KHook32.dll

KHook32

TEC-IT Datenverarbeitung GmbH

Publisher:
TEC-IT Datenverarbeitung GmbH (www.tec-it.com) Hans-Wagner-Str. 6, A-4400 Steyr, AUSTRIA e: office@tec-it.com p: +43 (7252) 72720 f: +43 (7252) 72  (signed by TEC-IT Datenverarbeitung GmbH)

Product:
KHook32

Version:
1.0.0.20238

MD5:
942427fe989ac561cff50bf01cc0b77e

SHA-1:
6111c174e9c9557b404bedc5b30814a30c8d0e6e

SHA-256:
5e145ef07ffa4d9d5638a1e13f88aa57e0004b5152adbadf45429444f33a8001

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 8:10:31 AM UTC  (today)

File size:
13.5 KB (13,848 bytes)

Product version:
1.0.0

Copyright:
Copyright © TEC-IT Datenverarbeitung GmbH (www.tec-it.com) 2013

Original file name:
KHook32.dll

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\Program Files\tec-it\twedge3\bin\khook32.dll

Digital Signature
Authority:
Thawte, Inc.

Valid from:
2/10/2013 7:00:00 PM

Valid to:
5/7/2015 7:59:59 PM

Subject:
CN=TEC-IT Datenverarbeitung GmbH, O=TEC-IT Datenverarbeitung GmbH, L=Steyr, S=Oberoesterreich, C=AT

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
7320A1B664BFA8D5A9232D67F3F65A45

File PE Metadata
Compilation timestamp:
6/5/2014 7:21:17 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
192:ARPd8ieqyMOI3XHPVR6hRCUyXXKnn8Hzou7+wse+PjPse8:ARBeqO43PViCUm6nwUuSPLsP

Entry address:
0x13D2

Entry point:
8B, FF, 55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, 2C, 04, 00, 00, FF, 75, 08, 8B, 4D, 10, 8B, 55, 0C, E8, CC, FE, FF, FF, 59, 5D, C2, 0C, 00, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, 20, 31, 00, 10, 89, 0D, 1C, 31, 00, 10, 89, 15, 18, 31, 00, 10, 89, 1D, 14, 31, 00, 10, 89, 35, 10, 31, 00, 10, 89, 3D, 0C, 31, 00, 10, 66, 8C, 15, 38, 31, 00, 10, 66, 8C, 0D, 2C, 31, 00, 10, 66, 8C, 1D, 08, 31, 00, 10, 66, 8C, 05, 04, 31, 00, 10, 66, 8C, 25, 00, 31, 00, 10, 66, 8C, 2D, FC, 30, 00, 10, 9C, 8F, 05, 30, 31...
 
[+]

Entropy:
6.3190

Code size:
2.5 KB (2,560 bytes)

Scan KHook32.dll - Powered by Reason Core Security