FileASSASSINExt.DLL

FileASSASSIN Shell Extension

Malwarebytes

It is registered as a context menu handler (displays a menu when right-clicked in Explorer) named “FAExt”.
Publisher:
Malwarebytes

Product:
FileASSASSIN Shell Extension

Version:
1, 0, 0, 1

MD5:
20b392e83d4a83000f7d8d3cfe49ab44

SHA-1:
b51343a90b8e2321b66f163ee765cd3d41c4c3d8

SHA-256:
a6eec8520caa6765ce863b123f7b52c87d83a9c6bad509946ed355bfa5ebb66a

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
4/1/2025 8:40:05 PM UTC  (today)

Scan engine
Detection
Engine version

Clam AntiVirus
Win.Trojan.Ramnit-1849
0.98/23207

File size:
100.4 KB (102,805 bytes)

Product version:
1, 0, 0, 1

Copyright:
Copyright 2006-2007

Original file name:
FileASSASSINExt.DLL

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\Program Files\fileassassin\fileassassinext.dll

File PE Metadata
Compilation timestamp:
3/31/2007 5:34:52 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

Entry address:
0x9000

Entry point:
60, E8, 00, 00, 00, 00, 5D, 8B, C5, 81, ED, 1E, A5, 03, 20, 2B, 85, 85, AC, 03, 20, 89, 85, 81, AC, 03, 20, B0, 00, 86, 85, B6, AE, 03, 20, 3C, 01, 0F, 85, BC, 01, 00, 00, 83, BD, B1, AD, 03, 20, 00, 74, 33, 83, BD, B5, AD, 03, 20, 00, 74, 2A, 8B, 85, 81, AC, 03, 20, 2B, 85, B1, AD, 03, 20, 8B, 00, 89, 85, EE, AD, 03, 20, 8B, 85, 81, AC, 03, 20, 2B, 85, B5, AD, 03, 20, 8B, 00, 89, 85, F2, AD, 03, 20, EB, 61, 83, BD, B9, AD, 03, 20, 00, 74, 58, 8B, 85, 81, AC, 03, 20, 2B, 85, B9, AD, 03, 20, FF, 30, 8D, 85...
 
[+]

Entropy:
6.9281

Packer / compiler:
ASPack v1.08.04

Code size:
12 KB (12,288 bytes)

Context Menu Handler
Display name:
FAExt

CLSID:
{05672D66-9736-42F5-8BEB-FA1DD3CA51C4}

CLSID name:
FAExt Class


Scan FileASSASSINExt.DLL - Powered by Reason Core Security