player setup.exe

The application player setup.exe has been detected as a potentially unwanted program by 27 anti-malware scanners. This is a self-extracting archive and installer, however the file is not signed with an authenticode signature from a trusted source. During install, it bundles potentially unwanted software on a user's computer at the same time without adequate consent.
MD5:
d1366a32eb72900939e24440f2e05b9e

SHA-1:
a42ae0b7a45653cb2bae6fa2db17dda3511fd510

SHA-256:
83959c40edbac5f017b97c1b155eb481e72c1b74dc4a16e47c8749ac67f78bcb

Scanner detections:
27 / 68

Status:
Potentially unwanted

Explanation:
May bundle additional potentially unwanted software such as adware during setup.

Analysis date:
4/24/2024 3:55:09 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Application.Bundler.Agent.C
927

Agnitum Outpost
Riskware.Agent
7.1.1

AhnLab V3 Security
PUP/Win32.BundleInstaller
2014.07.16

Avira AntiVirus
APPL/Downloader.Gen8
7.11.161.52

avast!
Win32:SoftPulse-C [PUP]
140617-1

AVG
Softpulse
2015.0.3405

Bitdefender
Application.Bundler.Agent.C
1.0.20.1015

Clam AntiVirus
Win.Trojan.Agent-748009
0.98/19168

Dr.Web
Trojan.Packed.27985
9.0.1.05190

ESET NOD32
Win32/SoftPulse.E potentially unwanted application
7.0.302.0

F-Prot
W32/A-5543f185
v6.4.7.1.166

F-Secure
Application.Bundler.Agent
11.2014-22-07_3

G Data
Application.Bundler.Agent
14.7.24

IKARUS anti.virus
Gen.Win32.ProcessHijack
t3scan.1.6.1.0

K7 AntiVirus
Unwanted-Program
13.180.12733

Kaspersky
HEUR:Trojan.Win32.Generic
14.0.0.3521

Malwarebytes
PUP.Optional.Downloader
v2014.07.22.05

McAfee
CryptDomaIQ
5600.7061

MicroWorld eScan
Application.Bundler.Agent.C
15.0.0.609

NANO AntiVirus
Trojan.Win32.Inject.dbmyct
0.28.2.60881

Panda Antivirus
Trj/Genetic.gen
14.07.22.05

Reason Heuristics
Threat.Win.Reputation.IMP
14.7.22.16

Rising Antivirus
PE:Trojan.Win32.Generic.16F33835!385038389
23.00.65.14720

Sophos
SoftPulse
4.98

Vba32 AntiVirus
Downloader.Agent
3.12.26.3

VIPRE Antivirus
Threat.4783235
31208

Zillya! Antivirus
Downloader.Agent.Win32.195369
2.0.0.1859

File size:
237.5 KB (243,152 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\temporary internet files\low\content.ie5\{random}\player setup.exe

File PE Metadata
Compilation timestamp:
6/20/2014 6:52:32 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
6144:0CL+Maq5SPLyoSJJJJJJJJJJJJJ7JJJJJOnOnOnOn3xwwncncnJEGr:0CC/2/JJJJJJJJJJJJJ7JJJJJOnOnOnW

Entry address:
0x22DC

Entry point:
E8, AE, 40, 00, 00, E9, 79, FE, FF, FF, 8B, FF, 56, 57, 33, F6, BF, 08, 8F, 42, 00, 83, 3C, F5, 3C, 80, 42, 00, 01, 75, 1E, 8D, 04, F5, 38, 80, 42, 00, 89, 38, 68, A0, 0F, 00, 00, FF, 30, 83, C7, 18, E8, 21, 41, 00, 00, 59, 59, 85, C0, 74, 0C, 46, 83, FE, 24, 7C, D2, 33, C0, 40, 5F, 5E, C3, 83, 24, F5, 38, 80, 42, 00, 00, 33, C0, EB, F1, 8B, FF, 53, 8B, 1D, 9C, A0, 41, 00, 56, BE, 38, 80, 42, 00, 57, 8B, 3E, 85, FF, 74, 13, 83, 7E, 04, 01, 74, 0D, 57, FF, D3, 57, E8, 3E, 41, 00, 00, 83, 26, 00, 59, 83, C6...
 
[+]

Code size:
97 KB (99,328 bytes)

Remove player setup.exe - Powered by Reason Core Security