Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

2013,01,30,25 25.00%
2012,12,28,74 25.00%
2012,08,13,95 50.00%

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
RegQueryValueExW, RegEnumKeyExW, RegQueryInfoKeyW, RegSetValueExW, RegOpenKeyExW, RegCreateKeyExW, RegCloseKey, RegDeleteValueW, RegDeleteKeyW, RegQueryValueExA, RegOpenKeyExA
comctl32.dll
ImageList_Draw, _TrackMouseEvent, ImageList_Create, ImageList_Add, ImageList_GetIconSize, ImageList_Destroy
gdi32.dll
SelectObject, DeleteObject, SetBkMode, DeleteDC, GetStockObject, CreateCompatibleDC, CreateCompatibleBitmap, SetTextColor, MoveToEx, LineTo, Rectangle, BitBlt, StretchBlt, TextOutW, ExtTextOutW, SetBkColor, CreateFontIndirectW, CreatePen, GetObjectW, GetTextMetricsW, SaveDC, RestoreDC, CreateFontW, GetTextExtentPoint32W, SetViewportOrgEx, CreateSolidBrush
kernel32.dll
InterlockedIncrement, InterlockedDecrement, FreeLibrary, LoadLibraryExW, GetTickCount, GetPrivateProfileSectionW, FindClose, FindFirstFileW, GetCurrentProcessId, InterlockedCompareExchange, LocalFree, GetCommandLineW, CreateThread, GetModuleFileNameA, IsBadReadPtr, VirtualProtect, LoadLibraryA, GetModuleHandleA, FreeResource, DisableThreadLibraryCalls, TerminateThread, GetUserDefaultLCID, VirtualAlloc, VirtualProtectEx, OpenProcess, GetFileAttributesA, GetSystemTime, SetFilePointer, LocalAlloc, SetLastError, lstrcmpiA, WaitForMultipleObjects, CreateEventW, GetProcessHeap, HeapAlloc, HeapFree, HeapReAlloc, DebugBreak, GetPrivateProfileIntW, SetCurrentDirectoryW, ResumeThread, GetExitCodeThread, CreateProcessW, GetLongPathNameA, GetSystemDirectoryW, MoveFileExA, DeleteFileA, GetTempPathA, IsBadCodePtr, FreeEnvironmentStringsW, Sleep, FreeEnvironmentStringsA, GetStartupInfoA, GetFileType, SetHandleCount, GetConsoleMode, GetConsoleCP, ExitProcess, IsValidCodePage, GetOEMCP, HeapCreate, TlsFree, TlsSetValue, TlsAlloc, TlsGetValue, GetStdHandle, GetStringTypeW, GetStringTypeA, GetCPInfo, LCMapStringW, LCMapStringA, GetCommandLineA, CreateDirectoryA, ExitThread, GetSystemTimeAsFileTime, RtlUnwind, IsDebuggerPresent, SetUnhandledExceptionFilter, UnhandledExceptionFilter, TerminateProcess, VirtualFree, IsProcessorFeaturePresent, HeapSize, HeapDestroy, GetVersionExA, GetThreadLocale, GetLocaleInfoA, GetACP, InterlockedExchange, GetCurrentThreadId, lstrcatW, LoadLibraryW, WaitNamedPipeW, GetModuleHandleW, GetProcAddress, GetCurrentProcess, CreateFileA, FlushFileBuffers, SetStdHandle, WriteConsoleW, GetConsoleOutputCP, WriteConsoleA, GetLocaleInfoW, IsValidLocale, EnumSystemLocalesA, QueryPerformanceCounter, GetEnvironmentStringsW, GetLastError, InitializeCriticalSection, DeleteCriticalSection, GetFileAttributesW, lstrlenW, EnterCriticalSection, LeaveCriticalSection, FlushInstructionCache, lstrcmpiW, RaiseException, WriteFile, SetEndOfFile, CreateFileW, GetFileSize, ReadFile, lstrlenA, MultiByteToWideChar, FindResourceExW, FindResourceW, LoadResource, LockResource, SizeofResource, OpenMutexW, WaitForSingleObject, WideCharToMultiByte, OpenEventW, OpenFileMappingW, MapViewOfFile, SetEvent, ResetEvent, UnmapViewOfFile, CloseHandle, ReleaseMutex, GetPrivateProfileStringW, GetModuleFileNameW, GetEnvironmentStrings
msimg32.dll
TransparentBlt
ole32.dll
CoUninitialize, CoInitialize, StringFromGUID2, CoGetInterfaceAndReleaseStream, CoInitializeEx, CoCreateGuid, CoMarshalInterThreadInterfaceInStream, CoTaskMemAlloc, CoCreateInstance, CoTaskMemFree, CoTaskMemRealloc
psapi.dll
GetModuleFileNameExW, GetModuleFileNameExA, GetModuleInformation
shell32.dll
ShellExecuteW, SHGetFolderPathA, SHGetFolderPathW, CommandLineToArgvW
shlwapi.dll
StrCmpIW, PathFindExtensionW, StrCmpNA, PathFindFileNameA, PathRemoveFileSpecA, StrCmpNIW, UrlApplySchemeW, PathIsURLW, AssocCreate, PathAppendA, PathRemoveArgsW, PathUnquoteSpacesW, PathFindFileNameW, StrStrW, StrCmpNW, StrToIntA, StrStrIA, PathAddBackslashW, PathAppendW, PathFileExistsW, StrStrIW, PathRemoveFileSpecW
urlmon.dll
CoInternetGetSession
user32.dll
SetWindowsHookExW, UnhookWindowsHookEx, FillRect, LoadBitmapW, EnableWindow, SetWindowTextW, GetWindowThreadProcessId, EnumChildWindows, RegisterClassExW, PeekMessageW, GetMessageW, RedrawWindow, DrawTextExW, TrackMouseEvent, GetSysColor, MonitorFromWindow, GetMonitorInfoW, FindWindowExW, CharNextW, IsWindow, PostMessageW, SendMessageW, SetWindowLongW, UnregisterClassA, MessageBoxW, SetForegroundWindow, RegisterWindowMessageW, MoveWindow, IsWindowVisible, EqualRect, CopyRect, SetRect, DestroyMenu, UnionRect, TrackPopupMenu, AppendMenuW, CreatePopupMenu, FindWindowW, CallNextHookEx, TranslateMessage, DispatchMessageW, ScreenToClient, LoadCursorW, GetClassInfoExW, ShowWindow, GetWindowTextLengthW, GetWindowTextW, GetClassNameA, GetWindowRect, DestroyCursor, DefWindowProcW, GetWindowLongW, CallWindowProcW, CreateWindowExW, DestroyWindow, GetMenu, SetWindowPos, GetClientRect, ClientToScreen, UpdateWindow, InvalidateRect, SetTimer, KillTimer, IsWindowEnabled, SetCapture, GetParent, GetDlgCtrlID, AdjustWindowRectEx, SetCursor, GetAncestor, GetGUIThreadInfo, CharLowerBuffW, GetClassNameW, PostQuitMessage, GetSystemMetrics, InflateRect, EndPaint, BeginPaint, PtInRect, ReleaseCapture, GetCapture, SystemParametersInfoW, DrawEdge, DrawTextW, DrawFocusRect
wininet.dll
InternetOpenW, InternetReadFile, HttpSendRequestW, InternetConnectA, HttpOpenRequestA, HttpAddRequestHeadersA, HttpSendRequestA, HttpQueryInfoA, InternetCloseHandle, InternetCrackUrlW, InternetCrackUrlA, InternetSetOptionW
Export table
DllCanUnloadNow
DllGetClassObject
DllRegisterServer
DllUnregisterServer
RegisterUrlProcessor
UnregisterUrlProcessor

