Setup.exe

Useful Software

This is part of the Verti bundle installer which bundles applications with offers for additional 3rd party software, mostly unwanted adware, and may be installed with minimal consent. The file Setup.exe by Useful Software has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat. This downloadble file is typically blocked through Google's Safe Browsing technology in Chrome web browser.
Publisher:
Useful Software  (signed and verified)

Version:
1.0.0.7

MD5:
e8a77633a8820ab06cdfd953c7060a8b

SHA-1:
e1a4d15a57a7711382b3dc1a1aee33e5cc56cebd

SHA-256:
9bde315fc2f17149e06ae4020676e0cfff22aba602b1d8590a6a353b2e50d3e0

Scanner detections:
1 / 68

Status:
Adware

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
4/25/2024 6:40:01 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Verti.UsefulSoftware (M)
15.12.18.7

File size:
404.1 KB (413,784 bytes)

Product version:
1.0.0.7

Language:
English (United States)

Common path:
C:\users\{user}\downloads\setup.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
1/13/2014 7:00:00 PM

Valid to:
12/16/2014 6:59:59 PM

Subject:
CN=Useful Software, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Useful Software, L=Bellevue, S=Washington, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
7DB9B4E338BDCF4F909F675C098B0E76

File PE Metadata
Compilation timestamp:
8/8/2014 12:11:03 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
12288:y3zjz+FsMQzoYjMAFULqE1cxfro7zF1W+LVO5p6aITxWfpBkYz5:uSDAFULqE1cxfro7zF1W+LVO5p6aITC/

Entry address:
0x258D1

Entry point:
E8, AA, AE, 00, 00, E9, 7F, FE, FF, FF, 6A, 08, 68, 88, 83, 45, 00, E8, 89, 00, 00, 00, FF, 35, 7C, DA, 45, 00, FF, 15, F8, E1, 43, 00, 85, C0, 74, 16, 83, 65, FC, 00, FF, D0, EB, 07, 33, C0, 40, C3, 8B, 65, E8, C7, 45, FC, FE, FF, FF, FF, E8, 01, 00, 00, 00, CC, 6A, 08, 68, 68, 83, 45, 00, E8, 51, 00, 00, 00, E8, 9B, 2F, 00, 00, 8B, 40, 78, 85, C0, 74, 16, 83, 65, FC, 00, FF, D0, EB, 07, 33, C0, 40, C3, 8B, 65, E8, C7, 45, FC, FE, FF, FF, FF, E8, 61, AF, 00, 00, CC, E8, 73, 2F, 00, 00, 8B, 40, 7C, 85, C0...
 
[+]

Entropy:
6.4550

Code size:
243.5 KB (249,344 bytes)

Remove Setup.exe - Powered by Reason Core Security