wincmd.exe

Description:
Windows Commander,Created by Lxl1638

Version:
3.3.0501.196F X86U

MD5:
cf70b9c4e47dff364e036e4571ffa790

SHA-1:
739c53f7a0bef1411f8e45f8b32d9da0f5bda70d

SHA-256:
1bc297d581dfe74439a66600c8de8bc01f770bd20f4c5f3c918ab3c2f3ce48ca

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
12/20/2025 4:13:26 AM UTC  (today)

Scan engine
Detection
Engine version

Comodo Security
Heur.Packed.Unknown
17725

File size:
98 KB (100,352 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\wincmd.exe

File PE Metadata
Compilation timestamp:
5/16/2009 7:41:13 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
3072:kXZ2oHWz61IqEehfi/uT4ZRVpvE0ub81stcm8gKuxDT3TbjTNWi0l:k2Q4dqE8fi/ucZXHRg33vvNWi

Entry address:
0x1056F

Entry point:
55, 8B, EC, 6A, FF, 68, D0, 22, 40, 00, 68, 1C, 07, 41, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 68, 53, 56, 57, 89, 65, E8, 33, DB, 89, 5D, FC, 6A, 02, 5F, 57, FF, 15, F8, 11, 40, 00, 59, 83, 0D, E4, 3F, 41, 00, FF, 83, 0D, E8, 3F, 41, 00, FF, FF, 15, F4, 11, 40, 00, 8B, 0D, E0, 3F, 41, 00, 89, 08, FF, 15, F0, 11, 40, 00, 8B, 0D, DC, 3F, 41, 00, 89, 08, A1, EC, 11, 40, 00, 8B, 00, A3, EC, 3F, 41, 00, E8, 3B, 01, 00, 00, 39, 1D, 00, 21, 41, 00, 75, 0C, 68, 18, 07, 41, 00, FF, 15...
 
[+]

Entropy:
7.0001

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
67.5 KB (69,120 bytes)

Scan wincmd.exe - Powered by Reason Core Security