unins000.exe

Tishin Alexander

The application unins000.exe by Tishin Alexander has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. This is a setup and installation application and has been known to bundle potentially unwanted software. This is the uninstaller utility registered in the Windows Control Panel for the program WebSecurity Extension version 16.40.
Publisher:
Tishin Alexander  (signed and verified)

Description:
Setup/Uninstall

Version:
51.1052.0.0

MD5:
8b42ba191f049745d5ccae1b588ea693

SHA-1:
97759ff6c48bbaed4de34460741e7e23987cc59b

SHA-256:
2bf2bdeafcda4bbc6effdcf03e75bf2bb908e01f541dae00628dc51fa93ced12

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
12/26/2024 9:03:20 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Adware.TA.Downloader (M)
17.2.27.9

File size:
1.1 MB (1,175,584 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\microsoft data\unins000.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
12/5/2013 10:00:00 AM

Valid to:
12/6/2014 9:59:59 AM

Subject:
CN=Tishin Alexander, O=Tishin Alexander, STREET="Energetikov street, 28/81", L=Konakovo, S=Tver, PostalCode=171252, C=RU

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
008136E5767018FC70DF114887210B0CAF

File PE Metadata
Compilation timestamp:
1/31/2013 12:21:57 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

Entry address:
0xFF004

Entry point:
55, 8B, EC, 83, C4, F0, 53, 56, 57, B8, E4, CE, 4F, 00, E8, 25, 9F, F0, FF, 6A, EC, A1, 08, 2E, 50, 00, 8B, 00, 8B, 98, 70, 01, 00, 00, 53, E8, B8, AD, F0, FF, 25, 7F, FF, FF, FF, 50, 6A, EC, A1, 08, 2E, 50, 00, 53, E8, 0D, B0, F0, FF, 33, C0, 55, 68, 7F, F0, 4F, 00, 64, FF, 30, 64, 89, 20, 6A, 01, E8, 60, A7, F0, FF, E8, CF, DB, FF, FF, A1, 1C, CB, 4F, 00, 50, 68, 80, CB, 4F, 00, A1, 08, 2E, 50, 00, 8B, 00, E8, 48, CE, F7, FF, E8, 23, DC, FF, FF, 33, C0, 5A, 59, 59, 64, 89, 10, EB, 19, E9, 5C, 56, F0, FF...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
1014 KB (1,038,336 bytes)

Program Uninstaller
Program name:
WebSecurity Extension version 16.40

Display version:
16.40

Uninstall string:
"C:\Program Files (x86)\Microsoft Data\unins000.exe"


Remove unins000.exe - Powered by Reason Core Security