Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

12.0.122.172 10.00%
11.0.6300.541 10.00%
11.0.6200.513 10.00%
11.0.6100.463 10.00%
11.0.6070.422 20.00%
11.0.5002.290 10.00%
11.0.4010.14 10.00%
11.0.4000.2263 10.00%
11.0.777.1008 10.00%

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
GetSidSubAuthorityCount, GetSidIdentifierAuthority, GetTokenInformation, OpenProcessToken, RegOpenKeyExW, RegCloseKey, RegSetValueExW, RegQueryValueExA, RegOpenKeyExA, RegQueryValueExW, RegEnumKeyExW, RegEnumValueW, CloseServiceHandle, QueryServiceStatus, OpenServiceW, OpenSCManagerW, StartServiceW, RegOpenKeyA, EqualSid, AllocateAndInitializeSid, RegCreateKeyExW, RegEnumKeyW, RegOpenKeyW, CryptGenRandom, CryptAcquireContextW, CryptCreateHash, CryptHashData, CryptGetHashParam, CryptDestroyHash, CryptReleaseContext, GetSidSubAuthority
comctl32.dll
ImageList_DrawEx
crypt32.dll
CryptUnprotectData, CryptProtectData
gdi32.dll
GetObjectW, CreateCompatibleBitmap, CreateCompatibleDC, CreatePolygonRgn, FillRgn, OffsetRgn, CombineRgn, SetRectRgn, CreateRectRgnIndirect, CreateRectRgn, StretchBlt, GetPixel, GetTextExtentPoint32W, SelectObject, DPtoLP, CreateBitmap, SetMapMode, SetBkColor, CreateSolidBrush, DeleteDC, DeleteObject, GetDeviceCaps, GetCurrentObject, BitBlt, GetMapMode, GetTextColor, GetBkMode, GetBkColor, CreateFontIndirectW
gdiplus.dll
GdipBitmapGetPixel, GdiplusShutdown, GdipCreateBitmapFromResource, GdipCreateHBITMAPFromBitmap, GdipCreateBitmapFromHBITMAP, GdipCreateBitmapFromScan0, GdipCreateBitmapFromStreamICM, GdipLoadImageFromStream, GdipLoadImageFromStreamICM, GdiplusStartup, GdipCreateBitmapFromStream, GdipCloneImage, GdipDisposeImage, GdipDrawImageI, GdipGetImageGraphicsContext, GdipDeleteGraphics, GdipGetImageHeight, GdipCreateImageAttributes, GdipDisposeImageAttributes, GdipGetImageWidth, GdipDrawImageRectRect, GdipSetInterpolationMode, GdipCreateFromHDC, GdipAlloc, GdipFree, GdipSetImageAttributesColorKeys
imm32.dll
ImmGetContext, ImmGetOpenStatus
kernel32.dll
GetVersionExA, GetLocaleInfoA, HeapDestroy, HeapFree, HeapReAlloc, HeapSize, GetSystemTimeAsFileTime, QueryPerformanceCounter, IsDebuggerPresent, SetUnhandledExceptionFilter, UnhandledExceptionFilter, TerminateProcess, InterlockedCompareExchange, GetThreadLocale, SetThreadLocale, WritePrivateProfileSectionW, WritePrivateProfileStringW, GetPrivateProfileStringW, GetNumberFormatW, FileTimeToLocalFileTime, FileTimeToSystemTime, CreateDirectoryW, GetComputerNameW, SetFileAttributesW, CopyFileW, GetTempPathW, GetTempFileNameW, DeleteFileW, GetCurrentDirectoryW, SetCurrentDirectoryW, GetLocalTime, CompareFileTime, ResumeThread, ResetEvent, WaitForMultipleObjects, ReleaseSemaphore, SetEvent, WaitForSingleObject, CreateSemaphoreW, CreateEventW, DuplicateHandle, lstrcmpiW, lstrcmpW, OutputDebugStringA, GetDateFormatA, SystemTimeToFileTime, OpenProcess, GetDateFormatW, GetTimeFormatW, FindResourceW, SizeofResource, LoadResource, LockResource, GlobalAlloc, GlobalLock, GlobalUnlock, GlobalFree, GetCurrentProcessId, LocalAlloc, lstrcmpA, GetSystemDirectoryA, LoadLibraryA, VerSetConditionMask, CreateFileW, ReadFile, Sleep, lstrcatW, DebugBreak, GetTickCount, GetCurrentProcess, GetUserDefaultLangID, LocalFree, FindNextFileW, FindFirstFileW, FindClose, GetSystemDefaultLangID, GetSystemInfo, GetLocaleInfoW, GetCurrentThreadId, GetACP, GetOEMCP, GetVolumePathNameW, GetVolumeNameForVolumeMountPointW, MultiByteToWideChar, OutputDebugStringW, WideCharToMultiByte, lstrcpyA, lstrlenA, LoadLibraryExA, LoadLibraryExW, GetFileAttributesW, FormatMessageW, GetProcessHeap, HeapAlloc, RaiseException, GetVersionExW, InterlockedExchange, GetVersion, GetModuleHandleW, SetLastError, FreeLibrary, GetSystemDirectoryW, LoadLibraryW, GetProcAddress, GetLastError, CreateProcessW, CloseHandle, GetEnvironmentVariableW, GetStartupInfoW, MulDiv, EnterCriticalSection, LeaveCriticalSection, DeleteCriticalSection, GetModuleFileNameW, lstrlenW, InterlockedDecrement, InterlockedIncrement, InitializeCriticalSection, GetWindowsDirectoryW, TryEnterCriticalSection
mfc80u.dll
DllMain
msimg32.dll
TransparentBlt
msvcp80.dll
DllMain
msvcr80.dll
DllMain
ole32.dll
OleRun, CoCreateInstance, CoTaskMemFree, StringFromCLSID, CreateStreamOnHGlobal, CLSIDFromString, CoInitialize, CoUninitialize, StringFromGUID2, CoCreateGuid, CoTaskMemAlloc, CoInitializeEx, HWND_UserFree, HWND_UserUnmarshal, HWND_UserMarshal, HWND_UserSize
psapi.dll
GetModuleBaseNameW, EnumProcessModules, EnumProcesses, GetModuleFileNameExW
rpcrt4.dll
IUnknown_Release_Proxy, IUnknown_AddRef_Proxy, IUnknown_QueryInterface_Proxy, NdrOleFree, NdrStubForwardingFunction, NdrDllGetClassObject, NdrDllCanUnloadNow, NdrDllUnregisterProxy, NdrDllRegisterProxy, NdrCStdStubBuffer2_Release, NdrCStdStubBuffer_Release, NdrOleAllocate, NdrStubCall2
shell32.dll
SHGetMalloc, SHGetSpecialFolderPathA, SHGetFolderPathW, SHGetPathFromIDListW, ShellExecuteW, SHBrowseForFolderW
shlwapi.dll
PathAddBackslashA, PathRemoveBackslashA, StrStrIW, PathAddBackslashW, SHDeleteKeyW
user32.dll
IsMenu, AdjustWindowRectEx, GetMenu, RegisterWindowMessageW, BeginDeferWindowPos, DeferWindowPos, EndDeferWindowPos, GetScrollInfo, GetClassLongW, GetWindowRgn, OffsetRect, GetDesktopWindow, LoadIconW, LoadMenuW, EnableMenuItem, CallWindowProcW, SetWindowLongW, SetWindowPos, GetDlgItem, SetWindowTextW, GetWindowThreadProcessId, SetWindowRgn, CharPrevW, EnumChildWindows, GetWindowLongW, GetWindow, GetSystemMetrics, TranslateMessage, LoadStringW, MsgWaitForMultipleObjects, PeekMessageW, DispatchMessageW, UnhookWindowsHookEx, SetWindowsHookExW, IsDialogMessageW, CallNextHookEx, CharUpperW, CharNextW, wsprintfA, SetMenuInfo, ModifyMenuW, GetSubMenu, GetMenuItemID, GetMenuItemCount, LoadImageW, CopyRect, GetNextDlgTabItem, KillTimer, SetTimer, ScreenToClient, SetRect, GetMessagePos, GetClassNameW, EnumWindows, GetCapture, GetFocus, SetCapture, PostMessageW, GetCursorPos, ReleaseCapture, LoadBitmapW, ReleaseDC, FillRect, GetSysColor, CharNextA, GetDC, GetParent, GetNextDlgGroupItem, RedrawWindow, IsWindowVisible, InvalidateRect, UpdateWindow, MapWindowPoints, GetClientRect, GetWindowRect, SendMessageW, DrawFocusRect, GetKeyState, GetCursorInfo, SetCursor, PtInRect, TrackMouseEvent, InflateRect, DestroyCursor, LoadCursorW, EnableWindow, UnregisterClassA, MessageBoxW, IsWindow, EndDialog
version.dll
GetFileVersionInfoSizeW, GetFileVersionInfoW, VerQueryValueW
wtsapi32.dll
WTSSendMessageA
Export table
DllCanUnloadNow
DllGetClassObject
DllRegisterServer
DllUnregisterServer

savmainui.dll

Symantec AntiVirus by Symantec Corporation (Signed)

Remove savmainui.dll
Version:   11.0.5002.290
MD5:   8dcb56c40c525fb9816f16116d39aac5
SHA1:   e4c4d21681028636ac60b231ea01010f208f91da

Overview

savmainui.dll is loaded as dynamic link library that runs in the context of a process. It is installed with a couple of know programs including Symantec Endpoint Protection published by Symantec Corporation and Symantec Endpoint Protection - CAH published by Symantec Corporation. The file is digitally signed by Symantec Corporation which was issued by the VeriSign certificate authority (CA).

DetailsDetails

File name:savmainui.dll
Publisher:Symantec Corporation
Product name:Symantec AntiVirus
Typical file path:C:\Program Files\symantec client security\symantec antivirus\savmainui.dll
File version:11.0.5002.290
Size:757.36 KB (775,536 bytes)
Build date:9/18/2009 4:47 AM
Certificate
Issued to:Symantec Corporation
Authority (CA):VeriSign
Effective date:Tuesday, October 30, 2007
Expiration date:Wednesday, November 24, 2010
Digital DNA
PE subsystem:Windows GUI
File packed:No
Code language:Microsoft Visual C++ 8.0
.NET CLR:No
More details

ResourcesPrograms

The following programs will install this file
Symantec Corporation
9% remove
Customers have embraced Symantec Endpoint Protection 12 faster than any previous release. In Symantec Endpoint Protection 12.1.2, we've worked hard to further the Unrivaled Security, Blazing Performance and support for Virtual Environments. By layering technologies like Insight and SONAR, antivirus scans are reduced and maximum performance is achieved while stopping cyber-criminals and even zero-day threats in their tracks. Endpoint pro...
Symantec Corporation
5% remove
Customers have embraced Symantec Endpoint Protection 12 faster than any previous release. In Symantec Endpoint Protection 12.1.2, we've worked hard to further the Unrivaled Security, Blazing Performance and support for Virtual Environments. By layering technologies like Insight and SONAR, antivirus scans are reduced and maximum performance is achieved while stopping cyber-criminals and even zero-day threats in their tracks. Endpoint pro...

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Microsoft Windows XP 60.00%
Windows 7 Home Premium 20.00%
Windows Vista Ultimate 10.00%
Windows 7 Professional 10.00%

Distribution by countryDistribution by country

United States installs about 60.00% of Symantec AntiVirus.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Dell 66.67%
Hewlett-Packard 16.67%
Intel 16.67%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE