Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

6.8.00.4 29.27%
6.8.00.4 19.51%
6.2.00.2 2.44%
6.0.00.378 2.44%
5.1.00.7 17.07%
5.1.00.7 24.39%
3.1.00.24 2.44%
2.6.00.5 2.44%

Relationships


PE structurePE file structure

Show functions
Import table
comctl32.dll
CreatePropertySheetPageW, InitCommonControlsEx, ImageList_ReplaceIcon, ImageList_Create
gdi32.dll
DeleteObject
gdiplus.dll
GdiplusShutdown, GdipCreateHBITMAPFromBitmap, GdipCreateBitmapFromHICON, GdipCreateBitmapFromScan0, GdipDrawImageRectI, GdipDeleteGraphics, GdipGetImageGraphicsContext, GdipDisposeImage, GdiplusStartup
kernel32.dll
HeapAlloc, HeapDestroy, LoadLibraryA, HeapFree, HeapReAlloc, HeapSize, InterlockedIncrement, InterlockedDecrement, LoadLibraryExW, FreeLibrary, GetProcAddress, GetFileSize, CloseHandle, ReadFile, CreateFileW, GetLastError, DeleteCriticalSection, RaiseException, lstrlenW, GetModuleHandleW, SizeofResource, LoadResource, FindResourceW, GetModuleFileNameW, EnterCriticalSection, LeaveCriticalSection, GetThreadLocale, SetThreadLocale, InitializeCriticalSection, InterlockedExchange, LockResource, FindResourceExW, GetFileAttributesW, GetDriveTypeW, GetFileTime, lstrcmpiW, MultiByteToWideChar, CompareFileTime, GlobalLock, GlobalUnlock, OutputDebugStringW, WideCharToMultiByte, GetProcessHeap, GetCurrentThreadId, GetCurrentProcess, LocalFree, GetTickCount, FormatMessageW, Sleep, GetNumberFormatW, LocalAlloc, FileTimeToSystemTime, GetDateFormatW, GetTimeFormatW, SystemTimeToTzSpecificLocalTime, GetUserDefaultLCID, GetLocaleInfoW, GetTempPathW, GlobalAlloc, GlobalFree, ResetEvent, SetEvent, WaitForSingleObject, LocalFileTimeToFileTime, SystemTimeToFileTime, FlushInstructionCache, InterlockedCompareExchange, IsProcessorFeaturePresent, VirtualAlloc, TerminateProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, VirtualFree, QueryPerformanceCounter, GetSystemTimeAsFileTime, GetCurrentProcessId, IsDebuggerPresent
msvcp90.dll
DllMain
msvcr90.dll
DllMain
ole32.dll
IIDFromString, ReleaseStgMedium, CoTaskMemAlloc, CoTaskMemRealloc, CoTaskMemFree, CoCreateInstance, StringFromGUID2
user32.dll
CharNextW, MessageBoxW, LoadImageW, DestroyIcon, AppendMenuW, GetMenuItemCount, CreatePopupMenu, InsertMenuItemW, InsertMenuW, UnregisterClassA, GetMenuStringW, GetSubMenu, DrawIconEx, GetParent, LoadIconW, GetSystemMetrics, SendMessageW, GetDlgItem, SetDlgItemTextW, wsprintfW, RegisterClipboardFormatW, AllowSetForegroundWindow, GetActiveWindow, SetMenuDefaultItem, GetForegroundWindow, SetWindowLongW
Export table
DllCanUnloadNow
DllGetClassObject
DllRegisterServer
DllUnregisterServer

BUShell.dll

Backup Component by Symantec Corporation (Signed)

Remove BUShell.dll
Version:   3.1.00.24
MD5:   107c757e025164cecf50b72b8cb36979
SHA1:   70d66ff56148c7a07e36989b829f007062c6eeee
SHA256:   27eb0830d04bfd4772c50967570a4956f902983f248a347dc9e0519433a7aa2b

What is BUShell.dll?

Norton 360 by Symantec, is marketed as an all-in-one Windows PC security suite that includes an antivirus, a personal firewall, a phishing protection program and a backup program. What distinguishes this suite from Norton Internet Security is the inclusion of file backup and PC maintenance capabilities. Norton 360 is distributed as a download, a box copy, or is preinstalled on computers as OEM software.

About BUShell.dll (from Symantec Corporation)

Norton 360 delivers all-in-one security for everything the computer users in your family care about, providing automatic and transparent protection from viruses, spyware, fraudulent Web sites, phishin

DetailsDetails

File name:bushell.dll
Publisher:Symantec Corporation
Product name:Backup Component
Description:Backup Shell
Typical file path:C:\Program Files\norton 360\engine64\5.1.0.29\bushell.dll
File version:3.1.00.24
Product version:3.1
Size:2.38 MB (2,495,344 bytes)
Build date:3/18/2010 4:36 PM
Certificate
Issued to:Symantec Corporation
Authority (CA):VeriSign
Effective date:Tuesday, September 7, 2010
Expiration date:Saturday, November 23, 2013
Digital DNA
Entropy:6.070460
File packed:No
Code language:Microsoft Visual C# / Basic .NET
.NET CLR:Yes
.NET NGENed:No
More details

BehaviorsBehaviors

Context menu handler
Located in '*\shellex\ContextMenuHandlers'
  • Name: 'BUContextMenu'

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Home Premium 41.46%
Windows Vista Home Premium 26.83%
Windows 7 Ultimate 12.20%
Microsoft Windows XP 9.76%
Windows 8 2.44%
Windows 7 Starter 2.44%
Windows 8 Pro 2.44%
Windows 7 Enterprise 2.44%

Distribution by countryDistribution by country

United States installs about 66.67% of Backup Component.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Dell 33.33%
Toshiba 25.00%
Hewlett-Packard 25.00%
Acer 16.67%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE