoA, InterlockedIncrement
shfolder.dll
SHGetFolderPathW
version.dll
GetFileVersionInfoSizeW, VerQueryValueW, GetFileVersionInfoW

AmrtSettings.dll

Threat Management Engine by CA (Signed)

Remove AmrtSettings.dll
Version:   2, 0, 4, 0
MD5:   394d08e115daba90941b3761802aed55
SHA1:   22c5e1f6f404e9edb00d42f10d7d6ba10edfd655
SHA256:   60cd14e0634f0dae3e1fd0dec98c2a70aea0a729cf379f6b9ac4b3910f06e20e

Overview

amrtsettings.dll is loaded as dynamic link library that runs in the context of a process. The file is digitally signed by CA which was issued by the VeriSign certificate authority (CA).

DetailsDetails

File name:amrtsettings.dll
Publisher:CA
Product name:Threat Management Engine
Description:Anti Malware Runtime Settings
Typical file path:C:\Program Files\ca\sharedcomponents\tmengine\amrtsettings.dll
File version:2, 0, 4, 0
Product version:2, 1, 0, 1
Size:594.08 KB (608,336 bytes)
Certificate
Issued to:CA
Authority (CA):VeriSign
Digital DNA
PE subsystem:Windows GUI
File packed:No
.NET CLR:No
More details

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Home Premium 50.00%
Windows 7 Ultimate 50.00%

Distribution by countryDistribution by country

United States installs about 100.00% of Threat Management Engine.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Sony 100.00%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE