Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

6.3.9600.17031 (winblue_gdr.140221-1952) 3.06%
6.3.9600.16384 (winblue_rtm.130821-1623) 0.87%
6.3.9600.16384 (winblue_rtm.130821-1623) 0.01%
6.3.9600.16384 (winblue_rtm.130821-1623) 1.03%
6.3.9600.16384 (winblue_rtm.130821-1623) 0.01%
6.3.9600.16384 (winblue_rtm.130821-1623) 0.07%
6.3.9431.0 (winmain_bluemp.130615-1214) 0.25%
6.3.9431.0 (winmain_bluemp.130615-1214) 0.01%
6.2.9200.16384 (win8_rtm.120725-1247) 3.98%
6.2.9200.16384 (win8_rtm.120725-1247) 0.18%
6.2.9200.16384 (win8_rtm.120725-1247) 0.73%
6.2.9200.16384 (win8_rtm.120725-1247) 1.09%
6.2.9200.16384 (win8_rtm.120725-1247) 11.46%
6.2.9200.16384 (win8_rtm.120725-1247) 1.17%
6.2.8400.0 (winmain_win8rc.120518-1423) 0.07%
6.2.8400.0 (winmain_win8rc.120518-1423) 0.06%
6.2.8250.0 (winmain_win8beta.120217-1520) 0.01%
6.2.8102.0 (winmain_win8m3.110823-1455) 0.06%
6.1.7600.16385 (win7_rtm.090713-1255) 0.78%
6.1.7600.16385 (win7_rtm.090713-1255) 1.97%
6.1.7600.16385 (win7_rtm.090713-1255) 44.09%
6.1.7600.16385 (win7_rtm.090713-1255) 2.10%
6.1.7600.16385 (win7_rtm.090713-1255) 2.54%
6.1.7600.16385 (win7_rtm.090713-1255) 4.00%
6.1.7600.16385 (win7_rtm.090713-1255) 12.42%
View more

Relationships

Parent processes
Child processes

explorer.exe

Windows Explorer by Microsoft Corporation (Signed)

Remove explorer.exe
Version:   6.2.9200.16384 (win8_rtm.120725-1247)
MD5:   928791755fddea721b053535ef84fa17
SHA1:   7e51e93497b2bcfe3d1160f615353e1e83312496
SHA256:   6b488c65c11bd30ad69bb12bad78d39025c7ca4a3a744cfd17857e34d7b57bd2
This is a Windows system installed file with Windows File Protection (WFP) enabled.

What is explorer.exe?

Windows Explorer also known as File Explorer, is a file manager application and also a navigation tool that is included with releases of the Microsoft Windows operating system. It provides a graphical user interface for accessing the file systems. It is also the component of the operating system that presents many user interface items on the monitor such as the taskbar and desktop. Located in the C:\Windows directory, it is sometimes referred to as the Windows shell, explorer.exe.

Overview

explorer.exe executes as a process with the local user's privileges typically within the context of its parent winlogon.exe (Windows Logon Application by Microsoft). It configures an autoplay handler withing explorer.exe named MSOpenFolder that will launch the program automatically. The file is digitally signed by Microsoft Corporation. This version is installed on Windows 8 and is compiled as a 64 bit program.

DetailsDetails

File name:explorer.exe
Publisher:Microsoft Corporation
Product name:Windows Explorer
Description:Microsoft® Windows® Operating System
Typical file path:C:\windows\explorer.exe
Original name:EXPLORER.EXE.MUI
File version:6.2.9200.16384 (win8_rtm.120725-1247)
Product version:6.2.9200.16384
Size:2.27 MB (2,380,440 bytes)
Certificate
Issued to:Microsoft Corporation
Authority (CA):Microsoft Corporation
Expiration date:Tuesday, July 9, 2013
Digital DNA
Entropy:5.934229
File packed:No
Code language:Microsoft Visual C++
.NET CLR:No
More details

BehaviorsBehaviors

Shell open commands
  • SHCmdFile
Autoplay handlers
Runs under the registry key 'SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers'
  • Handler name 'MSOpenFolderBackup'
  • Handler name 'MSOpenFolder'
Scheduled tasks
  • The task '{AD36F1D3-E56E-44BA-A569-280718EB8C51}' runs on registration in the path '\{AD36F1D3-E56E-44BA-A569-280718EB8C51}'

