Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

10.0.0.0 50.00%
9.1.0.0 16.67%
9.1.0.0 33.33%

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
GetAclInformation, RegCreateKeyExA, RegDeleteValueA, RegSetValueExA, OpenSCManagerA, OpenServiceA, CloseServiceHandle, RegOpenKeyExA, RegQueryValueExA, RegCloseKey, RegEnumKeyExA, RegisterServiceCtrlHandlerA, SetServiceStatus, StartServiceCtrlDispatcherA, RegQueryInfoKeyA, RegEnumValueA, SetSecurityDescriptorDacl, InitializeSecurityDescriptor, CopySid, GetLengthSid, SetSecurityDescriptorOwner, SetSecurityDescriptorGroup, OpenProcessToken, OpenThreadToken, GetTokenInformation, AdjustTokenPrivileges, LookupPrivilegeValueA, RevertToSelf, CreateProcessAsUserA, ImpersonateLoggedOnUser, LogonUserA, AddAce, GetAce, InitializeAcl, RegDeleteKeyA, GetSecurityDescriptorDacl, AddAccessAllowedAce, RegSaveKeyW, RegLoadKeyA, RegUnLoadKeyA, RegEnumKeyA, RegLoadKeyW, RegUnLoadKeyW, SetNamedSecurityInfoA, SetEntriesInAclA, GetNamedSecurityInfoA, BuildExplicitAccessWithNameA
gdi32.dll
ScaleWindowExtEx, SetWindowExtEx, ScaleViewportExtEx, SetViewportExtEx, OffsetViewportOrgEx, SetViewportOrgEx, SetMapMode, GetStockObject, SelectObject, RestoreDC, SaveDC, Escape, ExtTextOutA, TextOutA, RectVisible, PtVisible, CreateBitmap, DeleteDC, DeleteObject, GetDeviceCaps, GetObjectA, SetBkColor, SetTextColor, GetClipBox
kernel32.dll
GetLogicalDriveStringsA, LocalFree, CopyFileW, ExpandEnvironmentStringsA, GetFileAttributesA, GetTempPathW, lstrcpyW, GetTempFileNameW, lstrcatW, DeleteFileW, CreateFileW, SetVolumeLabelA, CopyFileA, CreateDirectoryA, GetProcessHeap, HeapAlloc, HeapFree, CreateEventA, ResetEvent, SetEvent, GetFileSize, GetCurrentThread, lstrcatA, lstrcpyA, IsDBCSLeadByte, lstrcpynA, LoadLibraryExA, FindResourceA, LoadResource, SizeofResource, MultiByteToWideChar, GetShortPathNameA, lstrlenA, InterlockedDecrement, InterlockedIncrement, DeleteCriticalSection, InitializeCriticalSection, WideCharToMultiByte, GetCommandLineA, GetCurrentThreadId, DefineDosDeviceA, lstrlenW, GetSystemTime, GlobalMemoryStatus, GetDriveTypeA, ReleaseMutex, CreateMutexA, CreateProcessA, ResumeThread, GetTempPathA, GetTempFileNameA, VirtualAlloc, VirtualFree, GetSystemInfo, GetVersionExA, lstrcmpiA, GetCurrentProcess, FindFirstFileA, FindNextFileA, DeleteFileA, FindClose, GetDiskFreeSpaceExA, GetTickCount, GetExitCodeThread, WaitForSingleObject, TerminateThread, Sleep, CreateThread, SetThreadPriority, GetLastError, GetModuleHandleA, GetWindowsDirectoryA, LoadLibraryA, GetModuleFileNameA, GetProcAddress, FreeLibrary, FlushFileBuffers, SetFilePointer, ReadFile, WriteFile, CreateFileA, DeviceIoControl, CloseHandle, SetCurrentDirectoryA, SetEnvironmentVariableA, CompareStringW, CompareStringA, SetStdHandle, IsBadCodePtr, IsBadReadPtr, SetUnhandledExceptionFilter, SetLastError, FileTimeToSystemTime, FileTimeToLocalFileTime, LeaveCriticalSection, EnterCriticalSection, lstrcmpA, LocalAlloc, TlsAlloc, GlobalFree, GlobalUnlock, GlobalHandle, GlobalLock, GlobalReAlloc, GlobalAlloc, TlsSetValue, LocalReAlloc, TlsGetValue, GetVersion, GlobalDeleteAtom, GlobalFindAtomA, GlobalAddAtomA, GlobalGetAtomNameA, GetProcessVersion, GlobalFlags, GetCPInfo, GetOEMCP, GetCurrentDirectoryA, GetFullPathNameA, RtlUnwind, GetTimeZoneInformation, GetLocalTime, HeapReAlloc, GetStartupInfoA, ExitProcess, GetACP, RaiseException, HeapSize, TerminateProcess, GetEnvironmentVariableA, HeapDestroy, HeapCreate, IsBadWritePtr, LCMapStringA, LCMapStringW, UnhandledExceptionFilter, FreeEnvironmentStringsA, FreeEnvironmentStringsW, GetEnvironmentStrings, GetEnvironmentStringsW, SetHandleCount, GetStdHandle, GetFileType, GetStringTypeA, GetStringTypeW
ole32.dll
CoUninitialize, StringFromGUID2, CoInitializeSecurity, CoDisconnectObject, CoInitialize, CoTaskMemAlloc, CoTaskMemRealloc, CoRegisterClassObject, CoRevokeClassObject, CoTaskMemFree, CoCreateInstance, CoCreateGuid
schedule.dll
_ScheduleThread
shell32.dll
ShellExecuteA, StrCmpNIA
shlwapi.dll
SHDeleteKeyA
user32.dll
SetThreadDesktop, keybd_event, EnableWindow, SendMessageA, GetWindowLongA, IsWindowEnabled, GetLastActivePopup, GetParent, UnhookWindowsHookEx, SetWindowsHookExA, CallNextHookEx, GetKeyState, GetNextDlgTabItem, GetFocus, EnableMenuItem, CheckMenuItem, SetMenuItemBitmaps, ModifyMenuA, GetMenuState, LoadBitmapA, GetMenuCheckMarkDimensions, GetSystemMetrics, GetWindowRect, GetWindowPlacement, IsIconic, SystemParametersInfoA, RegisterWindowMessageA, SetWindowPos, SetWindowLongA, GetWindow, SetForegroundWindow, GetForegroundWindow, GetMessagePos, GetMessageTime, DefWindowProcA, RemovePropA, CallWindowProcA, GetPropA, SetPropA, GetClassLongA, CreateWindowExA, DestroyWindow, GetDlgCtrlID, GetWindowTextA, GetDlgItem, GetMenuItemID, GetSubMenu, GetMenuItemCount, GetMenu, GetUserObjectSecurity, OpenWindowStationA, WinHelpA, OpenDesktopA, GetTopWindow, CopyRect, GetClientRect, AdjustWindowRectEx, SetFocus, GetSysColor, MapWindowPoints, LoadIconA, mouse_event, SetWindowTextA, LoadCursorA, GetSysColorBrush, ReleaseDC, GetDC, GetClassNameA, PtInRect, ClientToScreen, PostQuitMessage, DestroyMenu, TabbedTextOutA, DrawTextA, GrayStringA, GetDesktopWindow, GetThreadDesktop, GetProcessWindowStation, ExitWindowsEx, GetCapture, SetProcessWindowStation, GetClassInfoA, SetUserObjectSecurity, MessageBoxA, RegisterClassA, PostMessageA, CloseWindowStation, CharNextA, PostThreadMessageA, wsprintfA, DispatchMessageA, GetMessageA, LoadStringA, CloseDesktop, PeekMessageA
winspool.drv
DocumentPropertiesA, OpenPrinterA, ClosePrinter
ws2_32.dll
WSAEnumNetworkEvents, WSAWaitForMultipleEvents, WSACreateEvent, WSACloseEvent, WSAEventSelect

