Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

2, 0, 14, 1 61.04%
2, 00, 5, 4 9.09%
2, 00, 2, 5 6.49%
2, 00, 2, 4 3.90%
2, 0, 1, 9 14.29%
2, 0, 1, 5 3.90%
2, 0, 1, 2 1.30%

PE structurePE file structure

Show functions
Import table
advapi32.dll
StartServiceCtrlDispatcherW, RegisterServiceCtrlHandlerW, CreateWellKnownSid, OpenThreadToken, OpenProcessToken, SetSecurityDescriptorDacl, ControlService, DeleteService, CreateServiceW, InitializeAcl, AddAccessAllowedAce, GetAclInformation, AddAce, GetAce, GetTokenInformation, SetSecurityDescriptorGroup, SetSecurityDescriptorOwner, InitializeSecurityDescriptor, IsValidSid, GetLengthSid, CopySid, RegQueryValueExW, RegisterEventSourceW, ReportEventW, DeregisterEventSource, SetServiceStatus, OpenSCManagerW, OpenServiceW, CloseServiceHandle, RegEnumKeyExW, RegQueryInfoKeyW, RegSetValueExW, RegOpenKeyExW, RegCreateKeyExW, RegCloseKey, RegDeleteValueW, RegDeleteKeyW
gdi32.dll
Escape, SelectObject, SetViewportOrgEx, OffsetViewportOrgEx, SetViewportExtEx, ScaleViewportExtEx, SetWindowExtEx, ScaleWindowExtEx, DeleteDC, GetStockObject, PtVisible, TextOutW, RectVisible, SetMapMode, GetDeviceCaps, CreateBitmap, GetClipBox, SetTextColor, SetBkColor, DeleteObject, ExtTextOutW, RestoreDC, SaveDC
kernel32.dll
GetConsoleCP, GetLocaleInfoA, IsValidCodePage, GetOEMCP, GetACP, GetCPInfo, GetSystemTimeAsFileTime, GetTickCount, QueryPerformanceCounter, GetStartupInfoA, GetFileType, SetHandleCount, GetEnvironmentStringsW, FreeEnvironmentStringsW, GetModuleFileNameA, GetConsoleMode, HeapCreate, VirtualAlloc, VirtualFree, IsDebuggerPresent, SetUnhandledExceptionFilter, UnhandledExceptionFilter, TerminateProcess, ExitProcess, HeapSize, HeapReAlloc, GetStartupInfoW, HeapFree, HeapAlloc, RtlUnwind, GetStringTypeA, GetStringTypeW, LCMapStringA, LCMapStringW, SetStdHandle, WriteConsoleA, GetConsoleOutputCP, WriteConsoleW, CreateFileA, CreateDirectoryW, GetLocalTime, GetModuleHandleA, SetEndOfFile, FlushFileBuffers, SetFilePointer, WriteFile, ReadFile, GlobalFlags, GlobalAddAtomW, GlobalFindAtomW, GlobalDeleteAtom, LoadLibraryW, LoadLibraryA, lstrcmpW, GetVersionExA, lstrlenA, lstrcmpA, WideCharToMultiByte, GetCurrentProcessId, LockResource, TlsFree, GlobalFree, LocalReAlloc, TlsSetValue, TlsAlloc, GlobalAlloc, GlobalHandle, GlobalUnlock, GlobalReAlloc, GlobalLock, TlsGetValue, SetLastError, OpenEventW, PulseEvent, InitializeCriticalSectionAndSpinCount, GetCommandLineW, SetEvent, GetCurrentThreadId, CreateTimerQueue, CreateTimerQueueTimer, GetVersionExW, CreateThread, Sleep, GetCurrentThread, GetCurrentProcess, DeleteTimerQueue, WaitForSingleObject, CreateEventW, LocalAlloc, LocalFree, ExpandEnvironmentStringsW, DeleteFileW, CreateFileW, CloseHandle, LoadLibraryExW, GetProcessHeap, FindResourceW, LoadResource, SizeofResource, MultiByteToWideChar, FreeLibrary, GetModuleFileNameW, InterlockedDecrement, InterlockedIncrement, lstrcmpiW, GetModuleHandleW, GetProcAddress, GetLastError, DeleteCriticalSection, InitializeCriticalSection, RaiseException, lstrlenW, EnterCriticalSection, GetStdHandle, LeaveCriticalSection, InterlockedExchange, GetThreadLocale, HeapDestroy, FreeEnvironmentStringsA, GetEnvironmentStrings, GetCommandLineA
ole32.dll
CoResumeClassObjects, CoInitializeSecurity, CoCreateInstance, StringFromGUID2, CoUninitialize, CoRevokeClassObject, CoSuspendClassObjects, CoInitializeEx, CoTaskMemFree, CoTaskMemRealloc, CoTaskMemAlloc, CoFreeUnusedLibraries, CoSetProxyBlanket, CoRegisterClassObject
oleacc.dll
CreateStdAccessibleObject, LresultFromObject
shell32.dll
SHGetFolderPathW
user32.dll
WinHelpW, GetCapture, GetClassLongW, GetClassNameW, SetPropW, GetPropW, RemovePropW, LoadIconW, CharNextW, TranslateMessage, DispatchMessageW, IsWindow, GetForegroundWindow, GetDlgItem, GetTopWindow, DestroyWindow, GetMessageTime, GetMessagePos, MapWindowPoints, SetMenu, SetForegroundWindow, GetClientRect, PostMessageW, CreateWindowExW, GetClassInfoExW, GetClassInfoW, RegisterWindowMessageW, AdjustWindowRectEx, GetDlgCtrlID, DefWindowProcW, CallWindowProcW, CopyRect, PtInRect, GetMenu, SetWindowLongW, SetWindowPos, GetMessageW, LoadStringW, PostThreadMessageW, CharUpperW, UnhookWindowsHookEx, MessageBoxW, EnableWindow, IsWindowEnabled, GetLastActivePopup, GetWindowLongW, GetParent, SendMessageW, GetWindowThreadProcessId, GetSubMenu, GetMenuItemCount, GetMenuItemID, GetMenuState, ValidateRect, PeekMessageW, GetKeyState, SetWindowTextW, ClientToScreen, DestroyMenu, TabbedTextOutW, DrawTextW, DrawTextExW, GrayStringW, PostQuitMessage, RegisterClassW, SystemParametersInfoA, IsIconic, GetWindowPlacement, GetWindowRect, GetWindow, SetMenuItemBitmaps, GetMenuCheckMarkDimensions, LoadBitmapW, GetFocus, ModifyMenuW, EnableMenuItem, CheckMenuItem, GetWindowTextW, LoadCursorW, GetSystemMetrics, GetDC, ReleaseDC, GetSysColor, GetSysColorBrush, SetWindowsHookExW, CallNextHookEx, UnregisterClassA
winspool.drv
ClosePrinter, OpenPrinterW, DocumentPropertiesW

hpqwmiex.exe

hpqwmiex Module by Hewlett-Packard Company (Signed)

Remove hpqwmiex.exe
Version:   2, 0, 1, 5
MD5:   16cf6f0847c36ff3a85930ecbc4d3c43
SHA1:   7b54ad04e766e71a63c62d4f5a4b29d887de5b15
SHA256:   19368bea4fcbf93ba551cf73a22c5706b4f5a77b7c396ccbb76c9233665c4581

Overview

hpqwmiex.exe runs as a service under the name hpqwmiex with extensive SYSTEM privileges (full administrator access). The file is digitally signed by Hewlett-Packard Company which was issued by the VeriSign certificate authority (CA).

DetailsDetails

File name:hpqwmiex.exe
Publisher:Hewlett-Packard Development Company, L.P.
Product name:hpqwmiex Module
Typical file path:C:\Program Files\hewlett-packard\shared\hpqwmiex.exe
File version:2, 0, 1, 5
Size:96 KB (98,304 bytes)
Certificate
Issued to:Hewlett-Packard Company
Authority (CA):VeriSign
Effective date:Wednesday, December 17, 2008
Expiration date:Sunday, December 18, 2011
Digital DNA
File packed:No
.NET CLR:No
More details

BehaviorsBehaviors

Service
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
  • 'hpqwmiex'

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00019830%
0.028634%
Kernel CPU:0.00014510%
0.013761%
User CPU:0.00005320%
0.014873%
Kernel CPU time:70 ms/min
100,923,805ms/min
Memory
Private memory:3.29 MB
21.59 MB
Private (maximum):2.12 MB
Private (minimum):260 KB
Non-paged memory:3.29 MB
21.59 MB
Virtual memory:35.73 MB
140.96 MB
Virtual memory (peak):37.23 MB
169.69 MB
Working set:270 KB
18.61 MB
Working set (peak):3.98 MB
37.95 MB
Page faults:1,062/min
2,039/min
I/O
I/O read transfer:35 Bytes/sec
1.02 MB/min
I/O read operations:1/sec
343/min
I/O write transfer:0 Bytes/sec
274.99 KB/min
I/O write operations:1/sec
227/min
I/O other transfer:103 Bytes/sec
448.09 KB/min
I/O other operations:1/sec
1,671/min
Resource allocations
Threads:3
12
Handles:94
600
GUI GDI count:4
103
GUI USER count:2
49

BehaviorsProcess properties

Integrety level:Undefined
Platform:32-bit
Command line:"C:\Program Files\hewlett-packard\shared\hpqwmiex.exe"
Owner:SYSTEM
Windows Service
Service name:hpqwmiex
Type:Win32OwnProcess
Parent process:services.exe (Services and Controller app by Microsoft)

ResourcesThreads

Averages
 
hpqwmiex.exe (main module)
Total CPU:0.00009201%
0.272967%
Kernel CPU:0.00009201%
0.107585%
User CPU:0.00000000%
0.165382%
Memory:104 KB
1.16 MB
advapi32.dll (Advanced Windows 32 Base API by Microsoft)
Total CPU:0.00006901%
Kernel CPU:0.00004601%
User CPU:0.00002300%
Memory:620 KB

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Home Premium 36.36%
Windows 7 Ultimate 25.45%
Windows Vista Home Premium 18.18%
Windows Vista Home Basic 5.45%
Windows Vista Business 3.64%
Windows 7 Starter 3.64%
Windows 8 Pro 3.64%
Windows 7 Professional 1.82%
Microsoft Windows XP 1.82%

Distribution by countryDistribution by country

United States installs about 56.36% of hpqwmiex Module.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Hewlett-Packard 81.08%
ASUS 10.81%
Acer 8.11%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE