Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

6.0.6002.18005 (lh_sp2rtm.090410-1830) 60.34%
6.0.6002.18005 (lh_sp2rtm.090410-1830) 10.34%
6.0.6001.18000 (longhorn_rtm.080118-1840) 8.62%
6.0.6000.16386 (vista_rtm.061101-2205) 1.72%
5.1.2600.5512 (xpsp.080413-2105) 5.17%
5.1.2600.5512 (xpsp.080413-2105) 8.62%
5.1.2600.5512 (xpsp.080413-2105) 1.72%
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) 1.72%
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) 1.72%

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
RegQueryValueExW, RegOpenKeyExW, RegCloseKey
gdi32.dll
GetStockObject, TranslateCharsetInfo
imm32.dll
ImmCreateContext, ImmReleaseContext, ImmGetContext, ImmGetGuideLineW, ImmGetConversionStatus, ImmGetOpenStatus, ImmSetConversionStatus, ImmGetProperty, ImmAssociateContext, ImmSimulateHotKey, ImmTranslateMessage, ImmCallImeConsoleIME, ImmGetIMEFileNameW, ImmEscapeW, ImmNotifyIME, ImmGetCandidateListW, ImmGetCompositionStringW, ImmGetHotKey, ImmSetActiveContextConsoleIME, ImmDestroyContext, ImmSetOpenStatus, ImmDisableTextFrameService, ImmIsIME
kernel32.dll
lstrlenA, MultiByteToWideChar, VirtualQuery, RegisterConsoleIME, InterlockedExchange, Sleep, GetSystemInfo, VirtualAlloc, VirtualProtect, GetVersionExW, InterlockedDecrement, InterlockedIncrement, lstrlenW, WideCharToMultiByte, GetCommandLineW, RegisterApplicationRestart, HeapSetInformation, SetEvent, CreateThread, GetCurrentThreadId, OpenEventW, WaitForSingleObject, CloseHandle, GetACP, LocalAlloc, LocalReAlloc, LocalFree, UnhandledExceptionFilter, GetCurrentProcess, TerminateProcess, GetSystemTimeAsFileTime, GetCurrentProcessId, GetTickCount, QueryPerformanceCounter, GetModuleHandleA, SetUnhandledExceptionFilter, GetStartupInfoA, InterlockedCompareExchange, UnregisterConsoleIME, lstrcpyW, lstrcatW, lstrcpynW, GetSystemDirectoryW, SetCurrentDirectoryW
msctf.dll
TF_IsCtfmonRunning, TF_WaitForInitialized, TF_Notify
msvcrt.dll
DllMain
ntdll.dll
RtlLeaveCriticalSection, NtOpenProcessToken, RtlUnicodeToMultiByteSize, NtQueryInformationToken, NtClose, RtlInitializeCriticalSection, NtQueryVirtualMemory, RtlUnwind, RtlCopyLuid, RtlEnterCriticalSection
ole32.dll
CoUninitialize, CoCreateInstance, CoInitializeEx
user32.dll
IsWindowEnabled, EnableWindow, UnregisterClassW, CreateWindowExW, RegisterClassW, LoadCursorW, SetForegroundWindow, RegisterWindowMessageW, DispatchMessageW, TranslateMessage, GetMessageW, GetKeyState, GetKeyboardLayoutNameW, PostQuitMessage, DefWindowProcW, GetGUIThreadInfo, IsWindow, DestroyWindow, SetTimer, LoadIconW, PostMessageW, SendMessageTimeoutW, KillTimer, AttachThreadInput, ActivateKeyboardLayout, GetKeyboardLayoutList, LoadStringW, GetSystemMetrics
uxtheme.dll
SetThemeAppProperties

CONIME.exe

Console IME by Microsoft

Remove CONIME.exe
Version:   5.1.2600.5512 (xpsp.080413-2105)
MD5:   abc9002269e569538901109441660dd2
SHA1:   7ef33a2fe818bea3d8b32061369d6ae615aeacb9
SHA256:   ecc72676b7cbf977b46a83ecf5276ce22c09c6d62248dd5620ee2402f02e51db
This is a Windows system installed file with Windows File Protection (WFP) enabled.

Overview

conime.exe executes as a process with the local user's privileges. It is set to be start when the PC boots and any user logs into Windows (added to the Run registry key for the all users under the local machine). This version is installed on Windows XP and is compiled as a 32 bit program.

DetailsDetails

File name:conime.exe
Publisher:Microsoft Corporation
Product name:Console IME
Description:Microsoft® Windows® Operating System
Typical file path:C:\Windows\System32\conime.exe
File version:5.1.2600.5512 (xpsp.080413-2105)
Product version:5.1.2600.5512
Size:27 KB (27,648 bytes)
Digital DNA
PE subsystem:Windows GUI
File packed:No
Code language:Microsoft Visual C++
.NET CLR:No
More details

BehaviorsBehaviors

Startup files (all users) run
Runs under the registry key 'HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run'
  • 'Conime' → %windir%\system32\conime.exe

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00219222%
0.028634%
Kernel CPU:0.00190180%
0.013761%
User CPU:0.00029042%
0.014873%
Kernel CPU time:203 ms/min
100,923,805ms/min
Memory
Private memory:1.19 MB
21.59 MB
Private (maximum):4.02 MB
Private (minimum):124 KB
Non-paged memory:1.19 MB
21.59 MB
Virtual memory:32.75 MB
140.96 MB
Virtual memory (peak):35.55 MB
169.69 MB
Working set:464 KB
18.61 MB
Working set (peak):4.02 MB
37.95 MB
Page faults:1,227/min
2,039/min
I/O
I/O read transfer:23 Bytes/sec
1.02 MB/min
I/O read operations:1/sec
343/min
I/O write transfer:0 Bytes/sec
274.99 KB/min
I/O write operations:1/sec
227/min
I/O other transfer:138 Bytes/sec
448.09 KB/min
I/O other operations:1/sec
1,671/min
Resource allocations
Threads:1
12
Handles:49
600
GUI GDI count:19
103
GUI USER count:12
49

BehaviorsProcess properties

Integrety level:Undefined
Platform:32-bit
Command line:C:\Windows\System32\conime.exe
Owner:User

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows Vista Home Premium 50.00%
Microsoft Windows XP 20.69%
Windows Vista Home Basic 15.52%
Windows Vista Ultimate 8.62%
Windows Vista Business 5.17%

Distribution by countryDistribution by country

Germany installs about 12.28% of Console IME.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Hewlett-Packard 20.00%
ASUS 17.14%
Sony 11.43%
Dell 11.43%
American Megatrends 8.57%
GIGABYTE 5.71%
Acer 5.71%
Gateway 5.71%
Toshiba 5.71%
Sahara 2.86%
Packard Bell 2.86%
Samsung 2.86%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE