MedShell.dll

MOBILedit!

COMPELSON Trade

This is installed with MOBILedit! Forensic Support Libraries.
Publisher:
COMPELSON Labs  (signed by COMPELSON Trade)

Product:
MOBILedit!

Description:
Shell Module of MOBILedit!

Version:
6.9.0.2831

MD5:
f72c54442a00f73395b307855eff8c24

SHA-1:
f849cbeb16196b2b6f33beee99242e2b69a5e5ca

SHA-256:
b297f91aa57ce08e20aa28ef0d384b5d460f7d98603a7f48b93bed22a49f6a04

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/20/2024 2:11:20 AM UTC  (today)

File size:
1.4 MB (1,498,496 bytes)

Product version:
6.9.0.2831

Copyright:
Copyright © COMPELSON Labs 1992-2011, All Rights Reserved

Original file name:
MedShell.dll

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\Program Files\mobiledit! forensic\medshell.dll

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
3/15/2011 7:00:00 AM

Valid to:
3/16/2013 6:59:59 AM

Subject:
CN=COMPELSON Trade, OU=Labs, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=COMPELSON Trade, L=Prague, S=Czech Republic, C=CZ

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
12663D31053291C4BD09C7EA448E2F70

File PE Metadata
Compilation timestamp:
9/26/2012 3:40:35 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
24576:r7w2i01K3O0ixNznOL+71E29orj2eUnVZJKHe06ooVRPOnY6fHrC+CgH0+/AG+Sf:rpJGeWVWrkUK

Entry address:
0xF6055

Entry point:
8B, FF, 55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, 41, 07, 00, 00, FF, 75, 08, 8B, 4D, 10, 8B, 55, 0C, E8, CC, FE, FF, FF, 59, 5D, C2, 0C, 00, FF, 25, EC, 96, DA, 20, FF, 25, F0, 96, DA, 20, FF, 25, F4, 96, DA, 20, FF, 25, F8, 96, DA, 20, FF, 25, FC, 96, DA, 20, FF, 25, 00, 97, DA, 20, FF, 25, 04, 97, DA, 20, FF, 25, 08, 97, DA, 20, FF, 25, 0C, 97, DA, 20, FF, 25, 10, 97, DA, 20, FF, 25, 14, 97, DA, 20, FF, 25, 18, 97, DA, 20, 80, F9, 40, 73, 16, 80, F9, 20, 73, 06, 0F, AD, D0, D3, FA, C3, 8B, C2, C1, FA, 1F...
 
[+]

Entropy:
6.2264

Code size:
1.2 MB (1,209,344 bytes)

The file MedShell.dll has been discovered within the following program.

Publisher's description - “It allows you to control your phone from a PC. After downloading MOBILedit! to any computer, you can connect your phone via cable, Bluetooth, wifi or using mobile app.”
www.mobiledit.com
About 3% of users remove it
 
Powered by Should I Remove It?

Scan MedShell.dll - Powered by Reason Core Security