DS-Setup.exe PUP DownStudio Analysis

PUP DownStudio
Updated on 2024-09-07 (2 days ago)
Checked by Online Virus Scanner
Online Virus Checkerv.1.0.186.174
DB Version:2024-09-07 17:00:23

PUP.Win32.DownStudio.mz!c

FileDS-Setup.exe
Checked2024-09-07 15:04:50
MD5aa839c4ce778f6c5b7ed3b7421d03c46
SHA1da3b42365aa4bc0187d07d923d27b8bf7c12383e
SHA25672edf2df847b2ef47a4c048f9fa0cd6acf18065d6ee62959628afe9d92d6e384
SHA5127e8c05dcebada0996ea4427d21d09fe2a9eba98302a7485092bad84a1c9107255f497b2b1aaf355abb9568af1fee2af1e8a5ba52371b49d109588360f561a453
Imphashc8d5713e748ddf15d7fa0d940d367580
File Size75922872 bytes

PUP.Win32.DownStudio.mz!c Removal

PUP.Win32.DownStudio.mz!c Removal

Gridinsoft has the capability to identify and eliminate PUP.Win32.DownStudio.mz!c without requiring further user intervention.

  • Start by downloading Gridinsoft Anti-Malware to your computer.
  • Double-click on the gsam-en-install.exe file and follow the on-screen instructions to install the program.
  • Once the installation of Gridinsoft Anti-Malware is complete, the program will open on the Scan screen.
  • Click on the "Standard Scan" button.
  • After the scanning process is finished, click on "Clean Now" to remove any detected threats.
  • If prompted, restart your system to complete the removal process.

File Version Information

Buildrv158
CompanyNameDownload Studio Project
FileDescriptionDownload Studio Setup
FileVersion1.21.0.0 (rv158)
InternalNameDS-Setup.exe
LegalCopyright2024 (c) Download Studio Project
OriginalFilenameDS-Setup.exe
ProductNameDownload Studio Setup
ProductVersion1.21.0.0
Translation0x04b0 0x04b0

Portable Executable Info

3d3e538a4fda132994634c0c5960a012
8ddde8a305c798f73cfc7b053d57e6a5
8c3af8b8e8e43a8c
Image Base:0x00400000
Entry Point:0x004039c0
Compilation:2024-06-24 18:33:21
Checksum:0x0486abbe (Actual: 0x0486abbe)
OS Version:5.1
PEiD:PE32 executable (GUI) Intel 80386, for MS Windows
Sign:Chain verification from 1.3.6.1.4.1.311.60.2.1.3=UA, 2.5.4.15=Private Organization, CN=GRAND MEDYA\, TOV, 2.5.4.5=39638734, O=GRAND MEDYA\, TOV, L=Odesa, C=UA (serial:1134515227303628590318727680469764066, sha1:2f0ffe2afbff5c9d40bd8b6832997a322df7fcb0) failed: Unable to build a validation path for the certificate "Incorporation Country: UA; Business Category: Private Organization; Common Name: GRAND MEDYA, TOV; Serial Number: 39638734; Organization: GRAND MEDYA, TOV; Locality: Odesa; Country: UA" - no issuer matching "Common Name: SSL.com EV Code Signing Intermediate CA RSA R3, Organization: SSL Corp, Locality: Houston, State/Province: Texas, Country: US" was found
Sections:6
Imports: ADVAPI32, SHELL32, ole32, COMCTL32, USER32, GDI32, KERNEL32,
Exports: 0
Resources:13

Sections

Name Virtual Address Virtual Size Raw Size MD5 Entropy
.text 0x00001000 0x00007828 0x00007a00 a177f7e7483883f28f18b6a24bf9be7f 6.43
.rdata 0x00009000 0x00001ba6 0x00001c00 08cad3ee3751a51b6e19322ecd6bd9f4 5.00
.data 0x0000b000 0x0006ce40 0x00000200 a0da8271cd3d300ee2040875722842e0 2.17
.ndata 0x00078000 0x00208000 0x00000000 d41d8cd98f00b204e9800998ecf8427e 0.00
.rsrc 0x00280000 0x0001df38 0x0001e000 9316dc7f1c11c23383b80e6f4e5b74d3 5.04
.reloc 0x0029e000 0x00000a60 0x00000c00 7624a6fe5437b783aa792529b12422ba 2.60

Leave a comment*

Share your thoughts or insights about this file. Do you align with our conclusion?

*Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Please Wait...

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware