eppshell64.dll

EditPlus

ES-Computing

Publisher:
ES-Computing  (signed and verified)

Product:
EditPlus

Description:
EditPlus eppshell

Version:
4, 1, 0, 1001

MD5:
fcc6876856fabf9063bb0d0505e04cd0

SHA-1:
0220157a3f93eb21822009da8d95a7fb8787be6e

SHA-256:
6b4f9a85c5213c8fb635512e4aa099ac7d567ae481642c0f32474053152f6046

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/30/2024 8:32:57 PM UTC  (today)

File size:
64.2 KB (65,768 bytes)

Product version:
4, 1, 0, 1001

Copyright:
Copyright © 1998-2016 ES-Computing

Trademarks:
EditPlus

Original file name:
eppshell.rc

File type:
Dynamic link library (Win64 DLL)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\eppshell64.dll

Digital Signature
Signed by:

Authority:
thawte, Inc.

Valid from:
1/13/2017 2:00:00 AM

Valid to:
4/15/2018 2:59:59 AM

Subject:
CN=ES-Computing, O=ES-Computing, L=Jinju-si, S=Gyeongsangnam-do, C=KR

Issuer:
CN=thawte SHA256 Code Signing CA, O="thawte, Inc.", C=US

Serial number:
4A1E33C190528C579E82C3D3F3DDD8D4

File PE Metadata
Compilation timestamp:
3/8/2017 5:00:03 PM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
9.0

Entry address:
0x2FE0

Entry point:
48, 89, 5C, 24, 08, 48, 89, 74, 24, 10, 57, 48, 83, EC, 20, 49, 8B, F8, 8B, DA, 48, 8B, F1, 83, FA, 01, 75, 05, E8, 93, 22, 00, 00, 4C, 8B, C7, 8B, D3, 48, 8B, CE, 48, 8B, 5C, 24, 30, 48, 8B, 74, 24, 38, 48, 83, C4, 20, 5F, E9, AB, FE, FF, FF, CC, CC, CC, 48, 89, 4C, 24, 08, 48, 81, EC, 88, 00, 00, 00, 48, 8D, 0D, 0D, C3, 00, 00, FF, 15, FF, 61, 00, 00, 4C, 8B, 1D, F8, C3, 00, 00, 4C, 89, 5C, 24, 58, 45, 33, C0, 48, 8D, 54, 24, 60, 48, 8B, 4C, 24, 58, E8, 25, 55, 00, 00, 48, 89, 44, 24, 50, 48, 83, 7C, 24...
 
[+]

Entropy:
5.9505

Code size:
30 KB (30,720 bytes)

Scan eppshell64.dll - Powered by Reason Core Security