wdfmt.exe

MD5:
91646addfc3aed1abba87e4eda9a834e

SHA-1:
392497a296bfad6cbe9d0b037df4aed6b9850ba4

SHA-256:
9374ae754dd4d795cebcbaf08cf29467937ec4facef4e0680e7979ff64915149

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/23/2024 3:15:49 PM UTC  (today)

File size:
55.9 KB (57,237 bytes)

File type:
Executable application (Win64 EXE)

Common path:
C:\users\{user}\downloads\newdiskstuff\wdfmt.exe

File PE Metadata
OS bitness:
Win64

CTPH (ssdeep):
768:hsIUOxURuKCLwhLKBNh+XW+9cPGGop8RHhx1MnoaRh1ZWO+MAgchEmKRqm/pBjCT:hsWEIwqN9Cc3vRH71CFRhonKLCOk

Entry point:
4D, 5A, 61, 00, 48, 00, 17, 02, A0, 00, B0, 00, FF, FF, 76, 08, 00, 08, 9D, A8, 84, 00, 49, 03, 1E, 00, 00, 00, 01, 00, 0C, 00, 35, 08, 0A, 00, 35, 08, 08, 00, 35, 08, 06, 00, 35, 08, 04, 00, 35, 08, 02, 00, 35, 08, 00, 00, 35, 08, 54, 01, 00, 00, 88, 00, 00, 00, 7F, 00, 00, 00, 66, 00, 00, 00, 58, 00, 00, 00, 4F, 00, 00, 00, 29, 00, 00, 00, 6B, 02, 00, 00, 59, 02, 00, 00, 47, 02, 00, 00, 35, 02, 00, 00, 23, 02, 00, 00, 11, 02, 00, 00, FF, 01, 00, 00, ED, 01, 00, 00, DB, 01, 00, 00, C9, 01, 00, 00, B7, 01...
 
[+]

Entropy:
6.2116

The file wdfmt.exe has been seen being distributed by the following URL.

Scan wdfmt.exe - Powered by Reason Core Security