freepdfcompressor.exe__15047_i1762296739_il681475.ace

The file freepdfcompressor.exe__15047_i1762296739_il681475.ace has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. It bundles adware offers using the Amonetize, a Pay-Per-Install (PPI) monetization and distribution download manager. The software offerings provided are based on the PC's geo-location at the time of install. The file has been seen being downloaded from stateresolver.link.
MD5:
d12316ec68dbddde360081d16efd95f8

SHA-1:
ece3a902673412888bea699bd42ae2c2bc8519e7

SHA-256:
4e890c8bc9252574850c0bc933e357406ce41a21fbb1c0b0fd453769bce1d09e

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
11/15/2024 11:00:47 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Amonetize.Meta (M)
16.6.25.1

File size:
845.1 KB (865,429 bytes)

Common path:
C:\users\{user}\downloads\freepdfcompressor.exe__15047_i1762296739_il681475.ace

The file freepdfcompressor.exe__15047_i1762296739_il681475.ace has been seen being distributed by the following URL.