zipextractor.exe

Shetab Corporation

This is installed with Shetab Reader 4.
Publisher:
Shetab Corporation  (signed and verified)

MD5:
8e0b4484ee0183fa64d59aeafef99f6b

SHA-1:
3406de9e61ce0754c36db1211a7a6304dafb5dfe

SHA-256:
11269d2352413c16432d8801d1eb81461ec9a57c39f639f10a06801c54d1934f

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/24/2024 3:31:22 AM UTC  (today)

File size:
690.7 KB (707,232 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\shetab\ebook reader 4\reader\redistributes\pdf library\zipextractor.exe

Digital Signature
Authority:
Shetab Corporation

Valid from:
4/6/2011 4:23:46 PM

Valid to:
4/6/2013 4:23:45 PM

Subject:
CN=Shetab Corporation, O=Shetab Corporation, S=CA, C=US, E=support@shetabtech.com

Issuer:
CN=Shetab Certificate Authority, O=Shetab Corporation, S=CA, C=US, E=support@shetabtech.com

Serial number:
F426DE4479EB39A547330044900505CA

File PE Metadata
Compilation timestamp:
3/13/2011 4:30:12 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
10.0

CTPH (ssdeep):
12288:iF2/IoQ/bcKWHS/fY/GBosrFr+kpmaCzsnju4RxGycF6qc2fuCQSeTk0XJqR7:C28cjHa1oWFr+kpmjsn586qc2WCQBTJg

Entry address:
0x5039D

Entry point:
E8, C2, 84, 00, 00, E9, 95, FE, FF, FF, 8B, FF, 55, 8B, EC, 83, 7D, 08, 00, 74, 2D, FF, 75, 08, 6A, 00, FF, 35, 74, 36, 4A, 00, FF, 15, 28, B3, 48, 00, 85, C0, 75, 18, 56, E8, DA, 12, 00, 00, 8B, F0, FF, 15, 90, B2, 48, 00, 50, E8, 8A, 12, 00, 00, 59, 89, 06, 5E, 5D, C3, 8B, FF, 55, 8B, EC, 51, 83, 65, FC, 00, 56, 8D, 45, FC, 50, FF, 75, 0C, FF, 75, 08, E8, 04, 85, 00, 00, 8B, F0, 83, C4, 0C, 85, F6, 75, 18, 39, 45, FC, 74, 13, E8, 99, 12, 00, 00, 85, C0, 74, 0A, E8, 90, 12, 00, 00, 8B, 4D, FC, 89, 08, 8B...
 
[+]

Entropy:
6.6062

Code size:
549.5 KB (562,688 bytes)

The file zipextractor.exe has been discovered within the following program.

Shetab Reader 4  by Shetab
About 9% of users remove it
 
Powered by Should I Remove It?

Scan zipextractor.exe - Powered by Reason Core Security