vs_t_uaf.exe

Digital Plugin S.l.

This is the Softpulse installer which bundles applications with offers for additional 3rd party software, mostly unwanted adware, and may be installed with minimal consent. The file vs_t_uaf.exe by Digital Plugin S.l has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat. The program is a setup application that uses the Softpulse SoftwareBundler installer. It is also typically executed from the user's temporary directory.
Publisher:
Digital Plugin S.l.  (signed and verified)

MD5:
75b4d6f8a3abef6b85b5bff8b9f1cc43

SHA-1:
33715b41a3825f47ba065896ffc8e91021b6ad40

SHA-256:
5d75a64222ae04904eafbdce4b9c0b2d930b2a6dd270b0849f4a77ac03439341

Scanner detections:
1 / 68

Status:
Adware

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Description:
This 'download manager' is also considered bundleware, a utility designed to download software (possibly legitimate or opensource) and bundle it with a number of optional offers including ad-supported utilities, toolbars, shopping comparison tools and browser extensions.

Analysis date:
11/23/2024 12:15:10 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Softpulse (M)
17.3.11.8

File size:
1.4 MB (1,504,848 bytes)

Bundler/Installer:
Softpulse SoftwareBundler

Common path:
C:\users\{user}\appdata\local\temp\vs_t_uaf.exe.part

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
7/21/2014 2:00:00 AM

Valid to:
7/22/2015 1:59:59 AM

Subject:
CN=Digital Plugin S.l., O=Digital Plugin S.l., L=Guia de Isora, S=Santa Cruz de Tenerife, C=ES

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
56A14602FE05DCEF0C5161F45F3065B5

File PE Metadata
Compilation timestamp:
7/28/2014 3:03:17 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

Entry address:
0x6566

Entry point:
E8, 74, 43, 00, 00, E9, 7F, FE, FF, FF, E9, B5, 13, 00, 00, FF, 35, 10, 7D, 46, 00, FF, 15, CC, 40, 41, 00, 85, C0, 74, 02, FF, D0, 6A, 19, E8, 6B, 3B, 00, 00, 6A, 01, 6A, 00, E8, 82, 48, 00, 00, 83, C4, 0C, E9, 99, 48, 00, 00, 55, 8B, EC, 83, EC, 10, EB, 0D, FF, 75, 08, E8, D9, 48, 00, 00, 59, 85, C0, 74, 0F, FF, 75, 08, E8, A6, 13, 00, 00, 59, 85, C0, 74, E6, C9, C3, 6A, 01, 8D, 45, FC, 50, 8D, 4D, F0, C7, 45, FC, D0, F6, 45, 00, E8, A8, 2F, 00, 00, 68, B0, 50, 46, 00, 8D, 45, F0, 50, C7, 45, F0, C8, F6...
 
[+]

Code size:
74 KB (75,776 bytes)

Remove vs_t_uaf.exe - Powered by Reason Core Security