templatessetup.exe

Crawler Templates Toolbar

Crawler, LLC

The application templatessetup.exe, “Crawler Templates Toolbar Setup ” by Crawler has been detected as a potentially unwanted program by 11 anti-malware scanners. The program is a setup application that uses the Inno Setup installer. This program installs potentially unwanted software on your PC at the same time as the software you are trying to install, without adequate consent. The file has been seen being downloaded from www.crwdnl.com.
Publisher:
Crawler.com, LLC   (signed by Crawler, LLC)

Product:
Crawler Templates Toolbar

Description:
Crawler Templates Toolbar Setup

Version:
6.0.0.46

MD5:
01b25c7774d07336897fdf6bd3878d54

SHA-1:
a77af894ea5b7c13ed932065e5faa2bf2ea1817b

SHA-256:
b4d315c7c1e7f543b0b787b4e4eb11587e6cb331c16ac1d089c91cc1941eb6e5

Scanner detections:
11 / 68

Status:
Potentially unwanted

Analysis date:
4/25/2024 2:30:14 AM UTC  (today)

Scan engine
Detection
Engine version

Clam AntiVirus
Win.Adware.PCFixSpeed
0.98/19312

Dr.Web
riskware program Program.Unwanted.45
9.0.1.018

ESET NOD32
Win32/Toolbar.Crawler.B potentially unwanted application
10.7.0.302.0

F-Secure
Riskware.Gen:Variant.Application.Bundler
11.2016-18-01_2

G Data
Win32.Application.Crawler
16.1.25

IKARUS anti.virus
not-a-virus:WebToolbar.Agent
t3scan.1.7.5.0

K7 AntiVirus
Adware
13.183.13407

Kaspersky
not-a-virus:WebToolbar.Win32.Agent
14.0.0.798

Reason Heuristics
PUP.Crawler.Installer (M)
16.1.18.10

Total Defense
Win32/Tnega.KYAJACC
37.0.11216

VIPRE Antivirus
Threat.4150696
32210

File size:
2.6 MB (2,700,640 bytes)

Product version:
6.0.0.46

Copyright:
copyright © Crawler.com, LLC

File type:
Executable application (Win32 EXE)

Installer:
Inno Setup

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\templatessetup.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
11/26/2013 6:00:00 PM

Valid to:
1/25/2017 5:59:59 PM

Subject:
CN="Crawler, LLC", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Crawler, LLC", L=Boca Raton, S=Florida, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
48E3A7F6CBA47D0C3FCD17CF81AB3F76

File PE Metadata
Compilation timestamp:
6/19/1992 5:22:17 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:D4iC1CrMB3Ls7YsGhzpLb2n0Fec9PMqSy7lmjt7twoAldvxm7/3f6ebA5rOYiZnG:DJCw8I7OhzpLb2e9MwlmjZtwocA/3f65

Entry address:
0xC1C0

Entry point:
55, 8B, EC, 83, C4, A4, 53, 56, 57, 33, C0, 89, 45, C4, 89, 45, C0, 89, 45, A4, 89, 45, D0, 89, 45, C8, 89, 45, CC, 89, 45, D4, 89, 45, D8, 89, 45, EC, B8, C8, C0, 40, 00, E8, 60, 86, FF, FF, 33, C0, 55, 68, 85, C8, 40, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, 41, C8, 40, 00, 64, FF, 32, 64, 89, 22, A1, 60, E6, 40, 00, E8, 5E, FD, FF, FF, E8, C9, F8, FF, FF, 8D, 55, EC, 33, C0, E8, 93, CA, FF, FF, 8B, 55, EC, B8, 8C, F0, 40, 00, E8, 0A, 77, FF, FF, 6A, 02, 6A, 00, 6A, 01, 8B, 0D, 8C, F0, 40, 00, B2, 01...
 
[+]

Entropy:
7.9948

Developed / compiled with:
Microsoft Visual C++

Code size:
46.5 KB (47,616 bytes)

The file templatessetup.exe has been seen being distributed by the following URL.

Remove templatessetup.exe - Powered by Reason Core Security