How to remove setup.exe
setup.exe
The module setup.exe has been detected as PUP.OneBrowser
File Details
| Product Name: | OB Installer |
| Company Name: | WORKPRODUCT, INC. |
| MD5: | ca8472ad033f11747deb6806e402d85b |
| Size: | 5 MB |
| First Published: | 2026-02-26 23:01:11 (a month ago) |
| Latest Published: | 2026-03-30 23:00:51 (5 days ago) |
| Status: | PUP.OneBrowser (on last analysis) | |
| Analysis Date: | 2026-03-30 23:00:51 (5 days ago) |
Overview
| Signed By: | WORK PRODUCT, INC. |
| Status: | Valid |
Common Places:
| %localappdata%\ob\application\137.0.7151.69 |
| %localappdata%\ob\application\137.0.7151.69 |
| %localappdata%\ob\application\137.0.7151.69 |
Geography:
| 66.7% | ||
| 33.3% |
OS Version:
| Windows 10 | 100.0% |
Analysis
| Subsystem: | Windows GUI |
| PE Type: | pe |
| OS Bitness: | 32 |
| Image Base: | 0x00400000 |
| Entry Address: | 0x002d72a0 |
PE Sections:
| Name | Size of data | MD5 |
| .text | 3170816 | e8828ccb4e5eb0daaf54e462a874300e |
| .rdata | 2513920 | 0fb0645ed0b5995b519016112324cfe4 |
| .data | 17408 | 6d3ff5876638cb421fd0120120e4d46a |
| .fptable | 512 | bf619eac0cdf3f68d496ea9344137e8b |
| .rodata | 512 | 0ad98421280ce5789a80b506c4cbfc33 |
| .tls | 512 | 24656827bd0887598c2d1f50357007f3 |
| CPADinfo | 512 | 842689af09e7bf563672a4b43f1a2286 |
| malloc_h | 512 | 7df88f87ef797e0bc5baa22217996230 |
| .rsrc | 350720 | e0d134856299499be8e771c0c52fa4ea |
| .reloc | 86016 | cb75020791c2df575a9e67a6ba285ae3 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for setup.exe