offlinevaultph3x_it.dll

Enterprise Vault

Symantec Corporation

Publisher:
Symantec Corporation  (signed and verified)

Product:
Enterprise Vault

Description:
WDS Protocol Handler

Version:
9.0.1.1090

MD5:
9e0fd063227f619e7be76e8bc5c41913

SHA-1:
43a56c6d39cd5dc900857d7492a5512831cfcddb

SHA-256:
3c10ad4a452f360aae2b983eb25967dc4eb334314ffcef2a8476c8b474c4a9d0

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 4:06:40 PM UTC  (today)

File size:
414.2 KB (424,144 bytes)

Product version:
9, 0, 1, 0

Copyright:
Copyright (c) 2011 Symantec Corporation. All rights reserved. Use of this product is subject to license terms.

Original file name:
OfflineVaultPH.dll

File type:
Dynamic link library (Win64 DLL)

Language:
English (United States)

Common path:
C:\Program Files\enterprise vault\evclient\x64\offlinevaultph3x_it.dll

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
9/20/2010 2:00:00 AM

Valid to:
9/21/2011 1:59:59 AM

Subject:
CN=Symantec Corporation, OU=Digital ID Class 3 - Microsoft Software Validation v2, OU=Enterprise Vault, O=Symantec Corporation, L=Reading, S=Berkshire, C=GB

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
086543AE84313CFF19A64FAE198C74CE

Registration
CLSID:
{5896A718-788B-47c0-965A-7B124E091AB6}

ProgID:
OfflineVaultPH3x.OfflineVaultSP.1

COM registered:
Yes

File PE Metadata
Compilation timestamp:
1/26/2011 12:05:25 PM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
6144:oJzqKKxcJfNN8FOWQRTmIYUDGwC22b2myOlCy1xz:JKKG6yVYUKwp21xz

Entry address:
0x12B30

Entry point:
48, 89, 5C, 24, 08, 48, 89, 74, 24, 10, 57, 48, 83, EC, 20, 49, 8B, F8, 8B, DA, 48, 8B, F1, 83, FA, 01, 75, 05, E8, EB, 02, 00, 00, 4C, 8B, C7, 8B, D3, 48, 8B, CE, 48, 8B, 5C, 24, 30, 48, 8B, 74, 24, 38, 48, 83, C4, 20, 5F, E9, 8B, FE, FF, FF, CC, FF, 25, 64, 79, 02, 00, 48, 89, 4C, 24, 08, 48, 81, EC, 88, 00, 00, 00, 48, 8D, 0D, 79, E1, 04, 00, FF, 15, D3, 76, 02, 00, 4C, 8B, 1D, 64, E2, 04, 00, 4C, 89, 5C, 24, 58, 45, 33, C0, 48, 8D, 54, 24, 60, 48, 8B, 4C, 24, 58, E8, 5D, 03, 00, 00, 48, 89, 44, 24, 50...
 
[+]

Code size:
226 KB (231,424 bytes)

Approved Shell Extension
Name:
Windows Search Offline Vault Namespace Extension Class

CLSID:
{5896A718-788B-47c0-965A-7B124E091AB6}

CLSID name:
Windows Search Offline Vault Protocol Handler