Should I block it?
No, this file is 100% safe to run.
Relationships
Parent process
Related files
PE file structure |
Show functions |
Import table
msvcp80.dll
DllMain
msvcr80.dll
DllMain
eDSLoader.exe
eDataSecurity by HiTRUST
Version: | 2, 5, 3023, 136 |
MD5: | ad8d5eb999c397245ccbe78bcaff1656 |
SHA1: | e89739eda322641840acbb1c4e3bf22816626eb3 |
SHA256: | 44a462a5ec0df9f1b86e25ecc5ec8211db5d3997188f3ff225b33eb8c2919b19 |
Overview
edsloader.exe executes as a process with the local user's privileges usually within the context of Windows Explorer. It is set to be start when the PC boots and any user logs into Windows (added to the Run registry key for the all users under the local machine). It is installed with a couple of know programs including Acer eDataSecurity Management published by Acer Incorporated, Acer eDataSecurity Management from Egis Technology Inc. and Acer eDataSecurity Management by Egis Technology Inc..
Details
File name: | edsloader.exe |
Publisher: | HiTRUST |
Product name: | eDataSecurity |
Description: | eDataSecurity System Loader( Load and prepare enviroment ) |
Typical file path: | C:\acer\empowering technology\edatasecurity\edsloader.exe |
File version: | 2, 5, 3023, 136 |
Size: | 442.5 KB (453,120 bytes) |
Digital DNA |
PE subsystem: | Windows GUI |
File packed: | Yes |
Code language: | Microsoft Visual C++ 8.0 |
.NET CLR: | No |
More details
Programs
The following programs will install this file
Acer eDataSecurity Management is pre-installed with various Acer laptops and is designed to encrypts files on your PC.
Acer Empowering Technology framework is pre-installed with the Acer Empowering Technology program. Please DO NOT remove Acer Empowering Framework and Acer eRecovery Management. It will disable your disk to disk recovery function.
Behaviors
Startup files (all users) run
Runs under the registry key 'HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run'
- 'eDataSecurity Loader' → C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe
Resource utilization
(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
CPU |
Total CPU: | 0.00052370% | |
Kernel CPU: | 0.00038225% | |
User CPU: | 0.00014145% | |
Kernel CPU time: | 156 ms/min | |
CPU cycles: | 17,311/sec | |
Memory |
Private memory: | 4.71 MB | |
Private (maximum): | 5.27 MB | |
Private (minimum): | 3.29 MB | |
Non-paged memory: | 4.71 MB | |
Virtual memory: | 75.85 MB | |
Virtual memory (peak): | 81.83 MB | |
Working set: | 3.32 MB | |
Working set (peak): | 9.21 MB | |
Page faults: | 4,224/min | |
I/O |
I/O read transfer: | 62 Bytes/sec | |
I/O read operations: | 1/sec | |
I/O write transfer: | 2 Bytes/sec | |
I/O write operations: | 1/sec | |
I/O other transfer: | 48 Bytes/sec | |
I/O other operations: | 2/sec | |
Resource allocations |
Threads: | 3 | |
Handles: | 152 | |
GUI GDI count: | 14 | |
GUI GDI peak: | 19 | |
GUI USER count: | 14 | |
GUI USER peak: | 20 | |
Process properties
Threads
Averages
eDSloader.exe (main module) |
Total CPU: | 0.00043848% | |
Kernel CPU: | 0.00032478% | |
User CPU: | 0.00011370% | |
CPU cycles: | 5,522/sec | |
Memory: | 904 KB | |
msnchathook.dll (MsnChatHook Dynamic Link Library) |
Total CPU: | 0.00020207% | |
Kernel CPU: | 0.00013471% | |
User CPU: | 0.00006736% | |
CPU cycles: | 7,174/sec | |
Memory: | 52 KB | |
ntdll.dll |
Total CPU: | 0.00000654% | |
Kernel CPU: | 0.00000654% | |
User CPU: | 0.00000000% | |
CPU cycles: | 91/sec | |
Memory: | 1.23 MB | |
Common loaded modules
These are modules that are typiclaly loaded within the context of this process.
Distribution by Windows OS
OS version | distribution |
Windows 7 Home Premium |
66.67% |
|
Windows Vista Home Premium |
33.33% |
|
Distribution by country
United States installs about 100.00% of eDataSecurity.
Distribution by PC manufacturer
PC Manufacturer | distribution |
Acer |
100.00% |
|