unins000.exe

Tishin Alexander

The application unins000.exe by Tishin Alexander has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. This is a setup and installation application and has been known to bundle potentially unwanted software. This is the uninstaller utility registered in the Windows Control Panel for the program WebSecurity Extension version 16.40.
Publisher:
Tishin Alexander  (signed and verified)

Description:
Setup/Uninstall

Version:
51.1052.0.0

MD5:
b63e237628f143696d05c51777aab078

SHA-1:
4cf55c2ec5ad4522263229c645e56d7ed9b71899

SHA-256:
636327d54a0060dcd56be0c6d8b8269b5185a1ce94617c189351c7ab0d67cc55

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
12/26/2024 8:56:17 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Adware.TA.Downloader (M)
17.2.13.8

File size:
1.1 MB (1,175,584 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\microsoft data\unins000.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
12/5/2013 6:00:00 AM

Valid to:
12/6/2014 5:59:59 AM

Subject:
CN=Tishin Alexander, O=Tishin Alexander, STREET="Energetikov street, 28/81", L=Konakovo, S=Tver, PostalCode=171252, C=RU

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
008136E5767018FC70DF114887210B0CAF

File PE Metadata
Compilation timestamp:
1/30/2013 8:21:57 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

Entry address:
0xFF004

Entry point:
55, 8B, EC, 83, C4, F0, 53, 56, 57, B8, E4, CE, 4F, 00, E8, 25, 9F, F0, FF, 6A, EC, A1, 08, 2E, 50, 00, 8B, 00, 8B, 98, 70, 01, 00, 00, 53, E8, B8, AD, F0, FF, 25, 7F, FF, FF, FF, 50, 6A, EC, A1, 08, 2E, 50, 00, 53, E8, 0D, B0, F0, FF, 33, C0, 55, 68, 7F, F0, 4F, 00, 64, FF, 30, 64, 89, 20, 6A, 01, E8, 60, A7, F0, FF, E8, CF, DB, FF, FF, A1, 1C, CB, 4F, 00, 50, 68, 80, CB, 4F, 00, A1, 08, 2E, 50, 00, 8B, 00, E8, 48, CE, F7, FF, E8, 23, DC, FF, FF, 33, C0, 5A, 59, 59, 64, 89, 10, EB, 19, E9, 5C, 56, F0, FF...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
1014 KB (1,038,336 bytes)

Program Uninstaller
Program name:
WebSecurity Extension version 16.40

Display version:
16.40

Uninstall string:
"C:\Program Files (x86)\Microsoft Data\unins000.exe"


Remove unins000.exe - Powered by Reason Core Security