setup.exe

Fix PC

Feneris Solutions Inc

The program is a setup application that uses the Inno Setup installer. The file has been seen being downloaded from en.softonic.com and multiple other hosts.
Publisher:
Feneris Solutions Inc  (signed and verified)

Product:
Fix PC

Description:
Fix PC Setup

Version:
1.0.1

MD5:
0933a21793da5258b0b7c8d7c4826a39

SHA-1:
1c0ceb0c07f28c985edeea181a51dfcd9c01f0ba

SHA-256:
4c69c1a4ed7fb6410eb80f20d92b95cfc4501ad0139ff158d3e38b62b8cb0fd1

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
2/26/2025 10:36:17 AM UTC  (today)

File size:
2.7 MB (2,852,704 bytes)

Product version:
1.0.1

File type:
Executable application (Win32 EXE)

Installer:
Inno Setup

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\setup.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
7/15/2015 2:51:07 AM

Valid to:
7/15/2016 2:51:07 AM

Subject:
CN=Feneris Solutions Inc, O=Feneris Solutions Inc, L=Surrey, S=British Columbia, C=CA

Issuer:
CN=GlobalSign CodeSigning CA - SHA256 - G2, O=GlobalSign nv-sa, C=BE

Serial number:
11214244343AB16F0C4CF413A7F8B75F4120

File PE Metadata
Compilation timestamp:
6/19/1992 3:22:17 PM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:Iadg0MPgAmQAL+YOR1011VCQgfIYjnDYAUgQQenB7BU3fGZ6zdfa7gXMe9zah:FdtiEyYq11QggYr0mQQiBtsuZ6Fa7qz+

Entry address:
0x9C40

Entry point:
55, 8B, EC, 83, C4, C4, 53, 56, 57, 33, C0, 89, 45, F0, 89, 45, DC, E8, 86, 94, FF, FF, E8, 8D, A6, FF, FF, E8, 1C, A9, FF, FF, E8, 53, C9, FF, FF, E8, 9A, C9, FF, FF, E8, C9, F2, FF, FF, E8, 30, F4, FF, FF, 33, C0, 55, 68, FC, A2, 40, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, C5, A2, 40, 00, 64, FF, 32, 64, 89, 22, A1, 14, C0, 40, 00, E8, 96, FE, FF, FF, E8, C9, FA, FF, FF, 8D, 55, F0, 33, C0, E8, 83, CF, FF, FF, 8B, 55, F0, B8, E8, CD, 40, 00, E8, 32, 95, FF, FF, 6A, 02, 6A, 00, 6A, 01, 8B, 0D, E8, CD...
 
[+]

Entropy:
7.9974

Packer / compiler:
Inno Setup v5.x - Installer Maker

Code size:
37 KB (37,888 bytes)

The file setup.exe has been seen being distributed by the following 8 URLs.

http://en.softonic.com/sads/tracker.php?ev=c&co=RE&sid=a3fb3f0c66b1f425bdfb252ec9a83980&upv=7421c38fcba6c9e588692cbdd7483025&z=download&sk=684&abp=0&abt=2&eid=ADC-374&params=F39B2A32BFC101987B1458170C278E032123FF0E09F5565AD6A3C9E074A2DA094C6C749052A82B47A7CEF42BB91A28CB33D8ED974808522BB912BAF7045A2BDBB87030E249A3DB5AFDD20DFE7C9FFCD140E381FA013A2F7DB385AEC20E00DD70921164AD3181845E4C12548AFD6167BB69A68B375457457294425550C3E55947105C8113EDA370403234AE99D281CAC5873D6C2842F8B1513D8A9A85F656F65967C212AE3716BED3FEEF8BA95888A8CB&h=9D558BCCE366A3563AE23F7B5FD4D86860AD8659CAFC82D70F3910C43875D71A&directdownload=1&f=69714277&d=http://mjnsoftwares.com/download/.../setup.exe

http://en.softonic.com/sads/tracker.php?ev=c&co=LB&sid=0ca1b62dfee76f48963a943240b5ce7d&upv=904891d8d1e3a6e44ec688fc58eb8065&z=pp_warning&sk=679&abp=0&params=F39B2A32BFC101987B1458170C278E032123FF0E09F5565AD6A3C9E074A2DA094C6C749052A82B47A7CEF42BB91A28CBC6A6DEBC9C3AFA81DA1A3618C6A01BFA35AB16A5192CA4F209F6915D61951AF2C2E7D9579DC7434950BF7849FBC0B94DA7D8E5B3C4E5F4214A011625B37AF7F168969BD84AE78E7391D5D76F1714C519F363EB708197C7750D977F4363764C1240324D69B65F56C67F3E7F00704F1563DB080281B84903BC1F35ADDFBF316B5C&h=213B20D8B286BCD34772DE06D1DAF7307982614903BDF70CFBA2C86AC8089E65&directdownload=1&f=69714277&d=http://mjnsoftwares.com/download/.../setup.exe

Scan setup.exe - Powered by Reason Core Security