ShazzleMailClient.exe

ShazzleMailClient

Shazzle LLC

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘ShazzleMailClient’.
Scan ShazzleMailClient.exe - Powered by Reason Core Security
Publisher:
Shazzle, LLC  (signed by Shazzle LLC)

Product:
ShazzleMailClient

Description:
ShazzleMail Client- Email client application

Version:
1.2.0.17525

MD5:
93d1f99a19cdb17e449c7f5faf79e24b

SHA-1:
af69929264ff228b55d51975a0994a6519a9c365

SHA-256:
0490edd12cc3f4ebbc2313f310b46387a3b969f558f7625dc49f6c69e593a9f3

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/4/2016 7:25:37 AM UTC  (today)

File size:
4.2 MB (4,402,112 bytes)

Product version:
1.2.0.17525

Copyright:
Copyright 2013 Shazzle, LLC

Original file name:
ShazzleMailClient.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\shazzlemailclient\shazzlemailclient.exe

Digital Signature
Signed by:

Authority:
DigiCert Inc

Valid from:
5/6/2014 8:00:00 PM

Valid to:
5/21/2015 8:00:00 AM

Subject:
CN=Shazzle LLC, O=Shazzle LLC, L=Braintree, S=MA, C=US

Issuer:
CN=DigiCert Assured ID Code Signing CA-1, OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
09F9CED2E8668467EE65235E861ABDBC

File PE Metadata
Compilation timestamp:
5/21/2014 10:17:07 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.23

CTPH (ssdeep):
98304:HAwGn2aV+k444PP1+1BtHBj8XwDBFLevh9Y4n+bGhAWN:Hvk444Pd+XtHBoXs84hbGhAWN

Entry address:
0x14C0

Entry point:
83, EC, 0C, C7, 05, 44, 85, 81, 00, 01, 00, 00, 00, E8, 5E, DB, 18, 00, 83, C4, 0C, E9, A6, FC, FF, FF, 8D, B6, 00, 00, 00, 00, 83, EC, 0C, C7, 05, 44, 85, 81, 00, 00, 00, 00, 00, E8, 3E, DB, 18, 00, 83, C4, 0C, E9, 86, FC, FF, FF, 90, 90, 90, 90, 90, 90, 55, 89, E5, 53, 83, EC, 14, 8B, 1D, 5C, DA, 81, 00, C7, 04, 24, 20, 00, 63, 00, FF, D3, BA, 78, 12, 5A, 00, 83, EC, 04, 85, C0, 74, 16, C7, 44, 24, 04, 33, 00, 63, 00, 89, 04, 24, FF, 15, 60, DA, 81, 00, 83, EC, 08, 89, C2, 85, D2, 74, 11, C7, 44, 24, 04...
 
[+]

Entropy:
6.8315

Code size:
2.2 MB (2,272,768 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
ShazzleMailClient

Command:
C:\Program Files\shazzlemailclient\shazzlemailclient.exe


Scan ShazzleMailClient.exe - Powered by Reason Core Security