rufus-1.4.7.exe

Rufus

Akeo Consulting

This is a setup program which is used to install the application. The file has been seen being downloaded from doc-14-3g-docs.googleusercontent.com and multiple other hosts.
Publisher:
Akeo Consulting (http://akeo.ie)  (signed by Akeo Consulting)

Product:
Rufus

Version:
1.4.7.455

MD5:
f60653fb74468f4783568e3516ccee7b

SHA-1:
1f518106dd3bdfdb8218edcce09e364d98dfc004

SHA-256:
f8cf2eef02af2a57e68ff0c85dc3b41587f1f90bfb107f72c6da48bbfb0cadde

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 2:18:26 AM UTC  (today)

File size:
591.9 KB (606,120 bytes)

Product version:
1.4.7.455

Copyright:
© 2011-2014 Pete Batard (GPL v3)

Trademarks:
http://www.gnu.org/copyleft/gpl.html

Original file name:
rufus.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\rufus-1.4.7.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
11/12/2012 1:00:00 AM

Valid to:
11/13/2017 12:59:59 AM

Subject:
CN=Akeo Consulting, O=Akeo Consulting, STREET="24, Grey Rock", L=Milford, S=Co. Donegal, PostalCode=Co. Donegal, C=IE

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
47D73D146614770CB3DAAF5502C48D9C

File PE Metadata
Compilation timestamp:
4/22/2014 1:31:07 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.23

CTPH (ssdeep):
12288:oLEsC6nc9li1JrTWehZVO4vd0TZNWCUg4JRVSALHCoSK:nzSTNVOclnJ7ZLr

Entry address:
0x15AB50

Entry point:
60, BE, 15, F0, 4C, 00, 8D, BE, EB, 1F, F3, FF, 57, 89, E5, 8D, 9C, 24, 80, C1, FF, FF, 31, C0, 50, 39, DC, 75, FB, 46, 46, 53, 68, 2F, 85, 15, 00, 57, 83, C3, 04, 53, 68, 31, BB, 08, 00, 56, 83, C3, 04, 53, 50, C7, 03, 03, 00, 02, 00, 90, 90, 90, 90, 90, 55, 57, 56, 53, 83, EC, 7C, 8B, 94, 24, 90, 00, 00, 00, C7, 44, 24, 74, 00, 00, 00, 00, C6, 44, 24, 73, 00, 8B, AC, 24, 9C, 00, 00, 00, 8D, 42, 04, 89, 44, 24, 78, B8, 01, 00, 00, 00, 0F, B6, 4A, 02, 89, C3, D3, E3, 89, D9, 49, 89, 4C, 24, 6C, 0F, B6, 4A...
 
[+]

Code size:
564 KB (577,536 bytes)

The file rufus-1.4.7.exe has been seen being distributed by the following 17 URLs.

https://doc-14-3g-docs.googleusercontent.com/docs/securesc/msojho5qook6ds18h9stiofb91ofji0i/3ulv63erp9tg7fhmn6uq4mlprb1lueom/1474322400000/.../05132425560177334054/0B3PqvJFIMwxcOTVsUVJINDhJMUU?e=download

http://62.210.208.249/rutorrent/plugins/.../action.php?hash=0072F026A439EC99067EBCA35B481B5AA1C893BA&no=0

https://dw.uptodown.com/dwn/cWn6CRu-QlJBA9J69bcvjoY3L-Hp3mSS541nwH7yeM6K4_TPgRehn5HIH9_fdgsCF_LOT3olgGLS7lBkXm7tBaV2_oSDnMyqlXNmvtlYdPwZI7Z0fGpJlJVUrmjZwwPa/MlhfeMJFLm_QN8syuR2C-oF0ew5HNh8EYE2Z97u8n72ULW2Tk1WMiY1Rnak8R8xBVK2L-hTIBEZ5nRd2Dl_hyybTfCH0K-Gy8bzc87d9IKibN1mqM61aVzMzpme6tMUu/CQarSm6zMQn9HVL6CrJ32igxjWPOmQV6T2E4TpwrXTlS9qYw3PS-I_JQJJdcQPAP6ayAQBsBM4PAQCB7NiZvCVNaNSSck_sZ8hR7hTVD1F6Jaot3aIMrIywuloTwZg0f/.../

https://rufus.akeo.ie/.../rufus-1.4.7.exe

http://dw.uptodown.com/dwn/bgwkX5C9Og-aSxhERJC5ti3NtVYlNEyIYkr_Kj83NiBWmRTpVaLRpkXLrbkvMBuHLoBx0tGz70X0rr9zw3fD9WEEiGZakmrIiqr_0BRw6mYi7iQdIdlACFIKQDD1FrPP/AcfhT8wy0bEkEmMAQg9K9_m3GVhAYTRizPgFwJflvr0LgrNvs_9lYXLDGguour4Yl7hR15ERNzlRFTpw9If-ZPeGxoJWVxN36L96zCaHoE5fkgcA4XbdxC6s9wbkO6ue/.../

http://i.download.idg.pl/fannef/77ee892700d3bb68f100fb155ddff8c7/571f18db//vol2/w95/narzedzia_systemowe/.../rufus-1.4.7.exe

about:internet

Scan rufus-1.4.7.exe - Powered by Reason Core Security