I do not know as this was from a customer and we're getting things second hand. They wouldn't have manually scanned it or otherwise run the file on their own I wouldn't think as it's being extracted to the temp files area. Though I guess an enterprising individual might do such a thing. My guess is that the real time scanner picked it up. I will try installing malwarebytes and scanning it as you suggest to see what happens there though this will differ from our customers environment.
Some background on how it's run from our installer. I use NSIS to launch a number of sub installers as a bundle. NSIS requires administrative privileges to run so it's running from an administrators context when NSIS launches it. I have NSIS include some of these into the temp area to run for install and then they are removed at the end of the run of the installer automatically. Here is an example of how I'm calling it from NSIS if that'd help you:
nsExec::ExecToStack '"$pluginsdir\ETC_Install_Universal_C_Runtime.EXE"'
I am not sure what you mean about a detection name, but this was a bit of malwarebytes log that the customer sent to us:
Malwarebytes
www.malwarebytes.com
Log Details
Scan Date: 4/25/20
Scan Time: 2:06 PM
Log File: 895c08fe-86f5-11ea-aed5-f44d30143380.json
Software Information
Version: 4.1.0.56
Components Version: 1.0.875
Update Package Version: 1.0.22930
License: Premium
System Information
OS: Windows 10 (Build 18362.778)
CPU: x64
File System: NTFS
User: GARY-DESKTOP\gazza
Scan Summary
Scan Type: Threat Scan
Scan Initiated By: Manual
Result: Completed
Objects Scanned: 417432
Threats Detected: 1
Threats Quarantined: 0
Time Elapsed: 3 min, 6 sec
Scan Options
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Enabled
Heuristics: Enabled
PUP: Detect
PUM: Detect
Scan Details
Process: 0
(No malicious items detected)
Module: 0
(No malicious items detected)
Registry Key: 0
(No malicious items detected)
Registry Value: 0
(No malicious items detected)
Registry Data: 0
(No malicious items detected)
Data Stream: 0
(No malicious items detected)
Folder: 0
(No malicious items detected)
File: 1
Malware.Generic.2713449660, C:\USERS\GAZZA\APPDATA\LOCAL\TEMP\NSRE05A.TMP\ETC_INSTALL_UNIVERSAL_C_RUNTIME.EXE, No Action By User, 1000000, 0, 1.0.22930, 8694B3D511505F95A1BBF4BC, dds, 00691914
Physical Sector: 0
(No malicious items detected)
WMI: 0
(No malicious items detected)
(end)