Interop.SHDocVw.dll

Assembly imported from type library 'SHDocVw'.

ReSoft LTD.

Shdocvw.dll is part of Internet Explorer (IExplorer.exe) and performs the HTML parsing and rendering. Shdocvw.dll hosts the Mshtml.dll component, as well as any other Active Document component that can be loaded in place in the browser when the user navigates to a specific document type. This DLL exposes interfaces allow it to be hosted separately as an ActiveX control. Interop.SHDocVw.dll is the Interop assembly for the Microsoft WebBrowser control and is recompiled by ReSoft LTD.. The file Interop.SHDocVw.dll, re-signed by ReSoft LTD., is an Interop assembly that has been intergated by a 3rd-party into a .Net application, even though the assembly itself is most likely safe, it has been recompiled by a potentially unwanted program.
Publisher:
ReSoft LTD.  (signed and verified)

Product:
Assembly imported from type library 'SHDocVw'.

Version:
1.1.0.0

MD5:
185002d7bf71e29962a569f981fa5dec

SHA-1:
a81775f179d2d5aa91d18e3fa06e6317cd2bf593

SHA-256:
c61b7093c7f72e369c4f77c9871311659109f6ffa2be30a529062bf3534849d1

Scanner detections:
2 / 68

Status:
Inconclusive but possibly unwanted  (It is part of a common redistributable library)

Analysis date:
4/12/2025 4:39:07 PM UTC  (today)

Scan engine
Detection
Engine version

Boost by Reason
Adware.ResignedInterop.ReSoft.O
2013.8.13.22

Reason Heuristics
PUP.ResignedInterop.ReSoft.O
14.8.8.0

File size:
143 KB (146,432 bytes)

Product version:
1.1.0.0

Original file name:
Interop.SHDocVw.dll

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\windows\assembly\gac_msil\interop.shdocvw\1.1.0.0__84542ff99aed6a4d\interop.shdocvw.dll

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
7/29/2012 5:00:00 PM

Valid to:
7/30/2013 4:59:59 PM

Subject:
CN=ReSoft LTD., O=ReSoft LTD., STREET=4th Hanevi'im, L=Tel Aviv, S=Israel, PostalCode=64356, C=IL

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
7ABDE829D4244ADA77EE42C7A70C0FA3

File PE Metadata
Compilation timestamp:
9/1/2010 8:23:33 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
3072:dP+bWlaVHMhGjIdCf05e7w16BuIJyzEVefgBarctG345ij0FOPQxKbMd2nopSTkz:p+bWlaVHMhGjIdCf05e7w16UIJyzEVeq

Entry address:
0x202DE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
5.4361

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
124 KB (126,976 bytes)

Scan Interop.SHDocVw.dll - Powered by Reason Core Security