flvplayersetup.exe

The application flvplayersetup.exe has been detected as a potentially unwanted program by 18 anti-malware scanners. The program is a setup application that uses the Inno Setup installer, however the file is not signed with an authenticode signature from a trusted source. This is the uninstaller utility registered in the Windows Control Panel for the program FLV Player. The setup program uses the InstallCore engine which may bundle additional software offers including toolbars and browser extensions.
MD5:
eafc86e0b73a8bc843fd185fbb16d1fa

SHA-1:
8d0598023f120f43146a961497823126edc7c2b2

SHA-256:
55b4eba17e5084fa42dc31dcff5aa6e4c023c3476ff77190d404bef230d9b2ea

Scanner detections:
18 / 68

Status:
Potentially unwanted

Explanation:
Uses the InstallCore download manager to install additional potentially unwanted software which may include extensions such as DealPly and various toolbars.

Analysis date:
4/23/2024 4:49:07 PM UTC  (today)

Scan engine
Detection
Engine version

Agnitum Outpost
PUA.InstallCore
7.1.1

Avira AntiVirus
Adware/InstallCo.CH
7.11.114.70

Comodo Security
Application.Win32.Agent.AL
17293

Dr.Web
Trojan.Packed.24524
9.0.1.05190

ESET NOD32
Win32/InstallCore.CH potentially unwanted application
7.0.302.0

F-Prot
W32/InstallCore.R3.gen
v6.4.7.1.166

K7 AntiVirus
Unwanted-Program
13.173.10234

Malwarebytes
v2014.10.30.11

McAfee
Artemis!3EDAEDD65A2C
5600.6962

Norman
InstallCore.UMFM
11.20141030

Panda Antivirus
PUP/MultiToolbar.A
14.10.30.11

Qihoo 360 Security
Win32/Virus.Adware.084
1.0.0.1015

Rising Antivirus
PE:Malware.XPACK-LNR/Heur!1.5594
23.00.65.141028

SUPERAntiSpyware
Trojan.Agent/Gen-Nullo[Short]
10268

Trend Micro House Call
TROJ_GEN.F47V1112
7.2.303

Vba32 AntiVirus
3.12.24.3

VIPRE Antivirus
InstallCore
23488

File size:
850.2 KB (870,600 bytes)

File type:
Executable application (Win32 EXE)

Installer:
Inno Setup

Common path:
C:\users\{user}\downloads\flvplayersetup.exe

File PE Metadata
Compilation timestamp:
6/19/1992 11:22:17 PM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:lOyMJfs4NlLQ48HCyUYJOZXx8G0Rtr+Tpeb5+ZXQxamo:UlJfsbHsYJOZGtr+TYYZAxaL

Entry address:
0x98CC

Entry point:
55, 8B, EC, 83, C4, CC, 53, 56, 57, 33, C0, 89, 45, F0, 89, 45, DC, E8, FA, 97, FF, FF, E8, 01, AA, FF, FF, E8, 2C, CC, FF, FF, E8, 73, CC, FF, FF, E8, 0A, F3, FF, FF, E8, 71, F4, FF, FF, 33, C0, 55, 68, 76, 9F, 40, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, 2C, 9F, 40, 00, 64, FF, 32, 64, 89, 22, A1, 14, B0, 40, 00, E8, 9B, FE, FF, FF, E8, 26, FA, FF, FF, 8D, 55, F0, 33, C0, E8, E0, D0, FF, FF, 8B, 55, F0, B8, D8, BD, 40, 00, E8, AB, 98, FF, FF, 6A, 02, 6A, 00, 6A, 01, 8B, 0D, D8, BD, 40, 00, B2, 01, B8...
 
[+]

Entropy:
7.7781

Packer / compiler:
Inno Setup v5.x - Installer Maker

Code size:
36 KB (36,864 bytes)

Program Uninstaller
Program name:
FLV Player

Uninstall string:
C:\Program Files (x86)\FLVPlayer\Uninstall\__Uninstall_.exe /RSF /Uninstall


Remove flvplayersetup.exe - Powered by Reason Core Security