cde250.exe

Spigot, Inc.

This component is part of the Spigot browser add-on, a web browser addition that is designed to modify the core search provider in order to redirect search queries through partner portals. The application cde250.exe by Spigot has been detected as adware by 6 anti-malware scanners. The program is a setup application that uses the Spigot Setup installer.
Publisher:
Spigot, Inc.  (signed and verified)

MD5:
e9f326af69c232923dd01d199324031a

SHA-1:
7b91f31ad65d7624a9b66f458f0075bbe6357f79

SHA-256:
b022a40f70be72c32fda9c2897b8de702504a96bb0abb3d62e6ce5264c49deaf

Scanner detections:
6 / 68

Status:
Adware

Analysis date:
4/16/2025 1:19:01 AM UTC  (today)

Scan engine
Detection
Engine version

Avira AntiVirus
ADWARE/Adware.Gen
7.11.206.190

Dr.Web
Trojan.DownLoader11.50192
9.0.1.05190

ESET NOD32
Win32/Spigot.A potentially unwanted application
7.0.302.0

K7 AntiVirus
Unwanted-Program
13.193.14846

Reason Heuristics
PUP.Spigot
15.2.3.12

Zillya! Antivirus
Downloader.Genome.Win32.53072
2.0.0.2052

File size:
225.7 KB (231,072 bytes)

File type:
Executable application (Win32 EXE)

Installer:
Spigot Setup

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\cde250.exe

Digital Signature
Signed by:

Authority:
Starfield Technologies, Inc.

Valid from:
11/25/2014 9:12:04 AM

Valid to:
11/14/2015 11:47:06 PM

Subject:
CN="Spigot, Inc.", O="Spigot, Inc.", L=Incline Village, S=Nevada, C=US

Issuer:
CN=Starfield Secure Certificate Authority - G2, OU=http://certs.starfieldtech.com/repository/, O="Starfield Technologies, Inc.", L=Scottsdale, S=Arizona, C=US

Serial number:
69F457F75D81

File PE Metadata
Compilation timestamp:
12/5/2009 10:50:46 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
3072:DQIURTXJwIHVY2BNjcjcLJ2Cp3wiT+P2XHjpWk:DsfVYe3dvpwiT+uX4k

Entry address:
0x323C

Entry point:
81, EC, 80, 01, 00, 00, 53, 55, 56, 33, DB, 57, 89, 5C, 24, 18, C7, 44, 24, 10, 30, 91, 40, 00, 33, F6, C6, 44, 24, 14, 20, FF, 15, 30, 70, 40, 00, 68, 01, 80, 00, 00, FF, 15, B4, 70, 40, 00, 53, FF, 15, 7C, 72, 40, 00, 6A, 08, A3, 58, 3F, 42, 00, E8, 09, 2C, 00, 00, A3, A4, 3E, 42, 00, 53, 8D, 44, 24, 34, 68, 60, 01, 00, 00, 50, 53, 68, 58, F4, 41, 00, FF, 15, 58, 71, 40, 00, 68, B8, 91, 40, 00, 68, A0, 36, 42, 00, E8, BC, 28, 00, 00, FF, 15, B0, 70, 40, 00, BF, 00, 90, 42, 00, 50, 57, E8, AA, 28, 00, 00...
 
[+]

Entropy:
7.0441

Packer / compiler:
Nullsoft install system v2.x

Code size:
23 KB (23,552 bytes)

Remove cde250.exe - Powered by Reason Core Security