setupdownloader.exe

MY SECURITY CENTER LTD

The application setupdownloader.exe, “MYInternetSecurity Setup Downloader” by MY SECURITY CENTER has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. This is a self-extracting archive and installer and has been known to bundle potentially unwanted software.
Publisher:
MYInternetSecurity  (signed by MY SECURITY CENTER LTD)

Product:
MYInternetSecurity

Description:
MYInternetSecurity Setup Downloader

Version:
3,0,1,2

MD5:
381b70276f246c4b8b919a30365594f4

SHA-1:
a9200307641d454520a558e228d5e571e106bd0c

SHA-256:
df7773233a3164a21ec3cf14bd0d21fd595d706f6cafd9f3c902d4d5c6f03f74

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
11/15/2024 6:13:34 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Win32.Generic
16.9.23.17

File size:
288.9 KB (295,792 bytes)

Product version:
15,0,16,280

Copyright:
Copyright © 1997-2011 MYInternetSecurity

Original file name:
setupdownloader.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\setupdownloader.exe

Digital Signature
Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
5/27/2010 2:00:00 AM

Valid to:
5/27/2012 1:59:59 AM

Subject:
CN=MY SECURITY CENTER LTD, O=MY SECURITY CENTER LTD, L=WEST DRAYTON, S=MIDDLESEX, C=GB

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
1F8B282A7A992535C9223295A40E2799

File PE Metadata
Compilation timestamp:
2/28/2012 3:30:50 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
6144:oOHcp54f99tNiQeWs1xa9WlnZBqvLrSxx1a+YgqIgW:xHcp54hNiQeHC9MZwvLrSxE3IgW

Entry address:
0xFE53

Entry point:
E8, 3F, 8C, 00, 00, E9, 89, FE, FF, FF, 8B, FF, 55, 8B, EC, 83, EC, 20, 8B, 45, 08, 56, 57, 6A, 08, 59, BE, A4, 54, 42, 00, 8D, 7D, E0, F3, A5, 89, 45, F8, 8B, 45, 0C, 5F, 89, 45, FC, 5E, 85, C0, 74, 0C, F6, 00, 08, 74, 07, C7, 45, F4, 00, 40, 99, 01, 8D, 45, F4, 50, FF, 75, F0, FF, 75, E4, FF, 75, E0, FF, 15, 58, 51, 42, 00, C9, C2, 08, 00, B8, DC, 95, 41, 00, A3, 00, EF, 42, 00, C7, 05, 04, EF, 42, 00, D2, 8C, 41, 00, C7, 05, 08, EF, 42, 00, 86, 8C, 41, 00, C7, 05, 0C, EF, 42, 00, BF, 8C, 41, 00, C7, 05...
 
[+]

Code size:
142 KB (145,408 bytes)

Remove setupdownloader.exe - Powered by Reason Core Security