CFShell64.dll

CryptoForge

Ranquel Technologies

It is registered as a context menu handler (displays a menu when right-clicked in Explorer) named “CryptoForge”. This is installed with CryptoForge.
Publisher:
Ranquel Technologies  (signed and verified)

Product:
CryptoForge

Description:
CryptoForge Shell Extension for x64

Version:
4.1.0.1

MD5:
7334c0b14e9794364c65533379825618

SHA-1:
6052cb904ee1d27beb9e383c0a14ad4323287c40

SHA-256:
e900a4486151dc9e10994c890c845544275a977cd32dee55218a704dc413614c

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/1/2024 9:05:01 PM UTC  (today)

File size:
420 KB (430,096 bytes)

Product version:
4.1.0

Copyright:
Copyright (c) 2004-2013 Ranquel Technologies

Trademarks:
CryptoForge (TM)

Original file name:
CFShell64.dll

File type:
Dynamic link library (Win64 DLL)

Language:
English (United States)

Common path:
C:\Program Files\cryptoforge\cfshell64.dll

Digital Signature
Authority:
COMODO CA Limited

Valid from:
8/9/2012 1:00:00 AM

Valid to:
8/10/2013 12:59:59 AM

Subject:
CN=Ranquel Technologies, O=Ranquel Technologies, STREET=Adolfo Alsina 01779, L=Buenos Aires, S=Capital Federal, PostalCode=1088, C=AR

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
7439C00D30F0120BF3780C49C3A82B24

Registration
CLSID:
{A877C924-EC23-4C46-9698-35D66F1C02E2}

COM registered:
Yes

File PE Metadata
Compilation timestamp:
8/1/2013 10:54:14 AM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
6144:AgVu4HKB5qyxCGX7KmWa8bUkSWB4g8jrBzTF7sseacoez7E/4nZ90707PTwXuimg:xVZKB5qSPGZykSWBLCtea9Qnz0g71pY

Entry address:
0x33128

Entry point:
48, 89, 5C, 24, 08, 48, 89, 74, 24, 10, 57, 48, 83, EC, 20, 49, 8B, F8, 8B, DA, 48, 8B, F1, 83, FA, 01, 75, 05, E8, C7, 81, 00, 00, 4C, 8B, C7, 8B, D3, 48, 8B, CE, 48, 8B, 5C, 24, 30, 48, 8B, 74, 24, 38, 48, 83, C4, 20, 5F, E9, A7, FE, FF, FF, CC, CC, CC, 4C, 8D, 0D, 71, CB, 02, 00, 33, C0, 49, 8B, D1, 44, 8D, 40, 08, 3B, 0A, 74, 2B, FF, C0, 49, 03, D0, 83, F8, 2D, 72, F2, 8D, 41, ED, 83, F8, 11, 77, 06, B8, 0D, 00, 00, 00, C3, 81, C1, 44, FF, FF, FF, B8, 16, 00, 00, 00, 83, F9, 0E, 41, 0F, 46, C0, C3, 48...
 
[+]

Entropy:
6.2134

Code size:
290.5 KB (297,472 bytes)

Context Menu Handler
Display name:
CryptoForge

CLSID:
{A877C924-EC23-4C46-9698-35D66F1C02E2}

CLSID name:
CryptoForge Shell Extension


The file CFShell64.dll has been discovered within the following program.

CryptoForge  by Ranquel Technologies
www.cryptoforge.com
About 8% of users remove it
 
Powered by Should I Remove It?

Scan CFShell64.dll - Powered by Reason Core Security