Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

5.1.2600.5997 (xpsp_sp3_gdr.100614-1759) 66.67%
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) 33.33%

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
SetSecurityDescriptorDacl, CryptAcquireContextW, CryptCreateHash, CryptHashData, CryptDeriveKey, CryptEncrypt, CryptDecrypt, CryptDestroyHash, CryptDestroyKey, CryptReleaseContext, ReportEventW, DeregisterEventSource, RegisterEventSourceW, ConvertStringSecurityDescriptorToSecurityDescriptorW, ConvertSidToStringSidW, RegGetKeySecurity, GetFileSecurityW, GetSecurityDescriptorOwner, GetSecurityDescriptorGroup, GetSecurityDescriptorSacl, SetSecurityDescriptorSacl, LsaOpenPolicy, LsaAddAccountRights, LsaNtStatusToWinError, CryptVerifySignatureW, CryptImportKey, LogonUserW, CreateProcessAsUserW, DuplicateTokenEx, CreateServiceW, ChangeServiceConfig2W, ControlService, DeleteService, StartServiceCtrlDispatcherW, RegisterServiceCtrlHandlerW, SetServiceStatus, OpenSCManagerW, OpenServiceW, CloseServiceHandle, RevertToSelf, LsaClose, RegSetKeySecurity, SetFileSecurityW, RegDeleteKeyW, RegDeleteValueW, RegCloseKey, RegCreateKeyExW, RegOpenKeyExW, RegSetValueExW, RegQueryInfoKeyW, RegEnumValueW, RegEnumKeyExW, InitializeAcl, InitializeSecurityDescriptor, MakeAbsoluteSD, RegQueryValueExW, IsValidSecurityDescriptor, MakeSelfRelativeSD, SetSecurityDescriptorGroup, SetSecurityDescriptorOwner, AddAccessDeniedAce, GetAce, AddAccessAllowedAce, GetLengthSid, GetAclInformation, IsValidAcl, GetSecurityDescriptorDacl, DeleteAce, EqualSid, LookupAccountNameW, FreeSid, AllocateAndInitializeSid, RegConnectRegistryW, RegEnumKeyW, AdjustTokenPrivileges, LookupPrivilegeValueW, OpenProcessToken, AddAce, ConvertSecurityDescriptorToStringSecurityDescriptorW, GetSecurityDescriptorControl, SetSecurityDescriptorControl, SetThreadToken, AccessCheck, MapGenericMask, CopySid, GetTokenInformation, OpenThreadToken, ConvertStringSidToSidW, LookupAccountSidW, AddAccessAllowedAceEx, AddAccessDeniedAceEx, AddAuditAccessAceEx, AddAccessAllowedObjectAce, AddAccessDeniedObjectAce, AddAuditAccessObjectAce
kernel32.dll
CreateFileMappingW, OpenFileMappingW, MapViewOfFile, lstrcpyW, lstrcatW, GetProcAddress, CreateThread, FindCloseChangeNotification, FindFirstChangeNotificationW, FindNextChangeNotification, GetLocaleInfoW, IsDBCSLeadByte, CompareStringA, SetThreadPriority, FormatMessageW, GetWindowsDirectoryW, LocalAlloc, LoadLibraryA, RaiseException, ResetEvent, MoveFileW, ReleaseMutex, FlushViewOfFile, UnmapViewOfFile, OpenMutexW, SetLastError, lstrcmpiA, MultiByteToWideChar, lstrlenW, EnterCriticalSection, LeaveCriticalSection, InitializeCriticalSection, DeleteCriticalSection, lstrcmpiW, lstrcpynW, HeapDestroy, InterlockedIncrement, InterlockedDecrement, FreeLibrary, lstrlenA, SizeofResource, LoadResource, FindResourceW, GetLastError, LoadLibraryExW, GetShortPathNameW, GetModuleFileNameW, GetVersionExW, GetCommandLineW, GetPrivateProfileStringW, QueryPerformanceCounter, GetTickCount, GetCurrentThreadId, GetCurrentProcessId, GetSystemTimeAsFileTime, TerminateProcess, GetCurrentProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, InterlockedExchange, Sleep, LoadLibraryW, WaitForMultipleObjects, SetEvent, CloseHandle, CreateEventW, WaitForSingleObject, GetCurrentThread, SetEnvironmentVariableW, GetTempPathW, GetEnvironmentVariableW, CopyFileW, SetFileAttributesW, DeleteFileW, MoveFileExW, GetFileAttributesExW, CreateDirectoryW, FindClose, FindNextFileW, FindFirstFileW, RemoveDirectoryW, CreateFileW, CompareFileTime, GetSystemDefaultUILanguage, GetUserDefaultUILanguage, GetSystemTime, GetLocalTime, OpenProcess, GlobalMemoryStatusEx, GetSystemDirectoryW, GlobalUnlock, GlobalLock, GlobalSize, GlobalAlloc, FileTimeToSystemTime, GetUserDefaultLCID, GetTimeZoneInformation, GetCurrentDirectoryW, GetFullPathNameW, ExpandEnvironmentStringsW, GetDiskFreeSpaceW, GetTempFileNameW, WideCharToMultiByte, LocalFree, DuplicateHandle, WriteFile, SetFilePointer, ReadFile, GetFileInformationByHandle, GlobalFree, GetModuleHandleA, GetStartupInfoW, GetFileAttributesA, FileTimeToDosDateTime, FileTimeToLocalFileTime, CreateFileA, HeapAlloc, HeapReAlloc, GetThreadPriority, IsDBCSLeadByteEx, GetSystemDefaultLangID, GetLocaleInfoA, GetACP, HeapFree, GetProcessHeap, CreateMutexW
msvcrt.dll
DllMain
ntdll.dll
wcsncmp, sprintf, strrchr, tolower, strchr, _wtol, _itow, _ltow, wcsstr, _snwprintf, towlower, strtoul, wcstoul, NtQueryInformationProcess, strncpy
ole32.dll
CLSIDFromString, CoSuspendClassObjects, CoRegisterClassObject, StringFromCLSID, CoSetProxyBlanket, GetHGlobalFromStream, StgOpenStorageEx, StgCreateStorageEx, CoGetCallContext, CreateStreamOnHGlobal, CoCreateGuid, StringFromGUID2, CoCreateInstanceEx, CoInitializeEx, CoInitializeSecurity, CoUninitialize, CoTaskMemRealloc, CoTaskMemAlloc, CoTaskMemFree, CoCreateInstance, CoRevokeClassObject
rpcrt4.dll
I_RpcBindingInqLocalClientPID
user32.dll
CharUpperBuffW, CharUpperW, CharNextA, GetSystemMetrics, GetMessageW, DispatchMessageW, MsgWaitForMultipleObjects, LoadStringW, CharNextW, PostThreadMessageW, TranslateMessage, PeekMessageW

