fujifilm finepix s2000hd user guide.exe

Program Application

DMN Partners SRL

The application fujifilm finepix s2000hd user guide.exe, “Program Application Setup ” by DMN Partners SRL has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. The program is a setup application that uses the Inno Setup installer. The setup program uses the InstallCore engine which may bundle additional software offers including toolbars and browser extensions. The file has been seen being downloaded from www.bitsvaultsquick.com.
Publisher:
Internet Installer   (signed by DMN Partners SRL)

Product:
Program Application

Description:
Program Application Setup

Version:
3.0.3.1

MD5:
23d330a08204e46d706fb9e947088ee4

SHA-1:
36cebe50f824076e441b4a7f8ca62e6615242b07

SHA-256:
5548ae5180f373732caae615810c54e6e0e95f6387205525c54161c8ad449f5d

Scanner detections:
1 / 68

Status:
Potentially unwanted

Explanation:
Uses the InstallCore download manager to install additional potentially unwanted software which may include extensions such as DealPly and various toolbars.

Analysis date:
11/27/2024 9:32:59 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.InstallCore.DMNPartners.Installer (M)
16.1.7.9

File size:
900.3 KB (921,872 bytes)

Product version:
1.1.9

File type:
Executable application (Win32 EXE)

Installer:
Inno Setup

Common path:
C:\users\{user}\appdata\local\microsoft\windows\temporary internet files\content.ie5\{random}\fujifilm finepix s2000hd user guide.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
6/12/2015 2:00:00 AM

Valid to:
6/12/2016 1:59:59 AM

Subject:
CN=DMN Partners SRL, O=DMN Partners SRL, STREET=Str Liviu Rebreanu 46-58, L=Bucharest, S=District 3, PostalCode=031793, C=RO

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
3EB036A1CA66096F2715D12685C107F3

File PE Metadata
Compilation timestamp:
6/20/1992 12:22:17 AM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:Nmg02ibS84oeVceOLnzlyPDXrFbKoRAudimrnPF:Nt2R4HOM1KoRAudPPF

Entry address:
0xA5F8

Entry point:
55, 8B, EC, 83, C4, C4, 53, 56, 57, 33, C0, 89, 45, F0, 89, 45, DC, E8, CE, 8A, FF, FF, E8, D5, 9C, FF, FF, E8, 64, 9F, FF, FF, E8, 07, A0, FF, FF, E8, A6, BF, FF, FF, E8, 11, E9, FF, FF, E8, 78, EA, FF, FF, 33, C0, 55, 68, C9, AC, 40, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, 92, AC, 40, 00, 64, FF, 32, 64, 89, 22, A1, 14, C0, 40, 00, E8, 26, F5, FF, FF, E8, 11, F1, FF, FF, 80, 3D, 34, B2, 40, 00, 00, 74, 0C, E8, 23, F6, FF, FF, 33, C0, E8, C4, 97, FF, FF, 8D, 55, F0, 33, C0, E8, B6, C5, FF, FF, 8B, 55...
 
[+]

Packer / compiler:
Inno Setup v5.x - Installer Maker

Code size:
39.5 KB (40,448 bytes)

The file fujifilm finepix s2000hd user guide.exe has been seen being distributed by the following URL.

Remove fujifilm finepix s2000hd user guide.exe - Powered by Reason Core Security