installer-dl.exe

Version:
1.0.5186.12959

MD5:
f7466ade639811080e203112993c6910

SHA-1:
7bdd89691d91f18246cbd25140f71641a49e3c5b

SHA-256:
3b6aebead9b72a103aef4520253af7f677cde0dea75f2131a8208d83aeda6270

Scanner detections:
2 / 68

Status:
Clean  (2 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
4/26/2024 3:09:33 AM UTC  (today)

Scan engine
Detection
Engine version

G Data
Win32.Application.BrowserSafeGuard
14.5.24

VIPRE Antivirus
AdKnowledge
28678

File size:
3.2 MB (3,356,160 bytes)

Product version:
1.0.5186.12959

Original file name:
Installer.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\installer-dl.exe

File PE Metadata
Compilation timestamp:
3/14/2014 4:12:28 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
49152:Mreo4bPY1f0tIDYs94ndb+qQMcrF2i2ZIlzITJPwLJVmd4Y9:MreX7/6Ys9GpbNcrolZIl8NoLPmWY

Entry address:
0x326562

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
7.2710

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
3.1 MB (3,294,720 bytes)

The file installer-dl.exe has been discovered within the following program.

BrowserSafeguard  by Adknowledge, Inc.
RocketTab is licensed by Rich River Media but typically bundled with BrowserSafeguard, the software is distributed through numerous adware bundlers including optimum-installer, FUSION INSTALL and Tint Installer.
www.browsersafeguard.com
80% remove it
 
Powered by Should I Remove It?

The file installer-dl.exe has been seen being distributed by the following URL.

Scan installer-dl.exe - Powered by Reason Core Security