Warning, this is not the legitimate setup program for Adobe Flash Player. The setup is bootstrapped by the Air Installer 'download manager' (a pay-per-install monetization download manager) that bundles unwanted software (adware, toolbars, extensions) during setup while deciving the user into thinking they are downloading the stadard installation setup from Adobe Flash Player. The application setup.exe by Air Software has been detected as adware by 25 anti-malware scanners. The program is a setup application that uses the AirInstaller Download Manager installer.
Publisher:
AirInstaller Inc. (signed by Air Software)
Product:
Adobe Flash Player
MD5:
34ae508531a3dc55318b64d7613d91f6
SHA-1:
0671ab6568c694cbbe82985d613b1798937cc6e8
SHA-256:
57fe13c5e321843855ba812f7513c340a9f202aa2cfa5d7a0647204003d61c19
Scanner detections:
25 / 68
Description:
This is also known as bundleware, or downloadware, which is an downloader designed to simply deliver ad-supported offers in the setup routine of an otherwise legitimate software.
Analysis date:
4/26/2024 4:28:01 PM UTC (today)
Scan engine
Detection
Engine version
Agnitum Outpost
PUA.Toolbar.Agent
7.1.1
AhnLab V3 Security
PUP/Win32.AirAdInstaller
14.07.28
Avira AntiVirus
ADWARE/Adware.Gen7
7.11.137.118
avast!
Win32:Installer-L [PUP]
2014.9-140728
Boost by Reason
DownloadManager.AirSoftware.F
2013.11.21.9
Comodo Security
Application.Win32.AirAdInstaller.A
17943
Dr.Web
Trojan.SMSSend.4187
9.0.1.0209
ESET NOD32
Win32/AirAdInstaller (variant)
8.9549
F-Prot
W32/AirInstall.A.gen
v6.4.6.5.141
G Data
Win32.Adware.Airadinstaller
14.7.24
IKARUS anti.virus
not-a-virus:WebToolbar.Win32.Agent
t3scan.2.2.29
K7 AntiVirus
Adware
13.176.11451
Kaspersky
not-a-virus:WebToolbar.Win32.Agent
14.0.0.3495
Malwarebytes
PUP.Optional.AirInstaller
v2014.07.28.12
NANO AntiVirus
Riskware.Win32.Downware.cwfgel
0.28.0.59048
nProtect
Trojan-Clicker/W32.AirAdInstaller.1115272.B
14.04.14.02
Panda Antivirus
Adware/AirInstaller
14.07.28.12
Qihoo 360 Security
Malware.QVM01.Gen
1.0.0.1015
Reason Heuristics
DownloadManager.AirSoftware.F
14.8.7.18
Rising Antivirus
PE:PUF.Airinstall!1.9C4C
23.00.65.14726
Vba32 AntiVirus
AdWare.AirAdInstaller
3.12.26.0
VIPRE Antivirus
AirInstaller
27460
Zillya! Antivirus
Adware.AirAdInstaller.Win32.102
2.0.0.1775
File size:
1.1 MB (1,117,096 bytes)
Copyright:
(c) AirInstaller. All rights reserved.
Original file name:
AirInstaller.exe
File type:
Executable application (Win32 EXE)
Bundler/Installer:
AirInstaller Download Manager
Language:
English (United States)
Common path:
C:\users\{user}\appdata\local\temp\setup.exe
Valid from:
1/24/2013 4:00:00 PM
Valid to:
3/26/2015 4:59:59 PM
Subject:
CN=Air Software, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Air Software, L=Victoria, S=British Columbia, C=CA
Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US
Serial number:
3AC786E09219DF82DA830E461D4FC39F
Compilation timestamp:
7/15/2013 9:25:53 AM
Code size:
1.1 MB (1,101,824 bytes)