docovasfsshellextensions_x64.dll

TODO:

DLI.tools Inc.

It is registered as a context menu handler (displays a menu when right-clicked in Explorer) named “DocovaShelExtension”.
Publisher:
Docova  (signed by DLI.tools Inc.)

Product:
TODO: <Product name>

Description:
Docova Shell Extensions Library

Version:
1.0.0.3

MD5:
8d126e9afd82f1b56c92df6381650049

SHA-1:
52ef0ec58ab03d8e7d4681b1b43b0df27497c65f

SHA-256:
e413bb5af830ef5c2069fc167d6c8f8963236d1dcd59d1bb79361c03a3ef2cca

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/30/2024 8:50:50 PM UTC  (today)

File size:
848.4 KB (868,712 bytes)

Product version:
1.0.0.3

Copyright:
TODO: (c) <Docova>. All rights reserved.

Original file name:
DocovaSFSShellExtensions.dll

File type:
Dynamic link library (Win64 DLL)

Language:
English (United States)

Common path:
C:\Program Files\dlitools\docova\docovaexplorer\docovasfsshellextensions_x64.dll

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
6/6/2013 8:00:00 PM

Valid to:
7/7/2014 7:59:59 PM

Subject:
CN=DLI.tools Inc., OU=Digital ID Class 3 - Microsoft Software Validation v2, O=DLI.tools Inc., L=Mississauga, S=Ontario, C=CA

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
6AF6021057BD9FBF054CCB5B2A83075D

Registration
CLSIDs:
{0684ECB6-AD60-4C29-BD24-DCA85764F27A}, {2057E937-1384-4BCA-938F-A889D9FAF421}, {4374C6CA-0F88-45F9-95A3-9532DB7610B1}, {93848ED7-5864-4D66-BF6E-2DA8651C63D6}, {CA1AE65B-4A76-483B-9759-5D0B8BEE4B2A}, {F0CA059C-C069-44E6-9583-0332CE8F1787}

COM registered:
Yes

File PE Metadata
Compilation timestamp:
9/20/2013 4:44:44 PM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
12288:lyG2elmjkr42vH9OErN2+WjwrzQWyPZPHcQXmSD+hnvEqUUWS/fTqXm:lwe2Ns9nrN2+WjwrztyPZP8BSyaY/6m

Entry address:
0x86F28

Entry point:
48, 89, 5C, 24, 08, 48, 89, 74, 24, 10, 57, 48, 83, EC, 20, 49, 8B, F8, 8B, DA, 48, 8B, F1, 83, FA, 01, 75, 05, E8, 37, 6E, 00, 00, 4C, 8B, C7, 8B, D3, 48, 8B, CE, 48, 8B, 5C, 24, 30, 48, 8B, 74, 24, 38, 48, 83, C4, 20, 5F, E9, A7, FE, FF, FF, CC, CC, CC, 40, 53, 48, 83, EC, 30, 48, 8B, D9, B9, 0E, 00, 00, 00, E8, C5, 70, 00, 00, 90, 48, 8B, 43, 08, 48, 85, C0, 74, 3F, 48, 8B, 0D, 0C, FB, 02, 00, 48, 8D, 15, FD, FA, 02, 00, 48, 89, 4C, 24, 20, 48, 85, C9, 74, 19, 48, 39, 01, 75, 0F, 48, 8B, 41, 08, 48, 89...
 
[+]

Entropy:
6.3091

Code size:
594 KB (608,256 bytes)

Context Menu Handler
Display name:
DocovaShelExtension

CLSID:
{93848ED7-5864-4D66-BF6E-2DA8651C63D6}

CLSID name:
DocovaContextMenu Class


Scan docovasfsshellextensions_x64.dll - Powered by Reason Core Security