driverwhiz.exe

The application driverwhiz.exe has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. The file has been seen being downloaded from download.driverwhiz.com.
MD5:
93f42075a23130eb82830413b43bcc0a

SHA-1:
a45c21f2022dc684b566ee27238eef498400dae2

SHA-256:
5a35aebbd53ceb9271784b797d7e7f2d84bf7e80d37945f69831ae38575c486f

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
11/5/2024 6:39:17 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.DriverWhiz (L)
16.6.17.19

File size:
44.4 KB (45,505 bytes)

File type:
Executable application (Win64 EXE)

Common path:
C:\users\{user}\downloads\driverwhiz.exe

File PE Metadata
OS bitness:
Win64

CTPH (ssdeep):
768:iyUAIGSluJapfRKllxPIYMJIlg+q5UKVY4eeoLdlz7jj5TgZ3bGCMChXjZBhQcn:iyjxcfKHxPnW5UhRdtjdgZ3bGJKXjFn

Entry point:
3C, 21, 44, 4F, 43, 54, 59, 50, 45, 20, 68, 74, 6D, 6C, 3E, 0D, 0A, 3C, 68, 74, 6D, 6C, 20, 6C, 61, 6E, 67, 3D, 22, 65, 6E, 22, 3E, 0D, 0A, 3C, 68, 65, 61, 64, 3E, 0D, 0A, 3C, 74, 69, 74, 6C, 65, 3E, 3C, 2F, 74, 69, 74, 6C, 65, 3E, 0D, 0A, 3C, 6D, 65, 74, 61, 20, 68, 74, 74, 70, 2D, 65, 71, 75, 69, 76, 3D, 22, 43, 4F, 4E, 54, 45, 4E, 54, 2D, 54, 59, 50, 45, 22, 20, 63, 6F, 6E, 74, 65, 6E, 74, 3D, 22, 74, 65, 78, 74, 2F, 68, 74, 6D, 6C, 3B, 20, 63, 68, 61, 72, 73, 65, 74, 3D, 75, 74, 66, 2D, 38, 22, 3E, 0D...
 
[+]

Entropy:
6.2031

The file driverwhiz.exe has been seen being distributed by the following URL.

Remove driverwhiz.exe - Powered by Reason Core Security