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00712302%
0.028634%
Kernel CPU:0.00501124%
0.013761%
User CPU:0.00211178%
0.014873%
Kernel CPU time:20,065,427 ms/min
100,923,805ms/min
CPU cycles:6,654,172/sec
17,470,203/sec
Context switches:242/sec
284/sec
Memory
Private memory:60.39 MB
21.59 MB
Private (maximum):109.67 MB
Private (minimum):57.02 MB
Non-paged memory:60.39 MB
21.59 MB
Virtual memory:663.94 MB
140.96 MB
Virtual memory (peak):896.43 MB
169.69 MB
Working set:94.77 MB
18.61 MB
Working set (peak):125.44 MB
37.95 MB
Page faults:5,499,065/min
2,039/min
I/O
I/O read transfer:88.3 KB/sec
1.02 MB/min
I/O read operations:17/sec
343/min
I/O write transfer:102.89 KB/sec
274.99 KB/min
I/O write operations:27/sec
227/min
I/O other transfer:5.11 KB/sec
448.09 KB/min
I/O other operations:187/sec
1,671/min
Resource allocations
Threads:48
12
Handles:1684
600
GUI GDI count:591
103
GUI GDI peak:1201
142
GUI USER count:384
49
GUI USER peak:696
71

BehaviorsProcess properties

Tray notification:Yes
Integrety level:Medium
Platform:64-bit
Command lines:
  • C:\windows\explorer.exe
  • explorer.exe
  • "C:\windows\explorer.exe" /loadsavedwindows
  • C:\windows\explorer.exe /factory,{75dff2b7-6936-4c06-a8bb-676a7b00b24b} -embedding
Owner:User
Parent processes:

ResourcesThreads

Averages
 
explorer.exe (main module)
Total CPU:0.15506460%
0.272967%
Kernel CPU:0.07031662%
0.107585%
User CPU:0.08474798%
0.165382%
CPU cycles:3,941,914/sec
5,741,424/sec
Context switches:10/sec
79/sec
Memory:2.26 MB
1.16 MB
windows.immersiveshell.serviceprovider.dll
Total CPU:0.11369461%
Kernel CPU:0.06649278%
User CPU:0.04720183%
CPU cycles:3,217,546/sec
Context switches:44/sec
Memory:84 KB
SHCORE.dll
Total CPU:0.06308191%
Kernel CPU:0.03276755%
User CPU:0.03031436%
CPU cycles:2,125,883/sec
Context switches:8/sec
Memory:600 KB
ntdll.dll
Total CPU:0.03130344%
Kernel CPU:0.01764865%
User CPU:0.01365480%
CPU cycles:740,524/sec
Context switches:3/sec
Memory:1.74 MB
UxTheme.dll
Total CPU:0.00392396%
Kernel CPU:0.00375908%
User CPU:0.00016488%
CPU cycles:31,083/sec
Memory:908 KB
pnidui.dll
Total CPU:0.00324818%
Kernel CPU:0.00095006%
User CPU:0.00229812%
CPU cycles:99,735/sec
Memory:572 KB
shell32.dll (Windows Shell Common Dll by Microsoft)
Total CPU:0.00119424%
Kernel CPU:0.00119424%
User CPU:0.00000000%
CPU cycles:24,959/sec
Memory:18.88 MB
combase.dll
Total CPU:0.00059490%
Kernel CPU:0.00038653%
User CPU:0.00020837%
CPU cycles:13,721/sec
Memory:1.69 MB
wlanapi.dll
Total CPU:0.00044977%
Kernel CPU:0.00011527%
User CPU:0.00033450%
CPU cycles:8,821/sec
Memory:280 KB
DUI70.dll
Total CPU:0.00040787%
Kernel CPU:0.00000023%
User CPU:0.00040764%
CPU cycles:5,268/sec
Memory:1.72 MB
sppc.dll
Total CPU:0.00038441%
Kernel CPU:0.00037814%
User CPU:0.00000627%
CPU cycles:83,240/sec
Context switches:1/sec
Memory:132 KB
WINMM.dll
Total CPU:0.00022497%
Kernel CPU:0.00019503%
User CPU:0.00002994%
CPU cycles:3,624/sec
Memory:128 KB

Common loaded modules

These are modules that are typiclaly loaded within the context of this process.

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Home Premium 36.00%
Windows 8.1 Pro 14.00%
Windows 7 Ultimate 12.00%
Windows 8.1 10.50%
Windows 7 Professional 6.50%
Windows 8 6.50%
Windows 8.1 Single Language 6.00%
Windows 8.1 N 4.00%
Windows 8 Single Language 2.50%
Windows 8.1 Pro with Media Center 2.00%

Distribution by countryDistribution by country

United States installs about 51.50% of Windows Explorer.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Hewlett-Packard 23.75%
ASUS 23.33%
Dell 14.17%
Toshiba 13.33%
Acer 12.08%
Lenovo 6.67%
Alienware 3.33%
Samsung 3.33%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE