Should I block it?

No, this file is 100% safe to run.

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
RegDeleteValueA, RegCloseKey, RegOpenKeyExA, RegCreateKeyExA, RegQueryValueExA, RegSetValueExA
gdi32.dll
StretchBlt, CreateRectRgn, SelectClipRgn, BitBlt, DeleteObject, DeleteDC, CreateCompatibleDC, CreateCompatibleBitmap, SelectObject, CreateBrushIndirect, GetDeviceCaps, GetClipBox
kernel32.dll
Beep, SystemTimeToFileTime, GetSystemTime, Sleep, GetCurrentThreadId, GetLastError, GetSystemDirectoryA, lstrcpynA, SetEvent, CreateMutexA, lstrcmpA, ResetEvent, CreateThread, CreateFileA, CreateEventA, ExitProcess, InitializeCriticalSection, DeleteCriticalSection, EnterCriticalSection, LeaveCriticalSection, CreateProcessA, GetTickCount, FreeLibrary, ReleaseMutex, LoadLibraryA, GetVersionExA, lstrcpyA, GetModuleHandleA, GetProcAddress, SetEndOfFile, IsBadCodePtr, WaitForSingleObject, DeviceIoControl, CloseHandle, OpenProcess, SetUnhandledExceptionFilter, SetStdHandle, FlushFileBuffers, GetStringTypeA, HeapReAlloc, LCMapStringW, HeapSize, VirtualAlloc, VirtualFree, LCMapStringA, HeapDestroy, GetOEMCP, HeapCreate, GetCPInfo, WideCharToMultiByte, GetACP, GetEnvironmentStrings, FreeEnvironmentStringsW, GetEnvironmentStringsW, FreeEnvironmentStringsA, GetModuleFileNameA, MultiByteToWideChar, GetFileType, GetStdHandle, UnhandledExceptionFilter, SetFilePointer, ReadFile, GetStringTypeW, IsBadReadPtr, SetHandleCount, IsBadWritePtr, WriteFile, RtlUnwind, HeapAlloc, HeapFree, GetCurrentProcess, TerminateProcess, GetVersion, GetCommandLineA, GetStartupInfoA
user32.dll
WindowFromPoint, CreateWindowExA, RegisterClassExA, EnumChildWindows, LoadCursorA, DefWindowProcA, SetWindowLongA, EndPaint, FillRect, DrawEdge, BeginPaint, ScrollDC, ScreenToClient, GetCapture, SetCursorPos, CloseClipboard, SetClipboardData, EmptyClipboard, OpenClipboard, LoadMenuA, InvalidateRect, GetWindowLongA, GetDoubleClickTime, SetCursor, DestroyCursor, SetClassLongA, DialogBoxParamA, EndDialog, CheckDlgButton, IsDlgButtonChecked, MessageBoxA, MessageBeep, DestroyWindow, DispatchMessageA, GetMessageA, ReleaseCapture, FindWindowA, SetWindowPos, GetForegroundWindow, GetWindowThreadProcessId, AttachThreadInput, GetAsyncKeyState, GetClassNameA, GetParent, KillTimer, UpdateWindow, SetForegroundWindow, GetSubMenu, GetCursorPos, CheckMenuItem, TrackPopupMenu, DestroyMenu, SetTimer, RemoveMenu, mouse_event, GetDesktopWindow, PeekMessageA, IsWindowVisible, wsprintfA, GetDC, ReleaseDC, LoadStringA, ShowWindow, LoadImageA, SystemParametersInfoA, OffsetRect, IntersectRect, GetWindowRect, ClientToScreen, GetSystemMetrics, GetClientRect, PostQuitMessage, PostMessageA, SendMessageA
version.dll
GetFileVersionInfoSizeA, GetFileVersionInfoA, VerQueryValueA

tp4serv.exe

IBM PS/2 TrackPoint Support by IBM

Remove tp4serv.exe
Version:   3.04
MD5:   5820b43b8e4cc7f5bc3839fa133fd5cd
SHA1:   62c1f58f0bed85e511ec53b468299ae105241776
SHA256:   02cc7a6026d183861d91138a40259c22b77c29ac07aebe670a5deb19da1ea9c2

Overview

tp4serv.exe executes as a process with the local user's privileges. It is set to be start when the PC boots and any user logs into Windows (added to the Run registry key for the all users under the local machine). This particular version is usually found on Microsoft Windows XP (5.1.2600.196608).

DetailsDetails

File name:tp4serv.exe
Publisher:IBM Corporation
Product name:IBM PS/2 TrackPoint Support
Description:IBM PS/2 TrackPoint Daemon
Typical file path:C:\Windows\System32\tp4serv.exe
Original name:daemon.exe
File version:3.04
Size:172 KB (176,128 bytes)
Digital DNA
PE subsystem:Windows GUI
File packed:No
.NET CLR:No
More details

BehaviorsBehaviors

Startup files (all users) run
Runs under the registry key 'HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run'
  • 'TrackPointSrv' → tp4serv.exe

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00014567%
0.028634%
Kernel CPU:0.00010925%
0.013761%
User CPU:0.00003642%
0.014873%
Kernel CPU time:60 ms/min
100,923,805ms/min
Memory
Private memory:748 KB
21.59 MB
Private (maximum):2.68 MB
Private (minimum):92 KB
Non-paged memory:748 KB
21.59 MB
Virtual memory:24.7 MB
140.96 MB
Virtual memory (peak):38.87 MB
169.69 MB
Working set:204 KB
18.61 MB
Working set (peak):2.73 MB
37.95 MB
Page faults:942/min
2,039/min
I/O
I/O read transfer:4 Bytes/sec
1.02 MB/min
I/O read operations:1/sec
343/min
I/O other transfer:5 Bytes/sec
448.09 KB/min
I/O other operations:1/sec
1,671/min
Resource allocations
Threads:3
12
Handles:44
600
GUI GDI count:22
103
GUI USER count:8
49

BehaviorsProcess properties

Tray notification:Yes
Integrety level:Undefined
Platform:32-bit
Command line:"C:\Windows\System32\tp4serv.exe"
Owner:User
Parent process:Explorer.EXE (Windows Explorer by Microsoft)

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Microsoft Windows XP 100.00%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE