Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

6.1.7264.0 (win7_rtm.090622-1900) 50.00%
6.00.2900.5512 (xpsp.080413-2105) 50.00%

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
RegSetValueW, RegEnumKeyExW, GetUserNameW, RegNotifyChangeKeyValue, RegEnumValueW, RegQueryValueExA, RegOpenKeyExA, RegEnumKeyW, RegCloseKey, RegCreateKeyW, RegQueryInfoKeyW, RegOpenKeyExW, RegQueryValueExW, RegCreateKeyExW, RegSetValueExW, RegDeleteValueW, RegQueryValueW, RegGetValueW, GetTraceEnableFlags, GetTraceEnableLevel, GetTraceLoggerHandle, RegisterTraceGuidsW, UnregisterTraceGuids, EventRegister, EventUnregister, EventWrite, EventEnabled, GetLengthSid, GetTokenInformation, OpenProcessToken, TraceMessage, RegOpenKeyW, ConvertStringSidToSidW, CloseServiceHandle, OpenServiceW, OpenSCManagerW, QueryServiceStatus, CreateWellKnownSid, StartServiceW, CryptAcquireContextW, CryptCreateHash, CryptHashData, CryptGetHashParam, CryptDestroyHash, CryptReleaseContext, StartTraceW, EnableTraceEx, StopTraceW, LsaLookupSids, IsValidSid, GetSidSubAuthorityCount, GetSidSubAuthority, LsaOpenPolicy, LsaFreeMemory, LsaClose, OpenThreadToken, ConvertSidToStringSidW, ConvertStringSecurityDescriptorToSecurityDescriptorW, CheckTokenMembership
dwmapi.dll
DwmEnableBlurBehindWindow, DwmIsCompositionEnabled, DwmSetWindowAttribute, DwmQueryThumbnailSourceSize, DwmUnregisterThumbnail, DwmUpdateThumbnailProperties
gdi32.dll
GetStockObject, CreatePatternBrush, OffsetViewportOrgEx, GetLayout, CombineRgn, CreateDIBSection, GetTextExtentPoint32W, StretchBlt, CreateRectRgnIndirect, CreateRectRgn, GetClipRgn, IntersectClipRect, GetViewportOrgEx, SetViewportOrgEx, SelectClipRgn, PatBlt, GetBkColor, CreateCompatibleDC, CreateCompatibleBitmap, OffsetWindowOrgEx, DeleteDC, SetBkColor, BitBlt, ExtTextOutW, GetTextExtentPointW, GetClipBox, GetObjectW, SetTextColor, SetBkMode, CreateFontIndirectW, DeleteObject, GetTextMetricsW, SelectObject, GetDeviceCaps, TranslateCharsetInfo, SetStretchBltMode, SetWindowOrgEx, LPtoDP, Polyline, CreatePen, GetTextColor, ExtCreateRegion, GetRegionData, SetLayout, GetRgnBox, GdiFlush, OffsetRgn, SetDIBits, CreateBitmap, GdiAlphaBlend
gdiplus.dll
GdipFree, GdipAlloc, GdiplusStartup, GdiplusShutdown, GdipDeleteGraphics, GdipDisposeImage, GdipGetImageWidth, GdipGetImageHeight, GdipCreateBitmapFromHBITMAP, GdipCreateFromHDC, GdipSetCompositingMode, GdipSetInterpolationMode, GdipDrawImageRectI, GdipCloneImage
kernel32.dll
GetSystemDirectoryW, CreateThread, CreateJobObjectW, ExitProcess, SetProcessShutdownParameters, ReleaseMutex, CreateMutexW, SetPriorityClass, GetCurrentProcess, GetStartupInfoW, GetCommandLineW, SetErrorMode, LeaveCriticalSection, EnterCriticalSection, ResetEvent, LoadLibraryExA, CompareFileTime, GetSystemTimeAsFileTime, SetThreadPriority, GetCurrentThreadId, GetThreadPriority, GetCurrentThread, GetUserDefaultLangID, Sleep, GetBinaryTypeW, GetModuleHandleExW, SystemTimeToFileTime, GetLocalTime, GetCurrentProcessId, GetEnvironmentVariableW, UnregisterWait, GlobalGetAtomNameW, GetFileAttributesW, MoveFileW, lstrcmpW, LoadLibraryExW, FindClose, FindNextFileW, FindFirstFileW, lstrcmpiA, SetEvent, AssignProcessToJobObject, GetDateFormatW, GetTimeFormatW, FlushInstructionCache, lstrcpynW, GetSystemWindowsDirectoryW, SetLastError, GetProcessHeap, HeapFree, HeapReAlloc, HeapSize, HeapAlloc, GetUserDefaultLCID, ReadProcessMemory, OpenProcess, InterlockedCompareExchange, LoadLibraryA, QueryPerformanceCounter, UnhandledExceptionFilter, SetUnhandledExceptionFilter, VirtualFree, VirtualAlloc, ResumeThread, TerminateProcess, TerminateThread, GetSystemDefaultLCID, GetLocaleInfoW, CreateEventW, GetLastError, OpenEventW, DelayLoadFailureHook, WaitForSingleObject, GetTickCount, ExpandEnvironmentStringsW, GetModuleFileNameW, GetPrivateProfileStringW, lstrcmpiW, CreateProcessW, FreeLibrary, GetWindowsDirectoryW, LocalAlloc, CreateFileW, DeviceIoControl, LocalFree, GetQueuedCompletionStatus, CreateIoCompletionPort, SetInformationJobObject, CloseHandle, LoadLibraryW, GetModuleHandleW, ActivateActCtx, DeactivateActCtx, GetFileAttributesExW, GetProcAddress, DeleteCriticalSection, CreateEventA, HeapDestroy, InitializeCriticalSection, MulDiv, InitializeCriticalSectionAndSpinCount, lstrlenW, InterlockedDecrement, InterlockedIncrement, GlobalAlloc, InterlockedExchange, GetModuleHandleA, GetVersionExA, GlobalFree, GetProcessTimes, lstrcpyW, GetLongPathNameW, RegisterWaitForSingleObject, GetFileSize, ReadFile, RaiseException, OpenThread, GetSystemTime, GetPriorityClass, SearchPathW, GetSystemDefaultUILanguage, UnmapViewOfFile, MapViewOfFile, GetTimeZoneInformation, GetDynamicTimeZoneInformation, QueryPerformanceFrequency, GetTickCount64, MultiByteToWideChar, QueueUserWorkItem, GetProductInfo, DeleteFileW, GetProcessId, CompareStringW, QueryFullProcessImageNameW, CreateFileMappingW, WideCharToMultiByte, GlobalLock, GlobalUnlock, DuplicateHandle, GetCurrentDirectoryW, WaitForMultipleObjects, GetComputerNameW, ReleaseActCtx, CreateActCtxW, FindResourceExW, LoadResource, LockResource, QueryInformationJobObject, GetUserDefaultUILanguage, HeapSetInformation, GetVersionExW, RegisterApplicationRestart, SetProcessDEPPolicy, SetTermsrvAppInstallMode, CompareStringOrdinal
msvcrt.dll
DllMain
ntdll.dll
RtlNtStatusToDosError, NtQueryInformationProcess, WinSqmSetString, NtSetInformationProcess, WinSqmIsOptedIn, WinSqmAddToStreamEx, NtOpenThreadToken, NtOpenProcessToken, NtSetSystemInformation, WinSqmAddToStream, WinSqmEventEnabled, EtwEventWrite, EtwEventEnabled, RtlGetProductInfo, NtClose, NtQueryInformationToken, WinSqmSetDWORD
ole32.dll
CoFreeUnusedLibraries, RegisterDragDrop, CreateBindCtx, RevokeDragDrop, CoInitializeEx, CoUninitialize, OleInitialize, CoRevokeClassObject, CoRegisterClassObject, CoMarshalInterThreadInterfaceInStream, CoCreateInstance, OleUninitialize, DoDragDrop, StringFromGUID2, CoRegisterMessageFilter, CoCreateFreeThreadedMarshaler, PropVariantClear, ReleaseStgMedium, CreateStreamOnHGlobal, CoTaskMemFree, CoGetInterfaceAndReleaseStream, CoInitialize, CoGetMalloc, CoTaskMemAlloc, CLSIDFromString
powrprof.dll
CallNtPowerInformation, GetPwrCapabilities, PowerDeterminePlatformRole
propsys.dll
PropVariantToStringAlloc, PropVariantToUInt32, PropVariantToUInt64, PropVariantToBoolean, VariantToStringAlloc, VariantToStringWithDefault, PropVariantToString, VariantToBooleanWithDefault, VariantToInt32WithDefault, PSCreateMemoryPropertyStore, PropVariantToInt64
rpcrt4.dll
RpcBindingFree, RpcBindingSetAuthInfoExW, RpcStringFreeW, RpcBindingFromStringBindingW, RpcStringBindingComposeW, I_RpcExceptionFilter, NdrClientCall2
secur32.dll
GetUserNameExW
shell32.dll
SHGetFolderPathW, ExtractIconExW, SHGetSpecialFolderLocation, ShellExecuteExW, SHGetSpecialFolderPathW, SHBindToParent, SHParseDisplayName, SHChangeNotify, SHGetDesktopFolder, SHAddToRecentDocs, DuplicateIcon, SHUpdateRecycleBinIcon, SHGetFolderLocation, SHGetPathFromIDListA, SHGetPathFromIDListW, SHGetPropertyStoreForWindow, SHGetStockIconInfo, Shell_GetCachedImageIndexW, SHGetLocalizedName, SHCreateDataObject, SHCreateShellItemArrayFromShellItem, SHGetKnownFolderPath, SHCreateShellItemArrayFromIDLists, SHBindToFolderIDListParentEx, SHGetFileInfoW, SHCreateItemWithParent, SHGetKnownFolderIDList, SHBindToObject, SHGetNameFromIDList, SHCreateShellItem, ShellExecuteW, SHEnableServiceObject, SHGetIDListFromObject, SHChangeNotifyRegisterThread, SHCreateItemFromIDList, SHFileOperationW, SHGetFolderPathEx, Shell_NotifyIconW, Shell_NotifyIconGetRect, SHEvaluateSystemCommandTemplate, SHCreateItemFromParsingName, DragQueryFileW, SHBindToFolderIDListParent
shlwapi.dll
StrCpyNW, StrRetToBufW, StrRetToStrW, SHQueryValueExW, PathIsNetworkPathW, AssocCreate, StrCatW, StrCpyW, SHGetValueW, StrCmpNIW, PathRemoveBlanksW, PathRemoveArgsW, PathFindFileNameW, StrStrIW, PathGetArgsW, StrToIntW, SHRegGetBoolUSValueW, SHRegWriteUSValueW, SHRegCloseUSKey, SHRegCreateUSKeyW, SHRegGetUSValueW, SHSetValueW, PathAppendW, PathUnquoteSpacesW, PathQuoteSpacesW, SHSetThreadRef, SHCreateThreadRef, PathCombineW, SHStrDupW, PathIsPrefixW, PathParseIconLocationW, AssocQueryKeyW, AssocQueryStringW, StrCmpW, SHRegQueryUSValueW, SHRegOpenUSKeyW, SHRegSetUSValueW, PathIsDirectoryW, PathFileExistsW, PathGetDriveNumberW, StrChrW, PathFindExtensionW, PathRemoveFileSpecW, PathStripToRootW, SHOpenRegStream2W, StrDupW, SHDeleteValueW, StrCatBuffW, SHDeleteKeyW, StrCmpIW, wnsprintfW, StrCmpNW, SHStrDupA, PathCommonPrefixW, PathRemoveExtensionW, PathIsFileSpecW, StrChrIW, SHRegGetValueW, StrTrimW, SHQueryInfoKeyW, SHCreateStreamOnFileW, PathIsRootW, PathStripPathW, ChrCmpIW
slc.dll
SLGetWindowsInformationDWORD
user32.dll
DllMain
uxtheme.dll
GetThemeBackgroundContentRect, GetThemeBool, GetThemePartSize, DrawThemeParentBackground, OpenThemeData, DrawThemeBackground, GetThemeTextExtent, DrawThemeText, CloseThemeData, SetWindowTheme, GetThemeBackgroundRegion, GetThemeMargins, GetThemeColor, GetThemeFont, GetThemeRect, IsAppThemed, BufferedPaintInit, IsCompositionActive, GetThemeMetric, GetWindowTheme, EndBufferedPaint, BeginBufferedPaint, DrawThemeTextEx, BufferedPaintUnInit, IsThemeActive, IsThemePartDefined, DrawThemeIcon, GetBufferedPaintBits, BufferedPaintClear, GetThemeBackgroundExtent

