winspamcatcher.dll

Mailshell Anti-Spam SDK

Gozoom.com Inc.

Publisher:
Mailshell  (signed by Gozoom.com Inc.)

Product:
Mailshell Anti-Spam SDK

Version:
6,0,0,3

MD5:
681e6b23723bd65c9385aeb806b9f003

SHA-1:
1e85ef4e54d32dd4e82de0a34a5cbb023a56cc01

SHA-256:
3a35556d7c1d0c8ca0e7beb0b430f502da6890e40a5031e3a7d39c24050ec1a7

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 2:39:17 PM UTC  (today)

File size:
5.2 MB (5,470,632 bytes)

Product version:
6, 0, 0, 3

Copyright:
Copyright (C) 2009 Mailshell

Original file name:
winspamcatcher.dll

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\packages2\5\winspamcatcher.dll

Digital Signature
Signed by:

Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
8/9/2009 6:00:00 PM

Valid to:
8/30/2010 5:59:59 PM

Subject:
CN=Gozoom.com Inc., OU=DEVELOPMENT, O=Gozoom.com Inc., L=Santa Clara, S=California, C=US

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
390F6B67816F03BB38D2842E771A4881

File PE Metadata
Compilation timestamp:
9/2/2009 12:35:32 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
49152:OqCaHLJAuiXkt5oG8mOLpoMx0ZjqvFvxgP3Jin3N3TdcBF8KuVlUc229D5BSVjr:Oqo3C8ptSm95ggn+GJ229DG

Entry address:
0x1E53E8

Entry point:
8B, FF, 55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, FE, CD, 01, 00, FF, 75, 08, 8B, 4D, 10, 8B, 55, 0C, E8, EC, FE, FF, FF, 59, 5D, C2, 0C, 00, 8B, FF, 55, 8B, EC, 83, EC, 38, 53, 57, FF, 75, 08, 8D, 4D, C8, E8, 25, 5B, FF, FF, 8B, 45, 10, 8B, 7D, 0C, 33, DB, 3B, C3, 74, 02, 89, 38, 3B, FB, 75, 2D, E8, BB, 4B, FF, FF, 53, 53, 53, 53, 53, C7, 00, 16, 00, 00, 00, E8, 49, 3A, FF, FF, 83, C4, 14, 38, 5D, D4, 74, 07, 8B, 45, D0, 83, 60, 70, FD, 33, C0, 33, D2, E9, 3F, 02, 00, 00, 39, 5D, 14, 74, 0C, 83, 7D, 14, 02...
 
[+]

Entropy:
6.1595

Code size:
2.2 MB (2,285,568 bytes)

Scan winspamcatcher.dll - Powered by Reason Core Security