VKMusicSetup.exe

VKMusicPlayer

LLC Pentagon

The application VKMusicSetup.exe by LLC Pentagon has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. This is a setup and installation application and has been known to bundle potentially unwanted software. This is the uninstaller utility registered in the Windows Control Panel for the program VKMusicPlayer by LLC Pentagon.
Publisher:
LLC Pentagon  (signed and verified)

Product:
VKMusicPlayer

Version:
1.5.5927.41462

MD5:
b9dcd290f8e3f2784de6d86c67b05693

SHA-1:
96a747966f2a079539dedf74a679d6b7a2066c90

SHA-256:
34782ec6753e071a1f80116264798c6d621e6e71f71692727ad82d8cfc7d85d9

Scanner detections:
1 / 68

Status:
Potentially unwanted

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
1/12/2025 3:17:04 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Pentagon.Installer (M)
16.3.26.23

File size:
1.5 MB (1,590,584 bytes)

Product version:
1.5.5927.41462

Copyright:
Copyright (c) LLC Pentagon. All rights reserved.

Original file name:
VKMusicSetup.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\package cache\{7fa5bf6e-6df2-45cf-885c-36adf7712bd2}\vkmusicsetup.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
2/5/2016 2:00:00 AM

Valid to:
2/5/2017 1:59:59 AM

Subject:
CN=LLC Pentagon, O=LLC Pentagon, STREET="6-39, Kirova str.", L=Chelyabinsk, S=Chelyabinskaya oblast, PostalCode=454084, C=RU

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
648F94548803C1887E7F2C280B3909DA

File PE Metadata
Compilation timestamp:
11/28/2013 4:14:28 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
49152:WB4XTYm3lSdQpScfCFoUyz+IJ5yTbTgmg:WqpEd4ScMwrJ4bsL

Entry address:
0x267A5

Entry point:
E8, C9, 39, 00, 00, E9, 7F, FE, FF, FF, 3B, 0D, D0, 60, 45, 00, 75, 02, F3, C3, E9, C4, 40, 00, 00, CC, CC, 8B, 54, 24, 0C, 8B, 4C, 24, 04, 85, D2, 74, 7F, 0F, B6, 44, 24, 08, 0F, BA, 25, 44, 7C, 45, 00, 01, 73, 0D, 8B, 4C, 24, 0C, 57, 8B, 7C, 24, 08, F3, AA, EB, 5D, 8B, 54, 24, 0C, 81, FA, 80, 00, 00, 00, 7C, 0E, 0F, BA, 25, 80, 61, 45, 00, 01, 0F, 82, 79, 41, 00, 00, 57, 8B, F9, 83, FA, 04, 72, 31, F7, D9, 83, E1, 03, 74, 0C, 2B, D1, 88, 07, 83, C7, 01, 83, E9, 01, 75, F6, 8B, C8, C1, E0, 08, 03, C1, 8B...
 
[+]

Code size:
229.5 KB (235,008 bytes)

Program Uninstaller
Program name:
VKMusicPlayer

Display publisher:
LLC Pentagon

Display version:
1.5.5927.41462

Uninstall string:
"C:\users\{user}\appdata\local\package cache\{7fa5bf6e-6df2-45cf-885c-36adf7712bd2}\vkmusicsetup.exe" \uninstall


Remove VKMusicSetup.exe - Powered by Reason Core Security