shellextension.dll.0

Mediawave Corporation

Publisher:
Mediawave Corporation  (signed and verified)

Version:
1.0.0.5

MD5:
41bb9b6d30d8e7977f558a0c93ef8a30

SHA-1:
eb6395af72124afbc8e017045a625baa7fed8968

SHA-256:
87fdabb9c780766cb1d708a78bab658d212b66d8e89bbd7974b4cd0a73e6de15

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 3:30:29 PM UTC  (today)

File size:
133.1 KB (136,328 bytes)

Product version:
1.0.0.5

Copyright:
Copyright (c) oh!soft

Original file name:
ShellExtension.dll

Language:
Kore Dili (Kore)

Common path:
C:\Program Files\coffeezip\shellextension.dll.0

Digital Signature
Authority:
Thawte, Inc.

Valid from:
7/31/2012 3:00:00 AM

Valid to:
8/1/2013 2:59:59 AM

Subject:
CN=Mediawave Corporation, O=Mediawave Corporation, L=Seongnam-si, S=Gyeonggi-do, C=KR

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
082601D68DB641607D2AF72559E172B4

File PE Metadata
Compilation timestamp:
12/18/2012 6:48:59 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
1536:sMeocD0rIQG0Tqehd/XBJYtNkLsswlq7QPb4kroMcoI3m/iV5jufV2LICp3KG:frIwH/b6NHeQP41V5jufV2LDl7

Entry address:
0xCF83

Entry point:
8B, FF, 55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, 2C, 44, 00, 00, FF, 75, 08, 8B, 4D, 10, 8B, 55, 0C, E8, EC, FE, FF, FF, 59, 5D, C2, 0C, 00, 6A, 0C, 68, 08, 9E, 01, 10, E8, 9E, 02, 00, 00, 6A, 0E, E8, 1B, 46, 00, 00, 59, 83, 65, FC, 00, 8B, 75, 08, 8B, 4E, 04, 85, C9, 74, 2F, A1, 84, D5, 01, 10, BA, 80, D5, 01, 10, 89, 45, E4, 85, C0, 74, 11, 39, 08, 75, 2C, 8B, 48, 04, 89, 4A, 04, 50, E8, 46, F7, FF, FF, 59, FF, 76, 04, E8, 3D, F7, FF, FF, 59, 83, 66, 04, 00, C7, 45, FC, FE, FF, FF, FF, E8, 0A, 00, 00, 00...
 
[+]

Code size:
80 KB (81,920 bytes)

The file shellextension.dll.0 has been discovered within the following program.

CoffeeZip version 1.0.0.0  by ohsoft.net
ohsoft.net
About 6% of users remove it
 
Powered by Should I Remove It?

Scan shellextension.dll.0 - Powered by Reason Core Security