EXPLORER.exe

Explorador de Windows by Microsoft

Remove EXPLORER.exe
Version:   6.1.7264.0 (win7_rtm.090622-1900)
MD5:   eaf9e7ef1ce20f2b4e80d4fb1d529d91
SHA1:   69bdd1e817fd35cb7e77de45e7e3e696aa6afed3
This is a Windows system installed file with Windows File Protection (WFP) enabled.

Overview

explorer.exe executes as a process with the local user's privileges. This version is designed to run on Windows 7 and is compiled as a 32 bit program.

DetailsDetails

File name:explorer.exe
Publisher:Microsoft Corporation
Product name:Explorador de Windows
Description:Sistema operativo Microsoft® Windows®
Typical file path:C:\windows\explorer.exe
File version:6.1.7264.0 (win7_rtm.090622-1900)
Product version:6.1.7264.0
Size:2.49 MB (2,613,248 bytes)
Build date:7/10/2009 11:28 PM
Digital DNA
PE subsystem:Windows GUI
File packed:No
Code language:Microsoft Visual C++
.NET CLR:No
More details

BehaviorsBehaviors

Shell open command
  • SHCmdFile

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00669205%
0.028634%
Kernel CPU:0.00492392%
0.013761%
User CPU:0.00176813%
0.014873%
Kernel CPU time:74,990 ms/min
100,923,805ms/min
Memory
Private memory:96.66 MB
21.59 MB
Private (maximum):82.3 MB
Private (minimum):71.55 MB
Non-paged memory:96.66 MB
21.59 MB
Virtual memory:353.1 MB
140.96 MB
Virtual memory (peak):623.18 MB
169.69 MB
Working set:71.95 MB
18.61 MB
Working set (peak):92.64 MB
37.95 MB
Resource allocations
Threads:36
12
Handles:1229
600
GUI GDI count:959
103
GUI GDI peak:1553
142
GUI USER count:469
49
GUI USER peak:867
71

BehaviorsProcess properties

Tray notification:Yes
Integrety level:Medium
Platform:32-bit
Owner:User

ResourcesThreads

Averages
 
ntdll.dll
Total CPU:0.05568609%
0.272967%
Kernel CPU:0.03350372%
0.107585%
User CPU:0.02218237%
0.165382%
CPU cycles:914,572/sec
5,741,424/sec
Memory:1.23 MB
1.16 MB
SHLWAPI.dll
Total CPU:0.04590173%
Kernel CPU:0.03044838%
User CPU:0.01545336%
CPU cycles:1,113,878/sec
Memory:348 KB
Explorer.EXE (main module)
Total CPU:0.03910340%
Kernel CPU:0.01737929%
User CPU:0.02172411%
CPU cycles:690,510/sec
Memory:2.5 MB
pnidui.dll
Total CPU:0.00621881%
Kernel CPU:0.00329231%
User CPU:0.00292650%
CPU cycles:99,713/sec
Memory:1.68 MB
WINMM.dll
Total CPU:0.00052519%
Kernel CPU:0.00035012%
User CPU:0.00017506%
CPU cycles:10,237/sec
Memory:200 KB
Wlanapi.dll
Total CPU:0.00017401%
Kernel CPU:0.00000000%
User CPU:0.00017401%
CPU cycles:9,409/sec
Memory:88 KB

Common loaded modules

These are modules that are typiclaly loaded within the context of this process.

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Ultimate 50.00%
Microsoft Windows XP 50.00%

Distribution by countryDistribution by country

Mexico installs about 100.00% of Explorador de Windows.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Dell 100.00%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE