Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

12.1.2015.2015 37.50%
12.1.1000.157 50.00%
12.1.671.4971 12.50%

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
GetSidSubAuthorityCount, CopySid, TraceMessage, RegOpenKeyExW, RegCloseKey, OpenProcessToken, RegQueryValueExW, AllocateAndInitializeSid, FreeSid, GetTokenInformation, GetLengthSid, LookupAccountSidW, IsValidSid, GetSidIdentifierAuthority, DeleteAce, GetAclInformation, AddAccessAllowedAce, AddAccessDeniedAce, InitializeAcl, IsValidSecurityDescriptor, SetSecurityDescriptorDacl, InitializeSecurityDescriptor, UnregisterTraceGuids, RegisterTraceGuidsW, GetTraceEnableFlags, GetTraceEnableLevel, GetTraceLoggerHandle, RegSetValueExW, GetUserNameW, AdjustTokenPrivileges, LookupPrivilegeValueW, RegOpenKeyW, OpenThreadToken, GetSidSubAuthority, RegDeleteValueW
gdi32.dll
GetStockObject
kernel32.dll
InterlockedExchange, LoadLibraryA, RaiseException, GetTickCount, GetVersionExW, GetProcAddress, GetModuleHandleW, GetSystemDirectoryW, LoadLibraryW, FreeLibrary, CloseHandle, GetCurrentProcess, FindFirstFileW, FindNextFileW, FindClose, CreateFileW, HeapDestroy, lstrlenW, GetLastError, GetFileAttributesW, SizeofResource, LockResource, LoadResource, FindResourceW, FindResourceExW, GetSystemDefaultLangID, GetModuleFileNameW, GetLocaleInfoW, GetUserDefaultLangID, LocalFree, FormatMessageW, WideCharToMultiByte, OutputDebugStringW, MultiByteToWideChar, GetComputerNameW, SetLastError, GetCurrentThread, GetVersion, VerSetConditionMask, LocalAlloc, GetCurrentProcessId, InitializeCriticalSection, DeleteCriticalSection, EnterCriticalSection, LeaveCriticalSection, CreateWaitableTimerA, SetWaitableTimer, InterlockedIncrement, InterlockedDecrement, GetLogicalDriveStringsW, GetDriveTypeW, SetErrorMode, DeviceIoControl, CreateEventW, SetEvent, Sleep, ProcessIdToSessionId, HeapAlloc, HeapFree, HeapReAlloc, HeapSize, GetProcessHeap, InterlockedCompareExchange, TerminateProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsDebuggerPresent, QueryPerformanceCounter, GetCurrentThreadId, GetSystemTimeAsFileTime, CreateProcessW, CreateDirectoryW, SystemTimeToFileTime, CreateWaitableTimerW, CompareFileTime, InitializeCriticalSectionAndSpinCount, EncodePointer, DecodePointer
msvcp100.dll
DllMain
msvcp90.dll
DllMain
msvcr100.dll
DllMain
msvcr90.dll
DllMain
ole32.dll
CoInitializeEx, CoUninitialize, CoTaskMemFree, CoCreateInstance
savstatusfinder.dll
SAVStatusFinderUnInit, SAVStatusFinderGetCorruptDefsStatus, SAVStatusFinderGetOldDefsStatus, SAVStatusFinderInit, SAVStatusFinderGetSignal
shlwapi.dll
PathAddBackslashW
user32.dll
PostMessageW, SetForegroundWindow, SetWindowTextW, SendMessageW, GetDlgItem, ShowWindow, CreateDialogParamW, IsDialogMessageW, DestroyWindow, ExitWindowsEx, GetMessageW, DispatchMessageW, TranslateMessage, PeekMessageW, MsgWaitForMultipleObjects, LoadStringW, MessageBoxW, GetWindowThreadProcessId, GetWindowLongW, GetClassNameW, GetWindowTextW
Export table
GetFactory
GetObjectCount

savseshlp.dll

Symantec Endpoint Protection by Symantec Corporation (Signed)

Remove savseshlp.dll
Version:   12.1.1000.157
MD5:   88152029de57abeffd4b760ff5eccfb4
SHA1:   b1921c58a2cc6236fea284f70f82fe0cf9c9c3dd
SHA256:   ed7c65ef3317edc03036ee62e1f9f5206215540f6422f84d0234b1fd3973faf1

Overview

savseshlp.dll is loaded as dynamic link library that runs in the context of a process. The file is digitally signed by Symantec Corporation which was issued by the VeriSign certificate authority (CA).

DetailsDetails

File name:savseshlp.dll
Publisher:Symantec Corporation
Product name:Symantec Endpoint Protection
Typical file path:C:\Program Files\symantec\symantec endpoint protection\12.1.1000.157.105\bin\savseshlp.dll
File version:12.1.1000.157
Size:96.42 KB (98,736 bytes)
Certificate
Issued to:Symantec Corporation
Authority (CA):VeriSign
Effective date:Wednesday, September 8, 2010
Expiration date:Sunday, November 24, 2013
Digital DNA
PE subsystem:Windows GUI
File packed:No
Code language:Microsoft Visual C++ 9.0
.NET CLR:No
More details

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Microsoft Windows XP 50.00%
Windows 7 Home Premium 25.00%
Windows 7 Home Basic 12.50%
Windows 7 Starter 12.50%

Distribution by countryDistribution by country

United States installs about 37.50% of Symantec Endpoint Protection.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Toshiba 28.57%
Dell 28.57%
ASUS 28.57%
Hewlett-Packard 14.29%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE