setup.exe

Super Download Media

The application setup.exe by Super Download Media has been detected as a potentially unwanted program by 7 anti-malware scanners. This is a self-extracting archive and installer and has been known to bundle potentially unwanted software. This program installs potentially unwanted software on your PC at the same time as the software you are trying to install, without adequate consent.
Publisher:
Super Download Media  (signed and verified)

Product:
Super Download Media

Version:
4.8.7.3330

MD5:
e46679b18b0a7467b6eba4eb04e5acb2

SHA-1:
88bd9d7ff63f2199f17db7d22f4170a51fc722af

SHA-256:
dc28e70b2d3dcee732ff520d9480bb12768fd2c328241d2f5582aef6c7f565c0

Scanner detections:
7 / 68

Status:
Potentially unwanted

Explanation:
Bundles additional software, mostly toolbars and other potentially unwanted applications using the Vittalia monitization installer.

Analysis date:
12/28/2024 5:40:01 PM UTC  (today)

Scan engine
Detection
Engine version

Dr.Web
Trojan.Vittalia.958
9.0.1.05190

Emsisoft Anti-Malware
Gen:Variant.Application.Bundler.DownloadAdmin
11.5.0.6191

ESET NOD32
Win32/DownloadAdmin.P potentially unwanted application
8.0.319.0

F-Secure
Variant.Application.Bundler
5.15.21

Microsoft Security Essentials
Threat.Undefined
1.215.2325.0

Norman
Gen:Variant.Application.Bundler.DownloadAdmin.4
29.02.2016 05:46:54

Reason Heuristics
PUP.DownloadAdmin (M)
16.3.19.19

File size:
883.9 KB (905,080 bytes)

Product version:
4.8.7.3330

Copyright:
Copyright (C) 2015

Original file name:
setup.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\setup.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
10/28/2015 12:00:00 AM

Valid to:
10/27/2016 11:59:59 PM

Subject:
CN=Super Download Media, O=Super Download Media, L=oakland, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
539371EF08EBEEE27231F295906A4B51

File PE Metadata
Compilation timestamp:
11/25/2014 6:52:53 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
12288:2IfWCyIvqyFUxigjxKPx7OUinhjIGB9aiUaMU/DmuqNZw3Z6gRNa3bkZ:2I93l8igjxKPx76hcGBU1VeDUu4ia34Z

Entry address:
0x4428

Entry point:
E8, F3, 90, 00, 00, E9, F1, 89, 00, 00, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 83, EC, 20, B9, 1E, 00, 00, 00, 8D, 04, 24, EB, 03, 8D, 49, 00, C6, 00, 00, 40, 83, E9, 01, 75, F7, 53, 55, 8B, 6C, 24, 2C, 56, 8B, C5, 57, 8D, 50, 01, 8A, 08, 40, 84, C9, 75, F9, 2B, C2, 8B, F8, 8D, 5F, 02, 53, FF, 15, 00, F2, 40, 00, 83, C4, 04, 53, 8B, F0, 55, 56, FF, 15, 58, F0, 40, 00, C6, 04, 3E, 00, C6, 44, 3E, 01, 00, 8D, 4C, 24, 10, B8, 14, 04, 00, 00, 51, 89, 74, 24, 1C, C7, 44, 24, 18, 03, 00, 00, 00...
 
[+]

Code size:
53.5 KB (54,784 bytes)

Remove setup.exe - Powered by Reason Core Security