HELPSVC.exe

Microsoft Help Center Service by Microsoft

Remove HELPSVC.exe
Version:   5.1.2600.5997 (xpsp_sp3_gdr.100614-1759)
MD5:   e5517d0908ca75eef9633a93ff3f0408
SHA1:   f8f38dee458d4ed6d5f98830f2578a2bca517e89
SHA256:   adbf3948908ab0c487d2b536e2f8e0c0803ef2bde109ac525677582549f7a7e2
This is a Windows system installed file with Windows File Protection (WFP) enabled.

What is HELPSVC.exe?

The Help and Support Center in the Windows® XP operating system represents a significant milestone in delivering a single resource for Online Help, support, tools, how to articles, and other resources.

About HELPSVC.exe (from Microsoft)

The Help and Support Center in the Windows® XP operating system represents a significant milestone in delivering a single resource for Online Help, support, tools, how to articles, and other resources

DetailsDetails

File name:helpsvc.exe
Publisher:Microsoft Corporation
Product name:Microsoft Help Center Service
Description:Microsoft® Windows® Operating System
Typical file path:C:\windows\pchealth\helpctr\binaries\helpsvc.exe
File version:5.1.2600.5997 (xpsp_sp3_gdr.100614-1759)
Product version:5.1.2600.5997
Size:727 KB (744,448 bytes)
Digital DNA
PE subsystem:Windows GUI
Entropy:6.196807
File packed:No
Code language:Microsoft Visual C++
.NET CLR:No
More details

ResourcesPrograms

The following programs will install this file
Hewlett-Packard
3% remove
Hewlett-Packard
7% remove
Microsoft Corporation
5% remove
User-Mode Driver Framework (UMDF) is a library that you can use to develop user-mode drivers that support the Microsoft Windows Driver Model (WDM). UMDF provides common driver functionality, which enables you to write a driver with significantly less code than in WDM. A UMDF driver supports events to which its device must respond and features that are unique to its device.

BehaviorsBehaviors

Windows firewall allowed programs
Exceptions allow programs to access to the Internet through an outbound connections
  • Firewall exception for '%WINDIR%\PCHealth\HelpCtr\Binaries\Helpsvc.exC:*:EnableC:Offer Remote Assistance'
  • Firewall exception for '%systemroot%\pchealth\helpctr\binaries\helpsvc.exC:0.0.0.0:enableC:Remote Assistance'

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00027379%
0.028634%
Kernel CPU:0.00020646%
0.013761%
User CPU:0.00006733%
0.014873%
Kernel CPU time:63 ms/min
100,923,805ms/min
Context switches:1/sec
284/sec
Memory
Private memory:5 MB
21.59 MB
Private (maximum):8.66 MB
Private (minimum):8.62 MB
Non-paged memory:5 MB
21.59 MB
Virtual memory:64.95 MB
140.96 MB
Virtual memory (peak):67.01 MB
169.69 MB
Working set:8.62 MB
18.61 MB
Working set (peak):8.66 MB
37.95 MB
Page faults:2,298/min
2,039/min
I/O
I/O read transfer:134.64 KB/sec
1.02 MB/min
I/O read operations:47/sec
343/min
I/O write transfer:240.63 KB/sec
274.99 KB/min
I/O write operations:3/sec
227/min
I/O other transfer:21.6 KB/sec
448.09 KB/min
I/O other operations:188/sec
1,671/min
Resource allocations
Threads:9
12
Handles:154
600
GUI GDI count:4
103
GUI USER count:3
49

BehaviorsProcess properties

Integrety level:Undefined
Platform:32-bit
Command line:"C:\windows\pchealth\helpctr\binaries\helpsvc.exe" /embedding
Owner:SYSTEM
Parent process:svchost.exe (Generic Host Process for Win32 Services by Microsoft)

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows XP Professional 33.33%
Windows 7 Home Premium 33.33%
Microsoft Windows XP 33.33%

Distribution by countryDistribution by country

United States installs about 100.00% of Microsoft Help Center Service.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Dell 100.00%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE