VKMusicSetup.exe

VKMusicPlayer

LLC Pentagon

The application VKMusicSetup.exe by LLC Pentagon has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. This is a setup and installation application and has been known to bundle potentially unwanted software. This is the uninstaller utility registered in the Windows Control Panel for the program VKMusicPlayer by LLC Pentagon.
Publisher:
LLC Pentagon  (signed and verified)

Product:
VKMusicPlayer

Version:
1.5.5896.23233

MD5:
00d26670e3c626bf7ee13f2502d123fe

SHA-1:
dbc111f487cd1fb446ec7573e843519fb7d9c040

SHA-256:
14a95daf9c93b6346ce59f59dc83f018deb0971e00755146b3a8ae1cc8a9e8c1

Scanner detections:
1 / 68

Status:
Potentially unwanted

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
5/7/2024 8:49:47 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP (M)
16.11.13.0

File size:
1.5 MB (1,590,584 bytes)

Product version:
1.5.5896.23233

Copyright:
Copyright (c) LLC Pentagon. All rights reserved.

Original file name:
VKMusicSetup.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\package cache\{e8cdb681-cb5d-4652-89f2-9c25a2916806}\vkmusicsetup.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
2/5/2016 4:00:00 AM

Valid to:
2/5/2017 3:59:59 AM

Subject:
CN=LLC Pentagon, O=LLC Pentagon, STREET="6-39, Kirova str.", L=Chelyabinsk, S=Chelyabinskaya oblast, PostalCode=454084, C=RU

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
648F94548803C1887E7F2C280B3909DA

File PE Metadata
Compilation timestamp:
11/28/2013 6:14:28 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
49152:VB4XTYL03lSdQpScfCFoUyz+IJ5ydTgmmg:VqVEd4ScMwrJ1Y

Entry address:
0x267A5

Entry point:
E8, C9, 39, 00, 00, E9, 7F, FE, FF, FF, 3B, 0D, D0, 60, 45, 00, 75, 02, F3, C3, E9, C4, 40, 00, 00, CC, CC, 8B, 54, 24, 0C, 8B, 4C, 24, 04, 85, D2, 74, 7F, 0F, B6, 44, 24, 08, 0F, BA, 25, 44, 7C, 45, 00, 01, 73, 0D, 8B, 4C, 24, 0C, 57, 8B, 7C, 24, 08, F3, AA, EB, 5D, 8B, 54, 24, 0C, 81, FA, 80, 00, 00, 00, 7C, 0E, 0F, BA, 25, 80, 61, 45, 00, 01, 0F, 82, 79, 41, 00, 00, 57, 8B, F9, 83, FA, 04, 72, 31, F7, D9, 83, E1, 03, 74, 0C, 2B, D1, 88, 07, 83, C7, 01, 83, E9, 01, 75, F6, 8B, C8, C1, E0, 08, 03, C1, 8B...
 
[+]

Code size:
229.5 KB (235,008 bytes)

Program Uninstaller
Program name:
VKMusicPlayer

Display publisher:
LLC Pentagon

Display version:
1.5.5896.23233

Uninstall string:
"C:\users\{user}\appdata\local\package cache\{e8cdb681-cb5d-4652-89f2-9c25a2916806}\vkmusicsetup.exe" \uninstall


Remove VKMusicSetup.exe - Powered by Reason Core Security