freeshortcutremover.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from www.bundlefunpresent.com.
MD5:
99f68363f9259029d8f8e9c689139b17

SHA-1:
257a9954be3604b2f8115b29b391ffd47ac14e2e

SHA-256:
40b24aa39db4406d73d4816b4b8285c2011ab9a1add471a80915c1c55832f0dc

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/16/2024 6:02:48 AM UTC  (today)

File size:
944.7 KB (967,350 bytes)

File type:
Executable application (Win64 EXE)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\inetcache\ie\{random}\freeshortcutremover.exe

File PE Metadata
OS bitness:
Win64

CTPH (ssdeep):
24576:8Wc/Nxuvjk99z9M563aQSB6igwmrnZhjUk98oNCMIUN7Lx41:8WKx799zq63WB6lwCnHpCMIUW

Entry point:
1F, 8B, 08, 00, 00, 00, 00, 00, 00, 03, CC, 94, 5D, 68, 1C, 55, 14, C7, CF, 64, A7, EB, 66, 33, 49, 26, D9, 74, 49, 55, 74, 0B, 5B, 49, AA, 84, D0, 54, 2C, 6E, 90, C9, EE, 76, 69, 24, 6D, B7, 6C, BA, 95, 4A, A3, D3, DD, 69, 77, EB, EE, 6C, 98, 0F, AA, F6, A5, 12, 0B, 5E, 2E, C5, 80, 7D, 10, A9, E0, 07, 48, 10, 1F, F2, 10, 30, 88, C8, 34, 9B, 42, 04, 53, A3, 14, CD, 83, 68, 1E, 44, 16, D2, 87, 55, 7C, 88, 1F, B0, DE, 3B, 73, 36, FD, 88, 10, 7D, 11, 2F, CC, FC, EE, F9, DF, 73, CF, 39, F7, CC, 65, 0E, 9F, 4C...
 
[+]

Entropy:
7.9858  (probably packed)

The file freeshortcutremover.exe has been seen being distributed by the following URL.

Scan freeshortcutremover.exe - Powered by Reason Core Security