VKMusicSetup.exe

VKMusicPlayer

LLC Pentagon

The application VKMusicSetup.exe by LLC Pentagon has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. This is a setup and installation application and has been known to bundle potentially unwanted software. This is the uninstaller utility registered in the Windows Control Panel for the program VKMusicPlayer by LLC Pentagon.
Publisher:
LLC Pentagon  (signed and verified)

Product:
VKMusicPlayer

Version:
1.5.5942.37038

MD5:
07b81bfd9fa03fda299cd864715540d1

SHA-1:
1b9ff6862b21285195e519c01bf009d5f4d525c8

SHA-256:
bf70cb1d753739367f6891ec85f5eabfb82202ba012fa2636d58f698cb6e00e2

Scanner detections:
1 / 68

Status:
Potentially unwanted

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
1/12/2025 3:06:01 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Pentagon.Installer (M)
16.4.23.23

File size:
1.5 MB (1,590,576 bytes)

Product version:
1.5.5942.37038

Copyright:
Copyright (c) LLC Pentagon. All rights reserved.

Original file name:
VKMusicSetup.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\package cache\{6a7de0ec-2783-437d-8451-2d14a4588325}\vkmusicsetup.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
2/5/2016 2:00:00 AM

Valid to:
2/5/2017 1:59:59 AM

Subject:
CN=LLC Pentagon, O=LLC Pentagon, STREET="6-39, Kirova str.", L=Chelyabinsk, S=Chelyabinskaya oblast, PostalCode=454084, C=RU

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
648F94548803C1887E7F2C280B3909DA

File PE Metadata
Compilation timestamp:
11/28/2013 4:14:28 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
49152:7B4XTAm3lSdQpScfCFoUyz+IJ5yTbTgmM:7qZEd4ScMwrJ4bsf

Entry address:
0x267A5

Entry point:
E8, C9, 39, 00, 00, E9, 7F, FE, FF, FF, 3B, 0D, D0, 60, 45, 00, 75, 02, F3, C3, E9, C4, 40, 00, 00, CC, CC, 8B, 54, 24, 0C, 8B, 4C, 24, 04, 85, D2, 74, 7F, 0F, B6, 44, 24, 08, 0F, BA, 25, 44, 7C, 45, 00, 01, 73, 0D, 8B, 4C, 24, 0C, 57, 8B, 7C, 24, 08, F3, AA, EB, 5D, 8B, 54, 24, 0C, 81, FA, 80, 00, 00, 00, 7C, 0E, 0F, BA, 25, 80, 61, 45, 00, 01, 0F, 82, 79, 41, 00, 00, 57, 8B, F9, 83, FA, 04, 72, 31, F7, D9, 83, E1, 03, 74, 0C, 2B, D1, 88, 07, 83, C7, 01, 83, E9, 01, 75, F6, 8B, C8, C1, E0, 08, 03, C1, 8B...
 
[+]

Code size:
229.5 KB (235,008 bytes)

Program Uninstaller
Program name:
VKMusicPlayer

Display publisher:
LLC Pentagon

Display version:
1.5.5942.37038

Uninstall string:
"C:\users\{user}\appdata\local\package cache\{6a7de0ec-2783-437d-8451-2d14a4588325}\vkmusicsetup.exe" \uninstall


Remove VKMusicSetup.exe - Powered by Reason Core Security