setup.exe

Shulan Hou

The application setup.exe by Shulan Hou has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat. This is a setup and installation application and has been known to bundle potentially unwanted software. It is also typically executed from the user's temporary directory.
Publisher:
Shulan Hou  (signed and verified)

MD5:
bd4a1751c5205b0b1ff2eaeabd3a9164

SHA-1:
a0cc338524d0273a0ce3f293d965b856bc0cce62

SHA-256:
d505cf79e030263699e095648be48601a62a8e2a2e97532e59780801e0945365

Scanner detections:
1 / 68

Status:
Adware

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
1/13/2025 8:31:03 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.ELEX (M)
17.3.8.4

File size:
655.6 KB (671,328 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\temp\setup.exe

Digital Signature
Signed by:

Authority:
DigiCert Inc

Valid from:
12/23/2014 10:00:00 PM

Valid to:
1/6/2016 10:00:00 AM

Subject:
CN=Shulan Hou, O=Shulan Hou, L=Dingzhou, S=Hebei, C=CN

Issuer:
CN=DigiCert SHA2 Assured ID Code Signing CA, OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
0556596736BF2D2DEB3BC21E5D02E7CE

File PE Metadata
Compilation timestamp:
3/31/2015 4:45:11 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

Entry address:
0x29EB7

Code size:
468.5 KB (479,744 bytes)

Remove setup.exe - Powered by Reason Core Security