filedokup.exe

Speed Communication Inc.

Publisher:
FileDok  (signed by Speed Communication Inc.)

Product:
FileDok

Version:
1.0.0.1

MD5:
c81c456df4e4dbfdc0524fb083b2bef8

SHA-1:
b2f9deba8f37d70533545b7b3095efe655140c78

SHA-256:
3ef52e733ce479c65c44a8891176fbafaed0e03ef41b216bc1a9d6343490a7c3

Scanner detections:
2 / 68

Status:
Clean  (2 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
5/19/2024 12:34:23 AM UTC  (today)

Scan engine
Detection
Engine version

Comodo Security
TrojWare.Win32.Kryptik.ANLY
25039

IKARUS anti.virus
Trojan.Win32.Patched
t3scan.2.0.9.0

File size:
1.3 MB (1,339,672 bytes)

Product version:
1.0.0.1

Copyright:
FileDok

Original file name:
FileDok.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\inetcache\ie\{random}\filedokup.exe

Digital Signature
Authority:
thawte, Inc.

Valid from:
4/20/2016 9:00:00 AM

Valid to:
4/21/2017 8:59:59 AM

Subject:
CN=Speed Communication Inc., OU=IT Team, O=Speed Communication Inc., L=Bupyeong-gu, S=Incheon, C=KR

Issuer:
CN=thawte SHA256 Code Signing CA, O="thawte, Inc.", C=US

Serial number:
1CDDB0ED9EB51179E2FF379B1FD272E1

File PE Metadata
Compilation timestamp:
5/18/2016 2:31:49 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
12288:0XVfQ8CPrY/u+Jwwkip9j8XnZELPb1RGIW0b:uwrYXkip9j8XZELz1E0b

Entry address:
0x3FF63

Entry point:
E8, 43, 9D, 00, 00, E9, 78, FE, FF, FF, 8B, FF, 55, 8B, EC, 53, 56, 8B, 75, 08, 33, DB, 57, 39, 5D, 14, 75, 10, 3B, F3, 75, 10, 39, 5D, 0C, 75, 12, 33, C0, 5F, 5E, 5B, 5D, C3, 3B, F3, 74, 07, 8B, 7D, 0C, 3B, FB, 77, 1B, E8, EF, 00, 00, 00, 6A, 16, 5E, 89, 30, 53, 53, 53, 53, 53, E8, 2E, EA, FF, FF, 83, C4, 14, 8B, C6, EB, D5, 39, 5D, 14, 75, 04, 88, 1E, EB, CA, 8B, 55, 10, 3B, D3, 75, 04, 88, 1E, EB, D1, 83, 7D, 14, FF, 8B, C6, 75, 0F, 8A, 0A, 88, 08, 40, 42, 3A, CB, 74, 1E, 4F, 75, F3, EB, 19, 8A, 0A, 88...
 
[+]

Entropy:
4.5569

Code size:
324 KB (331,776 bytes)

Scan filedokup.exe - Powered by Reason Core Security