Setup.exe

Program Generic

Generic

The file Setup.exe, “Program Generic Setup ” has been detected as a potentially unwanted program by 10 anti-malware scanners. The program is a setup application that uses the Inno Setup installer, however the file is not signed with an authenticode signature from a trusted source. The setup program uses the InstallCore engine which may bundle additional software offers including toolbars and browser extensions. This downloadble file is typically blocked through Google's Safe Browsing technology in Chrome web browser.
Publisher:
Generic

Product:
Program Generic

Description:
Program Generic Setup

MD5:
944a61028fc8ba1587826e2f976b99af

SHA-1:
46b7b1bd2033794816bb9e46319814c8ed0945fa

SHA-256:
78d30c3e2704470bcf6a876fe9d6740917b0d5767684acd888e379a951317a57

Scanner detections:
10 / 68

Status:
Potentially unwanted

Explanation:
Uses the InstallCore download manager to install additional potentially unwanted software which may include extensions such as DealPly and various toolbars.

Analysis date:
11/27/2024 12:45:24 PM UTC  (today)

Scan engine
Detection
Engine version

avast!
Malware-gen
2014.9-150422

AVG
Win.Threat.Medium
2016.0.3131

Baidu Antivirus
Adware.Win32.InstallCore
4.0.3.15724

ESET NOD32
Win32/InstallCore.ZC potentially unwanted application
9.7.0.302.0

Fortinet FortiGate
Riskware/InstallCore
7/24/2015

herdProtect (fuzzy)
2015.7.24.0

K7 AntiVirus
Adware
13.203.15813

McAfee
Artemis!CB9DC611717B
5600.6695

Trend Micro House Call
Suspicious_GEN.F47V0424
7.2.205

VIPRE Antivirus
Threat.4150696
39354

File size:
801.8 KB (821,074 bytes)

Product version:
3.3

Copyright:
Installer

Installer:
Inno Setup

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\setup.exe

File PE Metadata
Compilation timestamp:
6/19/1992 5:22:17 PM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:cvHVe7MGZ55xWKaXKyLlDmi9sHLPLXcgtywTNslYmTGF2riK:c/w771WKaa2JmtH3XcuTOYWriK

Entry address:
0xA5F8

Entry point:
55, 8B, EC, 83, C4, C4, 53, 56, 57, 33, C0, 89, 45, F0, 89, 45, DC, E8, CE, 8A, FF, FF, E8, D5, 9C, FF, FF, E8, 64, 9F, FF, FF, E8, 07, A0, FF, FF, E8, A6, BF, FF, FF, E8, 11, E9, FF, FF, E8, 78, EA, FF, FF, 33, C0, 55, 68, C9, AC, 40, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, 92, AC, 40, 00, 64, FF, 32, 64, 89, 22, A1, 14, C0, 40, 00, E8, 26, F5, FF, FF, E8, 11, F1, FF, FF, 80, 3D, 34, B2, 40, 00, 00, 74, 0C, E8, 23, F6, FF, FF, 33, C0, E8, C4, 97, FF, FF, 8D, 55, F0, 33, C0, E8, B6, C5, FF, FF, 8B, 55...
 
[+]

Entropy:
7.8038

Packer / compiler:
Inno Setup v5.x - Installer Maker

Code size:
39.5 KB (40,448 bytes)

Remove Setup.exe - Powered by Reason Core Security