Setup.exe

Tarma Installer

Tarma Software Research Pty Ltd

Publisher:
Tarma Software Research Pty Ltd  (signed and verified)

Product:
Tarma® Installer

Version:
2010.02.26.1053A

MD5:
0d6ac0d94aac75d44ab29bfc64828013

SHA-1:
c50210506fcd44183e58d84cb157e267e1479eed

SHA-256:
39ead0cd2c566ebea3f63ce99cf11e316abb275e4531c3c211e0cfc8704e52e9

Scanner detections:
2 / 68

Status:
Clean  (2 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
4/25/2024 8:50:10 PM UTC  (today)

Scan engine
Detection
Engine version

F-Prot
W32/Adware.B.gen
v6.4.7.1.166

Prevx
High Risk Cloaked Malware
3.0

File size:
220 KB (225,280 bytes)

Product version:
5.9.3710

Copyright:
© 1990-2010 Tarma Software Research Pty Ltd

Trademarks:
Tarma® is a registered trademark of Tarma Software Research Pty Ltd

Original file name:
Setup.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\ProgramData\tarma installer\{86fa7e5a-bc3c-4f37-8126-e8ebae01117b}\setup.exe

Digital Signature
Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
8/4/2009 6:00:00 PM

Valid to:
8/6/2010 5:59:59 PM

Subject:
CN=Tarma Software Research Pty Ltd, OU=DEVELOPMENT, O=Tarma Software Research Pty Ltd, L=Melbourne, S=Victoria, C=AU

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
19F9CC3CA4240408AFB5578FAA4913F1

File PE Metadata
Compilation timestamp:
2/25/2010 4:54:03 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
3072:jJBp5mbrUHKFNFYzb0UbLDJ5oxrN6AJaT8QaHxuBKHgR1bpQFKOoWnFMPqE7ZIJ4:N4EqYF/kxfETDaRzAR1bBnWnOZznRv

Entry address:
0x19AA6

Entry point:
E8, FE, FC, FF, FF, E9, 50, FF, FF, FF, 55, 8B, EC, 83, EC, 10, 56, 57, 8B, FA, 85, FF, 74, 03, 83, 27, 00, 8B, 75, 08, 85, F6, 74, 03, 83, 26, 00, 8D, 45, F0, 50, 6A, 00, 68, 00, 10, 00, 00, 6A, 02, 5A, E8, 75, A7, 00, 00, 85, C0, 74, 0B, 85, F6, 74, 02, 89, 06, 83, C8, FF, EB, 4F, 8B, 45, F0, 8B, 48, 10, 81, F9, 74, 69, 7A, 32, 74, 34, 81, F9, 74, 69, 7A, 33, 74, 2C, 66, 81, 38, 4D, 5A, 75, 17, 81, 78, 24, 74, 73, 6C, 35, 75, 0E, 85, FF, 6A, 02, 5E, 74, 18, 8B, 40, 38, 89, 07, EB, 11, 85, F6, 74, 06, C7...
 
[+]

Entropy:
6.4970

Code size:
146 KB (149,504 bytes)

Scan Setup.exe - Powered by Reason Core Security