default-to-filext.exe

MD5:
c9d0a22878f24905e167e9da0123a234

SHA-1:
390dcc5c2c142952246f9da2bc617ba4f815c9fb

SHA-256:
c55aa3bb14db440b2a64ab1589de21d7368810db4a3a6daea873a8e350322f37

Scanner detections:
2 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
11/8/2024 2:16:06 AM UTC  (today)

Scan engine
Detection
Engine version

avast!
Win32:Malware-gen
2014.9-150308

Sophos
Mal/Generic-L
4.98

File size:
20.5 KB (20,992 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\default-to-filext.exe

File PE Metadata
Compilation timestamp:
4/30/2007 5:00:00 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
5.10

CTPH (ssdeep):
384:hObUugUjtgTWzvH38fEXxG6DNfyZr4eOrbeiFaZzUkIYY:cfRvX8fexR4ZMGuPYY

Entry address:
0x3000

Entry point:
E9, 39, 37, 00, 00, E9, F8, 30, 00, 00, 48, 74, 6D, 6C, 41, 70, 70, 20, 43, 6F, 70, 79, 72, 69, 67, 68, 74, 20, 32, 30, 30, 37, 20, 44, 41, 49, 52, 20, 43, 6F, 6D, 70, 75, 74, 65, 72, 20, 53, 79, 73, 74, 65, 6D, 73, 20, 20, 41, 6C, 6C, 20, 52, 69, 67, 68, 74, 73, 20, 52, 65, 73, 65, 72, 76, 65, 64, 20, 48, 74, 6D, 6C, 41, 70, 70, 00, 00, 00, 00, 00, 46, 49, 4C, 45, 78, 74, 20, 45, 78, 74, 65, 6E, 64, 65, 72, 20, 76, 65, 72, 73, 69, 6F, 6E, 20, 32, 2E, 30, 00, 48, 74, 6D, 6C, 41, 70, 70, 00, 66, 69, 6C, 65...
 
[+]

Entropy:
6.2433

Packer / compiler:
Xtreme-Protector v1.05

Code size:
6 KB (6,144 bytes)

The file default-to-filext.exe has been seen being distributed by the following URL.

Scan default-to-filext.exe - Powered by Reason Core Security