templatessetup.exe

Crawler Templates Toolbar

Crawler, LLC

The application templatessetup.exe, “Crawler Templates Toolbar Setup ” by Crawler has been detected as a potentially unwanted program by 11 anti-malware scanners. The program is a setup application that uses the Inno Setup installer. This program installs potentially unwanted software on your PC at the same time as the software you are trying to install, without adequate consent. The file has been seen being downloaded from www.crwdnl.com.
Publisher:
Crawler.com, LLC   (signed by Crawler, LLC)

Product:
Crawler Templates Toolbar

Description:
Crawler Templates Toolbar Setup

Version:
6.0.0.46

MD5:
ed2475bc8d14743c855b8212a19f2bfa

SHA-1:
d7365d7ea2e1edef10cf4e06954f6682d312f98b

SHA-256:
30edb5cc20182192f4e6eb98d62e70938de06f74b5554767763d59ba6a097911

Scanner detections:
11 / 68

Status:
Potentially unwanted

Analysis date:
4/26/2024 5:41:06 AM UTC  (today)

Scan engine
Detection
Engine version

Clam AntiVirus
Win.Adware.PCFixSpeed
0.98/19312

Dr.Web
riskware program Program.Unwanted.45
9.0.1.019

ESET NOD32
Win32/Toolbar.Crawler.B potentially unwanted application
10.7.0.302.0

F-Secure
Riskware.Gen:Variant.Application.Bundler
11.2016-19-01_3

G Data
Win32.Application.Crawler
16.1.25

IKARUS anti.virus
not-a-virus:WebToolbar.Agent
t3scan.1.7.5.0

K7 AntiVirus
Adware
13.183.13407

Kaspersky
not-a-virus:WebToolbar.Win32.Agent
14.0.0.793

Reason Heuristics
PUP.Crawler.Installer (M)
16.1.19.10

Total Defense
Win32/Tnega.KYAJACC
37.0.11216

VIPRE Antivirus
Threat.4150696
32210

File size:
2.6 MB (2,701,440 bytes)

Product version:
6.0.0.46

Copyright:
copyright © Crawler.com, LLC

File type:
Executable application (Win32 EXE)

Installer:
Inno Setup

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\templatessetup.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
11/26/2013 7:00:00 PM

Valid to:
1/25/2017 6:59:59 PM

Subject:
CN="Crawler, LLC", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Crawler, LLC", L=Boca Raton, S=Florida, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
48E3A7F6CBA47D0C3FCD17CF81AB3F76

File PE Metadata
Compilation timestamp:
6/19/1992 6:22:17 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:q8ooZX0hJvtXcDMQfhHCJS7ZQJCSU0Ctq3OPEbhyEUGs6ebA5rOYiZnN:qeZX0P1MYQ8SZQsSU0CEbAEUGs6ebSiv

Entry address:
0xC1C0

Entry point:
55, 8B, EC, 83, C4, A4, 53, 56, 57, 33, C0, 89, 45, C4, 89, 45, C0, 89, 45, A4, 89, 45, D0, 89, 45, C8, 89, 45, CC, 89, 45, D4, 89, 45, D8, 89, 45, EC, B8, C8, C0, 40, 00, E8, 60, 86, FF, FF, 33, C0, 55, 68, 85, C8, 40, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, 41, C8, 40, 00, 64, FF, 32, 64, 89, 22, A1, 60, E6, 40, 00, E8, 5E, FD, FF, FF, E8, C9, F8, FF, FF, 8D, 55, EC, 33, C0, E8, 93, CA, FF, FF, 8B, 55, EC, B8, 8C, F0, 40, 00, E8, 0A, 77, FF, FF, 6A, 02, 6A, 00, 6A, 01, 8B, 0D, 8C, F0, 40, 00, B2, 01...
 
[+]

Entropy:
7.9948

Developed / compiled with:
Microsoft Visual C++

Code size:
46.5 KB (47,616 bytes)

The file templatessetup.exe has been seen being distributed by the following URL.

Remove templatessetup.exe - Powered by Reason Core Security