Should I block it?

No, this file is 100% safe to run.

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
GetCurrentHwProfileW, OpenThreadToken, GetTokenInformation, CheckTokenMembership, LookupAccountSidW, RegDeleteValueW, RegEnumValueW, AddAccessAllowedAce, AddAccessAllowedAceEx, InitializeAcl, GetLengthSid, GetAce, GetSecurityInfo, SetSecurityInfo, SetSecurityDescriptorDacl, InitializeSecurityDescriptor, QueryServiceStatus, QueryServiceConfigW, RegDeleteKeyW, DuplicateTokenEx, GetUserNameW, RegEnumKeyExW, RegQueryInfoKeyW, SetServiceStatus, RegisterServiceCtrlHandlerExW, CreateServiceW, ChangeServiceConfig2W, ChangeServiceConfigW, RegQueryValueExW, RegOpenKeyExW, RegCreateKeyExW, RegSetValueExW, RegCloseKey, OpenSCManagerW, OpenServiceW, CloseServiceHandle, DeleteService, ImpersonateLoggedOnUser, RevertToSelf, EqualSid, CreateProcessAsUserW, OpenProcessToken, AllocateAndInitializeSid, FreeSid
kernel32.dll
FreeLibraryAndExitThread, Sleep, OpenEventW, GetCurrentThreadId, GetCurrentProcessId, CreateThread, LoadLibraryW, lstrcpynW, lstrcatW, GetSystemDirectoryW, FormatMessageW, GetTickCount, ActivateActCtx, DeactivateActCtx, CreateActCtxW, ReleaseActCtx, InitializeCriticalSectionAndSpinCount, DeleteCriticalSection, LeaveCriticalSection, EnterCriticalSection, SetLastError, GetLastError, GetCurrentThread, RegisterWaitForSingleObject, UnregisterWait, ResetEvent, SetEvent, QueueUserWorkItem, InterlockedExchange, GetModuleHandleW, CreateEventW, InterlockedIncrement, InterlockedDecrement, CreateFileW, GetVolumeNameForVolumeMountPointW, DeviceIoControl, VirtualFreeEx, VirtualAllocEx, QueueUserAPC, FindClose, FindFirstFileW, GetVolumePathNamesForVolumeNameW, GetPrivateProfileStringW, WritePrivateProfileStringW, GetFileAttributesW, GetVolumeInformationW, FlushFileBuffers, lstrlenA, GetModuleFileNameW, LocalFileTimeToFileTime, SystemTimeToFileTime, GetLocalTime, SetFilePointer, GetWindowsDirectoryW, WriteFile, SetThreadPriority, GetSystemTimeAsFileTime, GetExitCodeThread, GetExitCodeProcess, WaitForSingleObject, WaitForMultipleObjects, TerminateProcess, GetCurrentProcess, DuplicateHandle, ReadProcessMemory, LocalAlloc, LocalFree, ExitProcess, lstrcmpW, WriteProcessMemory, OpenProcess, CloseHandle, lstrlenW, lstrcpyW, lstrcmpiW, LoadLibraryA, InterlockedCompareExchange, FreeLibrary, GetProcAddress, UnhandledExceptionFilter, DelayLoadFailureHook, QueryPerformanceCounter, UnmapViewOfFile, SetUnhandledExceptionFilter, ResumeThread
msvcrt.dll
DllMain
ntdll.dll
NtFilterToken, RtlUnhandledExceptionFilter, NtReplyPort, NtOpenThread, NtOpenThreadToken, NtOpenProcessToken, NtReplyWaitReceivePort, NtAcceptConnectPort, NtCompleteConnectPort, NtCreatePort, NtDuplicateToken, NtSetInformationThread, NtClose, RtlDeleteCriticalSection, RtlInitializeCriticalSection, RtlAllocateAndInitializeSid, RtlFreeSid, RtlNtStatusToDosError, NtQueryVolumeInformationFile, NtOpenEvent, NtCreateEvent, NtQuerySystemInformation, RtlImageNtHeader, NtQueryInformationToken, RtlCreateUserThread, NtQueryInformationProcess, NtRequestWaitReplyPort, RtlInitUnicodeString, NtConnectPort, NtOpenProcess
shlwapi.dll
StrCmpNW, PathAppendW, SHGetValueW, PathFindFileNameW
user32.dll
SetTimer, UnregisterUserApiHook, CloseDesktop, SetThreadDesktop, DialogBoxParamW, GetThreadDesktop, RegisterDeviceNotificationW, UnregisterDeviceNotification, GetDlgItem, SendMessageW, KillTimer, GetDlgItemTextW, SetDlgItemTextW, GetWindowRect, GetSystemMetrics, OpenInputDesktop, PostMessageW, IsWindowVisible, PostThreadMessageW, SetWindowPos, GetWindowThreadProcessId, wsprintfW, UnregisterClassW, EnumWindows, DestroyWindow, SetWindowLongW, DefWindowProcW, GetWindowLongW, DispatchMessageW, TranslateMessage, PeekMessageW, MsgWaitForMultipleObjects, CreateWindowExW, RegisterClassExW, MessageBoxW, LoadStringW, SetForegroundWindow, EndDialog
Export table
BadApplicationServiceMain
CreateHardwareEventMoniker
DllCanUnloadNow
DllGetClassObject
DllInstall
DllRegisterServer
DllUnregisterServer
FUSCompatibilityEntryW
HardwareDetectionServiceMain
ThemeServiceMain

SHSVCS.dll

Dll של שירותי המעטפת של Windows by Microsoft

Remove SHSVCS.dll
Version:   6.00.2900.5853 (xpsp_sp3_gdr.090727-1736)
MD5:   da5deab0aa202eebc14bddecb39f624b
SHA1:   5a3f184b6dcc29d7f5cb315b9e29c92ed4cf0494
This is a Windows system installed file with Windows File Protection (WFP) enabled.

Overview

shsvcs.dll is loaded as dynamic link library that runs in the context of a process. This version is installed on Windows XP.

DetailsDetails

File name:shsvcs.dll
Publisher:Microsoft Corporation
Product name:Dll של שירותי המעטפת של Windows
Description:Microsoft® Windows® Operating System
Typical file path:C:\Windows\System32\shsvcs.dll
File version:6.00.2900.5853 (xpsp_sp3_gdr.090727-1736)
Product version:6.00.2900.5853
Size:132 KB (135,168 bytes)
Build date:7/28/2009 2:17 AM
Digital DNA
PE subsystem:Windows GUI
File packed:No
Code language:Microsoft Visual C++
.NET CLR:No
More details

BehaviorsBehaviors

Hosted service
Runs as a shared service under the Windows svcHost
  • Shared name is 'FastUserSwitchingCompatibility'

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Microsoft Windows XP 100.00%

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
American Megatrends 100.00%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE