DUMETER.EXE

DU Meter

Hagel Technologies Ltd

The executable DUMETER.EXE has been detected as malware by 14 anti-virus scanners. It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘DU Meter’.
Publisher:
Hagel Technologies Ltd

Product:
DU Meter

Description:
DU Meter Monitor

Version:
4.0 Build R3009

MD5:
5af60f189247e29a5a518be8adab95cc

SHA-1:
c902dac5ec4473cf68a9f0dc2bd50790fb99121e

SHA-256:
b2ed82610188bb2de1b1d4d169a9808d9a85f9a6cfdef5f5dd4cc97b7af49044

Scanner detections:
14 / 68

Status:
Malware

Analysis date:
12/22/2025 6:50:12 AM UTC  (today)

Scan engine
Detection
Engine version

Agnitum Outpost
Packed/PECompact
7.1.1

AVG
Generic11
2015.0.3575

Comodo Security
UnclassifiedMalware
17153

Fortinet FortiGate
W32/Generic!tr
2/2/2014

IKARUS anti.virus
Win32.SuspectCrc
t3scan.2.0.127

K7 AntiVirus
Trojan
13.173.9980

McAfee
Generic.dx
5600.7231

Norman
Suspicious_Gen2.PCSNS
11.20140202

nProtect
Trojan/W32.Agent.979968
13.10.25.02

Panda Antivirus
Trj/CI.A
14.02.02.01

Reason Heuristics
Unnamed.Threat.19
14.3.15.21

Rising Antivirus
Trojan.Win32.Generic.11EE6C0F
23.00.65.14131

Trend Micro House Call
TROJ_SPNR.0BI212
7.2.33

Trend Micro
TROJ_SPNR.0BI212
10.465.02

File size:
957 KB (979,968 bytes)

Product version:
4.0 Build R3009

Copyright:
Copyright © 1997-2007 Hagel Technologies Ltd.

Original file name:
DUMETER.EXE

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\du meter\dumeter.exe

File PE Metadata
Compilation timestamp:
10/16/2007 1:49:31 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:sSNhi5pmwSb9fjgMpqCNiCJ5Kt9UE9vYgumR+m:ZNQ5pW9fjDpl3EVvYguM

Entry address:
0x1000

Entry point:
B8, 30, 00, 69, 00, 50, 64, FF, 35, 00, 00, 00, 00, 64, 89, 25, 00, 00, 00, 00, 33, C0, 89, 08, 50, 45, 43, 6F, 6D, 70, 61, 63, 74, 32, 00, 13, 5F, AC, 93, F6, DA, 0E, 4A, 3E, 62, 1D, 64, 84, 49, D6, 3D, 84, 1C, FD, 55, DD, 42, C4, E3, B2, 91, 8B, 9E, 78, 5F, B1, 83, 5D, 46, 47, 07, 34, 2B, E1, 1C, 20, 91, 34, D9, A1, 4A, 0E, DF, A7, 94, 7A, 8C, AF, 2B, EC, F4, D2, 94, 42, 46, C8, 33, 22, B6, 36, C3, 5C, 1E, 42, 52, 39, EB, 12, 50, 8F, 7A, 33, 46, 4B, 1D, 3E, 9C, A6, 1D, D7, 84, A0, 63, E2, 02, C0, EC, 25...
 
[+]

Entropy:
7.9621

Packer / compiler:
PECompact v2

Code size:
1.9 MB (1,970,176 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
DU Meter

Command:
C:\Program Files\du meter\dumeter.exe


Remove DUMETER.EXE - Powered by Reason Core Security