Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

6,1,8,8 75.00%
6,1,2,54 25.00%

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
StartServiceW, CreateServiceW, OpenServiceW, CloseServiceHandle, OpenSCManagerW, RegEnumValueW, RegEnumKeyExW, RegQueryValueExW, RegCloseKey, RegOpenKeyExW, OpenProcessToken, InitializeSecurityDescriptor, SetSecurityDescriptorDacl
kernel32.dll
GetModuleFileNameA, InterlockedIncrement, InterlockedDecrement, LocalFree, WideCharToMultiByte, FormatMessageW, MultiByteToWideChar, GetCurrentThreadId, GetSystemTime, SetFilePointer, GetFileAttributesW, ReadFile, CreateFileW, WriteFile, CloseHandle, GetLastError, GetCurrentProcessId, GetModuleHandleW, GetProcAddress, LoadLibraryW, FreeLibrary, SetEvent, ResetEvent, CreateEventW, WaitForSingleObject, GetCurrentProcess, GetVersionExW, WaitNamedPipeW, DisconnectNamedPipe, FlushFileBuffers, WaitForMultipleObjects, ExpandEnvironmentStringsW, OpenProcess, CreateMutexW, ReleaseMutex, GetWindowsDirectoryW, lstrlenW, GetTempPathW, GetSystemDirectoryW, SetLastError, LoadLibraryExW, GetProcessHeap, HeapAlloc, OutputDebugStringW, InterlockedExchange, GetACP, GetLocaleInfoA, GetThreadLocale, GetVersionExA, HeapDestroy, HeapFree, HeapReAlloc, HeapSize, InitializeCriticalSection, EnterCriticalSection, LeaveCriticalSection, GetModuleFileNameW, DeleteCriticalSection, GetLocalTime, OpenMutexW, FindResourceW, SizeofResource, LockResource, LoadResource, FindResourceExW, GetShortPathNameW, WaitForMultipleObjectsEx, GetTickCount, lstrcpyW, lstrcatW, TerminateProcess, Sleep, GetSystemInfo, SetUnhandledExceptionFilter, VirtualAlloc, VirtualFree, GetCommandLineA, GetTimeZoneInformation, GetModuleHandleA, ExitProcess, GetSystemTimeAsFileTime, FindClose, FileTimeToSystemTime, FileTimeToLocalFileTime, GetDriveTypeW, FindFirstFileW, UnhandledExceptionFilter, IsDebuggerPresent, RaiseException, RtlUnwind, TlsGetValue, TlsAlloc, TlsSetValue, TlsFree, GetStdHandle, SetHandleCount, GetFileType, GetStartupInfoA, FreeEnvironmentStringsA, GetEnvironmentStrings, FreeEnvironmentStringsW, GetEnvironmentStringsW, HeapCreate, QueryPerformanceCounter, GetCPInfo, GetOEMCP, IsValidCodePage, LoadLibraryA, GetFullPathNameW, GetCurrentDirectoryA, LCMapStringA, LCMapStringW, GetConsoleCP, GetConsoleMode, GetStringTypeA, GetStringTypeW, CompareStringA, CompareStringW, SetEnvironmentVariableA, SetEnvironmentVariableW, SetStdHandle, WriteConsoleA, GetConsoleOutputCP, WriteConsoleW, GetDriveTypeA, CreateFileA, ExitThread, CreateThread, DeviceIoControl, FindNextFileW, LocalAlloc, CreateSemaphoreW, ReleaseSemaphore, VirtualQuery, IsBadWritePtr, IsBadReadPtr, IsBadCodePtr, GetCurrentDirectoryW, VirtualProtect
ole32.dll
CoUninitialize, CoInitialize, OleRun, CoCreateInstance
user32.dll
GetWindow, GetWindowThreadProcessId, GetWindowLongW, EnumWindows, IsWindowVisible, GetSystemMetrics, DispatchMessageW, DispatchMessageA, TranslateMessage, GetMessageW, GetMessageA, IsWindowUnicode, PeekMessageW, MsgWaitForMultipleObjectsEx, GetForegroundWindow, GetAncestor, GetDesktopWindow, GetWindowPlacement, UnregisterClassA
winspool.drv
GetPrinterDriverDirectoryW, GetPrintProcessorDirectoryW
Export table
GetCCAppObjectID
GetFactory

sh0000.dll

SONAR by Symantec Corporation (Signed)

Remove sh0000.dll
Version:   6,1,8,8
MD5:   2ee898b0b43fe6b68b69b82b19305e2d
SHA1:   880ae9e5df7545e22ecbe985d5228279a36f61f5
SHA256:   22b0a00905e735169a047d458b73cee2f0f6c17a440c9a833e0a9f9c82ecd406

Overview

sh0000.dll is loaded as dynamic link library that runs in the context of a process. The file is digitally signed by Symantec Corporation which was issued by the VeriSign certificate authority (CA).

DetailsDetails

File name:sh0000.dll
Publisher:Symantec Corporation
Product name:SONAR
Description:SONAR Component
Typical file path:C:\Program Files\common files\symantec shared\coh\sh0000.dll
Original name:sesHlp.dll
File version:6,1,8,8
Size:389.33 KB (398,672 bytes)
Certificate
Issued to:Symantec Corporation
Authority (CA):VeriSign
Effective date:Tuesday, October 30, 2007
Expiration date:Wednesday, November 24, 2010
Digital DNA
File packed:No
.NET CLR:No
More details

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Microsoft Windows XP 50.00%
Windows Vista Home Premium 25.00%
Windows Vista Ultimate 25.00%

Distribution by countryDistribution by country

United States installs about 50.00% of SONAR.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Dell 50.00%
Hewlett-Packard 50.00%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE