Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

6.3.9600.16384 (winblue_rtm.130821-1623) 3.57%
6.3.9431.0 (winmain_bluemp.130615-1214) 1.19%
6.2.9200.16384 (win8_rtm.120725-1247) 20.24%
6.1.7600.16385 (win7_rtm.090713-1255) 2.38%
6.1.7600.16385 (win7_rtm.090713-1255) 26.19%
6.1.7600.16385 (win7_rtm.090713-1255) 28.57%
6.1.7600.16385 (win7_rtm.090713-1255) 2.38%
6.0.6000.16386 (vista_rtm.061101-2205) 3.57%
6.0.6000.16386 (vista_rtm.061101-2205) 9.52%
6.0.6000.16386 (vista_rtm.061101-2205) 2.38%

Relationships


PE structurePE file structure

Show functions
Import table
api-ms-win-service-core-l1-1-0.dll
RegisterServiceCtrlHandlerExW, SetServiceStatus
kernel32.dll
FindFirstFileW, lstrlenW, RemoveDirectoryW, FindClose, FindNextFileW, SetFileAttributesW, DisableThreadLibraryCalls, SetLastError, CloseHandle, GetLastError, UnregisterWait, SetEvent, CreateEventW, InterlockedIncrement, InterlockedDecrement, DelayLoadFailureHook, GetProcAddress, FreeLibrary, InterlockedCompareExchange, LoadLibraryExA, InterlockedExchange, Sleep, QueryPerformanceCounter, GetTickCount, GetCurrentThreadId, GetCurrentProcessId, GetSystemTimeAsFileTime, TerminateProcess, GetCurrentProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, OutputDebugStringA, RtlCaptureStackBackTrace, LocalFree, LocalAlloc, RegCloseKey, RegQueryValueExW, RegOpenKeyExW, GetVersionExW, ProcessIdToSessionId, GetCurrentThread, HeapAlloc, GetProcessHeap, HeapFree, LoadLibraryW, ExpandEnvironmentStringsW, VerifyVersionInfoW, VerSetConditionMask, RegCreateKeyExW, RegOpenCurrentUser, RegDeleteValueW, RegSetValueExW, RegEnumKeyExW, CreateDirectoryW, GetComputerNameExW, WaitForSingleObject, TerminateThread, GetThreadId, WaitForMultipleObjects, ResetEvent, CreateThread, GetModuleHandleExW, CompareFileTime, DeleteTimerQueueTimer, GetFileTime, CreateFileW, GetFileAttributesW, RegGetValueW, DeleteTimerQueueEx, FileTimeToSystemTime, FileTimeToLocalFileTime, CreateTimerQueueTimer, CreateTimerQueue, CloseThreadpoolWork, WaitForThreadpoolWorkCallbacks, CallbackMayRunLong, SubmitThreadpoolWork, CreateThreadpoolWork, WTSGetActiveConsoleSessionId, MultiByteToWideChar, SystemTimeToFileTime, GetSystemTime, DeleteFileW, FormatMessageW, RegNotifyChangeKeyValue
msvcrt.dll
DllMain
ntdll.dll
RtlInitializeResource, RtlDeleteResource, RtlEqualSid, NtClose, EtwEventWrite, EtwEventRegister, EtwEventUnregister, RtlInitUnicodeStringEx, RtlQueryEnvironmentVariable_U, RtlLookupElementGenericTable, RtlInsertElementGenericTable, RtlInitializeGenericTable, RtlEnumerateGenericTable, RtlNtStatusToDosError, RtlDeleteElementGenericTable, RtlAllocateAndInitializeSid, RtlReleaseResource, RtlAcquireResourceShared, RtlAcquireResourceExclusive, RtlRaiseException, RtlFreeHeap, RtlAllocateHeap, RtlFreeSid, RtlInitUnicodeString, NtCreateFile
rpcrt4.dll
RpcImpersonateClient, I_RpcBindingInqLocalClientPID, RpcRevertToSelf
sysntfy.dll
SysNotifyStopServer, SysNotifyStartServer
Export table
ServiceMain
SvchostPushServiceGlobals

sessenv.dll

Remote Desktop Configuration service by Microsoft

Remove sessenv.dll
Version:   6.2.9200.16384 (win8_rtm.120725-1247)
MD5:   cb60a60340788c8d6de2a269d28086ab
SHA1:   0249a756df54b844ffd33525b25a2c6a9462b7a5
SHA256:   2d8948e59bb9b00e16d20e425f80e7b862957dbac9a4d1484e5191faf333b60d
This is a Windows system installed file with Windows File Protection (WFP) enabled.

Overview

sessenv.dll is loaded as dynamic link library that runs in the context of a process. The assembly utilizes the .NET run-time framework (which is required to be installed on the PC). This version is installed on Windows 8.

DetailsDetails

File name:sessenv.dll
Publisher:Microsoft Corporation
Product name:Remote Desktop Configuration service
Description:Microsoft® Windows® Operating System
Typical file path:C:\Windows\System32\sessenv.dll
Original name:SessEnv.DLL.MUI
File version:6.2.9200.16384 (win8_rtm.120725-1247)
Product version:6.2.9200.16384
Size:284.5 KB (291,328 bytes)
Digital DNA
File packed:No
Code language:Microsoft Visual C# / Basic .NET
.NET CLR:Yes
.NET NGENed:No
More details

BehaviorsBehaviors

Hosted services
Runs as a shared service under the Windows svcHost
  • Shared name is 'SessionEnv'
  • Shared name is 'SessionEnv'
  • Shared name is 'SessionEnv'
  • Shared name is 'SessionEnv'
  • Shared name is 'SessionEnv'
  • Shared name is 'SessionEnv'
  • Shared name is 'SessionEnv'
  • Shared name is 'SessionEnv'
  • Shared name is 'SessionEnv'
  • Shared name is 'SessionEnv'
  • Shared name is 'SessionEnv'
  • Shared name is 'SessionEnv'
  • Shared name is 'SessionEnv'
  • Shared name is 'SessionEnv'
  • Shared name is 'SessionEnv'
  • Shared name is 'SessionEnv'
  • Shared name is 'SessionEnv'
  • Shared name is 'SessionEnv'
  • Shared name is 'SessionEnv'
  • Shared name is 'SessionEnv'
  • Shared name is 'SessionEnv'
  • Shared name is 'SessionEnv'

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Ultimate 32.39%
Windows 7 Professional 23.94%
Windows 7 Home Premium 11.27%
Windows 8 Pro 9.86%
Windows 8 Pro with Media Center 9.86%
Windows 8.1 Pro 4.23%
Windows 8.1 Pro Preview 1.41%
Windows 7 Enterprise 1.41%
Windows 8 Enterprise 1.41%
Windows 7 Starter 1.41%
Windows Server 2012 Standard Evaluation 1.41%
Windows 8 1.41%

Distribution by countryDistribution by country

United States installs about 36.62% of Remote Desktop Configuration service.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Hewlett-Packard 27.59%
Dell 17.24%
Acer 15.52%
ASUS 10.34%
Intel 6.90%
American Megatrends 5.17%
Lenovo 3.45%
GIGABYTE 3.45%
NEC 3.45%
MSI 3.45%
Sahara 1.72%
Samsung 1.72%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE