How to remove setup.exe
setup.exe
The module setup.exe has been detected as PUP.OneBrowser
File Details
| Product Name: | OnBr Installer |
| Company Name: | Work Product Inc. |
| MD5: | e810fdd67f792f51677eb41147031d1e |
| Size: | 6 MB |
| First Published: | 2026-02-21 23:00:52 (2 weeks ago) |
| Latest Published: | 2026-03-07 23:01:05 (2 days ago) |
| Status: | PUP.OneBrowser (on last analysis) | |
| Analysis Date: | 2026-03-07 23:01:05 (2 days ago) |
Overview
| Signed By: | Work Product Inc. |
| Status: | Valid |
Common Places:
| %programfiles%\ob\application\137.0.7151.69 |
| %programfiles%\ob\application\137.0.7151.69 |
| %windir% |
| %localappdata%\ob\application\137.0.7151.69 |
| %localappdata%\ob\application\137.0.7151.69 |
Geography:
| 80.0% | ||
| 20.0% |
OS Version:
| Windows 10 | 100.0% |
Analysis
| Subsystem: | Windows GUI |
| PE Type: | pe |
| OS Bitness: | 32 |
| Image Base: | 0x00400000 |
| Entry Address: | 0x002d7a20 |
PE Sections:
| Name | Size of data | MD5 |
| .text | 3172864 | 4111ee58be30c46a208a366a88f29d4e |
| .rdata | 3125248 | cc416a4eb6a70c03b6a52bb47b91cae6 |
| .data | 17408 | 79015157f2ac2b1e0cb0c6f1724a010d |
| .fptable | 512 | bf619eac0cdf3f68d496ea9344137e8b |
| .rodata | 512 | 0ad98421280ce5789a80b506c4cbfc33 |
| .tls | 512 | ccda846178b888d7afb9fa1ab162a51f |
| CPADinfo | 512 | 842689af09e7bf563672a4b43f1a2286 |
| malloc_h | 512 | 42758ee9f5771b2924818cb9c2414f68 |
| .rsrc | 350720 | 7fa011af05712b0700160e1858e838ec |
| .reloc | 86528 | 969c34b6540ec2f6d7fb9390b0a7e776 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for setup.exe