fetd.exe

FET/X

PDS Programm und Datenservice GmbH

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘FET32-Deamon’.
Publisher:
PDS Programm + Datenservice GmbH  (signed by PDS Programm und Datenservice GmbH)

Product:
FET/X

Description:
FET-Daemon

Version:
1, 73, 0, 0

MD5:
35895ba5284c177156568de8971c0bfb

SHA-1:
e85069f54990f0ceae27ccab89d322dbc1a13f70

Scanner detections:
2 / 68

Status:
Clean  (2 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
5/4/2024 6:56:13 PM UTC  (today)

Scan engine
Detection
Engine version

Panda Antivirus
Suspicious file
14.05.20.09

Prevx
Heuristic: Suspicious File With Covert Attributes
3.0.5

File size:
180.9 KB (185,280 bytes)

Product version:
1, 73, 0, 0

Copyright:
(C) 2007 PDS GmbH

Original file name:
fetd.exe

File type:
Executable application (Win32 EXE)

Language:
German (Germany)

Common path:
C:\Program Files\fet32\fetd.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
1/24/2007 3:21:30 PM

Valid to:
1/24/2008 3:21:30 PM

Subject:
E=info@pds.de, CN=PDS Programm und Datenservice GmbH, O=PDS Programm und Datenservice GmbH, C=DE

Issuer:
CN=GlobalSign ObjectSign CA, OU=ObjectSign CA, O=GlobalSign nv-sa, C=BE

Serial number:
01000000000110547B9921

File PE Metadata
Compilation timestamp:
2/8/2007 2:56:00 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
3072:/9ojei/nhExqDc0lSWChemkxHBWwgaDYIdEPmvjRpkz+yR5Yn+RAX8kCnSujL+oH:/9ojei/nhExqDc0lSWChemkxHAwgaDYJ

Entry address:
0x1056C

Entry point:
E8, 64, 86, 00, 00, E9, 16, FE, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 53, 56, 8B, 44, 24, 18, 0B, C0, 75, 18, 8B, 4C, 24, 14, 8B, 44, 24, 10, 33, D2, F7, F1, 8B, D8, 8B, 44, 24, 0C, F7, F1, 8B, D3, EB, 41, 8B, C8, 8B, 5C, 24, 14, 8B, 54, 24, 10, 8B, 44, 24, 0C, D1, E9, D1, DB, D1, EA, D1, D8, 0B, C9, 75, F4, F7, F3, 8B, F0, F7, 64, 24, 18, 8B, C8, 8B, 44, 24, 14, F7, E6, 03, D1, 72, 0E, 3B, 54, 24, 10, 77, 08, 72, 07, 3B, 44, 24, 0C, 76, 01, 4E, 33, D2, 8B, C6, 5E, 5B, C2, 10, 00, 55, 8B, EC, 51...
 
[+]

Code size:
124 KB (126,976 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
FET32-Deamon

Command:
C:\Program Files\fet32\fetd.exe


Scan fetd.exe - Powered by Reason Core Security