setup.exe

Tuneup Pro

TUNEUP PRO SOFTWARE SERVICES LLP

The application setup.exe by TUNEUP PRO SOFTWARE SERVICES LLP has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. This is a setup and installation application and has been known to bundle potentially unwanted software. The file has been seen being downloaded from www.tuneuppro.com and multiple other hosts.
Publisher:
tuneuppro.com   (signed by TUNEUP PRO SOFTWARE SERVICES LLP)

Product:
Tuneup Pro

Version:
Tuneup Pro

MD5:
c2f748e96d2db66b84c87e6a3465ceca

SHA-1:
fb87dd59f4b7498550af16fd3b21f44b9f6ac523

SHA-256:
4655c1448795668c21904ce39b61dbf2aa278df7d0ade347352bf6405ca83b23

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
11/27/2024 9:42:20 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Systweak.TUNEUPPR.Installer.Meta (L)
16.6.9.22

File size:
3.3 MB (3,437,320 bytes)

Product version:
1.08

Copyright:
© tuneuppro.com

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\setup.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
9/25/2014 1:00:00 AM

Valid to:
9/26/2015 12:59:59 AM

Subject:
CN=TUNEUP PRO SOFTWARE SERVICES LLP, O=TUNEUP PRO SOFTWARE SERVICES LLP, L=Jaipur, S=Rajasthan, C=IN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
35D7DB9969A26A61EA6CD98715CB2023

File PE Metadata
Compilation timestamp:
10/13/2013 9:19:32 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
98304:OLeyl6lN3RiDXbkpLHj6u+qHqWRWJU7yii:OjEfsDgpbjCvJUu3

Entry address:
0x113BC

Entry point:
55, 8B, EC, 83, C4, A4, 53, 56, 57, 33, C0, 89, 45, C4, 89, 45, C0, 89, 45, A4, 89, 45, D0, 89, 45, C8, 89, 45, CC, 89, 45, D4, 89, 45, D8, 89, 45, EC, B8, 2C, 00, 41, 00, E8, E8, 51, FF, FF, 33, C0, 55, 68, 9E, 1A, 41, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, 5A, 1A, 41, 00, 64, FF, 32, 64, 89, 22, A1, 48, 5B, 41, 00, E8, 16, D8, FF, FF, E8, 65, D3, FF, FF, 80, 3D, DC, 2A, 41, 00, 00, 74, 0C, E8, 2B, D9, FF, FF, 33, C0, E8, 80, 32, FF, FF, 8D, 55, EC, 33, C0, E8, E2, A3, FF, FF, 8B, 55, EC, B8, 50, 86...
 
[+]

Entropy:
7.9757

Developed / compiled with:
Microsoft Visual C++

Code size:
63.5 KB (65,024 bytes)

The file setup.exe has been seen being distributed by the following 30 URLs.

http://www.tuneuppro.com/downloadip_2offerss.asp?utm_source=afterdownloadcpntb&utm_campaign=ad_7772633_cpntb2&pubid=EOq77jw3XYk241qNveam7LPeajZgPL76oBSsGBdqMQvhw5Bd2JBiFm9HK7z8h0cLuLoOxLj5WuERDGmC ciq3A NjnvHya4 3oTOzrl2Do3DtFOfs2bj9mi63UWQesuatcQbYQ5rv0mo3y n/Sk22DcZhIF/BjInBlWQNW8ZyQishOZEtthZP6CvxsAXUnrl0UatiIXhXw64I8xjlnnZky6Mt97P0ros x58UQcnhX0W1JNadpT0CtdKEA8UA153G0YvibFlY 4sZVO42qot8n CwiFelluS8mH7m/vgvxP8LXDS5boX QB7 LtI1hmVpaceVtjPzho/ 9/2/OUTtebfhx6lZujzA4/dpHIeiFwSI9tYhjalMQ7slRf2aU/1UFCGKOGuR6mFY/.../Nb8M GQ1u

http://www.tuneuppro.com/downloadip_2offerss.asp?utm_source=afterdownloadcm&utm_campaign=ad_28929_cm2&klc=470920497

http://www.tuneuppro.com/downloadip_2offerss.asp?utm_source=afterdownloadcm&utm_campaign=ad_34050_cm1&klc=472231017

http://www.tuneuppro.com/downloadip_2offerss.asp?utm_source=apptvnew&utm_campaign=apptvnew1_1946&pubid=1946&clickid=MjAyNzg1NDM2MTU1MzM6OjI3ODU6OjM6OkZSOjo0OjowOTo6MDo6Mzo6MTY1Ojo3ODkyOjo0MjQ2ODA6OjE6OlVSTDo6MTk0Njo6MTY0Mzo6Ojo0MzYxNTU6OjE6OjEzMjMzNjEzODg6OjA6OjEwMjo6MDo6MTo6MDo6MDo6MDo6MDo6Mg==

