defogger.exe

MD5:
9146f21288ab749c4c729343f5f285a1

SHA-1:
3d25e366c1195fc246f91c74d78163b9864db7cb

SHA-256:
acd6bb404942e46ec1072107908575c6873db789893102e34a49e9335b7354a3

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 2:39:32 AM UTC  (today)

File size:
49.3 KB (50,477 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\16-programs\defogger.exe

File PE Metadata
Compilation timestamp:
2/23/2010 10:26:08 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
2.56

CTPH (ssdeep):
768:kU4RhwrBHL6L3g05/43TDPo4eBoM+qrW4bxaeHefIwrQKmr:yRyVHmL3g05QHEBf5rvseHefI2Qt

Entry address:
0x1220

Entry point:
55, 89, E5, 83, EC, 08, C7, 04, 24, 01, 00, 00, 00, FF, 15, 90, 92, 40, 00, E8, C8, FE, FF, FF, 90, 8D, B4, 26, 00, 00, 00, 00, 55, 89, E5, 83, EC, 08, C7, 04, 24, 02, 00, 00, 00, FF, 15, 90, 92, 40, 00, E8, A8, FE, FF, FF, 90, 8D, B4, 26, 00, 00, 00, 00, 55, 8B, 0D, B4, 92, 40, 00, 89, E5, 5D, FF, E1, 8D, 74, 26, 00, 55, 8B, 0D, 9C, 92, 40, 00, 89, E5, 5D, FF, E1, 90, 90, 90, 90, 55, 89, E5, 5D, E9, E7, 27, 00, 00, 90, 90, 90, 90, 90, 90, 90, 55, 89, E5, 83, EC, 08, C7, 44, 24, 04, ED, 03, 00, 00, 8B, 45...
 
[+]

Entropy:
4.7171

Packer / compiler:
Dev-C++ 4.9.9.2

Code size:
12.5 KB (12,800 bytes)

The file defogger.exe has been seen being distributed by the following 16 URLs.

https://download.bleepingcomputer.com/dl/1efe1b52f5e044e7b96e382654262600/57d3f429/windows/security/security-utilities/d/.../Defogger.exe

https://download.bleepingcomputer.com/dl/0ab21de838ea9baf5b6e56e780f99eca/58273b66/windows/security/security-utilities/d/.../Defogger.exe

https://download.bleepingcomputer.com/dl/be3814b16978fcaf9ccddb2434f8335c/5840c522/windows/security/security-utilities/d/.../Defogger.exe

https://mega.nz/temporary/.../Ed5ykZKJ

https://download.bleepingcomputer.com/dl/f1fdb96acfcb0c71e2d44fe216befa28/5802370d/windows/security/security-utilities/d/.../Defogger.exe

http://download.bleepingcomputer.com/dl/36ec557a72b08893532f8e010394c001/5223d0dc/windows/security/security-utilities/d/.../Defogger.exe

Scan defogger.exe - Powered by Reason Core Security