Setup.exe

Digital Plugin SL

This is the Softpulse installer which bundles applications with offers for additional 3rd party software, mostly unwanted adware, and may be installed with minimal consent. The file Setup.exe by Digital Plugin SL has been detected as adware by 22 anti-malware scanners. The program is a setup application that uses the Softpulse SoftwareBundler installer. This program installs potentially unwanted software on your PC at the same time as the software you are trying to install, without adequate consent. This downloadble file is typically blocked through Google's Safe Browsing technology in Chrome web browser.
Publisher:
Digital Plugin SL  (signed and verified)

MD5:
68c118c9c355d5010292a1a47cb4f6cb

SHA-1:
da8ef686e7e5f93139ba492ade3ed3535c9ec5c4

SHA-256:
2c7fc852ef6c102c490a3a0b2b37118b91f462b78cba307e23d5913e97eca2b3

Scanner detections:
22 / 68

Status:
Adware

Description:
This 'download manager' is also considered bundleware, a utility designed to download software (possibly legitimate or opensource) and bundle it with a number of optional offers including ad-supported utilities, toolbars, shopping comparison tools and browser extensions.

Analysis date:
5/5/2024 11:38:27 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Application.Bundler.SoftPulse.P
660

Agnitum Outpost
Riskware.Agent
7.1.1

AhnLab V3 Security
PUP/Win32.SoftPulse
2015.04.17

Avira AntiVirus
ADWARE/Adware.Gen
7.11.30.172

avast!
Win32:SoftPulse-DX [Adw]
2014.9-150718

AVG
Generic
2016.0.3137

Bitdefender
Application.Bundler.SoftPulse.P
1.0.20.530

Bkav FE
W32.HfsAdware
1.3.0.6379

Dr.Web
Trojan.Domaiq.124
9.0.1.0106

Emsisoft Anti-Malware
Application.Bundler.SoftPulse.P
8.15.04.16.11

ESET NOD32
Win32/SoftPulse.X potentially unwanted application
9.7.0.302.0

F-Secure
Suspected infection: Application.Bundler.SoftPulse.P
5.13.68

G Data
Application.Bundler.SoftPulse
15.4.25

herdProtect (fuzzy)
2015.7.18.3

IKARUS anti.virus
PUA.SoftPulse
t3scan.1.8.9.0

MicroWorld eScan
Application.Bundler.SoftPulse.P
16.0.0.318

NANO AntiVirus
Riskware.Win32.SoftPulse.dnuwku
0.30.16.1110

Panda Antivirus
Trj/Genetic.gen
15.04.16.12

Reason Heuristics
Threat.Softpulse.Bundler
15.4.16.7

Vba32 AntiVirus
AdWare.SoftPulse
3.12.26.3

VIPRE Antivirus
Threat.4150696
38882

Zillya! Antivirus
Adware.SoftPulse.Win32.156
2.0.0.2141

File size:
668.1 KB (684,168 bytes)

Bundler/Installer:
Softpulse SoftwareBundler

Common path:
C:\users\{user}\downloads\setup.exe

Digital Signature
Authority:
Thawte, Inc.

Valid from:
9/26/2014 1:00:00 AM

Valid to:
9/27/2015 12:59:59 AM

Subject:
CN=Digital Plugin SL, O=Digital Plugin SL, L=Guia de Isora, S=Santa Cruz de Tenerife, C=ES

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
63B78976E4F16AA4AC250388162DD349

File PE Metadata
Compilation timestamp:
2/6/2015 3:53:12 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
12288:EWJJqZGIAipmef+DUM0iFPaXzhrf976QX6+5lAijKuvaxm:LJIZGIA9y+D7aDhrf97pXhlAIvaxm

Entry address:
0x1000

Entry point:
B8, 98, 25, 61, 00, 50, 64, FF, 35, 00, 00, 00, 00, 64, 89, 25, 00, 00, 00, 00, 33, C0, 89, 08, 34, 57, 78, 87, 89, 32, 34, 24, 65, 74, 00, 00, 40, 84, C9, 75, 40, C0, DD, 16, F9, 2B, C2, 56, 57, 8B, F9, 00, 20, 16, 00, 8B, 37, 85, F6, 74, 40, 83, 3E, FD, 74, 3B, 00, 74, 14, 8B, 06, 3B, C7, 74, 09, 5F, 70, 5A, 00, 83, 78, 04, 00, 8D, 70, 04, 75, F1, 75, 17, 68, BD, C0, 81, 58, 90, 68, 18, BC, 52, E4, BB, E8, DA, 0C, C5, 09, 65, 13, 00, AB, 83, C4, 0C, 8B, 47, 04, 89, 06, C7, 07, 5F, 5E, 00, 7C, 97, A2, 6A...
 
[+]

Entropy:
7.9225  (probably packed)

Code size:
1.2 MB (1,218,048 bytes)

Remove Setup.exe - Powered by Reason Core Security