fileexplorerdemoinstall.exe

Capesoft Software (Pty) Ltd

This is a self-extracting archive and installer. The file has been seen being downloaded from www.capesoft.com.
Publisher:
Capesoft  (signed by Capesoft Software (Pty) Ltd)

Description:
File Explorer Demo Demo Install

Version:
5.55

MD5:
8fe62e894f801119e880a132c21537f0

SHA-1:
d1f9fd59b1fed3e3bd6c7bc3d7dea96dcc3ad588

SHA-256:
8e19865edfa9ce7d4b2532fb631a20e6c52381ac12b449f143bbc3db9a60c9d0

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
4/26/2024 4:27:53 PM UTC  (today)

Scan engine
Detection
Engine version

Trend Micro House Call
Suspicious_GEN.F47V0403
7.2.119

File size:
5 MB (5,284,328 bytes)

Copyright:
Capesoft

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\fileexplorerdemoinstall.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
7/24/2013 3:00:00 AM

Valid to:
7/24/2016 2:59:59 AM

Subject:
CN=Capesoft Software (Pty) Ltd, O=Capesoft Software (Pty) Ltd, POBox="PO 511, Plumstead, 7801", STREET="4th Floor, Waterford House", STREET="Waterford Road, Punts Estate", STREET=Diepriver, L=Cape Town, S=Western Cape, PostalCode=7800, C=ZA

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00C4C704B932C2163BE778439E61A4588B

File PE Metadata
Compilation timestamp:
4/22/2014 12:15:10 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
98304:bKTg40BgDw3chLMjmppm7/Jr3YJZxIBDBjDF+b7RX3Yz5M:mMt+03yMjspmC3IBdDF+GM

Entry address:
0x1C70

Entry point:
55, 8B, EC, 83, EC, 54, FF, 15, 70, 20, 40, 00, 89, 45, B4, 8B, 45, B4, 0F, BE, 08, 83, F9, 22, 75, 3F, 8B, 55, B4, 83, C2, 01, 89, 55, B4, 8B, 45, B4, 0F, BE, 08, 85, C9, 74, 16, 8B, 55, B4, 0F, BE, 02, 83, F8, 22, 74, 0B, 8B, 4D, B4, 83, C1, 01, 89, 4D, B4, EB, E0, 8B, 55, B4, 0F, BE, 02, 83, F8, 22, 75, 09, 8B, 4D, B4, 83, C1, 01, 89, 4D, B4, EB, 16, 8B, 55, B4, 0F, BE, 02, 83, F8, 20, 7E, 0B, 8B, 4D, B4, 83, C1, 01, 89, 4D, B4, EB, EA, 8B, 55, B4, 0F, BE, 02, 85, C0, 74, 16, 8B, 4D, B4, 0F, BE, 11, 83...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
4 KB (4,096 bytes)

The file fileexplorerdemoinstall.exe has been seen being distributed by the following URL.

Scan fileexplorerdemoinstall.exe - Powered by Reason Core Security