cnvshell.DLL

cnvshell Module

fCoder Group, Inc.

It is registered as a context menu handler (displays a menu when right-clicked in Explorer) named “CnvShell”.
Publisher:
fCoder Group International  (signed by fCoder Group, Inc.)

Product:
cnvshell Module

Description:
cnvshell

Version:
6, 3, 6, 0

MD5:
ee5f7734204650b4958630c36b0b6672

SHA-1:
8d220142c49bc0c93fc64cba8c39cbf1db47cf8c

SHA-256:
8dfd34a6d9db2457e9d873d44804519a56d94845a2d193bd779c15d525dff5d7

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/29/2024 6:24:43 PM UTC  (today)

File size:
178.3 KB (182,608 bytes)

Product version:
6, 3, 6, 0

Copyright:
Copyright 1999-2009

Trademarks:
fCoder Group International

Original file name:
cnvshell.DLL

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\Windows\System32\cnvshell.dll

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
7/25/2007 7:00:00 AM

Valid to:
7/25/2010 6:59:59 AM

Subject:
CN="fCoder Group, Inc.", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="fCoder Group, Inc.", L=Alexandria, S=Virginia, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
26601C322F661AB70E04696A8A84EAE7

Registration
CLSID:
{A118FEA0-1D1B-4165-BC37-88F95B250E7A}

ProgID:
Cnvshell.CnvShellATL.1

COM registered:
Yes

File PE Metadata
Compilation timestamp:
6/1/2010 11:49:14 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
3072:AHFCXpiiSuRjtphooAH9r0pYKnDX6klQZheHW:tXpiJuRjtphV4KYqDKkscHW

Entry address:
0xF9E8

Entry point:
8B, FF, 55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, 29, 7B, 00, 00, FF, 75, 08, 8B, 4D, 10, 8B, 55, 0C, E8, EC, FE, FF, FF, 59, 5D, C2, 0C, 00, CC, 68, 80, D8, 00, 10, 64, FF, 35, 00, 00, 00, 00, 8B, 44, 24, 10, 89, 6C, 24, 10, 8D, 6C, 24, 10, 2B, E0, 53, 56, 57, A1, B4, 68, 02, 10, 31, 45, FC, 33, C5, 50, 89, 65, E8, FF, 75, F8, 8B, 45, FC, C7, 45, FC, FE, FF, FF, FF, 89, 45, F8, 8D, 45, F0, 64, A3, 00, 00, 00, 00, C3, 8B, 4D, F0, 64, 89, 0D, 00, 00, 00, 00, 59, 5F, 5F, 5E, 5B, 8B, E5, 5D, 51, C3, CC, CC, CC...
 
[+]

Entropy:
6.3860

Code size:
115 KB (117,760 bytes)

Context Menu Handler
Display name:
CnvShell

CLSID:
{A118FEA0-1D1B-4165-BC37-88F95B250E7A}

CLSID name:
CnvShellATL Class


Scan cnvshell.DLL - Powered by Reason Core Security