tsasetup.exe

File Type Assistant

FTA APS

The application tsasetup.exe by FTA APS has been detected as a potentially unwanted program by 2 anti-malware scanners. The program is a setup application that uses the Inno Setup installer. It runs as a scheduled task under the Windows Task Scheduler triggered daily at a specified time. This file is typically installed with the program File Type Assistant by Trusted Software which is a potentially unwanted software program.
Publisher:
FTA APS  (signed and verified)

Product:
File Type Assistant

Version:
2014.5.21.0

MD5:
838729a7a3686391ca45591cb6392792

SHA-1:
9776c42e07563aa7100b53d6b29133db66190be8

SHA-256:
9347ed268e7242b54cea62894c1959c9c0fa7aafdd05b439f1bca0577a10faf9

Scanner detections:
2 / 68

Status:
Potentially unwanted

Analysis date:
4/25/2024 5:20:16 AM UTC  (today)

Scan engine
Detection
Engine version

ESET NOD32
Win32/FileTypeAssistant (variant)
8.9835

Reason Heuristics
PUP.Installer.FTAAPS
15.4.24.0

File size:
1.4 MB (1,512,640 bytes)

Product version:
2014.5.21.0

Copyright:
Copyright © 2010-2014 FTA ApS

File type:
Executable application (Win32 EXE)

Installer:
Inno Setup

Language:
Language Neutral

Common path:
C:\Program Files\file type assistant\tsasetup.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
4/3/2014 8:00:00 PM

Valid to:
4/4/2015 7:59:59 PM

Subject:
CN=FTA APS, O=FTA APS, STREET=Bysoestrade 2B st., L=Holbaek, S=DK, PostalCode=4300, C=DK

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00A8BF96664C5D11A73AA0900284E705CE

File PE Metadata
Compilation timestamp:
6/19/1992 6:22:17 PM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:3nauk8DdAxOyk0P+tCmuw/ZCPowmqGY/XzY4222gkflAiEQhjMerk1V7m+VKnmoH:3aDk23Fs1/ZIJ4Y7mUk6VQ1Frk1Vy3mc

Entry address:
0x9C40

Entry point:
55, 8B, EC, 83, C4, C4, 53, 56, 57, 33, C0, 89, 45, F0, 89, 45, DC, E8, 86, 94, FF, FF, E8, 8D, A6, FF, FF, E8, 1C, A9, FF, FF, E8, 53, C9, FF, FF, E8, 9A, C9, FF, FF, E8, C9, F2, FF, FF, E8, 30, F4, FF, FF, 33, C0, 55, 68, FC, A2, 40, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, C5, A2, 40, 00, 64, FF, 32, 64, 89, 22, A1, 14, C0, 40, 00, E8, 96, FE, FF, FF, E8, C9, FA, FF, FF, 8D, 55, F0, 33, C0, E8, 83, CF, FF, FF, 8B, 55, F0, B8, E8, CD, 40, 00, E8, 32, 95, FF, FF, 6A, 02, 6A, 00, 6A, 01, 8B, 0D, E8, CD...
 
[+]

Entropy:
7.9904

Packer / compiler:
Inno Setup v5.x - Installer Maker

Code size:
37 KB (37,888 bytes)

Scheduled Task
Task name:
ProgramRefresh-ATFST

Trigger:
Daily (Runs daily at 10:27 AM)

Action:
tsasetup.exe \refresh \verysilent \suppressmsgboxes \nocancel \


The file tsasetup.exe has been discovered within the following program.

File Type Assistant  by Trusted Software
File Type Assistant is typically bundled by various 3rd party software through modified installers of generally free open source software using the InstallIQ downloader.
www.trustedsoftware.com/utility-software/free-file-viewer.html
74% remove it
 
Powered by Should I Remove It?

Remove tsasetup.exe - Powered by Reason Core Security