ieframe.dll

Windows Internet Explorer

Microsoft Corporation

IEFrame contains the user interface and window for Internet Explorer. It is included with Windows 7.
Publisher:
Microsoft Corporation

Product:
Windows® Internet Explorer

Description:
Internet Browser

 
Part of the Windows 7 (for Internet Explorer 9) Operating System

Version:
9.00.8112.16421 (WIN7_IE9_RTM.110308-0330)

MD5:
192422d65e5b522284c607cb83ca0e9a

SHA-1:
71987d3baa76fc59803045b6f952ed62bf3575fa

SHA-256:
ca2c8b3b2923a95bd3687b23fbc4c53dc5132a348d039a694c1f382ffe4a0211

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)
Whitelisted  (by digital signature)

Analysis date:
12/9/2016 2:57:29 AM UTC  (today)

File size:
10.4 MB (10,890,240 bytes)

Product version:
9.00.8112.16421

Copyright:
© Microsoft Corporation. All rights reserved.

Original file name:
IEFRAME.DLL.MUI

File type:
Dynamic link library (Win64 DLL)

Language:
English (United States)

Common path:
C:\Windows\System32\ieframe.dll

Registration
CLSIDs:
{05BDC38E-5493-487a-A7FF-8CF2246ABC13}, {06EEE834-461C-42c2-8DCF-1502B527B1F9}, {07C45BB1-4A8C-4642-A1F5-237E7215FF66}, {098870b6-39ea-480b-b8b5-dd0167c4db59}, {10BCEB99-FAAC-4080-B2FA-D07CD671EEF2}, {11016101-E366-4D22-BC06-4ADA335C892B}

ProgIDs:
xmlfile, ShellNameSpace.ShellNameSpace.1, Shell.UIHelper.1, Shell.Explorer.2, Shell.Explorer.1, IEPH.HistoryHandler, InternetShortcut

COM registered:
Yes

File PE Metadata
Compilation timestamp:
5/28/2014 7:34:57 PM

OS version:
6.1

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
98304:lU65AAPMjka7qbuZcPrIlvlAx5dNIEbzFE5N3FYZg5YBLjU8/cm0MMHMMM6MMZMW:qkCjkaubjPAl+NIEXMwg5C0sAgWL

Entry address:
0x12E0

Entry point:
48, 89, 5C, 24, 08, 48, 89, 74, 24, 10, 57, 48, 83, EC, 20, 49, 8B, F8, 8B, DA, 48, 8B, F1, 83, FA, 01, 75, 05, E8, E3, 10, 00, 00, 4C, 8B, C7, 8B, D3, 48, 8B, CE, 48, 8B, 5C, 24, 30, 48, 8B, 74, 24, 38, 48, 83, C4, 20, 5F, EB, 16, 00, 90, 90, 90, 90, 90, 90, 90, 90, 90, 90, 90, 90, 90, 90, 90, 90, 90, 90, 90, 90, 90, 4C, 89, 44, 24, 18, 89, 54, 24, 10, 48, 89, 4C, 24, 08, 53, 56, 57, 48, 81, EC, 40, 01, 00, 00, 8B, FA, 48, 8B, F1, BB, 01, 00, 00, 00, 89, 5C, 24, 20, 89, 15, 60, B9, 4B, 00, 85, D2, 0F, 84...
 
[+]

Entropy:
6.3503

Code size:
4 MB (4,166,144 bytes)

Shell Open Command
Open type:
InternetShortcut

Command:
"C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",openurl %l