setupb.exe

BR SOFTWARE LLC

The application setupb.exe, “Acelerador de Downloads Setup ” by BR SOFTWARE has been detected as adware by 11 anti-malware scanners. The program is a setup application that uses the Inno Setup installer. This will display context specific advertisements in the browser as well as attempt to modify the browser's search provider. It is also typically executed from the user's temporary directory.
Publisher:
Acelerador de Downloads   (signed by BR SOFTWARE LLC)

Product:
Acelerador de Downloads

Description:
Acelerador de Downloads Setup

MD5:
58fb64fc2056c8494ef3b8740acadc36

SHA-1:
b7975127e6dffa80a870199ae5eb0e9edf87a17a

SHA-256:
c9e1dd230bcf944b8ef272e414749640cd00f161632f928e79b05e82458588f7

Scanner detections:
11 / 68

Status:
Adware

Explanation:
The installer may include an offer for the Babylon Toolbar (a homepage/search hijacker), which is potentially installed with minimal user consent.

Analysis date:
8/2/2025 12:18:19 PM UTC  (today)

Scan engine
Detection
Engine version

Avira AntiVirus
Adware/InstallCo.TG
7.11.103.166

avast!
Win32:DealPly-A [PUP]
2014.9-140919

AVG
MalSign.Skodna
2015.0.3346

Comodo Security
ApplicUnwnt
16983

Dr.Web
Adware.Shopper.328
9.0.1.0262

ESET NOD32
Win32/Toolbar.Babylon (variant)
8.8830

IKARUS anti.virus
BHO.Win32.DealPly
t3scan.2.0.127

Malwarebytes
Adware.Bundler
v2014.09.19.12

McAfee
Artemis!58FB64FC2056
5600.7002

Norman
Troj_Generic.HWQOK
11.20140919

Reason Heuristics
PUP.Installer.BRSOFTWARE.G
14.9.19.12

File size:
2.1 MB (2,158,832 bytes)

File type:
Executable application (Win32 EXE)

Installer:
Inno Setup

Common path:
C:\users\{user}\appdata\local\temp\setupb.exe

Digital Signature
Signed by:

Authority:
GlobalSign nv-sa

Valid from:
10/23/2012 1:46:28 PM

Valid to:
6/9/2015 7:58:43 PM

Subject:
CN=BR SOFTWARE LLC, O=BR SOFTWARE LLC, C=US

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121F1A8C9A245F069F2B6DF45AA5C492BB2

File PE Metadata
Compilation timestamp:
6/19/1992 11:22:17 PM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:QqViWKsNEjmnjW4CCnqVbiURS9kMr4P09/1dPNwb2C:d4WK6rjW4Cn9RSnrrtEaC

Entry address:
0x9C40

Entry point:
55, 8B, EC, 83, C4, C4, 53, 56, 57, 33, C0, 89, 45, F0, 89, 45, DC, E8, 86, 94, FF, FF, E8, 8D, A6, FF, FF, E8, 1C, A9, FF, FF, E8, BF, A9, FF, FF, E8, 5E, C9, FF, FF, E8, C9, F2, FF, FF, E8, 30, F4, FF, FF, 33, C0, 55, 68, FC, A2, 40, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, C5, A2, 40, 00, 64, FF, 32, 64, 89, 22, A1, 14, C0, 40, 00, E8, 96, FE, FF, FF, E8, C9, FA, FF, FF, 8D, 55, F0, 33, C0, E8, 83, CF, FF, FF, 8B, 55, F0, B8, 24, CE, 40, 00, E8, 32, 95, FF, FF, 6A, 02, 6A, 00, 6A, 01, 8B, 0D, 24, CE...
 
[+]

Packer / compiler:
Inno Setup v5.x - Installer Maker

Code size:
37 KB (37,888 bytes)

Remove setupb.exe - Powered by Reason Core Security