unins000.exe

Tishin Alexander

The application unins000.exe by Tishin Alexander has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. This is a self-extracting archive and installer and has been known to bundle potentially unwanted software. This is the uninstaller utility registered in the Windows Control Panel for the program WebSecurity Extension version 16.40.
Publisher:
Tishin Alexander  (signed and verified)

Description:
Setup/Uninstall

Version:
51.1052.0.0

MD5:
f035009c3a736037ffd23c29f655cb4f

SHA-1:
6f5b3d3cc1b79e2ba61548bd31885bb1f4bcdb43

SHA-256:
bb3031f0878c579ab42eebecbbdd36841116aae9cbb08df2569a810af0d82737

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
12/26/2024 8:52:45 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Adware.TA.Downloader (M)
17.2.25.19

File size:
1.1 MB (1,175,584 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\microsoft data\unins000.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
12/5/2013 2:00:00 AM

Valid to:
12/6/2014 1:59:59 AM

Subject:
CN=Tishin Alexander, O=Tishin Alexander, STREET="Energetikov street, 28/81", L=Konakovo, S=Tver, PostalCode=171252, C=RU

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
008136E5767018FC70DF114887210B0CAF

File PE Metadata
Compilation timestamp:
1/30/2013 4:21:57 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

Entry address:
0xFF004

Entry point:
55, 8B, EC, 83, C4, F0, 53, 56, 57, B8, E4, CE, 4F, 00, E8, 25, 9F, F0, FF, 6A, EC, A1, 08, 2E, 50, 00, 8B, 00, 8B, 98, 70, 01, 00, 00, 53, E8, B8, AD, F0, FF, 25, 7F, FF, FF, FF, 50, 6A, EC, A1, 08, 2E, 50, 00, 53, E8, 0D, B0, F0, FF, 33, C0, 55, 68, 7F, F0, 4F, 00, 64, FF, 30, 64, 89, 20, 6A, 01, E8, 60, A7, F0, FF, E8, CF, DB, FF, FF, A1, 1C, CB, 4F, 00, 50, 68, 80, CB, 4F, 00, A1, 08, 2E, 50, 00, 8B, 00, E8, 48, CE, F7, FF, E8, 23, DC, FF, FF, 33, C0, 5A, 59, 59, 64, 89, 10, EB, 19, E9, 5C, 56, F0, FF...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
1014 KB (1,038,336 bytes)

Program Uninstaller
Program name:
WebSecurity Extension version 16.40

Display version:
16.40

Uninstall string:
"C:\Program Files (x86)\Microsoft Data\unins000.exe"


Remove unins000.exe - Powered by Reason Core Security