drvsetup.exe

Device Driver Installer

Driver Information Technology Co., Ltd.

The application drvsetup.exe by Driver Information Technology Co. has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. This is a setup and installation application and has been known to bundle potentially unwanted software.
Publisher:
Driver-Soft Inc.  (signed by Driver Information Technology Co., Ltd.)

Product:
Device Driver Installer

Version:
5.02.0006

MD5:
2e1efe57a07b27de321405c4bed59478

SHA-1:
c6d797fdd161ef303d8d3b5985ca62f3b143f759

SHA-256:
ab95a4415a992a36e0c9b6b0b1069bcc21664ce7646f68221cb6a6420f678cf0

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
4/19/2024 12:10:51 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.DriverSoft.DriverIn.Installer.Meta (L)
16.6.13.21

File size:
1.7 MB (1,751,549 bytes)

Product version:
5.02.0006

Copyright:
Copyright (C) 2002-2010 Driver-Soft Inc.

Original file name:
Installer.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\drvsetup.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
7/7/2010 9:00:00 PM

Valid to:
7/9/2011 8:59:59 PM

Subject:
CN="Driver Information Technology Co., Ltd.", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Driver Information Technology Co., Ltd.", L=ChangSha, S=HuNan, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
237EA3112A15AB516B8E35E07E26E432

File PE Metadata
Compilation timestamp:
10/30/2010 6:50:17 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
24576:Odunpjg8RDax/r0qeTt5ax/+5qeTh7MnsVZvDPLHmVYNBNRIK91yCyV8UG7AHcbq:+MBvqKt5vqKh70sr3xNBNRIU14pHGtk

Entry address:
0x3020

Entry point:
68, DC, 33, 40, 00, E8, EE, FF, FF, FF, 00, 00, 00, 00, 00, 00, 30, 00, 00, 00, 40, 00, 00, 00, 00, 00, 00, 00, EA, E2, D0, 30, 66, DC, FB, 4C, AD, 3E, 56, 4A, 64, 3C, FF, 88, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 20, 20, 27, 46, 6C, 61, 49, 6E, 73, 74, 61, 6C, 6C, 65, 72, 00, 43, 6F, 6C, 6F, 72, 20, 00, 00, 00, 00, 01, 00, 05, 00, A4, 53, 40, 00, 00, 00, 00, 00, FF, FF, FF, FF, FF, FF, FF, FF, 00, 00, 00, 00, E8, 54, 40, 00, 70, 61, 44, 00, 00, 00, 00, 00, 70, A0, 7D, 04, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual Basic v5.0

Code size:
276 KB (282,624 bytes)

Remove drvsetup.exe - Powered by Reason Core Security