kfiwizard.dll

KFI Wizard

TrigoldCrystal

Publisher:
Trigold  (signed by TrigoldCrystal)

Product:
KFI Wizard

Version:
10.00.0030

MD5:
55ba69f91ce4d990f328112bb32295dd

SHA-1:
34d382ae082673378f3f7b36896050ae14d64abe

SHA-256:
8ca27391f2ce62a15d4f4a2e19cd0bc2b98a98d713bbc138733d2feaf05368e9

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 8:27:59 AM UTC  (today)

File size:
7.6 MB (7,919,104 bytes)

Product version:
10.00.0030

Original file name:
kfiwizard.dll

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\Program Files\trigoldcrystal\prospector\kfiwizard.dll

Digital Signature
Signed by:

Authority:
Thawte, Inc.

Valid from:
6/25/2012 1:00:00 AM

Valid to:
8/6/2013 12:59:59 AM

Subject:
CN=TrigoldCrystal, O=TrigoldCrystal, L=Bromsgrove, S=Worcestershire, C=GB

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
7FD523E0F42E19F9A9BAD0BAC2409DA6

Registration
CLSIDs:
{0C9EC8D0-9EB1-4BA0-A689-9D6798BDB2CF}, {0CAFC2B8-28D0-44C2-B0DA-8F1EA638EEF9}, {0D658323-998B-4F1E-B07F-94B651A67191}, {231097D5-1FA9-4492-8117-BE0A75B83567}, {23A9ED03-5207-4785-81E9-CD01BBE95CDA}, {249DB0D8-1FF7-4E02-8799-43F8BF076A65}

ProgIDs:
KFIWizard.clsKFI, KFIWizard.CLaunchKFI, KFIWizard.CAutomation

COM registered:
Yes

File PE Metadata
Compilation timestamp:
7/18/2013 7:45:20 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
196608:EGEckzo1QDwaofxqk/q27MPAPuwF6u8o7+dsBD9RXtVZJ1nq:EuZ58o7+dsTdq

Entry address:
0x2CDB4

Entry point:
5A, 68, 60, FC, 71, 11, 68, 64, FC, 71, 11, 52, E9, E7, FF, FF, FF, 00, 00, 00, 48, 00, 00, 00, 30, 00, 00, 00, 40, 00, 00, 00, 00, 00, 00, 00, 12, 8E, 64, DA, 8E, E5, DD, 41, 97, 9B, 2A, AD, 58, 73, A7, 81, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 42, 00, 06, 50, 83, 01, 4B, 46, 49, 57, 69, 7A, 61, 72, 64, 00, 00, 00, D4, FE, A1, 01, 00, 00, 00, 00, A0, DE, FD, 00, B0, 00, 00, 00, 90, 00, 00, 00, 00, 00, 00, 00, 02, 00, 00, 00, 7E, 00, 00, 00, EB, B6, 85, 64, 77, 41, 3C, 4A, 90, B9, 14, 65, 7F, E5, B6, E8...
 
[+]

Entropy:
6.1547

Developed / compiled with:
Microsoft Visual Basic v6.0

Code size:
7.1 MB (7,405,568 bytes)

Automation Object
CLSID:
{0C9EC8D0-9EB1-4BA0-A689-9D6798BDB2CF}

CLSID name:
KFIWizard.clsKFI


Scan kfiwizard.dll - Powered by Reason Core Security