Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

3, 0, 17, 1 66.67%
3, 0, 17, 1 33.33%
(Note, EGIS TECHNOLOGY INC. publishes each variation of this file with the same version, but the hashes are unique.)

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
RegSetValueExW, RegEnumKeyExW, RegOpenKeyExW, RegCreateKeyExW, RegCloseKey, RegDeleteValueW, RegDeleteKeyW, SetThreadToken, RevertToSelf, OpenThreadToken, RegQueryInfoKeyW
kernel32.dll
GetCurrentDirectoryW, CloseHandle, WriteFile, CreateFileW, DisableThreadLibraryCalls, lstrcmpiA, InitializeCriticalSection, InterlockedIncrement, InterlockedDecrement, GetModuleHandleW, GetModuleFileNameW, MultiByteToWideChar, SizeofResource, LoadResource, WideCharToMultiByte, LoadLibraryExW, lstrcmpiW, DeleteCriticalSection, RaiseException, LeaveCriticalSection, EnterCriticalSection, lstrcpynW, lstrcpynA, GetProcAddress, FlushFileBuffers, CreateFileA, GetConsoleOutputCP, WriteConsoleA, FreeLibrary, lstrlenW, lstrcpyW, LoadLibraryW, GetLastError, GlobalLock, GlobalUnlock, FindResourceW, GetFileAttributesW, SetStdHandle, GetConsoleMode, GetConsoleCP, SetFilePointer, GetStringTypeW, GetStringTypeA, LCMapStringW, LCMapStringA, VirtualQuery, GetSystemTimeAsFileTime, GetTickCount, QueryPerformanceCounter, GetEnvironmentStringsW, FreeEnvironmentStringsW, GetEnvironmentStrings, FreeEnvironmentStringsA, GetVersionExA, InterlockedExchange, GetACP, GetLocaleInfoA, GetThreadLocale, GetCurrentProcessId, SetEvent, OpenEventA, OutputDebugStringA, OutputDebugStringW, lstrlenA, WaitForSingleObject, GetCurrentThreadId, VirtualAlloc, UnmapViewOfFile, GetSystemInfo, MapViewOfFile, CreateFileMappingA, GetCurrentThread, GetVersion, OpenFileMappingA, GetModuleFileNameA, RtlUnwind, HeapValidate, IsBadReadPtr, GetCommandLineA, HeapFree, HeapAlloc, GetProcessHeap, FatalAppExitA, DebugBreak, IsDebuggerPresent, LoadLibraryA, TerminateProcess, GetCurrentProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, GetModuleHandleA, TlsGetValue, TlsAlloc, TlsSetValue, TlsFree, SetLastError, GetStdHandle, WriteConsoleW, GetFileType, ExitProcess, HeapReAlloc, HeapDestroy, HeapCreate, VirtualFree, GetOEMCP, GetCPInfo, SetHandleCount, GetStartupInfoA
ole32.dll
ReleaseStgMedium, CoCreateInstance, CoTaskMemFree, CoTaskMemAlloc, CoTaskMemRealloc, StringFromGUID2, CoReleaseMarshalData, CoMarshalInterface, CreateStreamOnHGlobal, CoUnmarshalInterface, CoRevokeClassObject, CoRegisterClassObject
shell32.dll
SHFileOperationW, SHGetFileInfoW, DragQueryFileW, ShellExecuteW, SHGetFolderPathW
shlwapi.dll
PathFileExistsW
user32.dll
IsWindowUnicode, PeekMessageA, MsgWaitForMultipleObjects, SetMenuItemBitmaps, LoadBitmapW, InsertMenuItemW, GetMessageW, UnregisterClassW, CharNextW, GetForegroundWindow, SendMessageW, CreatePopupMenu, InsertMenuW, DispatchMessageA, DispatchMessageW, TranslateMessage, GetMessageA
Export table
DllCanUnloadNow
DllGetClassObject
DllRegisterServer
DllUnregisterServer

mwlshellext.dll

MyWinLocker by EGIS TECHNOLOGY INC. (Signed)

Remove mwlshellext.dll
Version:   3, 0, 17, 1
MD5:   51612be20e95c2948ff657001fc89dd3
SHA1:   fb944af62fa70a56a094501d4b2a10886812abd4
SHA256:   96e8d2106bbb12a40b7d9e40228149686f00d1e02dd5b0ccd54013ecde89d3ca

Overview

mwlshellext.dll is loaded as dynamic link library that runs in the context of a process. The file is digitally signed by EGIS TECHNOLOGY INC. which was issued by the VeriSign certificate authority (CA).

DetailsDetails

File name:mwlshellext.dll
Publisher:EgisTec Inc.
Product name:MyWinLocker
Description:Shell Extention
Typical file path:C:\Program Files\egistec\mywinlocker 3\x86\mwlshellext.dll
Original name:mwlShellExt
File version:3, 0, 17, 1
Product version:3, 0, 0, 0
Size:371.05 KB (379,952 bytes)
Certificate
Issued to:EGIS TECHNOLOGY INC.
Authority (CA):VeriSign
Effective date:Friday, February 1, 2008
Expiration date:Sunday, February 1, 2009
Digital DNA
PE subsystem:Windows GUI
File packed:No
.NET CLR:No
More details

BehaviorsBehaviors

Context menu handler
Located in '*\shellex\ContextMenuHandlers'
  • Name: 'EDSshellExt'

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows Vista Home Premium 100.00%

Distribution by countryDistribution by country

United Arab Emirates installs about 33.33% of MyWinLocker.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Acer 100.00%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE