Crystal.InstallHelper.exe

TRIGOLDCRYSTAL

Publisher:
TRIGOLDCRYSTAL  (signed and verified)

Version:
1.0.5800.20082

MD5:
d4684adde21fd1acf5470efcdce65ed0

SHA-1:
d8e9a70afa324b4a8bf429c73c2e67c505faa9fd

SHA-256:
b3e1ee57094290c9ec11104c739b0bf4d4d69a7596e0e0f9ac7dfc4acb6b83fc

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/6/2024 11:33:07 AM UTC  (today)

File size:
73 KB (74,760 bytes)

Product version:
1.0.5800.20082

Original file name:
Crystal.InstallHelper.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\crystal.installhelper.exe

Digital Signature
Signed by:

Authority:
thawte, Inc.

Valid from:
8/6/2015 1:00:00 AM

Valid to:
8/6/2016 12:59:59 AM

Subject:
CN=TRIGOLDCRYSTAL, O=TRIGOLDCRYSTAL, L=Warwick, S=Warwickshire, C=GB

Issuer:
CN=thawte SHA256 Code Signing CA, O="thawte, Inc.", C=US

Serial number:
7D90F59ACF50EB50489A0B7AB3BC5D1F

File PE Metadata
Compilation timestamp:
11/18/2015 11:09:25 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
1536:h8hBZ1GBC2TtuZlysKRc3kk2s786FJFeh2mMDbARW67eNYo8v:e1GOysK8kkH786FJFe1Mj66NYo8v

Entry address:
0xFDEE

Entry point:
FF, 25, 00, 20, 00, 11, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
5.2701

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
56 KB (57,344 bytes)

Scan Crystal.InstallHelper.exe - Powered by Reason Core Security