minecraft-setup.exe

Single Drip Interactive

The application minecraft-setup.exe by Single Drip Interactive has been detected as a potentially unwanted program by 20 anti-malware scanners. This is a setup and installation application and has been known to bundle potentially unwanted software. This program installs potentially unwanted software on your PC at the same time as the software you are trying to install, without adequate consent.
Publisher:
Single Drip Interactive  (signed and verified)

Product:
Single Drip Interactive

Version:
3.6.4.7936

MD5:
72e7912f82a403d8c8eb16bd2aef84e9

SHA-1:
92627a3d75ce1e1a106d68507df7657282074b2d

SHA-256:
b88c916b2e35cdb96c29881e8e27b0e1d5a1c828d14522951ba87a3bd72d5c1a

Scanner detections:
20 / 68

Status:
Potentially unwanted

Explanation:
Bundles additional software, mostly toolbars and other potentially unwanted applications using the Vittalia monitization installer.

Analysis date:
11/15/2024 4:31:16 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Application.Bundler.DownloadAdmin.4
387

Agnitum Outpost
Riskware.Agent
7.1.1

AhnLab V3 Security
Trojan/Win32.Bagsu
2015.12.08

avast!
Win32:Malware-gen
2014.9-160114

AVG
Generic36
2017.0.2865

Bitdefender
Gen:Variant.Application.Bundler.DownloadAdmin.4
1.0.20.70

Comodo Security
Application.Win32.DownloadAdmin.RP
23690

Dr.Web
Trojan.Vittalia.1353
9.0.1.014

Emsisoft Anti-Malware
Gen:Variant.Application.Bundler.DownloadAdmin
8.16.01.14.10

ESET NOD32
Win32/DownloadAdmin.P potentially unwanted application
10.7.0.302.0

F-Secure
Riskware.Gen:Variant.Application.Bundler
11.2016-14-01_5

G Data
Gen:Variant.Application.Bundler.DownloadAdmin
16.1.25

IKARUS anti.virus
PUA.Win32.Dowadmin
t3scan.1.9.5.0

K7 AntiVirus
Adware
13.212.18027

MicroWorld eScan
Gen:Variant.Application.Bundler.DownloadAdmin.4
17.0.0.42

Norman
Gen:Variant.Application.Bundler.DownloadAdmin.4
11.20160114

Qihoo 360 Security
HEUR/QVM10.1.Malware.Gen
1.0.0.1077

Reason Heuristics
PUP.DownloadAdmin.SingleDripInteractive.Installer (M)
16.1.14.10

Rising Antivirus
PE:Adware.DownloadAdmin!1.A243 [F]
23.00.65.16112

VIPRE Antivirus
Threat.4783369
45588

File size:
870.6 KB (891,512 bytes)

Product version:
3.6.4.7936

Copyright:
Copyright (C) 2015

Original file name:
setup.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\inetcache\ie\{random}\minecraft-setup.exe

Digital Signature
Authority:
GoDaddy.com, Inc.

Valid from:
11/20/2015 4:46:38 PM

Valid to:
10/13/2016 6:17:39 PM

Subject:
CN=Single Drip Interactive, O=Single Drip Interactive, L=San Francisco, S=California, C=US

Issuer:
CN=Go Daddy Secure Certificate Authority - G2, OU=http://certs.godaddy.com/repository/, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US

Serial number:
00E87873DBE497C77E

File PE Metadata
Compilation timestamp:
12/2/2014 12:32:04 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
24576:s7vS6ZUTK+TFKXIiTiVfu8vGDrqfW4kFk0IIWUfq:w6TK6YtTCfleKuZG0IIQ

Entry address:
0x1670

Entry point:
E8, 9B, C2, 00, 00, E9, 9D, BB, 00, 00, CC, CC, CC, CC, CC, CC, 81, EC, 1C, 02, 00, 00, 53, 55, 8B, AC, 24, 28, 02, 00, 00, 56, 57, 6A, 01, 55, C7, 44, 24, 1C, 00, 00, 00, 00, E8, 2F, 53, 00, 00, E8, 20, BB, 00, 00, 8B, F0, 89, 44, 24, 18, 8D, 44, 24, 1C, 50, 6A, 00, 6A, 02, 55, E8, A5, 55, 00, 00, DD, 05, A0, FF, 40, 00, 8B, 4C, 24, 2C, DD, 5C, 24, 10, 83, C4, 10, 8B, F8, 8D, 14, 0F, 6A, 03, 55, 89, 54, 24, 28, E8, 23, 56, 00, 00, 83, C4, 10, E8, E1, BA, 00, 00, 8B, D8, 89, 5C, 24, 1C, 85, FF, 75, 33, 3B...
 
[+]

Entropy:
7.9689  (probably packed)

Code size:
52.5 KB (53,760 bytes)

Remove minecraft-setup.exe - Powered by Reason Core Security