setup.exe

Acute Angle Solutions Ltd.

The software will display additional offers (such as adware) during installation including a browser toolbar/extension as well as advertising injection software (part of the Injekt brand). The application setup.exe by Acute Angle Solutions has been detected as adware by 9 anti-malware scanners. The program is a setup application that uses the NSIS (Nullsoft Scriptable Install System) installer. It is also typically executed from the user's temporary directory.
Publisher:
Acute Angle Solutions Ltd.  (signed and verified)

MD5:
0a88998d3317354383ad7c13d48ed6a3

SHA-1:
5c07ec320450bea7d736638a3c5b86bde3892930

SHA-256:
1455ea0d5f423510a71ea563619c29533ab4758df8e11369b3b6dda00c91e410

Scanner detections:
9 / 68

Status:
Adware

Explanation:
Injects display ads (banner ads), in-text ads, interstitial ads, or other types of ads in the web browser as well as alters the browsers settings (home page, search, DNS, and security protocols).

Analysis date:
4/27/2024 12:56:18 AM UTC  (today)

Scan engine
Detection
Engine version

AVG
Acute
2015.0.3343

Baidu Antivirus
Adware.MSIL.PullUpdate
4.0.3.14922

Dr.Web
Threat.Undefined
9.0.1.05190

ESET NOD32
multiple threats
7.0.302.0

K7 AntiVirus
Adware
13.183.13451

Malwarebytes
PUP.Optional.PullUpdate
v2014.09.22.02

Reason Heuristics
PUP.Installer.AcuteAngleSolutions.F
14.9.22.12

Sophos
Pull Update
4.98

VIPRE Antivirus
Threat.4784449
33120

File size:
3.9 MB (4,129,776 bytes)

File type:
Executable application (Win32 EXE)

Installer:
NSIS (Nullsoft Scriptable Install System)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\temp\setup.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
1/30/2014 6:00:00 PM

Valid to:
1/31/2015 5:59:59 PM

Subject:
CN=Acute Angle Solutions Ltd., OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Acute Angle Solutions Ltd., L=St. James, S=St. James, C=BB

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
0A7A77148C6F7A33F9174DA187F6FEF0

File PE Metadata
Compilation timestamp:
6/6/2009 4:41:48 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
98304:N8BhXanM7nSQb6HUCAg9SazS8Ci1ZIIaYHPLLLhXanMf:WTaMjyUPaG8CSZtaYHnhaM

Entry address:
0x30CB

Entry point:
81, EC, 80, 01, 00, 00, 53, 55, 56, 33, DB, 57, 89, 5C, 24, 18, C7, 44, 24, 10, 60, 91, 40, 00, 33, F6, C6, 44, 24, 14, 20, FF, 15, 30, 70, 40, 00, 68, 01, 80, 00, 00, FF, 15, B0, 70, 40, 00, 53, FF, 15, 7C, 72, 40, 00, 6A, 08, A3, 38, 3F, 42, 00, E8, F1, 2B, 00, 00, A3, 84, 3E, 42, 00, 53, 8D, 44, 24, 34, 68, 60, 01, 00, 00, 50, 53, 68, 30, F4, 41, 00, FF, 15, 58, 71, 40, 00, 68, 54, 91, 40, 00, 68, 80, 36, 42, 00, E8, A4, 28, 00, 00, FF, 15, AC, 70, 40, 00, BF, 00, 90, 42, 00, 50, 57, E8, 92, 28, 00, 00...
 
[+]

Entropy:
7.9765

Packer / compiler:
Nullsoft install system v2.x

Code size:
22.5 KB (23,040 bytes)

Remove setup.exe - Powered by Reason Core Security