filesplitter.exe

MD5:
70fb37101d83ebbe072ff30a5c7d8e0c

SHA-1:
a0bd66db95c3815a5d57e7e2d937242eae6c8b8c

SHA-256:
7e177c4ba52af1c463791d5b511e72c5af470ab4b556ff74260ddf775644635f

Scanner detections:
6 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
5/11/2025 9:15:25 PM UTC  (today)

Scan engine
Detection
Engine version

Agnitum Outpost
Trojan.Rettesser
7.1.1

Comodo Security
UnclassifiedMalware
14323

McAfee
Artemis!70FB37101D83
5600.7211

Norman
W32/Suspicious_Gen2.EENKB
11.20140222

VIPRE Antivirus
Trojan.Win32.Generic
14148

ViRobot
Trojan.Win32.S.Qhost.1479680
2011.4.7.4223

File size:
1.4 MB (1,479,680 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\windows doctor\filesplitter.exe

File PE Metadata
Compilation timestamp:
6/30/2010 11:47:58 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:5Chr4ta4TDGjpvYIHvR2se8WdYMLN0eDkPLtYTQCPJqi:8y9+YyOBhTQCV

Entry address:
0xBB8E0

Entry point:
55, 8B, EC, 83, C4, EC, 33, C0, 89, 45, EC, B8, 00, A3, 4B, 00, E8, 53, C9, F4, FF, 33, C0, 55, 68, F2, B9, 4B, 00, 64, FF, 30, 64, 89, 20, A1, 00, 1A, 4C, 00, 8B, 00, E8, 49, 2D, FD, FF, A1, 00, 1A, 4C, 00, 8B, 00, 8B, 80, 70, 01, 00, 00, E8, 0F, E9, FF, FF, 84, C0, 0F, 85, B3, 00, 00, 00, 8D, 55, EC, B8, 01, 00, 00, 00, E8, 46, 7A, F4, FF, 8B, 55, EC, B8, 0C, BA, 4B, 00, E8, 8D, AD, F4, FF, 85, C0, 0F, 8E, 91, 00, 00, 00, A1, 00, 1A, 4C, 00, 8B, 00, BA, 34, BA, 4B, 00, E8, 8C, 27, FD, FF, 8B, 0D, C0, 18...
 
[+]

Entropy:
6.7140

Code size:
745 KB (762,880 bytes)

Scan filesplitter.exe - Powered by Reason Core Security