Should I block it?

16%
16% of PCs block this file from running.

VersionsAdditional versions

1.9.0.1084 33.33%
1.7.0.1015 33.33%
1.2.0.2048 33.33%

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
RegQueryValueExW, RegEnumValueW, GetTokenInformation, OpenProcessToken, GetSidSubAuthority, GetSidSubAuthorityCount, InitializeAcl, AddAce, GetAclInformation, GetSecurityDescriptorOwner, GetSecurityDescriptorGroup, GetSidLengthRequired, GetSecurityDescriptorDacl, InitializeSid, SetSecurityDescriptorDacl, RegEnumKeyExW, RegQueryInfoKeyW, RegCloseKey, RegDeleteKeyW, RegDeleteValueW, RegSetValueExW, RegCreateKeyExW, RegOpenKeyExW, CopySid, GetSecurityDescriptorSacl, SetSecurityDescriptorSacl, MakeSelfRelativeSD, GetSecurityDescriptorLength, GetLengthSid, GetSecurityDescriptorControl, IsValidSid, MakeAbsoluteSD, InitializeSecurityDescriptor, RegFlushKey
gdi32.dll
DeleteObject
kernel32.dll
FindResourceExW, LockResource, WaitForSingleObject, GetPrivateProfileSectionW, LoadLibraryA, DisableThreadLibraryCalls, GetThreadLocale, FlushInstructionCache, GetCurrentProcess, Sleep, GetCurrentThreadId, GetCurrentProcessId, SetThreadLocale, InterlockedExchange, CloseHandle, InterlockedIncrement, InitializeCriticalSection, MultiByteToWideChar, DeleteCriticalSection, LeaveCriticalSection, OutputDebugStringA, LoadLibraryW, lstrlenW, lstrcmpiW, GetModuleHandleW, GetLastError, EnterCriticalSection, GetModuleHandleA, LoadLibraryExW, SetLastError, GetModuleFileNameW, FindResourceW, GetFileAttributesW, FreeLibrary, LoadResource, SizeofResource, GetVersion, GetProcAddress, RaiseException, InterlockedDecrement, GetSystemTimeAsFileTime, GetTickCount, QueryPerformanceCounter, IsDebuggerPresent, SetUnhandledExceptionFilter, UnhandledExceptionFilter, TerminateProcess, HeapSize, HeapReAlloc, HeapDestroy, VirtualAlloc, VirtualFree, IsProcessorFeaturePresent, InterlockedCompareExchange, GetVersionExA, GetLocaleInfoA, GetPrivateProfileStringW, GetPrivateProfileIntW, WritePrivateProfileStringW, DisconnectNamedPipe, ConnectNamedPipe, GetOverlappedResult, WaitForMultipleObjects, SetWaitableTimer, CreateNamedPipeW, SetNamedPipeHandleState, WaitNamedPipeW, ResetEvent, OpenMutexW, GetProcessHeap, LocalFree, LocalAlloc, HeapFree, HeapAlloc, ReadFile, FindClose, FindFirstFileW, WriteFile, GetLocalTime, WideCharToMultiByte, TerminateThread, CreateThread, CreateEventW, SetEvent, DeviceIoControl, CreateFileW, GetVersionExW, lstrlenA, GetACP
msvcp80.dll
DllMain
msvcr80.dll
DllMain
ole32.dll
CoTaskMemRealloc, CoTaskMemAlloc, CoTaskMemFree, StringFromGUID2, CoCreateInstance, CoInitialize, CoUninitialize, OleSaveToStream, ReadClassStm, CoCreateGuid, StringFromCLSID, WriteClassStm
shlwapi.dll
PathFindFileNameA
user32.dll
UnregisterClassA, GetKeyState, GetKeyboardState, ToAsciiEx, CharNextW, UnhookWinEvent, GetSystemMetrics, MapVirtualKeyExW, GetKeyboardLayout, FindWindowExW, GetWindowRect, IsWindow, SendMessageW, ClientToScreen, GetClientRect, LoadImageW, DestroyWindow, GetClassInfoExW, ShowWindow, RegisterClassExW, CreateWindowExW, LoadCursorW, GetParent, SetWinEventHook, CallWindowProcW, DefWindowProcW, GetWindowLongW, PostMessageW, SetWindowLongW, GetWindowThreadProcessId, GetClassNameW, GetForegroundWindow, GetDesktopWindow
Export table
DllCanUnloadNow
DllGetClassObject
DllRegisterServer
DllUnregisterServer

pwmiebho32.dll

Trend Micro DirectPass by Trend Micro (Signed)

Remove pwmiebho32.dll
Version:   1.2.0.2048
MD5:   adc3f132ae4187e4a83c64a687f9199a
SHA1:   7f802528ebf07e9dddb580becd2e5ac15cc87569
SHA256:   cab7cc9eeca4c1632d677b8be94788b9fb44c80e9fa8644d601f66a9f4006782

What is pwmiebho32.dll?

Trend Micro browser add-on is part of Trend Micro security framework, an antivirus platform with Smart Protection Network, a cloud-client content security infrastructure designed to protect customers from web threats, such as data stealing malware. This combines in-the-cloud technologies with other client-based AV technologies to reduce dependency on conventional pattern file downloads on the endpoint.

About pwmiebho32.dll (from Trend Micro)

Trend Micro DirectPass manages website passwords and login IDs in one secure location, so you only need to remember one password. Trend Micro DirectPass helps you securely manage and sync your passwor

DetailsDetails

File name:pwmiebho32.dll
Publisher:Trend Micro Inc.
Product name:Trend Micro DirectPass
Description:Trend Micro browser add-on
Typical file path:C:\Program Files\trend micro\tmids\pwmiebho32.dll
Original name:PwmIEBHO.dll
File version:1.2.0.2048
Product version:1.2
Size:529.52 KB (542,224 bytes)
Certificate
Issued to:Trend Micro
Authority (CA):VeriSign
Effective date:Monday, December 26, 2011
Expiration date:Friday, February 15, 2013
Digital DNA
PE subsystem:Windows GUI
File packed:No
Code language:Microsoft Visual C++ 8.0
.NET CLR:No
More details

BehaviorsBehaviors

Internet Explorer Browser Helper Object
Located in the registry at 'SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects'
  • BHO CLSID: {3F019D1C-7EAA-4F25-A765-FBA635BD0AFF}

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Home Premium 66.67%
Windows 7 Ultimate N 33.33%

Distribution by countryDistribution by country

United States installs about 66.67% of Trend Micro DirectPass.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Dell 66.67%
Hewlett-Packard 33.33%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE