setupgettorrent.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from www.tucows.com and multiple other hosts.
MD5:
7504609e712f992027963f8517bd0290

SHA-1:
232d33ac4460f2e970f3df579d3d851ac199d6f1

SHA-256:
9522296bbbfb953838756bd4577fbe3afcb03c3b4d1244cab57921b7a23f568d

Scanner detections:
3 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
1/11/2025 9:32:52 PM UTC  (today)

Scan engine
Detection
Engine version

F-Prot
W32/Trojan2.ODPU
v6.4.7.1.166

K7 AntiVirus
Trojan
13.176.11847

SUPERAntiSpyware
Trojan.Agent/Gen-Sisproc
10612

File size:
1.9 MB (1,971,318 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\setupgettorrent.exe

File PE Metadata
Compilation timestamp:
12/6/2000 5:37:33 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
49152:AloPnsrN/YyfLTMVYam4naIOi/2Bnu2IdvQS0zQHIoJVl7I:AesJ/YyfP6VmoD2Bu2IBQSvHJVU

Entry address:
0x29940

Entry point:
60, BE, 00, B0, 41, 00, 8D, BE, 00, 60, FE, FF, 57, 83, CD, FF, EB, 10, 90, 90, 90, 90, 90, 90, 8A, 06, 46, 88, 07, 47, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 72, ED, B8, 01, 00, 00, 00, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C0, 01, DB, 73, EF, 75, 09, 8B, 1E, 83, EE, FC, 11, DB, 73, E4, 31, C9, 83, E8, 03, 72, 0D, C1, E0, 08, 8A, 06, 46, 83, F0, FF, 74, 74, 89, C5, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C9, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C9, 75, 20, 41, 01, DB, 75...
 
[+]

Packer / compiler:
UPX 2.90LZMA]

Code size:
60 KB (61,440 bytes)

The file setupgettorrent.exe has been seen being distributed by the following 7 URLs.

http://www.tucows.com/download/windows/.../SetUpGetTorrent.exe

http://gsf-cf.softonic.com/232/d33/.../file?SD_used=0&channel=WEB&fdh=no&id_file=323014&instance=softonic_en&type=PROGRAM&Expires=1468289205&Signature=Trohdjk0~YprW31Hc9InGHtp0SE3LCL1oz0~qGOIIjVbJfoS4Z8q-6buQGXWTkkBM8-Zb7wUNgoJMtEJO-INL4KxZ-XouYRF4km~AY6xah47nuH6yl-ZNAncgOzKnL8Z9igjFi16OvsKjmdPN2BLV51dxKQ6HTYa60amzGy1Ysk_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=SetUpGetTorrent.exe

http://dw.uptodown.com/dwn/2gsQtN6fV_dYhRhI54szAF_PJsUBgHUQM-uN-z3OJrJ2-UFeYXXSJMn7xmjdJThFFjhfDmIAeXWPJBo2L6h0zW1squd99g9Ys4dWhuB8fpJc1X2Sx4tI64lLBetdVpGh/y5PkbDVdPfHMYCoqsuj2BdOF54B8YS6TEFUMlYjRgyZ64Ui5-BOGrMSC9XrSJHhL9tDkBE-yUEgoW47f4tiLl_rWY602E1hIZYuh01VW-y4NI_qfSDwuRdwEYSFG4e0i/.../

Scan setupgettorrent.exe - Powered by Reason Core Security