Setup.exe

Trusted Download LLC

This is the Softpulse installer which bundles applications with offers for additional 3rd party software, mostly unwanted adware, and may be installed with minimal consent. The file Setup.exe by Trusted Download has been detected as adware by 22 anti-malware scanners. The program is a setup application that uses the Softpulse SoftwareBundler installer. This downloadble file is typically blocked through Google's Safe Browsing technology in Chrome web browser.
Publisher:
Trusted Download LLC  (signed and verified)

MD5:
e2cde767df1bc63111794cee51635208

SHA-1:
5b12a9a021997dc50932ce666d4fac7eee6ef5d9

SHA-256:
e029037932b33b01441385ce0b2ea362ceb41017423e0f4d689d9cdb5bf5353d

Scanner detections:
22 / 68

Status:
Adware

Description:
This 'download manager' is also considered bundleware, a utility designed to download software (possibly legitimate or opensource) and bundle it with a number of optional offers including ad-supported utilities, toolbars, shopping comparison tools and browser extensions.

Analysis date:
4/25/2024 10:44:03 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Strictor.79122
675

Agnitum Outpost
Riskware.Agent
7.1.1

AhnLab V3 Security
PUP/Win32.SoftPulse
2015.04.01

Avira AntiVirus
PUA/Softpulse.Gen
7.11.212.24

avast!
Win32:SoftPulse-GL [PUP]
2014.9-150401

AVG
Generic
2016.0.3153

Bitdefender
Gen:Variant.Strictor.79122
1.0.20.455

Dr.Web
Trojan.Domaiq.131
9.0.1.091

Emsisoft Anti-Malware
Gen:Variant.Strictor.79122
8.15.04.01.12

ESET NOD32
Win32/SoftPulse.X potentially unwanted application
9.7.0.302.0

F-Secure
Gen:Variant.Strictor.79122
11.2015-01-04_4

G Data
Gen:Variant.Strictor.79122
15.4.25

IKARUS anti.virus
PUA.SoftPulse
t3scan.1.8.6.0

K7 AntiVirus
Unwanted-Program
13.202.15443

Malwarebytes
PUP.Optional.SoftPulse
v2015.04.01.12

MicroWorld eScan
Gen:Variant.Strictor.79122
16.0.0.273

NANO AntiVirus
Trojan.Win32.SoftPulse.dofxef
0.30.8.659

Panda Antivirus
Trj/Genetic.gen
15.04.01.12

Reason Heuristics
PUP.Bundler.Softpulse
15.3.31.23

VIPRE Antivirus
Trojan.Win32.Generic
38948

Zillya! Antivirus
Adware.SoftPulse.Win32.172
2.0.0.2123

File size:
627.1 KB (642,200 bytes)

Bundler/Installer:
Softpulse SoftwareBundler

Common path:
C:\users\{user}\downloads\setup.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
2/5/2015 4:00:00 PM

Valid to:
2/6/2016 3:59:59 PM

Subject:
CN=Trusted Download LLC, O=Trusted Download LLC, STREET="501 Silverside Road, Suite 105", L=Wilmington, S=Delaware, PostalCode=19809, C=US

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
5FB561BBCCBE7D6358E7AB139439FEE9

File PE Metadata
Compilation timestamp:
2/20/2015 8:51:59 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
12288:mdVHdJP768IAxFHABvJ8Z/pCLLL0+Hsuq/R9hUJGF:mdVH/P7zx1ABh+pS//q59ea

Entry address:
0x1D7C70

Entry point:
60, BE, 00, 60, 54, 00, 8D, BE, 00, B0, EB, FF, 57, 83, CD, FF, EB, 10, 90, 90, 90, 90, 90, 90, 8A, 06, 46, 88, 07, 47, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 72, ED, B8, 01, 00, 00, 00, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C0, 01, DB, 73, 0B, 75, 28, 8B, 1E, 83, EE, FC, 11, DB, 72, 1F, 48, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C0, EB, D4, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C9, EB, 52, 31, C9, 83, E8, 03, 72, 11, C1, E0, 08, 8A, 06, 46, 83, F0, FF, 74, 75, D1, F8, 89...
 
[+]

Entropy:
7.8461

Packer / compiler:
UPX 2.90LZMA

Code size:
584 KB (598,016 bytes)

Remove Setup.exe - Powered by Reason Core Security