dupeguru.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from download.freedownloadmanager.org and multiple other hosts.
MD5:
44fbcd67790463abba15d74ae60f34ef

SHA-1:
c81426b166389877381e77900b438d4c86638bff

SHA-256:
5f1c92ef9e04170c1cd488c2825171dcf40046ac402732e182c31b389b1859b4

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 6:54:54 AM UTC  (today)

File size:
16.6 MB (17,455,616 bytes)

File type:
Executable application (Win32 EXE)

File PE Metadata
OS version:
29952.2

OS bitness:
Win32

Linker version:
255.9

.NET CLR dependent:
Yes

CTPH (ssdeep):
393216:80KOtMatjh8fDA/n9lo1xPyHy6Qh4nSKIM0M5Ta:B2armA7IxPyHy6mU5

Entry address:
0x10B00

Entry point:
D0, CF, 11, E0, A1, B1, 1A, E1, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 3E, 00, 03, 00, FE, FF, 09, 00, 06, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 0B, 01, 00, 00, 01, 00, 00, 00, 00, 00, 00, 00, 00, 10, 00, 00, 03, 00, 00, 00, 05, 00, 00, 00, 75, 02, 00, 00, 02, 00, 00, 00, 00, 00, 00, 00, 6B, 00, 00, 00, FC, 00, 00, 00, 0E, 00, 00, 00, F6, 01, 00, 00, 0C, 02, 00, 00, 0D, 02, 00, 00, 0E, 02, 00, 00, 0F, 02, 00, 00, 10, 02, 00, 00, 11, 02, 00, 00, 12, 02, 00, 00, 13, 02, 00, 00...
 
[+]

Entropy:
7.9903  (probably packed)

Code size:
1.5 KB (1,536 bytes)

The file dupeguru.exe has been seen being distributed by the following 4 URLs.

http://download.freedownloadmanager.org/Windows-PC/.../FREE-3.9.0.html?ac35e6

http://s1.download.net.pl/c07ae76d0d2dupeguruwin64390.msi

Scan dupeguru.exe - Powered by Reason Core Security