unins000.exe

Tishin Alexander

The application unins000.exe by Tishin Alexander has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. This is a setup and installation application and has been known to bundle potentially unwanted software. This is the uninstaller utility registered in the Windows Control Panel for the program WebSecurity Extension version 16.40.
Publisher:
Tishin Alexander  (signed and verified)

Description:
Setup/Uninstall

Version:
51.1052.0.0

MD5:
fc3441d8bda043231ac02c82897821c0

SHA-1:
c1cfd50162434290921ed8d999ad5b867aaca83c

SHA-256:
7dade89e2fa677cf888ba88b31caa273636b70f4cc232f945681d7b4169a8c2b

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
12/26/2024 9:49:31 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Adware.TA.Downloader (M)
17.1.25.17

File size:
1.1 MB (1,175,584 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\microsoft data\unins000.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
12/5/2013 5:00:00 AM

Valid to:
12/6/2014 4:59:59 AM

Subject:
CN=Tishin Alexander, O=Tishin Alexander, STREET="Energetikov street, 28/81", L=Konakovo, S=Tver, PostalCode=171252, C=RU

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
008136E5767018FC70DF114887210B0CAF

File PE Metadata
Compilation timestamp:
1/30/2013 7:21:57 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

Entry address:
0xFF004

Entry point:
55, 8B, EC, 83, C4, F0, 53, 56, 57, B8, E4, CE, 4F, 00, E8, 25, 9F, F0, FF, 6A, EC, A1, 08, 2E, 50, 00, 8B, 00, 8B, 98, 70, 01, 00, 00, 53, E8, B8, AD, F0, FF, 25, 7F, FF, FF, FF, 50, 6A, EC, A1, 08, 2E, 50, 00, 53, E8, 0D, B0, F0, FF, 33, C0, 55, 68, 7F, F0, 4F, 00, 64, FF, 30, 64, 89, 20, 6A, 01, E8, 60, A7, F0, FF, E8, CF, DB, FF, FF, A1, 1C, CB, 4F, 00, 50, 68, 80, CB, 4F, 00, A1, 08, 2E, 50, 00, 8B, 00, E8, 48, CE, F7, FF, E8, 23, DC, FF, FF, 33, C0, 5A, 59, 59, 64, 89, 10, EB, 19, E9, 5C, 56, F0, FF...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
1014 KB (1,038,336 bytes)

Program Uninstaller
Program name:
WebSecurity Extension version 16.40

Display version:
16.40

Uninstall string:
"C:\Program Files (x86)\Microsoft Data\unins000.exe"


Remove unins000.exe - Powered by Reason Core Security