xr2shell.dll

Eriks Aleksans

Publisher:
xrecode.com  (signed by Eriks Aleksans)

Description:
Shell extension for xrecode II

Version:
1.0.0.9

MD5:
d695228894ee6fa799569c1de92a60b9

SHA-1:
08898ecfb2670877b5e37197c7ba70e2d4b5fdd6

SHA-256:
46488dd434f91257f60602de7a986029329e624cc105ec8378548167c06358f3

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/23/2025 11:00:42 PM UTC  (a few moments ago)

File size:
779 KB (797,736 bytes)

Product version:
1.0.0.9

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\Program Files\xrecode ii\xr2shell.dll

Digital Signature
Signed by:

Authority:
StartCom Ltd.

Valid from:
7/14/2014 4:00:57 PM

Valid to:
7/14/2016 1:26:30 PM

Subject:
E=aleksans.eriks@gmail.com, CN=Eriks Aleksans, L=Riga, S=Rigas, C=LV, Description=3T9WSap28bKoscj1

Issuer:
CN=StartCom Class 2 Primary Intermediate Object CA, OU=Secure Digital Certificate Signing, O=StartCom Ltd., C=IL

Serial number:
0F2F

File PE Metadata
Compilation timestamp:
2/1/2016 4:26:38 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
6144:Ishv72D9ty7jFjJFkC2K1nud66Fe0AiL9/gneD9o36OSjup8GLtUsFZC2/:II2Ro11u4r4y36OSj+ttUsFZC2/

Entry address:
0xA888C

Entry point:
55, 8B, EC, 83, C4, C0, B8, D8, 32, 4A, 00, E8, 9C, 2C, F6, FF, E8, 0F, E9, F5, FF, 8D, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.5257

Developed / compiled with:
Microsoft Visual C++

Code size:
669 KB (685,056 bytes)

Approved Shell Extension
Name:
xrecode II shell extension

CLSID:
{9D27511A-CC65-4933-9844-B9F070B63890}

CLSID name:
xrecodeIIShellExt


Scan xr2shell.dll - Powered by Reason Core Security