WebShell.OCX

WebShell ActiveX Control Module

Teruten.inc

Publisher:
Teruten Co. LTD.  (signed by Teruten.inc)

Product:
WebShell ActiveX Control Module

Version:
2, 1, 4, 7

MD5:
642d4d417e5a0439c4a3ed2edbc69fe5

SHA-1:
ba69d055b85b467f3b1514c5f22c43a1b56c2d81

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/24/2024 1:59:42 PM UTC  (today)

File size:
421.5 KB (431,632 bytes)

Product version:
2, 1, 4, 7

Copyright:
Copyright (C) 2006

Original file name:
WebShell.OCX

File type:
OLE control extension (Win32 OCX)

Common path:
C:\Program Files\teruten\webshell\webshell.ocx

Digital Signature
Signed by:

Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
4/11/2008 10:50:54 AM

Valid to:
4/11/2010 10:50:54 AM

Subject:
CN=Teruten.inc, OU=Software Quality Assurane, O=Teruten.inc, L=Gangnam-gu, S=Seoul, C=KR

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
67F6AEC307D4DB3AACBFB3D5D48F5F9F

Registration
CLSIDs:
{29BC57E0-018D-46D2-B233-338B779C169C}, {534BBD16-C3D7-48E0-B984-AA94D91BAAA5}

ProgID:
WEBSHELL.WebShellCtrl.1

COM registered:
Yes

File PE Metadata
Compilation timestamp:
4/17/2009 10:24:31 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
6144:qRQQZII9GnWKspx5nQR6pJdz+hxUeDZMZaAx2t/C3QH0+kqd:qjVsOdQYih+CEau2OQd

Entry address:
0x2918E

Entry point:
55, 8B, EC, 53, 8B, 5D, 08, 56, 8B, 75, 0C, 57, 8B, 7D, 10, 85, F6, 75, 09, 83, 3D, FC, 29, 06, 10, 00, EB, 26, 83, FE, 01, 74, 05, 83, FE, 02, 75, 22, A1, 6C, 41, 06, 10, 85, C0, 74, 09, 57, 56, 53, FF, D0, 85, C0, 74, 0C, 57, 56, 53, E8, E7, FE, FF, FF, 85, C0, 75, 04, 33, C0, EB, 4E, 57, 56, 53, E8, 04, 17, FF, FF, 83, FE, 01, 89, 45, 0C, 75, 0C, 85, C0, 75, 37, 57, 50, 53, E8, C3, FE, FF, FF, 85, F6, 74, 05, 83, FE, 03, 75, 26, 57, 56, 53, E8, B2, FE, FF, FF, 85, C0, 75, 03, 21, 45, 0C, 83, 7D, 0C, 00...
 
[+]

Entropy:
6.3023

Developed / compiled with:
Microsoft Visual C++

Code size:
280 KB (286,720 bytes)

Safe for Initializing Control
CLSID:
{29BC57E0-018D-46D2-B233-338B779C169C}

CLSID name:
WebShell Control


Scan WebShell.OCX - Powered by Reason Core Security