setup v2 1.exe

Digital Plugin SL

This is the Softpulse installer which bundles applications with offers for additional 3rd party software, mostly unwanted adware, and may be installed with minimal consent. The application setup v2 1.exe by Digital Plugin SL has been detected as adware by 28 anti-malware scanners. The program is a setup application that uses the Softpulse SoftwareBundler installer. This program installs potentially unwanted software on your PC at the same time as the software you are trying to install, without adequate consent.
Publisher:
Digital Plugin SL  (signed and verified)

Version:
1.0.0.1

MD5:
7cf8dc4861b96f7efc668fa8b7d65e29

SHA-1:
6e89b5d7790bd988be6441af6c3f1eb6370d691d

SHA-256:
ec36c7d63ace76a541d963c595eb1c7c553c51627ebd3400a85f7792acc125ae

Scanner detections:
28 / 68

Status:
Adware

Description:
This is also known as bundleware, or downloadware, which is an downloader designed to simply deliver ad-supported offers in the setup routine of an otherwise legitimate software.

Analysis date:
4/23/2024 10:01:57 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Application.Bundler.SoftPulse.2
801

Agnitum Outpost
Riskware.Agent
7.1.1

AhnLab V3 Security
PUP/Win32.DomaIQ
2014.10.21

Avira AntiVirus
APPL/Softpulse.Gen8
7.11.180.40

avast!
Win32:SoftPulse-AK [PUP]
2014.9-141126

AVG
Generic
2015.0.3279

Bitdefender
Gen:Variant.Application.Bundler.SoftPulse.2
1.0.20.1650

Clam AntiVirus
Win.Trojan.Softpulse-57
0.98/21411

Dr.Web
Trojan.DownLoader11.36367
9.0.1.0330

ESET NOD32
Win32/SoftPulse (variant)
8.10596

Fortinet FortiGate
Riskware/DriverUpd
11/26/2014

F-Secure
Gen:Variant.Application.Bundler
11.2014-26-11_4

G Data
Gen:Variant.Application.Bundler.SoftPulse
14.11.24

IKARUS anti.virus
Trojan.Win32.Buzus
t3scan.1.7.8.0

K7 AntiVirus
Unwanted-Program
13.184.13741

Kaspersky
not-a-virus:Downloader.Win32.DriverUpd
14.0.0.2889

Malwarebytes
PUP.Optional.DomaIQ
v2014.11.26.03

McAfee
SoftPulse
5600.6935

MicroWorld eScan
Gen:Variant.Application.Bundler.SoftPulse.2
15.0.0.990

NANO AntiVirus
Trojan.Win32.LMN.dgkmmt
0.28.2.62841

nProtect
Trojan/W32.Buzus.1626064
14.10.21.01

Qihoo 360 Security
Win32/Application.c0b
1.0.0.1015

Reason Heuristics
PUP.Installer.DigitalPluginSL.K
14.11.26.3

Sophos
SoftPulse
4.98

Trend Micro House Call
TROJ_GEN.R08NB01JH14
7.2.330

Vba32 AntiVirus
BScope.Adware.Softpulse
3.12.26.3

VIPRE Antivirus
Trojan.Win32.Generic
34114

Zillya! Antivirus
Adware.Agent.Win32.14266
2.0.0.1960

File size:
1.6 MB (1,626,064 bytes)

Product version:
1.0.0.1

Copyright:
Copyright (C) 2014

File type:
Executable application (Win32 EXE)

Bundler/Installer:
Softpulse SoftwareBundler

Language:
English (United States)

Common path:
C:\users\{user}\downloads\setup v2 1.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
9/24/2014 2:00:00 AM

Valid to:
7/29/2015 1:59:59 AM

Subject:
CN=Digital Plugin SL, O=Digital Plugin SL, L=Guia de Isora, S=Santa Cruz de Tenerife, C=ES

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
457A2C44F936DD8EEF974AFC80E53578

File PE Metadata
Compilation timestamp:
10/9/2014 12:11:04 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
24576:ezD5urNhRWx2Mk4JJQByw7Imlq3g495S0PwbphrpgXXOZuv/rTWeR5j4UwJZQUY4:G6/ye0PIphrp9Zuvjqa0Uidz

Entry address:
0x6978

Entry point:
E8, DB, 40, 00, 00, E9, 7F, FE, FF, FF, E9, B4, 26, 00, 00, FF, 35, 20, CD, 4A, 00, FF, 15, DC, 50, 41, 00, 85, C0, 74, 02, FF, D0, 6A, 19, E8, D2, 38, 00, 00, 6A, 01, 6A, 00, E8, 7C, 47, 00, 00, 83, C4, 0C, E9, 93, 47, 00, 00, 55, 8B, EC, 83, EC, 10, EB, 0D, FF, 75, 08, E8, D3, 47, 00, 00, 59, 85, C0, 74, 0F, FF, 75, 08, E8, A6, 2B, 00, 00, 59, 85, C0, 74, E6, C9, C3, 6A, 01, 8D, 45, FC, 50, 8D, 4D, F0, C7, 45, FC, C4, 30, 4A, 00, E8, 4D, 2F, 00, 00, 68, 1C, 94, 4A, 00, 8D, 45, F0, 50, C7, 45, F0, BC, 30...
 
[+]

Code size:
76.5 KB (78,336 bytes)

Remove setup v2 1.exe - Powered by Reason Core Security