Fitbit_Setup.exe

Fitbit Setup

Download Assistant

This is part of the Air Installer, a download manager which bundles applications with offers for additional 3rd party software, mostly unwanted adware, and may be installed with minimal consent. The application Fitbit_Setup.exe by Download Assistant has been detected as adware by 23 anti-malware scanners. The program is a setup application that uses the AirInstaller Download Manager installer. This program installs potentially unwanted software on your PC at the same time as the software you are trying to install, without adequate consent.
Publisher:
Download Assistant  (signed and verified)

Product:
Fitbit Setup

Version:
3.0.0.63

MD5:
6bf087093d05c02425b129fc7dda37a5

SHA-1:
e1263dcc1e5ef3f84f291d943ba6581754326f8c

SHA-256:
3dcc3943fb29cb8a9bbe88c1e3bcef8eec6f0a98977910524a11227489d0ecbe

Scanner detections:
23 / 68

Status:
Adware

Description:
This 'download manager' is also considered bundleware, a utility designed to download software (possibly legitimate or opensource) and bundle it with a number of optional offers including ad-supported utilities, toolbars, shopping comparison tools and browser extensions.

Analysis date:
4/26/2024 11:36:57 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Adware.Mikey.3502
6507467

AhnLab V3 Security
PUP/Win32.Bundler
2015.03.12

Avira AntiVirus
APPL/Downloader.Gen
7.11.202.98

avast!
Win32:Adware-CKD [PUP]
150101-1

AVG
Generic
2016.0.3169

Bitdefender
Gen:Variant.Graftor.171462
1.0.20.370

Dr.Web
Trojan.DownLoader12.11416
9.0.1.05190

Emsisoft Anti-Malware
Gen:Variant.Adware.Mikey.3502
9.0.0.4799

ESET NOD32
Win32/DownloadAssistant.A potentially unwanted application
7.0.302.0

F-Secure
Gen:Variant.Adware.Mikey
5.13.68

G Data
Gen:Variant.Graftor.171462
15.3.24

K7 AntiVirus
Unwanted-Program
13.191.14674

Malwarebytes
PUP.Optional.DownloadAssistant
v2015.03.15.03

MicroWorld eScan
Gen:Variant.Graftor.171462
16.0.0.222

NANO AntiVirus
Trojan.Win32.ZPACK.dmubjo
0.30.0.296

Norman
Gen:Variant.Application.Bundler.32
02.01.2015 13:58:24

Panda Antivirus
Trj/Genetic.gen
15.03.15.03

Qihoo 360 Security
Malware.QVM10.Gen
1.0.0.1015

Reason Heuristics
PUP.Bundler.Air Software
15.3.15.16

Total Defense
Win32/Tnega.Qecbfe
37.0.11489

VIPRE Antivirus
Threat.4782985
36694

Zillya! Antivirus
Adware.AirAdInstaller.Win32.792
2.0.0.2093

File size:
784.9 KB (803,744 bytes)

Product version:
3.0.0.63

Copyright:
(c) Download Assistant

Original file name:
Fitbit_Setup.exe

File type:
Executable application (Win32 EXE)

Bundler/Installer:
AirInstaller Download Manager

Language:
English (United States)

Common path:
C:\users\{user}\downloads\fitbit_setup.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
8/12/2014 8:00:00 PM

Valid to:
8/12/2016 7:59:59 PM

Subject:
CN=Download Assistant, O=Download Assistant, L=Victoria, S=British Columbia, C=CA

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
6BC405E8AC962C676F54816BCC4D4311

File PE Metadata
Compilation timestamp:
1/6/2015 6:49:19 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
24576:Qfgs8zfYy3or6tZekSG6RlYv1m4UO5cSm09Ho/:QfgsqNSG6Yv1m4UscN09I

Entry address:
0x4CD0F

Entry point:
E8, 4E, 1A, 01, 00, E9, 89, FE, FF, FF, CC, CC, CC, CC, CC, CC, CC, 8B, 54, 24, 0C, 8B, 4C, 24, 04, 85, D2, 74, 69, 33, C0, 8A, 44, 24, 08, 84, C0, 75, 16, 81, FA, 80, 00, 00, 00, 72, 0E, 83, 3D, 20, 4F, 4A, 00, 00, 74, 05, E9, B1, 1A, 01, 00, 57, 8B, F9, 83, FA, 04, 72, 31, F7, D9, 83, E1, 03, 74, 0C, 2B, D1, 88, 07, 83, C7, 01, 83, E9, 01, 75, F6, 8B, C8, C1, E0, 08, 03, C1, 8B, C8, C1, E0, 10, 03, C1, 8B, CA, 83, E2, 03, C1, E9, 02, 74, 06, F3, AB, 85, D2, 74, 0A, 88, 07, 83, C7, 01, 83, EA, 01, 75, F6...
 
[+]

Entropy:
7.1133

The file Fitbit_Setup.exe has been seen being distributed by the following 4 URLs.

Remove Fitbit_Setup.exe - Powered by Reason Core Security