Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

6.0.6002.18005 (lh_sp2rtm.090410-1830) 60.34%
6.0.6002.18005 (lh_sp2rtm.090410-1830) 10.34%
6.0.6001.18000 (longhorn_rtm.080118-1840) 8.62%
6.0.6000.16386 (vista_rtm.061101-2205) 1.72%
5.1.2600.5512 (xpsp.080413-2105) 5.17%
5.1.2600.5512 (xpsp.080413-2105) 8.62%
5.1.2600.5512 (xpsp.080413-2105) 1.72%
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) 1.72%
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) 1.72%

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
RegQueryValueExW, RegOpenKeyExW, RegCloseKey
gdi32.dll
GetStockObject, TranslateCharsetInfo
imm32.dll
ImmCreateContext, ImmReleaseContext, ImmGetContext, ImmGetGuideLineW, ImmGetConversionStatus, ImmGetOpenStatus, ImmSetConversionStatus, ImmGetProperty, ImmAssociateContext, ImmSimulateHotKey, ImmTranslateMessage, ImmCallImeConsoleIME, ImmGetIMEFileNameW, ImmEscapeW, ImmNotifyIME, ImmGetCandidateListW, ImmGetCompositionStringW, ImmGetHotKey, ImmSetActiveContextConsoleIME, ImmDestroyContext, ImmSetOpenStatus, ImmDisableTextFrameService, ImmIsIME
kernel32.dll
lstrlenA, MultiByteToWideChar, VirtualQuery, RegisterConsoleIME, InterlockedExchange, Sleep, GetSystemInfo, VirtualAlloc, VirtualProtect, GetVersionExW, InterlockedDecrement, InterlockedIncrement, lstrlenW, WideCharToMultiByte, GetCommandLineW, RegisterApplicationRestart, HeapSetInformation, SetEvent, CreateThread, GetCurrentThreadId, OpenEventW, WaitForSingleObject, CloseHandle, GetACP, LocalAlloc, LocalReAlloc, LocalFree, UnhandledExceptionFilter, GetCurrentProcess, TerminateProcess, GetSystemTimeAsFileTime, GetCurrentProcessId, GetTickCount, QueryPerformanceCounter, GetModuleHandleA, SetUnhandledExceptionFilter, GetStartupInfoA, InterlockedCompareExchange, UnregisterConsoleIME, lstrcpyW, lstrcatW, lstrcpynW, GetSystemDirectoryW, SetCurrentDirectoryW
msctf.dll
TF_IsCtfmonRunning, TF_WaitForInitialized, TF_Notify
msvcrt.dll
DllMain
ntdll.dll
RtlLeaveCriticalSection, NtOpenProcessToken, RtlUnicodeToMultiByteSize, NtQueryInformationToken, NtClose, RtlInitializeCriticalSection, NtQueryVirtualMemory, RtlUnwind, RtlCopyLuid, RtlEnterCriticalSection
ole32.dll
CoUninitialize, CoCreateInstance, CoInitializeEx
user32.dll
IsWindowEnabled, EnableWindow, UnregisterClassW, CreateWindowExW, RegisterClassW, LoadCursorW, SetForegroundWindow, RegisterWindowMessageW, DispatchMessageW, TranslateMessage, GetMessageW, GetKeyState, GetKeyboardLayoutNameW, PostQuitMessage, DefWindowProcW, GetGUIThreadInfo, IsWindow, DestroyWindow, SetTimer, LoadIconW, PostMessageW, SendMessageTimeoutW, KillTimer, AttachThreadInput, ActivateKeyboardLayout, GetKeyboardLayoutList, LoadStringW, GetSystemMetrics
uxtheme.dll
SetThemeAppProperties

CONIME.exe

Console IME by Microsoft

Remove CONIME.exe
Version:   6.0.6000.16386 (vista_rtm.061101-2205)
MD5:   05cb3da78a4bbd9b799a5957f9d101cc
SHA1:   a012c3a14e8117d3b68c215101a84de10b33e0f5
SHA256:   1448b75e3921e0f3f20949b7db089a392c30e1c22275ee3fdd3fa9824cc08433
This is a Windows system installed file with Windows File Protection (WFP) enabled.

Overview

conime.exe executes as a process with the local user's privileges. It is set to be start when the PC boots and any user logs into Windows (added to the Run registry key for the all users under the local machine). This version is designed to run on Windows Vista and is compiled as a 32 bit program.

DetailsDetails

File name:conime.exe
Publisher:Microsoft Corporation
Product name:Console IME
Description:Microsoft® Windows® Operating System
Typical file path:C:\Windows\System32\conime.exe
File version:6.0.6000.16386 (vista_rtm.061101-2205)
Product version:6.0.6000.16386
Size:67 KB (68,608 bytes)
Digital DNA
PE subsystem:Windows GUI
File packed:No
Code language:Microsoft Visual C++
.NET CLR:No
More details

BehaviorsBehaviors

Startup files (all users) run
Runs under the registry key 'HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run'
  • 'Conime' → %windir%\system32\conime.exe

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00003670%
0.028634%
Kernel CPU:0.00003670%
0.013761%
Kernel CPU time:16 ms/min
100,923,805ms/min
CPU cycles:1,016/sec
17,470,203/sec
Memory
Private memory:828 KB
21.59 MB
Private (maximum):3.22 MB
Private (minimum):2.61 MB
Non-paged memory:828 KB
21.59 MB
Virtual memory:30.4 MB
140.96 MB
Virtual memory (peak):31.53 MB
169.69 MB
Working set:2.82 MB
18.61 MB
Working set (peak):3.22 MB
37.95 MB
Page faults:911/min
2,039/min
I/O
I/O read transfer:14 Bytes/sec
1.02 MB/min
I/O read operations:1/sec
343/min
I/O other transfer:3 Bytes/sec
448.09 KB/min
I/O other operations:1/sec
1,671/min
Resource allocations
Threads:1
12
Handles:34
600
GUI GDI count:8
103
GUI USER count:7
49

BehaviorsProcess properties

Integrety level:High
Platform:32-bit
Command line:C:\Windows\System32\conime.exe
Owner:User

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows Vista Home Premium 50.00%
Microsoft Windows XP 20.69%
Windows Vista Home Basic 15.52%
Windows Vista Ultimate 8.62%
Windows Vista Business 5.17%

Distribution by countryDistribution by country

Germany installs about 12.28% of Console IME.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Hewlett-Packard 20.00%
ASUS 17.14%
Sony 11.43%
Dell 11.43%
American Megatrends 8.57%
GIGABYTE 5.71%
Acer 5.71%
Gateway 5.71%
Toshiba 5.71%
Sahara 2.86%
Packard Bell 2.86%
Samsung 2.86%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE