Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

6, 1, 16, 1 7.19%
4, 6, 10, 1 19.42%
4, 6, 8, 1 65.11%
4, 5, 12, 1 0.72%
4, 5, 10, 1 3.24%
4, 5, 1, 1 0.36%
4, 1, 13, 1 1.80%
4, 1, 12, 1 0.36%
4, 1, 8, 1 1.80%

Relationships

Parent process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
SetServiceStatus, CryptAcquireContextW, CryptReleaseContext, CryptVerifySignatureW, CryptDestroyKey, CryptDestroyHash, CryptCreateHash, CryptHashData, CryptImportKey, StartServiceCtrlDispatcherW, RegisterServiceCtrlHandlerExW, ControlService, DeleteService, CreateWellKnownSid, CreateServiceW, StartServiceW, OpenThreadToken, OpenProcessToken, InitializeAcl, AddAccessAllowedAce, GetAclInformation, AddAce, GetAce, GetTokenInformation, SetSecurityDescriptorGroup, SetSecurityDescriptorOwner, IsValidSid, GetLengthSid, CopySid, RegisterEventSourceW, ReportEventW, DeregisterEventSource, QueryServiceStatus, OpenServiceW, ChangeServiceConfigW, OpenSCManagerW, GetServiceKeyNameW, CloseServiceHandle, AllocateAndInitializeSid, SetEntriesInAclW, InitializeSecurityDescriptor, SetSecurityDescriptorDacl, FreeSid, RegQueryValueExW, RegEnumKeyExW, RegQueryInfoKeyW, RegSetValueExW, RegOpenKeyExW, RegCreateKeyExW, RegCloseKey, RegDeleteValueW, RegDeleteKeyW, EqualSid
kernel32.dll
DllMain, GetCurrentThreadId, CreateEventW, OpenProcess, GetVersionExW, DeleteTimerQueue, GetCurrentProcessId, CreateTimerQueueTimer, CreateTimerQueue, SetEnvironmentVariableW, GetVolumeInformationW, FlushFileBuffers, QueryDosDeviceW, LoadLibraryW, GlobalAlloc, TerminateProcess, GetExitCodeProcess, CreateProcessW, VerifyVersionInfoW, VerSetConditionMask, FormatMessageW, DeleteFileW, ReleaseMutex, QueryPerformanceFrequency, QueryPerformanceCounter, OutputDebugStringW, SetLastError, MoveFileW, GetTempFileNameW, FindClose, FindNextFileW, FindFirstFileW, GetFullPathNameW, GetFileAttributesExW, CreateDirectoryW, CreateMutexW, GetFirmwareEnvironmentVariableW, CompareStringW, HeapFree, HeapAlloc, GetProcessHeap, WriteFile, ExpandEnvironmentStringsW, WideCharToMultiByte, HeapDestroy, HeapReAlloc, HeapSize, SetFilePointer, IsValidLocale, EnumSystemLocalesA, GetLocaleInfoA, GetUserDefaultLCID, ReadFile, GetConsoleMode, GetConsoleCP, GetSystemTimeAsFileTime, GetCurrentThread, GetCurrentProcess, LoadLibraryExW, FreeLibrary, GetModuleFileNameW, lstrcmpiW, RaiseException, SetEvent, FindFirstVolumeW, FindNextVolumeW, FindVolumeClose, GetVolumePathNamesForVolumeNameW, GetCommandLineW, GetSystemPowerStatus, DeviceIoControl, ReleaseSemaphore, CreateSemaphoreW, LocalFree, LocalAlloc, CreateThread, WaitForSingleObject, SetProcessShutdownParameters, MultiByteToWideChar, SetThreadPriority, GetLocalTime, InitializeCriticalSection, EnterCriticalSection, LeaveCriticalSection, Sleep, WaitForMultipleObjects, TerminateThread, InitializeCriticalSectionAndSpinCount, DeleteCriticalSection, GlobalFree, GetModuleHandleW, GetProcAddress, InterlockedCompareExchange, CreateFileW, InterlockedExchange, InterlockedDecrement, OpenEventW, PulseEvent, CloseHandle, lstrlenW, InterlockedIncrement, GetLastError, FindResourceExW, FindResourceW, LoadResource, LockResource, SizeofResource, SetStdHandle, WriteConsoleW, SetEndOfFile, SetEnvironmentVariableA, EncodePointer, DecodePointer, GetTickCount, GetFileType, SetHandleCount, GetEnvironmentStringsW, FreeEnvironmentStringsW, GetTimeZoneInformation, GetLocaleInfoW, GetStdHandle, HeapCreate, ExitProcess, IsProcessorFeaturePresent, IsValidCodePage, GetOEMCP, GetACP, IsDebuggerPresent, SetUnhandledExceptionFilter, UnhandledExceptionFilter, TlsFree, TlsSetValue, TlsGetValue, TlsAlloc, GetCPInfo, LCMapStringW, GetFileAttributesW, GetStartupInfoW, HeapSetInformation, VirtualQuery, RtlUnwind, ExitThread, ResumeThread, GetTimeFormatW, GetDateFormatW, VirtualProtect, VirtualAlloc, GetSystemInfo, GetStringTypeW
ole32.dll
CoTaskMemFree, CoTaskMemRealloc, CoTaskMemAlloc, CoFreeUnusedLibraries, CoRevokeClassObject, CoRegisterClassObject, CoSuspendClassObjects, StringFromGUID2, CoSetProxyBlanket, CoResumeClassObjects, CoInitializeEx, CLSIDFromString, OleRun, CoDisconnectObject, CoCreateGuid, CoInitializeSecurity, CoInitialize, CoUninitialize, CoCreateInstance, CoAddRefServerProcess, CoReleaseServerProcess
psapi.dll
GetProcessImageFileNameW, EnumProcesses
setupapi.dll
CM_Get_Sibling, CM_Get_Device_ID_Size, SetupDiDestroyDeviceInfoList, CM_Get_Device_IDW, SetupDiOpenDeviceInfoW, CM_Get_Child, SetupDiOpenClassRegKeyExW, SetupDiEnumDeviceInterfaces, CM_Get_DevNode_Status, SetupDiGetClassDevsW, SetupDiEnumDeviceInfo, SetupDiGetDeviceRegistryPropertyW, CM_Locate_DevNodeW
shell32.dll
CommandLineToArgvW, SHGetFolderPathW
shlwapi.dll
StrTrimW, StrCmpNIW, StrCmpIW, StrCmpW
user32.dll
UnregisterDeviceNotification, RegisterDeviceNotificationW, LoadStringW, CharUpperW, TranslateMessage, DispatchMessageW, GetMessageW, PostThreadMessageW, GetSystemMetrics, CharNextW
version.dll
GetFileVersionInfoW, GetFileVersionInfoSizeW, VerQueryValueW

hpqwmiex.exe

HP Software Framework by Hewlett-Packard Company (Signed)

Remove hpqwmiex.exe
Version:   4, 6, 8, 1
MD5:   9b7edd3fe7c211c36e921d34d18a3a0a
SHA1:   06852d70f95edeb4c6b955af9b6e3944b9b49db6
SHA256:   03a450f85a042f9668d1560fa2b8b89783568c87cdb1a8685cda2ac9fe3761c3

Overview

hpqwmiex.exe runs as a service under the name HP Software Framework Service (hpqwmiex) with extensive SYSTEM privileges (full administrator access). This is typically installed with the program HP Webcam published by Roxio. The file is digitally signed by Hewlett-Packard Company which was issued by the VeriSign certificate authority (CA).

DetailsDetails

File name:hpqwmiex.exe
Publisher:Hewlett-Packard Company
Product name:HP Software Framework
Description:HP Software Framework WMI Service
Typical file path:C:\Program Files\hewlett-packard\shared\hpqwmiex.exe
File version:4, 6, 8, 1
Size:977.91 KB (1,001,376 bytes)
Certificate
Issued to:Hewlett-Packard Company
Authority (CA):VeriSign
Effective date:Tuesday, November 15, 2011
Expiration date:Saturday, November 15, 2014
Digital DNA
File packed:No
.NET CLR:No
More details

ResourcesPrograms

The following program will install this file
Roxio
6% remove

BehaviorsBehaviors

Services
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
  • 'hpqwmiex' (HP Software Framework Service)
  • hpqwmiex

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00076823%
0.028634%
Kernel CPU:0.00035222%
0.013761%
User CPU:0.00041601%
0.014873%
Kernel CPU time:34,528 ms/min
100,923,805ms/min
CPU cycles:116,870/sec
17,470,203/sec
Context switches:1/sec
284/sec
Memory
Private memory:2.45 MB
21.59 MB
Private (maximum):6.54 MB
Private (minimum):4.89 MB
Non-paged memory:2.45 MB
21.59 MB
Virtual memory:56.84 MB
140.96 MB
Virtual memory (peak):61.98 MB
169.69 MB
Working set:5.37 MB
18.61 MB
Working set (peak):7.2 MB
37.95 MB
Page faults:15,170/min
2,039/min
I/O
I/O read transfer:741 Bytes/sec
1.02 MB/min
I/O read operations:7/sec
343/min
I/O other transfer:161 Bytes/sec
448.09 KB/min
I/O other operations:11/sec
1,671/min
Resource allocations
Threads:5
12
Handles:166
600

BehaviorsProcess properties

Integrety level:System
Platform:64-bit
Command line:"C:\Program Files\hewlett-packard\shared\hpqwmiex.exe"
Owner:SYSTEM
Windows Service
Service name:hpqwmiex
Display name:HP Software Framework Service
Type:Win32OwnProcess
Parent process:services.exe (Services and Controller app by Microsoft)

ResourcesThreads

Averages
 
ntdll.dll
Total CPU:0.02667598%
0.272967%
Kernel CPU:0.00690287%
0.107585%
User CPU:0.01977311%
0.165382%
CPU cycles:295,533/sec
5,741,424/sec
Memory:1.66 MB
1.16 MB
hpqWmiEx.exe (main module)
Total CPU:0.00047645%
Kernel CPU:0.00021557%
User CPU:0.00026088%
CPU cycles:9,328/sec
Memory:1004 KB
wow64.dll
Total CPU:0.00037787%
Kernel CPU:0.00032900%
User CPU:0.00004887%
CPU cycles:1,330/sec
Memory:252 KB
sechost.dll
Total CPU:0.00007928%
Kernel CPU:0.00003964%
User CPU:0.00003964%
CPU cycles:471/sec
Memory:100 KB
wow64cpu.dll
Total CPU:0.00004811%
Kernel CPU:0.00002405%
User CPU:0.00002405%
CPU cycles:458/sec
Memory:32 KB

Common loaded modules

These are modules that are typiclaly loaded within the context of this process.

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Home Premium 55.00%
Windows 8 20.00%
Windows 8.1 9.50%
Windows 7 Professional 4.00%
Windows 8 Pro 4.00%
Windows 7 Home Basic 3.00%
Windows 7 Ultimate 2.00%
Windows 8.1 Pro 1.50%
Windows Vista Ultimate 0.50%
Windows 8 Pro with Media Center 0.50%

Distribution by countryDistribution by country

United States installs about 62.81% of HP Software Framework.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Hewlett-Packard 99.49%
GIGABYTE 0.51%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE