thmsah.dll

TechHit EZDetach

TechHit

This is installed with MessageSave 6 (remove only).
Publisher:
TechHit  (signed and verified)

Product:
TechHit EZDetach

Description:
EZDetach for Microsoft Outlook (x86)

Version:
7.0.0.700

MD5:
4785704d0fecffb7214c235a489ee905

SHA-1:
1f9461dfbf661ae77bcffcb147a4e14ed2b0a6cf

SHA-256:
89d0dc12e1003f8ff55ca61cef0744b5eb60ed265a3a9740eef5d8610359f09e

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/27/2024 9:50:31 AM UTC  (today)

File size:
1.3 MB (1,384,496 bytes)

Product version:
7.0.0.700

Copyright:
Copyright (c) 2017 TechHit. All rights reserved.

Original file name:
EZDetach.DLL

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\techhit\messagesave\bin\thmsah.dll

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
1/14/2016 5:30:00 AM

Valid to:
1/14/2021 5:29:59 AM

Subject:
CN=TechHit, O=TechHit, STREET="58 West Portal Ave #266", L=San Francisco, S=CA, PostalCode=94127, C=US

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00D03387DD1A85C0742354B3237AB1CFD3

File PE Metadata
Compilation timestamp:
2/16/2017 9:31:16 AM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
14.0

Entry address:
0xAF217

Entry point:
55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, E6, 03, 00, 00, FF, 75, 10, FF, 75, 0C, FF, 75, 08, E8, BE, FE, FF, FF, 83, C4, 0C, 5D, C2, 0C, 00, 55, 8B, EC, 56, FF, 75, 08, 8B, F1, E8, A4, 34, F5, FF, C7, 06, 1C, F7, 0D, 10, 8B, C6, 5E, 5D, C2, 04, 00, 83, 61, 04, 00, 8B, C1, 83, 61, 08, 00, C7, 41, 04, 24, F7, 0D, 10, C7, 01, 1C, F7, 0D, 10, C3, 55, 8B, EC, 56, FF, 75, 08, 8B, F1, E8, 71, 34, F5, FF, C7, 06, 38, F7, 0D, 10, 8B, C6, 5E, 5D, C2, 04, 00, 83, 61, 04, 00, 8B, C1, 83, 61, 08, 00, C7, 41, 04, 40, F7...
 
[+]

Entropy:
6.6737

Developed / compiled with:
Microsoft Visual C++

Code size:
885 KB (906,240 bytes)

The file thmsah.dll has been discovered within the following program.

www.techhit.com
About 1% of users remove it
 
Powered by Should I Remove It?

Scan thmsah.dll - Powered by Reason Core Security