This is part of a Performersoft product, a 'PC optimzation' application that provides minimal benifits and may have been bundled by a third party installer. The application videoperformersetup.exe by Performersoft has been detected as a potentially unwanted program by 42 anti-malware scanners. It bundles additional offers, mostly adware, using the InstallBrain installer, a pay-per-install monetization download manager. InstallBrain will also install a background updater service that will update any installed browser add-ons and plug-ins.
File name:
videoperformersetup.exe
MD5:
91edcd20f9fb9e8f43973ba85470b251
SHA-1:
c39e7d6a691be278bf4bad00945d0c62de5452af
SHA-256:
381c03dc0a36da5cb35ee0741f26c39036be2a6e3c46147d7c468921ebf50f45
Scanner detections:
42 / 68
Status:
Potentially unwanted
Explanation:
Uses the InstallBrain monetization platform from iBario to deliver bundled adware both search toolbars and PC optimizers from Performersoft.
Analysis date:
12/25/2024 4:27:14 AM UTC (today)
Scan engine
Detection
Engine version
Lavasoft Ad-Aware
Application.Bundler.InstallBrain.A
911
AegisLab AV Signature
ADWARE-InstallBrain.Gen
2.1.4+
Agnitum Outpost
Adware.BrainInst
7.1.1
AhnLab V3 Security
Downloader/Win32.Agent
14.08.07
Avira AntiVirus
Adware/InstallBrain.CE
7.11.121.36
avast!
Win32:InstallBrain-AA [PUP]
2014.9-140807
AVG
AdInstaller.InstallBrain
2015.0.3389
Baidu Antivirus
Adware.Win32.Agent
4.0.3.1487
Bitdefender
Application.Bundler.InstallBrain.A
1.0.20.1095
Bkav FE
W32.Clodb8d.Trojan
1.3.0.4613
Boost by Reason
Adware.Installer.Performersoft.T
2013.7.23.1
Clam AntiVirus
Win.Adware.Installbrain-103
0.98/21411
Comodo Security
Application.Win32.InstallBrain.AF
17475
Dr.Web
Adware.Downware.1295
9.0.1.0219
Emsisoft Anti-Malware
Win32.Virtob.Gen.12
8.14.08.07.10
ESET NOD32
Win32/InstallBrain.AC (variant)
8.9190
Fortinet FortiGate
Adware/InstallBrain.OP
8/7/2014
F-Prot
W32/IBrain.D.gen
v6.4.7.1.166
F-Secure
Trojan:W32/InstallBrain.A
11.2014-07-08_5
G Data
Win32.Application.InstallBrain
14.8.22
IKARUS anti.virus
AdInstaller
t3scan.2.2.29
K7 AntiVirus
Unwanted-Program
13.174.10588
Kaspersky
not-a-virus:AdWare.Win32.BrainInst
14.0.0.3440
Malwarebytes
Adware.InstallBrain
v2014.08.07.10
McAfee
RDN/Generic PUP.x!bpg
5600.7045
Microsoft Security Essentials
1.165.247.01
MicroWorld eScan
Application.Bundler.InstallBrain.A
15.0.0.657
NANO AntiVirus
Trojan.Win32.Downware.cqmhdj
0.28.0.57029
nProtect
Trojan-Downloader/W32.BrainInst.826112
14.04.25.01
Panda Antivirus
Adware/Ibups
14.08.07.10
Qihoo 360 Security
Malware.QVM10.Gen
1.0.0.1015
Quick Heal
TrojanDownloader.Brantall.b
8.14.12.00
Reason Heuristics
PUP.Installer.Performersoft.T
14.8.7.22
Rising Antivirus
PE:Malware.InstallBrain!6.104C
23.00.65.14805
SUPERAntiSpyware
Trojan.Agent/Gen-Downware
10435
Total Defense
Win32/Tnega.BRRKCQ
37.0.10498
Trend Micro House Call
TROJ_GEN.F47V1122
7.2.219
Trend Micro
TROJ_SPNV.03KI13
10.465.07
Vba32 AntiVirus
AdWare.BrainInst
3.12.24.3
VIPRE Antivirus
Trojan.Win32.Generic!SB.0
24588
Zillya! Antivirus
Downloader.BrainInst.Win32.9
2.0.0.1771
File size:
558.6 KB (572,032 bytes)
Product version:
15.9.28.27
Original file name:
installer.exe
File type:
Executable application (Win32 EXE)
Language:
English (United States)
Common path:
C:\users\{user}\downloads\videoperformersetup.exe
Authority:
GoDaddy.com, Inc.
Valid from:
6/27/2012 1:28:03 PM
Valid to:
6/27/2015 1:28:03 PM
Subject:
CN=Performersoft LLC, O=Performersoft LLC, L=Beaverton, S=OR, C=US
Issuer:
SERIALNUMBER=07969287, CN=Go Daddy Secure Certification Authority, OU=http://certificates.godaddy.com/repository, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US
Serial number:
07DAC5F73C6773
Compilation timestamp:
7/15/2013 1:51:26 AM
Code size:
91 KB (93,184 bytes)
The file videoperformersetup.exe has been seen being distributed by the following URL.
The executing file has been seen to make the following network communications in live environments.