shellext.dll

9-lab MRT

9-Lab

Publisher:
9-lab LLC  (signed by 9-Lab)

Product:
9-lab MRT

Description:
9-lab Malware Removal Tool

Version:
1.0.0.36

MD5:
957d0ab0f22a315a272228263c6d1db8

SHA-1:
5c7be3bb5b5e92329dc17c9009613a246563271e

SHA-256:
3f7029cde4b8628cf8ba97a750062bbf4c5b6e50a8697a575e4e0759a603d4c2

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/29/2024 12:08:34 PM UTC  (today)

File size:
3.6 MB (3,751,872 bytes)

Product version:
1.0.0.36-beta

Copyright:
Copyright © 2012-2015, 9-lab LLC. All rights reserved.

Original file name:
shellext.dll

File type:
Dynamic link library (Win64 DLL)

Common path:
C:\Program Files\9-lab\removal tool\shellext.dll

Digital Signature
Signed by:

Authority:
Symantec Corporation

Valid from:
12/24/2014 2:00:00 AM

Valid to:
1/23/2017 1:59:59 AM

Subject:
CN=9-Lab, O=9-Lab, L=Kiev, S=Ukraine, C=UA

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
1848D0B7BE06C62579E9C2A728671D49

Registration
CLSID:
{8E571ABB-30D3-402F-BBEC-3954466CF529}

COM registered:
Yes

File PE Metadata
Compilation timestamp:
6/12/2015 4:29:40 PM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
49152:hFkhbZZtS3mYJEHLS39ScDlynREjzwH1MJ28:hqFCv1VJp

Entry address:
0x2E66D0

Entry point:
55, 48, 81, EC, 70, 01, 00, 00, 48, 8B, EC, 48, 89, 8D, 80, 01, 00, 00, 89, 95, 88, 01, 00, 00, 4C, 89, 85, 90, 01, 00, 00, 90, 48, 8D, 4D, 38, E8, 97, 6C, D2, FF, 83, F8, 01, 0F, 9E, C1, 48, 0F, B6, C9, 89, 8D, 6C, 01, 00, 00, 85, C0, 75, 39, 48, 8D, 4D, 38, 48, 8D, 15, 10, 37, FF, FF, 4C, 8B, 85, 80, 01, 00, 00, 44, 8B, 8D, 88, 01, 00, 00, 48, 8B, 85, 90, 01, 00, 00, 48, 89, 44, 24, 20, E8, 19, E9, D2, FF, EB, 08, 90, 90, E8, B0, 64, D2, FF, 90, E8, AA, 6D, D2, FF, 8B, 85, 6C, 01, 00, 00, 48, 8D, A5, 70...
 
[+]

Code size:
2.9 MB (3,037,184 bytes)

Approved Shell Extension
Name:
ShellExtContextMenu Object

CLSID:
{8E571ABB-30D3-402F-BBEC-3954466CF529}


Scan shellext.dll - Powered by Reason Core Security