DFEPApplication.exe

Dell Feature Enhancement Pack

Dell Inc.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘DFEPApplication’.
Publisher:
Dell Inc.  (signed and verified)

Product:
Dell Feature Enhancement Pack

Version:
2,1,0,551

MD5:
54443a4ca8bb3d2e7eabacc8c62fabd6

SHA-1:
7b8335f406dea5e4375ad885f9ef386fb5e56a03

SHA-256:
9030cc85e710b26644519304006249df3780d3a7bb2ac2f344864310eef5e65d

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 9:02:24 PM UTC  (today)

File size:
6 MB (6,306,712 bytes)

Product version:
2,1,0,551

Copyright:
Copyright (C) Dell Inc. 2011. All rights reserved.

Original file name:
DFEPApplication.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\dell\feature enhancement pack\dfepapplication.exe

Digital Signature
Signed by:

Authority:
Dell Inc.

Valid from:
7/15/2011 1:10:17 AM

Valid to:
5/18/2012 1:00:00 PM

Subject:
CN=Dell Inc, OU=PG, O=Dell Inc., L=Round Rock, S=Texas, C=US

Issuer:
CN=Dell Inc. Enterprise Issuing CA2, O=Dell Inc.

Serial number:
61FCAA5700000000041A

File PE Metadata
Compilation timestamp:
8/25/2011 12:01:08 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
98304:kC9mP9lSNW7+qZg8AeXoF3IflNf/RFEfGcf:kQ88OoelJRFEfGG

Entry address:
0x11ABCF

Entry point:
E8, 94, 7D, 00, 00, E9, 89, FE, FF, FF, 8B, FF, 55, 8B, EC, 51, 53, 8B, 45, 0C, 83, C0, 0C, 89, 45, FC, 64, 8B, 1D, 00, 00, 00, 00, 8B, 03, 64, A3, 00, 00, 00, 00, 8B, 45, 08, 8B, 5D, 0C, 8B, 6D, FC, 8B, 63, FC, FF, E0, 5B, C9, C2, 08, 00, 58, 59, 87, 04, 24, FF, E0, 8B, FF, 55, 8B, EC, 51, 51, 53, 56, 57, 64, 8B, 35, 00, 00, 00, 00, 89, 75, FC, C7, 45, F8, 3D, AC, 51, 00, 6A, 00, FF, 75, 0C, FF, 75, F8, FF, 75, 08, E8, 7B, 86, 01, 00, 8B, 45, 0C, 8B, 40, 04, 83, E0, FD, 8B, 4D, 0C, 89, 41, 04, 64, 8B, 3D...
 
[+]

Entropy:
4.6229

Code size:
1.3 MB (1,320,448 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
DFEPApplication

Command:
C:\Program Files\dell\feature enhancement pack\dfepapplication.exe


Scan DFEPApplication.exe - Powered by Reason Core Security