KMSHELL.EXE

Tavultesoft Keyman

Tavultesoft Pty Ltd

Publisher:
Tavultesoft Pty Ltd  (signed and verified)

Product:
Tavultesoft Keyman

Description:
Keyman Shell Integration

Version:
6.2.178.0

MD5:
0c51dacc679890e7e3a0a83abaff3fd4

SHA-1:
5ff3d3064110dd5696ee2c788f5df3b1a6c3d88e

SHA-256:
14d89c1bbfcdf5ad15de18db33cefe859a226ef431093e860a1c0049a92e525b

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 1:18:45 PM UTC  (today)

File size:
1.6 MB (1,688,176 bytes)

Product version:
6.2.178.0

Copyright:
(C) 2005 Tavultesoft Pty Ltd

Original file name:
KMSHELL.EXE

File type:
Executable application (Win32 EXE)

Language:
English (Australia)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\kmshell.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
11/10/2005 7:00:00 AM

Valid to:
11/11/2006 6:59:59 AM

Subject:
CN=Tavultesoft Pty Ltd, OU=Keyman Software, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Tavultesoft Pty Ltd, L=Hobart, S=Tasmania, C=AU

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
72FF0E4E6D3AE720E8870F5819D17624

File PE Metadata
Compilation timestamp:
6/20/1992 5:22:17 AM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:+ipyvgRppM2FGg3lH5hbTWmA6tQEe+28bp5/UiDGeYSGShSjSfmR4WkgtoP6kAN:+KyvgbWf8M+BL8OGec4etoP6kAN

Entry address:
0xFD840

Entry point:
55, 8B, EC, 83, C4, F4, B8, 50, D0, 10, 00, E8, 04, 9D, F0, FF, A1, A0, 27, 11, 00, 8B, 00, E8, E4, 3C, F5, FF, E8, 2F, 42, FE, FF, E8, 52, 64, F0, FF, 8B, C0, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.4075

Developed / compiled with:
Microsoft Visual C++

Code size:
1010.5 KB (1,034,752 bytes)

Scan KMSHELL.EXE - Powered by Reason Core Security