http://www.tuneuppro.com/downloadip_2offerss.asp?utm_source=newmarm1&context=KJKQYKQKSIyCOlEbuhn6D0NszlRNk8XyrC_S9EZXIh_lb5zzSWlEt8cGY6og9SphltLhVN5owVyfcK1HE1tiyLZ5HuOA8BXytkCuxYDNKr1vjR2vLxiCSj9aOYTXAJuyZ-czIkPLhQFUfqgVslfM6eVcJNVGRQG8fvkOjNIKRgpxgTSBBC4XN8vqGJyFIQZj4Sh4IBo9EA9YSS181Goz01wg_flwdsy7lsi10Wnci7qpgqDMi7uEpNmRJai2p4nXdzbmu38ZF0GGkIKGk0_3fBif26Fl56uF70Gyf5tsQAJTcHqiyUm2uPoVwa83VhZ5N6dMngsPxP1TcMnU0w3c6NvnqzftIINA9p3Hh3a_nSiJjWv1FD2nD2O3Yefco3rGuFthET8_vQYYMPKfnLSz-Ox5NV-RfP1aq8DuSQ&utm_campaign=newmarm135531065nl&vurlid=35531065&ccode=nl

http://www.tuneuppro.com/downloadip_2offerss.asp?utm_source=newmarm1&context=x883AbGS8Myp32uMWt5N8_z6eCo2xaZMcYv2mozjzepD1JlT4uD97j5DxaaE9tSE4Hfwb05lVqyHhidO6E7Qr0yyvR_jkErWCTBosKS7jUceAKlhy4PLmWayVB1g4DelSeJClhKAKdlJIypMPNpEwWFQ0CXjN73w3tdIgt709AY4Gh7uYlZ4jX04Waz9JVuSk9RbI3Y98xk15PGwJJ-dqWi3DIgMa_9nvygbm8PFSnnmSXXuXLVtatByunFZB_LzWd7PH9kCmB1f9fq36I5u6K6xavnAgVoi7OUtN8NuXgZVMgcUOPj20NvlwDRjEHYH8ul2uo1vlXGQ6y-mxo50nUwHgNy13ymobOz3rEFHrPhrQRlQ4_Z6F7CbX7VjlCVqCSXsC7zb3T3lk6VASLqhLPtS1j5bHwUdHP9frsmhuyGjadsJEV8RndJUaUnNbI0&utm_campaign=newmarm136151202pt&vurlid=36151202&ccode=pt

http://www.tuneuppro.com/downloadip_2offerss.asp?utm_source=afterdownloadcpntb&utm_campaign=ad_7771256_cpntb2&pubid=zA0NdyA8a8b/ooWd7WSsBEJS4AX3YyadpGYe6kPvohFZ5qwRnNVsQdhbKOGiiyQ3cA4eJakA/TnK2JJDYKHdjxxPRL0PTevrE7kCPNYxbFLfnBYupB//tVrLG2fZJUEv0lQgpTsYpnqZtT48gnoolm4M/2xuz/BJ4ZmsQWUmqZC8shEe709wemV/HFwWrRK IIRxt56e1WkXh czMkXcJAJ17zo3yjUykWM4Ps7Fp4XiZYnOxluHCtMRtDe1CSMeg1GpG6qnxC6xQGwQBPcfotDfq4Yl 4B7/dY/4BqHwE Pgp7zcnUMvXIa8xh6GjfP0ArtCiQU6DV2javyTEy3dfiIVnFy9c4bdwUSHpflppDB98w/4UKlfeH7xzEF6ActS0 RXesJG56F/b PtB3S4NnLkO5nfLWZgULMAoP9XHkN LCB/.../QTVE33XsVr

http://www.tuneuppro.com/downloadip_2offerss.asp?utm_source=newmarm2&context=_9Qmg1WG6H3RvJwKc32MLMUuMHzbVNIanr_3oIenpDYNpEki0LozlTLAx-HkEfx8mQqXk02bs6O-yUUYkqEZ_iyfhzyEbzENqqEv1SXotVVSQkiYGLMFETr8IJhTkC5s1HRGDEYHU6-5pe7z66iWHfcooWuyNhBf_LPXel-dfCJaQmh0_VFA6pjPdjMfSIVbK_ywLCOB_1qOzfEle6ty6CzIjPnw8RR6PHLji94UuHWlUbfXiFcW_XECMxLOiTBv_yFvXCqATZHD2oGIpfBOc3Gx04xiH_iLWSxjODR-ozRZKJ07QGcJUkswbd4Tn_jInm718NHp7NBPX1Nz5d4RukEvEL5MOLlvxV10helgcjNEwfZMPDJaMSfxPwa-0gm1sciQC5Rp2xTKhLWmZD1DBCYzquUqVCk95xiImn-gOi0rEdZq1iETBj2Enu_61IlUBk6K_77EtMH8vg&utm_campaign=newmarm247381556ru&vurlid=47381556&ccode=ru

Latest 30 of 30 download URLs

Remove setup.exe - Powered by Reason Core Security