FileguriMain.exe

파일구리

Iconcube. Inc.

The application FileguriMain.exe by Iconcube has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
(주)아이콘큐브  (signed by Iconcube. Inc.)

Product:
파일구리

Version:
7, 5, 7, 0

MD5:
07a9d6b8b2fd6ac95e5993070d99a75d

SHA-1:
296939b82db97ec9172815a6d99588a492b9a1ee

SHA-256:
6067bc6ed1fca94728443a77d109e3919819522e406f389f185d5292bb9a6efb

Scanner detections:
1 / 68

Status:
Potentially unwanted

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
4/30/2024 10:21:02 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP (M)
16.10.7.23

File size:
13.2 MB (13,864,128 bytes)

Product version:
7, 5, 7, 0

Copyright:
Copyright ⓒ 2000-2016 Iconcube Inc.

Original file name:
FileguriMain.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\iconcube\fileguri\filegurimain.exe

Digital Signature
Signed by:

Authority:
Symantec Corporation

Valid from:
9/20/2016 9:00:00 AM

Valid to:
10/21/2018 8:59:59 AM

Subject:
CN=Iconcube. Inc., OU=IT Team, O=Iconcube. Inc., L=Geumcheon-gu, S=SEOUL, C=KR

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
767B944D6C8A18776C2BBB51B0EF9FC1

File PE Metadata
Compilation timestamp:
9/6/2016 3:01:29 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
196608:ZYTN8iaxu8Cn3FpvhPifwiXi6s+Oh5oaQKys7rES8ye8L:EbiXi6s+Oh5oaQKys7rES8y5L

Entry address:
0x2D611F

Entry point:
E8, FD, F7, 00, 00, E9, 16, FE, FF, FF, 3B, 0D, C8, 7F, 7B, 00, 75, 02, F3, C3, E9, 7D, F8, 00, 00, 8B, 01, 8B, 50, FC, 8B, C1, 2B, 42, 04, 8B, 52, 08, 85, D2, 74, 04, 2B, CA, 2B, 01, C3, 55, 8B, EC, 51, 8B, 40, 10, 53, 8B, 58, 08, 56, 33, F6, 85, DB, 57, 8B, 78, 0C, 76, 27, 8B, 04, B7, 8B, 4D, 0C, 89, 45, FC, 8B, 00, 3B, C1, 74, 44, 83, C1, 08, 51, 83, C0, 08, 50, E8, 10, C8, FF, FF, 85, C0, 59, 59, 74, 31, 46, 3B, F3, 72, D9, 33, C0, 5F, 5E, 5B, C9, C3, 8B, 04, B7, F6, 40, 14, 04, 75, F0, 8B, 00, 8B, 4D...
 
[+]

Entropy:
5.9988

Code size:
3.1 MB (3,239,936 bytes)

Windows Firewall Allowed Program
Name:
filegurimain.exe


Remove FileguriMain.exe - Powered by Reason Core Security