mksetup.exe

MP3 Karaoke

Accmeware Corporation

The application mksetup.exe, “MP3 Karaoke Setup ” has been detected as a potentially unwanted program by 25 anti-malware scanners. The program is a setup application that uses the Inno Setup installer, however the file is not signed with an authenticode signature from a trusted source. Part of RelevantKnowledge, a program typically installed via a software bundle (with the user's knowledge should they read the EULA) and will run in the background collecting and monitoring information about the user's behavior in order to build an extensive profile.
Publisher:
Accmeware Corporation

Product:
MP3 Karaoke

Description:
MP3 Karaoke Setup

MD5:
2d3c60d3df19e86fe286acce2da056e0

SHA-1:
b99411c63ba1603b31b05c2dc555ed7f5bd01b47

SHA-256:
7f0a49a52374f4bc27baa9c9f8911338eff94384a1a58ee264275ccc6750e2db

Scanner detections:
25 / 68

Status:
Potentially unwanted

Analysis date:
7/6/2025 4:34:16 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Dropped:Adware.Relevant.CA
213

Agnitum Outpost
Adware.MarketScore
7.1.1

Avira AntiVirus
ADSPY/NaviPromo.J
7.11.189.196

avast!
Win32:PUP-gen [PUP]
2014.9-160705

AVG
RelevantKnowledge
2017.0.2691

Baidu Antivirus
Hacktool.Win32.Monitor
4.0.3.1675

Bitdefender
Dropped:Adware.Relevant.CA
1.0.20.935

Comodo Security
UnclassifiedMalware
20252

Dr.Web
Adware.Somoto.1
9.0.1.0187

ESET NOD32
Win32/Adware.MarketScore
10.10809

Fortinet FortiGate
Riskware/MarketScore
7/5/2016

F-Secure
Dropped:Adware.Relevant.CA
11.2016-05-07_3

G Data
Dropped:Adware.Relevant.CA
16.7.24

K7 AntiVirus
Adware
13.186.14198

Kaspersky
not-a-virus:Monitor.Win32.RK
14.0.0.-50

Malwarebytes
PUP.Adware.RelevantKnowledge
v2016.07.05.10

MicroWorld eScan
Dropped:Adware.Relevant.CA
17.0.0.561

NANO AntiVirus
Trojan.Win32.Relevant.crgfum
0.28.6.63850

Norman
RelevantKnowledge.A
11.20160705

nProtect
Dropped:Adware.Relevant.CA
14.12.01.01

Qihoo 360 Security
Win32/Virus.WebToolbar.054
1.0.0.1015

Quick Heal
WebToolbar.RK.g8 (Not a Virus)
7.16.14.00

Sophos
RelevantKnowledge
4.98

Trend Micro House Call
TROJ_GEN.R047B01KC14
7.2.187

VIPRE Antivirus
Adware.Relevant
35322

File size:
2 MB (2,090,437 bytes)

File type:
Executable application (Win32 EXE)

Installer:
Inno Setup

Common path:
C:\users\{user}\downloads\mksetup.exe

File PE Metadata
Compilation timestamp:
6/20/1992 2:22:17 AM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:pa6xEQLo4NMfyY50MPnF0raDZPfp1oveofnAucltPQ3:g6xEQ84NMfyYbF/Jfp1WekAuck3

Entry address:
0x9C40

Entry point:
55, 8B, EC, 83, C4, C4, 53, 56, 57, 33, C0, 89, 45, F0, 89, 45, DC, E8, 86, 94, FF, FF, E8, 8D, A6, FF, FF, E8, 1C, A9, FF, FF, E8, 53, C9, FF, FF, E8, 9A, C9, FF, FF, E8, C9, F2, FF, FF, E8, 30, F4, FF, FF, 33, C0, 55, 68, FC, A2, 40, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, C5, A2, 40, 00, 64, FF, 32, 64, 89, 22, A1, 14, C0, 40, 00, E8, 96, FE, FF, FF, E8, C9, FA, FF, FF, 8D, 55, F0, 33, C0, E8, 83, CF, FF, FF, 8B, 55, F0, B8, E8, CD, 40, 00, E8, 32, 95, FF, FF, 6A, 02, 6A, 00, 6A, 01, 8B, 0D, E8, CD...
 
[+]

Entropy:
7.9450

Packer / compiler:
Inno Setup v5.x - Installer Maker

Code size:
37 KB (37,888 bytes)

The file mksetup.exe has been seen being distributed by the following URL.

Remove mksetup.exe - Powered by Reason Core Security