fytdsetup.exe

Free YouTube Downloader

Vitzo LLC

The application fytdsetup.exe, “Free YouTube Downloader Setup ” by Vitzo has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. This is a self-extracting archive and installer and has been known to bundle potentially unwanted software.
Publisher:
HOW Inc.   (signed by Vitzo LLC)

Product:
Free YouTube Downloader

Description:
Free YouTube Downloader Setup

MD5:
de27beb994edfbdb5e62a65553ec251e

SHA-1:
f1bc0f93b7e23a14164a829bf35d2ac9793acb20

SHA-256:
4a1122a120c324beed1d34e7d23ab4d8bd0c5eeaaee4a2c8487acd56d4f6b8b2

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
11/5/2024 10:20:08 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.How.FYTD (M)
17.3.14.21

File size:
14.6 MB (15,291,624 bytes)

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\fytdsetup.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
2/12/2016 2:00:00 AM

Valid to:
2/12/2019 1:59:59 AM

Subject:
CN=Vitzo LLC, O=Vitzo LLC, STREET=16192 Coastal Highway, L=Lewes, S=Delaware, PostalCode=19958, C=US

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
014D806D5E0CA6A39858391C6DB95D0F

File PE Metadata
Compilation timestamp:
4/6/2016 4:39:04 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

Entry address:
0xACD800

Entry point:
18, A5, 5C, A0, EB, 8A, 34, DE, A6, 54, 02, 0C, B3, 0A, 80, 9D, 8B, B7, 07, B7, CE, 2B, D8, D6, A5, 12, AB, 8D, E2, C4, 5D, 90, 1F, FC, 47, 7C, 5A, FE, E3, A4, F7, 58, 19, 8D, BA, 13, 6D, 8B, AC, A4, 9C, 7B, 69, 09, 9F, D9, 95, D5, E2, 54, 4C, 19, A8, 25, DC, 17, 54, C9, A5, 73, B0, D9, 80, 68, 4B, 66, 14, 84, 89, 00, BA, 5C, 9B, 78, A9, D6, DB, E2, 31, AB, 00, CE, 52, C0, 27, AE, 26, 28, 15, 0E, 81, 5E, 6C, 7F, 98, 5A, CC, 91, C3, FB, 51, 41, 02, 40, A5, 93, B0, FB, 82, 0C, 18, A8, 8E, 1D, 27, 48, 3D, 57...
 
[+]

Entropy:
7.9977  (probably packed)

Code size:
65 KB (66,560 bytes)

Remove fytdsetup.exe - Powered by Reason Core Security