Setup.exe

File

DaiLy AppS fOrfOr

The file Setup.exe by DaiLy AppS fOrfOr has been detected as adware by 24 anti-malware scanners. This program installs potentially unwanted software on your PC at the same time as the software you are trying to install, without adequate consent. This downloadble file is typically blocked through Google's Safe Browsing technology in Chrome web browser.
Publisher:
DaiLy AppS fOrfOr  (signed and verified)

Product:
File

Version:
1.9.3.0

MD5:
69ab98f8f6ea5ddd7178903be1f33a05

SHA-1:
5e1f00970f97aa8907146df57ca46c9f085c4499

SHA-256:
7f1625b3a50ad0c7623790fc9670ceea3e31af34f770feb216370aa94f41db03

Scanner detections:
24 / 68

Status:
Adware

Explanation:
Bundles additional adware offers during download and installation using the OutBrowse installer.

Analysis date:
5/14/2024 9:37:20 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Application.Bundler.Outbrowse.BE
5558769

Agnitum Outpost
Trojan.OutBrowse
7.1.1

AhnLab V3 Security
PUP/Win32.OutBrowse
2015.05.26

Avira AntiVirus
PUA/Outbrowse.Gen
8.3.1.6

avast!
PUP-gen [PUP]
150525-2

AVG
Adware Generic_s.EO
2014.0.4311

Bitdefender
Application.Bundler.Outbrowse.BE
1.0.20.730

Bkav FE
W32.HfsAdware
1.3.0.6379

Dr.Web
infected with Trojan.OutBrowse.190
9.0.1.05190

Emsisoft Anti-Malware
Application.Bundler.Outbrowse.BE
10.0.0.5366

ESET NOD32
Win32/OutBrowse.BU potentially unwanted application
7.0.302.0

Fortinet FortiGate
Riskware/OutBrowse
5/26/2015

F-Secure
Application.Bundler.Outbrowse
11.2015-26-05_3

G Data
Application.Bundler.Outbrowse.BE
15.5.25

IKARUS anti.virus
PUA.OutBrowse
t3scan.1.8.9.0

Malwarebytes
PUP.Optional.OutBrowse
v2015.05.26.03

McAfee
Program.Adware-OutBrowse.e
18.0.204.0

MicroWorld eScan
Application.Bundler.Outbrowse.BE
16.0.0.438

NANO AntiVirus
Trojan.Win32.OutBrowse.drojhb
0.30.24.1636

Quick Heal
Adware.NSIS.OutBrowse.A
5.15.14.00

Reason Heuristics
PUP.Outbrowse.DaiLyAppSfOrfOr
15.5.26.15

SUPERAntiSpyware
Adware.OutBrowse/Variant
9852

Vba32 AntiVirus
Adware.Outbrowse
3.12.26.4

VIPRE Antivirus
Threat.5085447
40552

File size:
1.1 MB (1,141,248 bytes)

Product version:
1.9.3.0

Copyright:
File

Original file name:
Ionic.Zip-2015Mar26-025245-4d58e63e-3d99-4e02-a47a-5d3d6cbc399c.exe

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\setup.exe

Digital Signature
Authority:
thawte, Inc.

Valid from:
3/22/2015 8:00:00 PM

Valid to:
1/27/2016 6:59:59 PM

Subject:
CN=DaiLy AppS fOrfOr, O=DaiLy AppS fOrfOr, L=Dublin, S=Dublin, C=IE

Issuer:
CN=thawte SHA256 Code Signing CA, O="thawte, Inc.", C=US

Serial number:
07287FBE69E60C7CEE7918973B8AD4E4

File PE Metadata
Compilation timestamp:
3/25/2015 10:52:45 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
12288:TMiy4IadS4ms5I6e66fEheKhGsvr0Us2qlE/JNWHstBX01hXucjKDyrj83AMoWAZ:TbSaE4mvt/f8rFfCiqVucjK2rQAMqNNJ

Entry address:
0x75F3E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
7.5710

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
464 KB (475,136 bytes)

Remove Setup.exe - Powered by Reason Core Security