SHDSERV.exe

Shield COM Server Module

Remove SHDSERV.exe
Version:   10.0.0.0
MD5:   037fdb029d01d48db163810713be9314
SHA1:   f76505f275ce92385758f58e36e169c98cfbefc6
SHA256:   ad601cb537596a9ba11964319bdde88401ba7ecdd344104ec0e5d8e8cfbafdcd

Overview

shdserv.exe runs as a service under the name SHDSERV within the local user context. This is typically installed with the program Rollback Rx published by www.horizon-datasys.com.

DetailsDetails

File name:shdserv.exe
Product name:Shield COM Server Module
Typical file path:C:\Program Files\shield\shdserv.exe
File version:10.0.0.0
Size:300 KB (307,200 bytes)
Digital DNA
PE subsystem:Windows GUI
File packed:No
.NET CLR:No
More details

ResourcesPrograms

The following program will install this file
www.horizon-datasys.com
6% remove

BehaviorsBehaviors

Service
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
  • 'SHDSERV'

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00199536%
0.028634%
Kernel CPU:0.00155955%
0.013761%
User CPU:0.00043581%
0.014873%
Kernel CPU time:614,253,441 ms/min
100,923,805ms/min
Context switches:30/sec
284/sec
Memory
Private memory:3.63 MB
21.59 MB
Private (maximum):6.33 MB
Private (minimum):3.68 MB
Non-paged memory:3.63 MB
21.59 MB
Virtual memory:46.3 MB
140.96 MB
Virtual memory (peak):48.29 MB
169.69 MB
Working set:4.65 MB
18.61 MB
Working set (peak):6.59 MB
37.95 MB
Resource allocations
Threads:8
12
Handles:149
600
GUI GDI count:4
103
GUI USER count:12
49

BehaviorsProcess properties

Integrety level:Undefined
Platform:32-bit
Command lines:
  • C:\Program Files\shield\shdserv.exe
  • "C:\Program Files\shield\shdserv.exe"
Owner:User
Windows Service
Service name:SHDSERV
Type:Win32OwnProcess
Parent process:services.exe (by Microsoft)

ResourcesThreads

Averages
 
sechost.dll
Total CPU:0.87244891%
0.272967%
Kernel CPU:0.85080130%
0.107585%
User CPU:0.02164761%
0.165382%
CPU cycles:27,931,758/sec
5,741,424/sec
Context switches:26/sec
79/sec
Memory:100 KB
1.16 MB
shdserv.exe (main module)
Total CPU:0.04505886%
Kernel CPU:0.01560698%
User CPU:0.02945188%
CPU cycles:1,616,097/sec
Context switches:26/sec
Memory:584 KB
schedule.dll (schedule Dynamic Link Library)
Total CPU:0.00101677%
Kernel CPU:0.00076258%
User CPU:0.00025419%
CPU cycles:103,796/sec
Memory:168 KB

Common loaded modules

These are modules that are typiclaly loaded within the context of this process.

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Ultimate 50.00%
Microsoft Windows XP 33.33%
Windows 7 Home Premium 16.67%

Distribution by countryDistribution by country

Ireland installs about 50.00% of Shield COM Server Module.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Dell 50.00%
Sahara 25.00%
American Megatrends 12.50%
Acer 12.50%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE