cmdlineextinstallerexe.exe

Sony DADC Austria AG

Publisher:
Sony DADC Austria AG  (signed and verified)

MD5:
aa602a002898edb413c1c12639c8ec03

SHA-1:
1d79bfaf3782e0ca4c1c6aec301fd8cc366ec31f

SHA-256:
ba413239647a0b84ed6db31e988a8bf74bb48685577c6ead40f0b53adeaf4e2d

Scanner detections:
3 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
4/26/2024 6:57:09 AM UTC  (today)

Scan engine
Detection
Engine version

AVG
Win32/Heur
2015.0.4591

Dr.Web
Win32.Bolik.1
9.0.1.05190

Kaspersky
Trojan.Win32.Patched.netyxu
15.0.0.562

File size:
1 MB (1,051,832 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\temp\cmdlineextinstallerexe.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
7/26/2006 2:00:00 AM

Valid to:
10/13/2008 1:59:59 AM

Subject:
CN=Sony DADC Austria AG, OU=Virtual Factory, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Sony DADC Austria AG, L=Salzburg, S=Salzburg, C=AT

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
4B1EA5F9BBD49C5779A360EC82ED547C

File PE Metadata
Compilation timestamp:
4/3/2008 11:09:54 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
7.10

CTPH (ssdeep):
12288:E1XanwvkktfF27v31+V5hs0rx7oZoFhWmIWI7ghPlqSg0DzlVOOqwUeCCiukFI1:sXawDtN27v3105sMPMSLVO/bDFut1

Entry address:
0x286A

Entry point:
81, EC, 04, 00, 00, 00, 89, 04, 24, 81, C4, FC, FF, FF, FF, 89, 0C, 24, 81, EC, 04, 00, 00, 00, 89, 14, 24, 53, 81, EC, 04, 00, 00, 00, 89, 24, 24, 81, C4, FC, FF, FF, FF, 89, 2C, 24, 81, C4, FC, FF, FF, FF, 89, 34, 24, 57, 31, C0, 81, EC, 04, 00, 00, 00, BE, 00, 00, 00, 00, 89, 2C, 24, 31, D2, 89, E5, 81, EC, 20, 00, 00, 00, 81, C4, FC, FF, FF, FF, C7, 04, 24, 00, 00, 00, 00, 8B, 0C, 24, 81, EC, FC, FF, FF, FF, 81, C4, FC, FF, FF, FF, C7, 04, 24, 00, 00, 00, 00, 8B, 1C, 24, 81, EC, FC, FF, FF, FF, 68, 00...
 
[+]

Code size:
48 KB (49,152 bytes)

Scan cmdlineextinstallerexe.exe - Powered by Reason Core Security