dfx11setup.exe

DFX

Power Technology

The program is a setup application that uses the NSIS (Nullsoft Scriptable Install System) installer. This file is installed with the program DFX. The file has been seen being downloaded from chph.softwaretop.net and multiple other hosts.
Publisher:
Power Technology  (signed and verified)

Product:
DFX

Version:
11.112.0.0

MD5:
11ed22b9a18d42daf504b3090366fdec

SHA-1:
f1b7261216c26fd13ae4c0072ed5a853eb623c2f

SHA-256:
d685354e163dfb9d7338de6fb42adfbf9ad886c2bc2838c4e2706f22319269d2

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
12/28/2024 12:26:55 PM UTC  (today)

Scan engine
Detection
Engine version

Trend Micro House Call
TROJ_GEN.F47V0826
7.2.357

File size:
4.6 MB (4,808,008 bytes)

Copyright:
© Power Technology

File type:
Executable application (Win32 EXE)

Installer:
NSIS (Nullsoft Scriptable Install System)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\dfx11setup.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
4/24/2013 12:00:00 AM

Valid to:
4/24/2018 11:59:59 PM

Subject:
CN=Power Technology, O=Power Technology, STREET=100 North Hill Dr, STREET=Unit 24, L=Brisbane, S=CA, PostalCode=94005, C=US

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
1953BFF7773C9644F9AA285A2E2A49AF

File PE Metadata
Compilation timestamp:
2/24/2012 7:19:59 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
98304:sI1iCa/hHKccwNjmd5arXOzAzFDkCTG9QTX7oJzt2UQ3VAqsL4Gp7SGBr:sIQC+hH4wqoj7lkC6yoxOAqq4jGBr

Entry address:
0x39E3

Entry point:
81, EC, D4, 02, 00, 00, 53, 55, 56, 57, 6A, 20, 33, ED, 5E, 89, 6C, 24, 18, C7, 44, 24, 10, D8, 91, 40, 00, 89, 6C, 24, 14, FF, 15, 30, 80, 40, 00, 68, 01, 80, 00, 00, FF, 15, B8, 80, 40, 00, 55, FF, 15, C0, 82, 40, 00, 6A, 08, A3, B8, 2E, 47, 00, E8, 37, 2A, 00, 00, 55, 68, B4, 02, 00, 00, A3, D0, 2D, 47, 00, 8D, 44, 24, 38, 50, 55, 68, 1C, 93, 40, 00, FF, 15, 84, 81, 40, 00, 68, 04, 93, 40, 00, 68, C0, AD, 46, 00, E8, 19, 27, 00, 00, FF, 15, B4, 80, 40, 00, 50, BF, A0, 30, 4C, 00, 57, E8, 07, 27, 00, 00...
 
[+]

Entropy:
7.9964

Packer / compiler:
Nullsoft install system v2.x

Code size:
28 KB (28,672 bytes)

The file dfx11setup.exe has been discovered within the following program.

DFX  by Power Technology
Publisher's description - “DFX Audio Enhancer brings better sound to all of your music, videos, Internet radio, games, video chats, and other programs. New DFX 11 now enhances all PC audio playback, providing system-wide HD quality sound for all your entertainment.”
www.fxsound.com
24% remove it
 
Powered by Should I Remove It?

The file dfx11setup.exe has been seen being distributed by the following 50 URLs.

http://chph.softwaretop.net/2014/.../dfx-audio-enhancer-11112.exe

http://cdn.portalprogramas-download.com/d/.../DFX-WMP

temp:DFX.Audio.Enhancer.11.112_Soft98.iR.exe

Latest 30 of 58 download URLs

Scan dfx11setup.exe - Powered by Reason Core Security