expensivehifisony.exe

Power Technology

The program is a setup application that uses the NSIS (Nullsoft Scriptable Install System) installer. This is installed with DFX. The file has been seen being downloaded from skins.fxsound.com and multiple other hosts.
Publisher:
Power Technology  (signed and verified)

MD5:
e0cad06516447f706d572b18bb30beab

SHA-1:
fbec55315fe8b065bc62bbd9ed1e34c87290bbde

SHA-256:
0a9576842d1fb318497f6f27600e46462f4a7b87806b8f818331af2db920b19b

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/15/2024 5:35:34 AM UTC  (today)

File size:
98.4 KB (100,720 bytes)

File type:
Executable application (Win32 EXE)

Installer:
NSIS (Nullsoft Scriptable Install System)

Common path:
C:\users\kadida\firefox download\expensivehifisony.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
3/12/2008 3:00:00 AM

Valid to:
5/12/2010 2:59:59 AM

Subject:
CN=Power Technology, OU=www.fxsound.com, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Power Technology, L=Brisbane, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
27E024EBA89868DFD25F6305805506

File PE Metadata
Compilation timestamp:
3/30/2008 1:14:07 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
1536:UUeHiWRgkkjH8nyWmJXxaXjqE4KhuENgrGhl93AXYCuWI4sj5/T5uvKk:Ud/vyWmJhQqJKhZldw/uWIfM

Entry address:
0x3225

Entry point:
81, EC, 80, 01, 00, 00, 53, 55, 56, 33, DB, 57, 89, 5C, 24, 18, C7, 44, 24, 10, 28, 91, 40, 00, 33, F6, C6, 44, 24, 14, 20, FF, 15, 30, 70, 40, 00, 68, 01, 80, 00, 00, FF, 15, B4, 70, 40, 00, 53, FF, 15, 7C, 72, 40, 00, 6A, 08, A3, 58, 3F, 42, 00, E8, F9, 2A, 00, 00, A3, A4, 3E, 42, 00, 53, 8D, 44, 24, 34, 68, 60, 01, 00, 00, 50, 53, 68, 50, F4, 41, 00, FF, 15, 58, 71, 40, 00, 68, B0, 91, 40, 00, 68, A0, 36, 42, 00, E8, B0, 27, 00, 00, FF, 15, B0, 70, 40, 00, BF, 00, 90, 42, 00, 50, 57, E8, 9E, 27, 00, 00...
 
[+]

Entropy:
7.0990

Packer / compiler:
Nullsoft install system v2.x

Code size:
22.5 KB (23,040 bytes)

The file expensivehifisony.exe has been discovered within the following programs.

DFX  by Power Technology
Publisher's description - “DFX Audio Enhancer brings better sound to all of your music, videos, Internet radio, games, video chats, and other programs. New DFX 11 now enhances all PC audio playback, providing system-wide HD quality sound for all your entertainment.”
www.fxsound.com
24% remove it
 
Powered by Should I Remove It?

The file expensivehifisony.exe has been seen being distributed by the following 2 URLs.

https://skins.fxsound.com/.../ExpensiveHiFiSony.exe

Scan expensivehifisony.exe - Powered by Reason Core Security