Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

6.3.9600.16384 (winblue_rtm.130821-1623) 3.57%
6.3.9431.0 (winmain_bluemp.130615-1214) 1.19%
6.2.9200.16384 (win8_rtm.120725-1247) 20.24%
6.1.7600.16385 (win7_rtm.090713-1255) 2.38%
6.1.7600.16385 (win7_rtm.090713-1255) 26.19%
6.1.7600.16385 (win7_rtm.090713-1255) 28.57%
6.1.7600.16385 (win7_rtm.090713-1255) 2.38%
6.0.6000.16386 (vista_rtm.061101-2205) 3.57%
6.0.6000.16386 (vista_rtm.061101-2205) 9.52%
6.0.6000.16386 (vista_rtm.061101-2205) 2.38%

Relationships


PE structurePE file structure

Show functions
Import table
api-ms-win-service-core-l1-1-0.dll
RegisterServiceCtrlHandlerExW, SetServiceStatus
kernel32.dll
FindFirstFileW, lstrlenW, RemoveDirectoryW, FindClose, FindNextFileW, SetFileAttributesW, DisableThreadLibraryCalls, SetLastError, CloseHandle, GetLastError, UnregisterWait, SetEvent, CreateEventW, InterlockedIncrement, InterlockedDecrement, DelayLoadFailureHook, GetProcAddress, FreeLibrary, InterlockedCompareExchange, LoadLibraryExA, InterlockedExchange, Sleep, QueryPerformanceCounter, GetTickCount, GetCurrentThreadId, GetCurrentProcessId, GetSystemTimeAsFileTime, TerminateProcess, GetCurrentProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, OutputDebugStringA, RtlCaptureStackBackTrace, LocalFree, LocalAlloc, RegCloseKey, RegQueryValueExW, RegOpenKeyExW, GetVersionExW, ProcessIdToSessionId, GetCurrentThread, HeapAlloc, GetProcessHeap, HeapFree, LoadLibraryW, ExpandEnvironmentStringsW, VerifyVersionInfoW, VerSetConditionMask, RegCreateKeyExW, RegOpenCurrentUser, RegDeleteValueW, RegSetValueExW, RegEnumKeyExW, CreateDirectoryW, GetComputerNameExW, WaitForSingleObject, TerminateThread, GetThreadId, WaitForMultipleObjects, ResetEvent, CreateThread, GetModuleHandleExW, CompareFileTime, DeleteTimerQueueTimer, GetFileTime, CreateFileW, GetFileAttributesW, RegGetValueW, DeleteTimerQueueEx, FileTimeToSystemTime, FileTimeToLocalFileTime, CreateTimerQueueTimer, CreateTimerQueue, CloseThreadpoolWork, WaitForThreadpoolWorkCallbacks, CallbackMayRunLong, SubmitThreadpoolWork, CreateThreadpoolWork, WTSGetActiveConsoleSessionId, MultiByteToWideChar, SystemTimeToFileTime, GetSystemTime, DeleteFileW, FormatMessageW, RegNotifyChangeKeyValue
msvcrt.dll
DllMain
ntdll.dll
RtlInitializeResource, RtlDeleteResource, RtlEqualSid, NtClose, EtwEventWrite, EtwEventRegister, EtwEventUnregister, RtlInitUnicodeStringEx, RtlQueryEnvironmentVariable_U, RtlLookupElementGenericTable, RtlInsertElementGenericTable, RtlInitializeGenericTable, RtlEnumerateGenericTable, RtlNtStatusToDosError, RtlDeleteElementGenericTable, RtlAllocateAndInitializeSid, RtlReleaseResource, RtlAcquireResourceShared, RtlAcquireResourceExclusive, RtlRaiseException, RtlFreeHeap, RtlAllocateHeap, RtlFreeSid, RtlInitUnicodeString, NtCreateFile
rpcrt4.dll
RpcImpersonateClient, I_RpcBindingInqLocalClientPID, RpcRevertToSelf
sysntfy.dll
SysNotifyStopServer, SysNotifyStartServer
Export table
ServiceMain
SvchostPushServiceGlobals

sessenv.dll

Remote Desktop Configuration service by Microsoft

Remove sessenv.dll
Version:   6.1.7600.16385 (win7_rtm.090713-1255)
MD5:   c3bc61ce47ff6f4e88ab8a3b429a36af
SHA1:   11964892c2801913084100118d13c9177496a2b7
SHA256:   6ca53ad0cb7215bae3467ec1fd490e3a18504bd6cd4f0fabf9bd37516ab9dfe0
This is a Windows system installed file with Windows File Protection (WFP) enabled.

Overview

sessenv.dll is loaded as dynamic link library that runs in the context of a process. The assembly utilizes the .NET run-time framework (which is required to be installed on the PC). This version is designed to run on Windows 7.

DetailsDetails

File name:sessenv.dll
Publisher:Microsoft Corporation
Product name:Remote Desktop Configuration service
Description:Microsoft® Windows® Operating System
Typical file path:C:\Windows\System32\sessenv.dll
Original name:SessEnv.DLL.MUI
File version:6.1.7600.16385 (win7_rtm.090713-1255)
Product version:6.1.7600.16385
Size:102.5 KB (104,960 bytes)
Digital DNA
File packed:No
Code language:Microsoft Visual C# / Basic .NET
.NET CLR:Yes
.NET NGENed:No
More details

BehaviorsBehaviors

Hosted services
Runs as a shared service under the Windows svcHost
  • Shared name is 'SessionEnv'
  • Shared name is 'SessionEnv'
  • Shared name is 'SessionEnv'
  • Shared name is 'SessionEnv'
  • Shared name is 'SessionEnv'
  • Shared name is 'SessionEnv'
  • Shared name is 'SessionEnv'
  • Shared name is 'SessionEnv'
  • Shared name is 'SessionEnv'
  • Shared name is 'SessionEnv'
  • Shared name is 'SessionEnv'
  • Shared name is 'SessionEnv'
  • Shared name is 'SessionEnv'
  • Shared name is 'SessionEnv'
  • Shared name is 'SessionEnv'
  • Shared name is 'SessionEnv'
  • Shared name is 'SessionEnv'
  • Shared name is 'SessionEnv'
  • Shared name is 'SessionEnv'
  • Shared name is 'SessionEnv'
  • Shared name is 'SessionEnv'
  • Shared name is 'SessionEnv'

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Ultimate 32.39%
Windows 7 Professional 23.94%
Windows 7 Home Premium 11.27%
Windows 8 Pro 9.86%
Windows 8 Pro with Media Center 9.86%
Windows 8.1 Pro 4.23%
Windows 8.1 Pro Preview 1.41%
Windows 7 Enterprise 1.41%
Windows 8 Enterprise 1.41%
Windows 7 Starter 1.41%
Windows Server 2012 Standard Evaluation 1.41%
Windows 8 1.41%

Distribution by countryDistribution by country

United States installs about 36.62% of Remote Desktop Configuration service.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Hewlett-Packard 27.59%
Dell 17.24%
Acer 15.52%
ASUS 10.34%
Intel 6.90%
American Megatrends 5.17%
Lenovo 3.45%
GIGABYTE 3.45%
NEC 3.45%
MSI 3.45%
Sahara 1.72%
Samsung 1.72%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE