Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

8.8.0.777 40.00%
8.7.0.570 40.00%
8.7.0.570 20.00%

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
GetTokenInformation, GetSidSubAuthorityCount, OpenThreadToken, GetSidSubAuthority, OpenProcessToken, GetSidIdentifierAuthority, RegCloseKey, RegOpenKeyExW, RegQueryValueExW, RegConnectRegistryW
gdi32.dll
DeleteObject, GetDeviceCaps
kernel32.dll
TlsGetValue, InterlockedIncrement, InterlockedDecrement, GetCurrentProcess, InitializeCriticalSection, TlsSetValue, LeaveCriticalSection, TerminateProcess, InterlockedExchange, GetStdHandle, EnterCriticalSection, DeleteCriticalSection, GetCurrentThreadId, TlsAlloc, DebugBreak, GetUserDefaultLCID, FindFirstFileExW, GetSystemDefaultLCID, GetModuleFileNameW, GetThreadLocale, FindNextFileW, GetLastError, GetModuleHandleW, WriteConsoleW, GetConsoleOutputCP, WriteConsoleA, SetStdHandle, FlushFileBuffers, GetConsoleMode, GetConsoleCP, SetFilePointer, GetLocaleInfoA, GetStringTypeW, GetStringTypeA, LoadLibraryA, FindClose, FormatMessageW, FindFirstFileW, CloseHandle, CreateFileW, GetFileAttributesW, GetVersionExW, WriteFile, LoadLibraryExW, CreateProcessW, FreeLibrary, CreateFileA, GetCurrentThread, RtlUnwind, InitializeCriticalSectionAndSpinCount, MultiByteToWideChar, LCMapStringA, HeapSize, LCMapStringW, IsValidCodePage, HeapFree, HeapAlloc, GetSystemTimeAsFileTime, GetCommandLineA, HeapReAlloc, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsDebuggerPresent, HeapCreate, HeapDestroy, VirtualFree, VirtualAlloc, Sleep, GetProcAddress, ExitProcess, GetModuleFileNameA, TlsFree, SetLastError, SetHandleCount, GetFileType, GetStartupInfoA, FreeEnvironmentStringsA, GetEnvironmentStrings, FreeEnvironmentStringsW, WideCharToMultiByte, GetEnvironmentStringsW, QueryPerformanceCounter, GetTickCount, GetCurrentProcessId, GetCPInfo, GetACP, GetOEMCP, GetComputerNameW
lz32.dll
LZRead, LZOpenFileW, LZClose, LZSeek
msvcrt.dll
DllMain
shell32.dll
SHGetDesktopFolder, ShellExecuteW, SHGetPathFromIDListW, DragQueryFileW, SHGetSpecialFolderLocation, SHGetMalloc
user32.dll
LoadStringW, RegisterClipboardFormatW, LoadImageW, SetMenuItemBitmaps, SetForegroundWindow, wsprintfW, GetDC, ReleaseDC, InsertMenuW
Export table
DllCanUnloadNow
DllGetClassObject

shext.dll

VirusScan Enterprise by McAfee (Signed)

Remove shext.dll
Version:   8.8.0.777
MD5:   1cb9731a51f9b9933d3bba1bc05d4f82
SHA1:   740e6f84a7229fef0e0837fb3e77c822da582eb8
SHA256:   67d0271efafb7708b28c2132a2f68a3c1e54aba609f2b5815be916e566ccfd73

Overview

shext.dll is loaded as dynamic link library that runs in the context of a process. It is installed with a couple of know programs including McAfee VirusScan Enterprise published by McAfee, Inc., McAfee VirusScan Enterprise from McAfee, Inc. and McAfee VirusScan Enterprise by McAfee, Inc.. The assembly utilizes the .NET run-time framework (which is required to be installed on the PC). The file is digitally signed by McAfee which was issued by the VeriSign certificate authority (CA).

DetailsDetails

File name:shext.dll
Publisher:McAfee, Inc.
Product name:VirusScan Enterprise
Description:Shell Extension
Typical file path:C:\Program Files\mcafee\virusscan enterprise\x64\shext.dll
File version:8.8.0.777
Product version:8.8.0
Size:90.1 KB (92,264 bytes)
Certificate
Issued to:McAfee
Authority (CA):VeriSign
Digital DNA
File packed:No
Code language:Microsoft Visual C# / Basic .NET
.NET CLR:Yes
.NET NGENed:No
More details

ResourcesPrograms

The following programs will install this file
McAfee, Inc.
7% remove
McAfee produces an enterprise-level product named VirusScan Enterprise: McAfee has designed this for use on larger networks. It contains features intended to make management of antivirus software on multiple computers easier. Unlike the home-user edition, it consists of a client application - loaded on all networked computers - and a server application, through which the system installs signature and application updates and configures s...

BehaviorsBehaviors

Context menu handler
Located in '*\shellex\ContextMenuHandlers'
  • Name: 'VirusScan'

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Microsoft Windows XP 40.00%
Windows 7 Professional 40.00%
Windows 7 Home Premium 20.00%

Distribution by countryDistribution by country

United States installs about 40.00% of VirusScan Enterprise.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Toshiba 66.67%
Hewlett-Packard 33.33%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE