Gridinsoft Logo
File Icon

The dfx.exe File Analysis

Technical Analysis

File Name dfx.exe
File Type
PE32 executable (GUI) Intel 80386, for MS Windows
Scanner Version 1.0.217.174
Database Version 2025-06-09 07:00:23 UTC

Clean File

No threats detected by our scanner

0%
Detection Rate
1,778,152
File Size (bytes)
2025-06-09
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
a79de0e98e8e6a239918bd79cef78fcf
SHA1
c955c7c09e673f01451bd3c69493a9a9fe871bf2
SHA256
fb9698a02fbc0619b402140f24ca17944e809cdc2b9b61f461bdc5ac8101d58a
SHA512
66d1337e2afb4b93d74d9ccd36469a669ed33c422935a086a620ac9a21a7b98c06c8b5bd7656efcfdd8118aa897809146a19caa92ec90f4e1d44941482da6d03
ImpHash
3e26f935e72f18f7fc0078f81ae2b75c

PE Analysis

Basic Information

Icon
Hash: db61e9bce1d5b10ef915b40c62c7318b
Fuzzy: e48fe3d606c77136fbef2a609d0a6f16
dHash: 44b2f0d454555555
Image Base 0x00400000
Entry Point 0x004ff575
Compilation Time 2020-01-06 19:11:09
Checksum 0x001b8f2d (Actual: 0x001b7409)
OS Version 6.0
PEiD Signatures PE32 executable (GUI) Intel 80386, for MS Windows
PDB Path C:\code32\Mains\dfxui\dfxui\Win32\MtStaticRt\dfxui.pdb
Digital Signature The expected hash does not match the digest in SpcInfo
Imports 14 libraries
Exports 0 functions
Resources 104 Resources
Sections 8 Sections

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 1,280,253 bytes 1,280,512 bytes 6.57 (Compressed) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ 33CF2203D19C97B6CC6A8DF0AD422A02
.rdata 0x0013a000 261,812 bytes 262,144 bytes 5.34 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ AB328D14D7759A639D6B7DF6F27EFBDD
.data 0x0017a000 138,532 bytes 14,336 bytes 5.39 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE DFC5BC652B25ABD56F3595AE5905985C
.gfids 0x0019c000 440 bytes 512 bytes 3.52 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 95E623642B8BA122D322CBDF21FFE8A5
.tls 0x0019d000 9 bytes 512 bytes 0.02 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 1F354D76203061BFDD5A53DAE48D5435
_RDATA 0x0019e000 4,320 bytes 4,608 bytes 4.87 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ A9DC0C4BC02CEFB5DD93BE9C622BFF47
.rsrc 0x001a0000 146,328 bytes 146,432 bytes 4.60 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 303FD023B8061EB713D0FD1651B40C63
.reloc 0x001c4000 58,808 bytes 58,880 bytes 6.80 (Compressed) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ DF4FBDB0E516A88A1D93F83FF0BC1373
Entropy Analysis Alert

2 section(s) with elevated entropy (≥6.5) - possible compression

Resource Analysis

Total Resources: 104 (139,216 bytes)
Resource Type Count Total Size Percentage
AFX_DIALOG_LAYOUT 1 2 bytes
0%
RT_ICON 29 95,880 bytes
68.9%
RT_MENU 1 74 bytes
0.1%
RT_DIALOG 38 24,578 bytes
17.7%
RT_STRING 29 17,598 bytes
12.6%
RT_ACCELERATOR 1 16 bytes
0%
RT_GROUP_ICON 4 430 bytes
0.3%
RT_MANIFEST 1 638 bytes
0.5%

Certificate Chain Analysis

Certificate Information
Signing Date 07:11 PM 01/06/2020 (1983 days ago)
Verification Status The digital signature of the object did not verify.
Signers FxSound, LLC; DigiCert EV Code Signing CA (SHA2); DigiCert
Counter Signers DigiCert Timestamp Responder; DigiCert Assured ID CA-1; DigiCert
Certificate Chain Summary
DigiCert High Assurance EV Root CA #1 Primary
Validity Period: 2011-04-15 19:45:33 → 2021-04-15 19:55:33
Signature Algorithm: sha1RSA
Serial Number: 61 20 4D B4 00 00 00 00 00 27
FxSound, LLC #2 Chain
Validity Period: 2019-11-22 00:00:00 → 2021-12-01 12:00:00
Signature Algorithm: sha256RSA
Serial Number: 0F 4A B3 22 BA 63 C7 C3 93 0D 1F CE 65 ED E7 2F
DigiCert Timestamp Responder #3 Chain
Validity Period: 2014-10-22 00:00:00 → 2024-10-22 00:00:00
Signature Algorithm: sha1RSA
Serial Number: 03 01 9A 02 3A FF 58 B1 6B D6 D5 EA E6 17 F0 66
DigiCert EV Code Signing CA (SHA2) #4 Chain
Validity Period: 2012-04-18 12:00:00 → 2027-04-18 12:00:00
Signature Algorithm: sha256RSA
Serial Number: 03 F1 B4 E1 5F 3A 82 F1 14 96 78 B3 D7 D8 47 5C
DigiCert Assured ID CA-1 #5 Chain
Validity Period: 2006-11-10 00:00:00 → 2021-11-10 00:00:00
Signature Algorithm: sha1RSA
Serial Number: 06 FD F9 03 96 03 AD EA 00 0A EB 3F 27 BB BA 1B

✓ This file has been digitally signed and the certificate chain has been verified

  • The signature ensures file integrity and authenticity from the publisher
  • Timestamping proves when the signature was applied
Certificate Verification Status

The expected hash does not match the digest in SpcInfo

Recommendation: Verify the file source and ensure it comes from a trusted publisher.

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
This file passed all security checks, but stay vigilant. New malware variants appear daily that can evade detection. Always verify files come from official sources and check digital signatures when available.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Your Score for

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware