setup.exe

Tom-PC\Tom

The executable setup.exe has been detected as malware by 10 anti-virus scanners.
Publisher:
Tom-PC\Tom  (signed and verified)

Description:
Setup

Version:
9.0.30729.1 built by: SP

MD5:
4069ecbdadce85b67543b6b1059beff7

SHA-1:
13cb0bc1c94f0ccb2ccdd48ffde1d1cbefafa351

SHA-256:
72837b7c36c102f360603cc6315081e55b373f237b8ccc454fe575dc8f0d804f

Scanner detections:
10 / 68

Status:
Malware

Analysis date:
11/15/2024 7:38:15 PM UTC  (today)

Scan engine
Detection
Engine version

avast!
Win32:Virut
160326-0

AVG
Win32/Virut.H
2015.0.4542

Dr.Web
Win32.Virut.5
9.0.1.05190

Emsisoft Anti-Malware
Win32.Virtob.3.Gen
11.5.0.6191

ESET NOD32
Win32/Virut.Q virus
8.0.319.0

F-Prot
W32/Virut.AJ
4.6.5.141

F-Secure
Win32.Virtob.3.Gen
5.15.96

Kaspersky
Virus.Win32.Virut
15.0.0.562

McAfee
Virus.W32/Chir.gen!remnants
18.0.204.0

Microsoft Security Essentials
Threat.Undefined
1.217.516.0

File size:
797.9 KB (817,044 bytes)

Product version:
9.0.30729.1

Copyright:
© Microsoft Corporation. All rights reserved.

Original file name:
setup.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Documents and Settings\{user}\Local settings\temp\setup.exe

Digital Signature
Signed by:

Authority:
Tom-PC\Tom

Valid from:
4/16/2009 10:45:10 AM

Valid to:
4/16/2010 4:45:10 PM

Subject:
CN=Tom-PC\Tom

Issuer:
CN=Tom-PC\Tom

Serial number:
7C15DC3C3A4B5A854DB4122E1B2A1620

File PE Metadata
Compilation timestamp:
5/26/2055 7:10:40 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
6144:lXaNjq6LuPHmLyiBvuJiFkJ+2Qw+MMq6FlOUeKJ6qjaYojDuUlJL1li:1YXuUx65QwDMq6TOUxeDuUlJ58

Entry address:
0xC1194

Entry point:
F8, 60, E8, 11, 00, 00, 00, 87, DB, EB, 00, F8, F8, E8, E1, 00, 00, 00, FC, E9, 5F, 00, 00, 00, 67, 64, FF, 36, 00, 00, 89, 25, 0E, 12, 4C, 00, 90, F5, F5, 87, DB, 67, 64, 89, 26, 00, 00, 31, DB, 68, 00, 00, 00, 80, 53, 53, 53, 53, 53, 53, 53, 68, 00, 00, 00, 80, E8, B9, 7F, 00, 00, 00, 31, C0, 68, 00, 00, 00, 80, 68, 00, 00, 00, 80, 68, 00, 00, 00, 80, 68, 00, 00, 00, 80, 68, 00, 00, 00, 80, 50, 50, 68, 00, 80, 00, 00, 50, 50, 68, 40, 00, 00, 00, FF, 15, 38, 10, 40, 00, 87, DB, BC, 3F, B6, 2B, C4, 87, DB...
 
[+]

Entropy:
5.4958

Code size:
291 KB (297,984 bytes)

Remove setup.exe - Powered by Reason Core Security