tapinstall.exe

Windows Setup API

Optimal Software s.r.o.

While the file properties state the file is developed by 'Microsoft Corporation', this is not the case and it is designed just to look like a legitimate Microsoft system file. The application tapinstall.exe, “Windows Setup API” by Optimal Software s.r.o has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. This is a self-extracting archive and installer and has been known to bundle potentially unwanted software.
Publisher:
Microsoft Corporation  (signed by Optimal Software s.r.o.)

Product:
Microsoft® Windows® Operating System

Description:
Windows Setup API

Version:
6.1.7600.16385 (win7_wdk.100208-1538)

MD5:
37576ec57dcadecf905444ee6c58e6ec

SHA-1:
801c7dc12391b9f604201eb31a93b1bf802c3826

SHA-256:
a3228e72be7bf8a2ba37dabd0a66887d0f8bb5d8745587dd9c6bfea451505ecf

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
11/5/2024 7:25:42 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Speedchecker (L)
17.1.13.6

File size:
87.1 KB (89,168 bytes)

Product version:
6.1.7600.16385

Copyright:
© Microsoft Corporation. All rights reserved.

Original file name:
SETUPAPI.DLL

File type:
Executable application (Win64 EXE)

Language:
English (United States)

Common path:
C:\Program Files\wifi protector\openvpn\bin\tapinstall.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
10/28/2014 10:00:00 PM

Valid to:
10/29/2015 9:59:59 PM

Subject:
CN=Optimal Software s.r.o., O=Optimal Software s.r.o., STREET=Jablunkovska 2014/40a, L=Cesky Tesin, S=Cesky Tesin, PostalCode=73701, C=CZ

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
50C21E22FC95CC7EFFB6E44F30CE0384

File PE Metadata
Compilation timestamp:
2/9/2010 1:56:30 AM

OS version:
6.1

OS bitness:
Win64

Subsystem:
Windows Console

Linker version:
9.0

Entry address:
0x7310

Entry point:
48, 83, EC, 28, E8, 17, 03, 00, 00, 48, 83, C4, 28, E9, 62, FD, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 66, 66, 0F, 1F, 84, 00, 00, 00, 00, 00, 48, 3B, 0D, B9, 1D, 00, 00, 75, 12, 48, C1, C1, 10, 66, F7, C1, FF, FF, 75, 03, C2, 00, 00, 48, C1, C9, 10, E9, 8C, 03, 00, 00, CC, CC, CC, CC, CC, CC, FF, 25, 3C, A0, FF, FF, CC, CC, CC, CC, CC, CC, FF, 25, 20, A0, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, 40, 53, 48, 83, EC, 20, 45, 8B, 18, 48, 8B, DA, 4C, 8B, C9, 41...
 
[+]

Code size:
31.5 KB (32,256 bytes)

Remove tapinstall.exe - Powered by Reason Core Security