winspellhelper32.exe

WinSpellHelper

Versoworks Pty Ltd

Publisher:
Versoworks Pty Ltd  (signed and verified)

Product:
WinSpellHelper

Description:
Helper for WinSpell

Version:
2.5.0.0

MD5:
ed522aebf7ac766b772901cf9daa75ee

SHA-1:
4904b4857fabd5f9aa6f4f9fbea9bb8b4ea6aab6

SHA-256:
1ee1b19e3815a5eff13c3845e3870c23a2b87775ed64173cd51d59cc5b5d05b3

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/15/2024 12:34:00 AM UTC  (today)

File size:
74.1 KB (75,912 bytes)

Product version:
2.5.0.0

Copyright:
(c) 2012 - 2015 Versoworks Pty Ltd. All rights reserved.

Original file name:
WinSpellHelper.exe

File type:
Executable application (Win32 EXE)

Language:
English

Common path:
C:\users\{user}\appdata\roaming\winspell\iex\winspellhelper32.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
1/24/2016 2:00:00 AM

Valid to:
4/17/2017 2:59:59 AM

Subject:
CN=Versoworks Pty Ltd, O=Versoworks Pty Ltd, STREET=Suite 4, STREET=74 Prospect Rd, STREET=Prospect, L=Adelaide, S=South Australia, PostalCode=5082, C=AU

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
4CE4590549DE158FE8BC97510CCC63DB

File PE Metadata
Compilation timestamp:
2/7/2016 4:16:29 AM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
14.0

CTPH (ssdeep):
1536:b9tnVQWhzOzCZJ8B/oQx2/dNhR++9KgfqANwy3Sia:brSlCpQxcdNh9K6lNj3o

Entry address:
0xA723

Entry point:
E8, 45, 05, 00, 00, E9, 80, FE, FF, FF, FF, 25, DC, C2, 40, 00, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 68, 9B, A7, 40, 00, 64, FF, 35, 00, 00, 00, 00, 8B, 44, 24, 10, 89, 6C, 24, 10, 8D, 6C, 24, 10, 2B, E0, 53, 56, 57, A1, 54, 00, 41, 00, 31, 45, FC, 33, C5, 50, 89, 65, E8, FF, 75, F8, 8B, 45, FC, C7, 45, FC, FE, FF, FF, FF, 89, 45, F8, 8D, 45, F0, 64, A3, 00, 00, 00, 00, F2, C3, 8B, 4D, F0, 64, 89, 0D, 00, 00, 00, 00, 59, 5F, 5F, 5E, 5B, 8B, E5, 5D, 51, F2, C3, 55, 8B, EC, FF, 75, 14, FF, 75...
 
[+]

Entropy:
6.2967

Code size:
41.5 KB (42,496 bytes)

Scan winspellhelper32.exe - Powered by Reason Core Security