bdsetup.exe

OPTI ADS LTD

The executable bdsetup.exe has been detected as malware by 1 anti-virus scanner. This is a self-extracting archive and installer and has been known to bundle potentially unwanted software. This is the uninstaller utility registered in the Windows Control Panel for the program bdraw by bdraw.
Publisher:
OPTI ADS LTD  (signed and verified)

Version:
1.3.0.0

MD5:
05a1c689b6b3b25e70a5eec71be7b714

SHA-1:
426b4439ebd3fb8e6df5fba3c54945540a1792c7

SHA-256:
ef7b61ec148e2a237afb52660313890317cf6749e563a6c76aff03ca454339c6

Scanner detections:
1 / 68

Status:
Malware

Analysis date:
12/28/2024 10:38:50 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP (M)
16.12.9.12

File size:
446.4 KB (457,120 bytes)

Copyright:
All rights reserved.

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\bdraw\bdraw\1.4.2.8\bdsetup.exe

Digital Signature
Signed by:

Authority:
DigiCert Inc

Valid from:
3/13/2015 3:00:00 AM

Valid to:
3/23/2016 3:00:00 PM

Subject:
CN=OPTI ADS LTD, O=OPTI ADS LTD, L=Tel Aviv, S=Tel Aviv, C=IL

Issuer:
CN=DigiCert SHA2 Assured ID Code Signing CA, OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
019E7E421DD92BB6922755CD51B3A65C

File PE Metadata
Compilation timestamp:
9/26/2015 9:10:05 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

Entry address:
0x37F9A

Entry point:
E8, 63, 85, 00, 00, E9, 89, FE, FF, FF, CC, B8, 47, 10, 44, 00, A3, 60, 54, 46, 00, C7, 05, 64, 54, 46, 00, 3D, 07, 44, 00, C7, 05, 68, 54, 46, 00, F1, 06, 44, 00, C7, 05, 6C, 54, 46, 00, 2A, 07, 44, 00, C7, 05, 70, 54, 46, 00, 93, 06, 44, 00, A3, 74, 54, 46, 00, C7, 05, 78, 54, 46, 00, BF, 0F, 44, 00, C7, 05, 7C, 54, 46, 00, AF, 06, 44, 00, C7, 05, 80, 54, 46, 00, 11, 06, 44, 00, C7, 05, 84, 54, 46, 00, 9D, 05, 44, 00, C3, 8B, FF, 55, 8B, EC, E8, 96, FF, FF, FF, 83, 7D, 08, 00, 74, 05, E8, 50, 90, 00, 00...
 
[+]

Code size:
315 KB (322,560 bytes)

Program Uninstaller
Program name:
bdraw

Display publisher:
bdraw

Uninstall string:
"C:\users\{user}\appdata\local\bdraw\bdraw\1.4.2.8\bdsetup.exe" \uninstl


Remove bdsetup.exe - Powered by Reason Core Security