thmsah.dll

TechHit EZDetach

TechHit

This is installed with MessageSave 6 (remove only).
Publisher:
TechHit  (signed and verified)

Product:
TechHit EZDetach

Description:
EZDetach for Microsoft Outlook (x86)

Version:
7.0.0.700

MD5:
7a659ce30cdb49045d2922075d40ec5d

SHA-1:
43869b96759e8d3b3d876dda83f6d9d266bc8470

SHA-256:
9244ae8428b48f0610884b69fd8261416deb8066b7d532c74dc1180bf1f5322d

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/27/2024 9:31:41 AM UTC  (today)

File size:
1.3 MB (1,383,984 bytes)

Product version:
7.0.0.700

Copyright:
Copyright (c) 2017 TechHit. All rights reserved.

Original file name:
EZDetach.DLL

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\techhit\messagesave\bin\thmsah.dll

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
1/13/2016 7:00:00 PM

Valid to:
1/13/2021 6:59:59 PM

Subject:
CN=TechHit, O=TechHit, STREET="58 West Portal Ave #266", L=San Francisco, S=CA, PostalCode=94127, C=US

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00D03387DD1A85C0742354B3237AB1CFD3

File PE Metadata
Compilation timestamp:
1/30/2017 2:23:39 PM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
14.0

Entry address:
0xAF0B4

Entry point:
55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, C9, 03, 00, 00, FF, 75, 10, FF, 75, 0C, FF, 75, 08, E8, BE, FE, FF, FF, 83, C4, 0C, 5D, C2, 0C, 00, 55, 8B, EC, 56, FF, 75, 08, 8B, F1, E8, 07, 36, F5, FF, C7, 06, 1C, F7, 0D, 10, 8B, C6, 5E, 5D, C2, 04, 00, 83, 61, 04, 00, 8B, C1, 83, 61, 08, 00, C7, 41, 04, 24, F7, 0D, 10, C7, 01, 1C, F7, 0D, 10, C3, 55, 8B, EC, 56, FF, 75, 08, 8B, F1, E8, D4, 35, F5, FF, C7, 06, 38, F7, 0D, 10, 8B, C6, 5E, 5D, C2, 04, 00, 83, 61, 04, 00, 8B, C1, 83, 61, 08, 00, C7, 41, 04, 40, F7...
 
[+]

Entropy:
6.6722

Developed / compiled with:
Microsoft Visual C++

Code size:
885 KB (906,240 bytes)

The file thmsah.dll has been discovered within the following program.

www.techhit.com
About 1% of users remove it
 
Powered by Should I Remove It?

Scan thmsah.dll - Powered by Reason Core Security