edfhlp.exe

Easy Duplicate Finder

WebMinds, Inc.

Publisher:
WebMinds, Inc.  (signed and verified)

Product:
Easy Duplicate Finder

Description:
Easy Duplicate Finder

Version:
4.0.0.0

MD5:
ac7345a1a3efde1c52e57e4fdcaf8f01

SHA-1:
a3eb55184b7eb0507966f6d3a56ab8deb1c2dcbd

SHA-256:
da3ebc78dd494809e77e78420fe2d2857a044d5f6a39f74bddc453a2cf0b9a52

Scanner detections:
2 / 68

Status:
Clean  (2 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
4/16/2024 6:53:57 AM UTC  (today)

Scan engine
Detection
Engine version

Bkav FE
W64.HfsAdware
1.3.0.6379

Dr.Web
riskware program Program.Unwanted.159
9.0.1.025

File size:
564.5 KB (578,064 bytes)

Product version:
4.0.0.0

File type:
Executable application (Win64 EXE)

Language:
English (United States)

Common path:
C:\Program Files\easy duplicate finder 4\edfhlp.exe

Digital Signature
Signed by:

Authority:
GoDaddy.com, Inc.

Valid from:
2/5/2013 2:58:35 PM

Valid to:
2/5/2015 2:58:35 PM

Subject:
CN="WebMinds, Inc.", O="WebMinds, Inc.", L=Fort Myers, S=FL, C=US

Issuer:
SERIALNUMBER=07969287, CN=Go Daddy Secure Certification Authority, OU=http://certificates.godaddy.com/repository, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US

Serial number:
042E36B8DA530E

File PE Metadata
Compilation timestamp:
3/9/2014 6:32:28 AM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
6144:iE5O/XJnZdnKnP88iJ722vHWclMh4EtcArw:R5oXJn/nKP8/DPloKAU

Entry address:
0x74690

Entry point:
55, 48, 81, EC, 90, 00, 00, 00, 48, 8B, EC, 48, C7, 45, 30, 00, 00, 00, 00, 48, C7, 45, 38, 00, 00, 00, 00, 48, C7, 45, 40, 00, 00, 00, 00, 48, C7, 45, 48, 00, 00, 00, 00, 48, C7, 45, 58, 00, 00, 00, 00, 48, C7, 45, 50, 00, 00, 00, 00, 48, C7, 45, 60, 00, 00, 00, 00, 48, C7, 45, 68, 00, 00, 00, 00, 48, C7, 45, 78, 00, 00, 00, 00, 48, C7, 45, 70, 00, 00, 00, 00, 48, C7, 85, 80, 00, 00, 00, 00, 00, 00, 00, 48, 89, AD, 88, 00, 00, 00, 90, 48, 8D, 0D, 7B, B1, FF, FF, E8, 26, AF, F9, FF, 90, 48, 8B, 0D, D6, 59...
 
[+]

Entropy:
5.8266

Code size:
463.5 KB (474,624 bytes)

Scan edfhlp.exe - Powered by Reason Core Security