vlc_setup.exe

VLC Media Player Installer

Savvy

This is part of the Adlogica setup manager, an installer that bundles applications with offers for additional 3rd party software, mostly unwanted adware, and may be installed without consent. The application vlc_setup.exe, “Deploy VLC Media Player along with various offers” by Savvy has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
Savvy  (signed and verified)

Product:
VLC Media Player Installer

Description:
Deploy VLC Media Player along with various offers

Version:
2.0.4

MD5:
1e25fad47de4bfec03a030e23349015a

SHA-1:
dcc51cab39c7958d9180d1837c95edb3269e7620

SHA-256:
d7f1fb0283ae9ce6decb00c71056b0267c00cc1df79d9b9992b25a48b2052ff9

Scanner detections:
1 / 68

Status:
Adware

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
4/26/2024 8:01:47 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Adlogica (M)
16.9.5.5

File size:
2.3 MB (2,422,632 bytes)

Product version:
2.0.4

Copyright:
© downloadster.org

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Subject:
CN=Savvy, O=Savvy, STREET=96 Jessie st, STREET=4th floor, L=SAN FRANCISCO, S=California, PostalCode=94105, C=US

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
397CE208945051D16EBC051D5ED4B1EC

File PE Metadata
Compilation timestamp:
7/20/2013 2:42:49 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:jM7YKmIr51DH4awRTPMuW5Ql3KKM5po/Y/XXngoty0IETeiGQ6k6TJA:j6zLUj3Kp0/KngoYfXnT

Entry address:
0x1053F0

Entry point:
55, 8B, EC, 83, C4, F0, B8, 14, 31, 50, 00, E8, E4, 21, F0, FF, 8B, 0D, 64, F5, 50, 00, 8B, 09, B2, 01, A1, DC, 2C, 4C, 00, E8, 28, 96, F5, FF, 8B, 15, 58, F6, 50, 00, 89, 02, A1, 64, F5, 50, 00, 8B, 00, E8, 2C, 2E, F6, FF, A1, 64, F5, 50, 00, 8B, 00, B2, 01, E8, C6, 4C, F6, FF, 8B, 0D, 4C, F3, 50, 00, A1, 64, F5, 50, 00, 8B, 00, 8B, 15, 48, 72, 4F, 00, E8, 1E, 2E, F6, FF, A1, 64, F5, 50, 00, 8B, 00, E8, 4A, 2F, F6, FF, E8, 39, FB, EF, FF, 90, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
4.1718

Developed / compiled with:
Microsoft Visual C++

Code size:
1 MB (1,064,448 bytes)

Remove vlc_setup.exe - Powered by Reason Core Security