shuniesafety.dll

Hangzhou Shunwang Technology Co.,Ltd

It is installed within the context of Internet Explore as a BHO (Browser Helper Object) under the name ‘BHOMain’.
Publisher:
Hangzhou Shunwang Technology Co.,Ltd  (signed and verified)

Description:
IE BHO(Main)

Version:
2011, 5, 18, 1

MD5:
05b1d1305fdab3bba16ffabaa3f47aea

SHA-1:
3b428f6e9f521cc19d2659b6d80a6dda913ea914

SHA-256:
c7543746b9c70fc908320d21c9019ea0c3db468b327513f839c77e0ed01879fa

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 5:48:41 AM UTC  (today)

File size:
237.6 KB (243,264 bytes)

Product version:
1.0.0.5

Original file name:
BHOMain.dll

File type:
Dynamic link library (Win32 DLL)

Language:
Chinese (Simplified, PRC)

Common path:
C:\Windows\System32\shuniesafety.dll

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
6/27/2011 1:56:06 PM

Valid to:
6/27/2014 1:56:06 PM

Subject:
CN="Hangzhou Shunwang Technology Co.,Ltd", O="Hangzhou Shunwang Technology Co.,Ltd", L=Hangzhou, S=Zhejiang, C=CN

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121C389611C656AF0D3AB84786EC9517946

Registration
CLSIDs:
{27DB443C-6F8C-40bb-9D42-A835300A32FE}, {8DCCEE2A-2F88-4CF3-ADCC-0ADAD6E2C1A3}

ProgID:
BHOMain.BHOApp.1

COM registered:
Yes

File PE Metadata
Compilation timestamp:
5/18/2011 10:20:53 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
7.10

Entry address:
0x126E0

Entry point:
6A, 0C, 68, B8, DB, 02, 10, E8, 74, 01, 00, 00, 33, C0, 40, 89, 45, E4, 8B, 75, 0C, 33, FF, 3B, F7, 75, 0C, 39, 3D, 9C, 52, 03, 10, 0F, 84, B3, 00, 00, 00, 89, 7D, FC, 3B, F0, 74, 05, 83, FE, 02, 75, 31, A1, 78, 6B, 03, 10, 3B, C7, 74, 0C, FF, 75, 10, 56, FF, 75, 08, FF, D0, 89, 45, E4, 39, 7D, E4, 0F, 84, 85, 00, 00, 00, FF, 75, 10, 56, FF, 75, 08, E8, 22, FE, FF, FF, 89, 45, E4, 3B, C7, 74, 72, 8B, 5D, 10, 53, 56, FF, 75, 08, E8, 5F, 52, FF, FF, 89, 45, E4, 83, FE, 01, 75, 0E, 3B, C7, 75, 0A, 53, 57, FF...
 
[+]

Entropy:
6.3081

Developed / compiled with:
Microsoft Visual C++ v7.1

Code size:
172 KB (176,128 bytes)

Internet Explorer BHO
Display name:
BHOMain

CLSID:
{27DB443C-6F8C-40bb-9D42-A835300A32FE}

CLSID name:
BHOMain Class


Scan shuniesafety.dll - Powered by Reason Core Security