Interop.SHDocVw.dll

Assembly imported from type library 'SHDocVw'.

Download Sp. z.o.o.

Shdocvw.dll is part of Internet Explorer (IExplorer.exe) and performs the HTML parsing and rendering. Shdocvw.dll hosts the Mshtml.dll component, as well as any other Active Document component that can be loaded in place in the browser when the user navigates to a specific document type. This DLL exposes interfaces allow it to be hosted separately as an ActiveX control. Interop.SHDocVw.dll is the Interop assembly for the Microsoft WebBrowser control and is recompiled by Download Sp. z.o.o.. The file Interop.SHDocVw.dll, re-signed by Download Sp. z.o.o., is an Interop assembly that has been intergated by a 3rd-party into a .Net application, even though the assembly itself is most likely safe, it has been recompiled by a potentially unwanted program. Although a detection has been made for this resource, it is generally a commonly distributed 3rd-party library and is typically safe by itself.
Publisher:
Download Sp. z.o.o.  (signed and verified)

Product:
Assembly imported from type library 'SHDocVw'.

Version:
1.1.0.0

MD5:
f46e9dbcf94544e81fa71073d79a708c

SHA-1:
d542e1a6392bd4e7737dab6db9ac891bb2583f02

SHA-256:
41890ef566935b513deb8182150a2015f169ea779cb2e7ede2fb690f657a0ac1

Scanner detections:
1 / 68

Status:
Potentially unwanted

Explanation:
This is the Interop assembly for the Microsoft WebBrowser control. While the file itself is not dangerous, it is part of a program that has been detected.

Analysis date:
11/27/2024 11:58:49 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP (M)
16.12.9.2

File size:
155.8 KB (159,568 bytes)

Product version:
1.1.0.0

Original file name:
Interop.SHDocVw.dll

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\Program Files\pirrit\ieextension\interop.shdocvw.dll

Digital Signature
Authority:
DigiCert Inc

Valid from:
2/5/2013 7:00:00 AM

Valid to:
2/10/2014 7:00:00 PM

Subject:
CN=Download Sp. z.o.o., O=Download Sp. z.o.o., L=Warszawa, C=PL

Issuer:
CN=DigiCert Assured ID Code Signing CA-1, OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
085E3D2A59F10CC943880B40ED67B453

File PE Metadata
Compilation timestamp:
9/10/2013 8:33:49 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
3072:Bjn2RXo7DAB2HsdCjoZO/0Va7mJMDudoP65kL2FA3CBcTeN4fKp0bm1QHSxsjO9w:Zn2R47DAB2HsdCjoZO/0Va7yMDudoP6e

Entry address:
0x2345E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
136 KB (139,264 bytes)

Remove Interop.SHDocVw.dll - Powered by Reason Core Security