kswbc.dll

Kingsoft Internet Security by Beijing Kingsoft Security software Co. (Signed)

Remove kswbc.dll
Version:   2012,08,13,95
MD5:   80d4f21b96f0d169bad67ae6543cd27c
SHA1:   34b681bffe19c53a7ef66310d5502fa1fa62f64a
SHA256:   d3079b14947b49fed1502bfacf3661dc4d723e5eb1772b8dd12975a1dce54026

Overview

kswbc.dll is loaded as dynamic link library that runs in the context of a process. It is installed with a couple of know programs including Kingsoft Antivirus 2012 published by Kingsoft Security, Kingsoft Antivirus 2012 from Kingsoft Security and Kingsoft Antivirus 2012 by Kingsoft Security. The file is digitally signed by Beijing Kingsoft Security software Co. which was issued by the VeriSign certificate authority (CA).

DetailsDetails

File name:kswbc.dll
Publisher:Kingsoft Corporation
Product name:Kingsoft Internet Security
Description:Kingsoft Webshield Module
Typical file path:C:\Program Files\kingsoft\kingsoft antivirus\kswbc.dll
File version:2012,08,13,95
Product version:9,0,74045,95
Size:1.18 MB (1,239,416 bytes)
Certificate
Issued to:Beijing Kingsoft Security software Co.
Authority (CA):VeriSign
Effective date:Sunday, December 25, 2011
Expiration date:Thursday, December 25, 2014
Digital DNA
File packed:No
.NET CLR:No
More details

ResourcesPrograms

The following programs will install this file
Kingsoft Security
10% remove
Kingsoft Antivirus 2012 is a completely free antivirus solution for detecting, cleaning trojan virus, and protect your computer. It can be a standalone product, and can also work along with other AV. Protecting browser security while users surfing online, block malicious URL injection, and defense computer privacy security. Active Cloud Security Defense Based on the two advanced computer security techniques, KAV 2012 can efficiently pro...

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Home Premium 50.00%
Windows 8 Pro 25.00%
Windows 7 Ultimate 25.00%

Distribution by countryDistribution by country

United States installs about 50.00% of Kingsoft Internet Security.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Sony 100.00%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE