uninst.exe

SpyZooka

ZookaWare, LLC.

The application uninst.exe, “SpyZooka Installation Package” by ZookaWare has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. The program is a setup application that uses the NSIS (Nullsoft Scriptable Install System) installer. This is the uninstaller utility registered in the Windows Control Panel for the program SpyZooka by ZookaWare. This file is typically installed with the program SpyZooka by ZookaWare.
Publisher:
ZookaWare  (signed by ZookaWare, LLC.)

Product:
SpyZooka

Description:
SpyZooka Installation Package

Version:
2.94

MD5:
ad6a8f0a433108bd0f3f2fa06f7af52d

SHA-1:
af8b965563021aca9a9f528b8d9e6af01bdd15a3

SHA-256:
1c19b2234c7a358a135984567912d1d52410750b0a6a1521f5de98a406813cf2

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
12/27/2024 9:09:53 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Optional.Installer.G
14.7.31.8

File size:
79.2 KB (81,080 bytes)

Product version:
2.94

Copyright:
© ZookaWare, LLC. All rights reserved.

Trademarks:
SpyZooka is a trademark of ZookaWare, LLC.

File type:
Executable application (Win32 EXE)

Installer:
NSIS (Nullsoft Scriptable Install System)

Language:
Language Neutral

Common path:
C:\Program Files\spyzooka\uninst.exe

Digital Signature
Signed by:

Authority:
DigiCert Inc

Valid from:
7/19/2014 2:00:00 AM

Valid to:
9/3/2014 2:00:00 PM

Subject:
CN="ZookaWare, LLC.", O="ZookaWare, LLC.", L=Anchorage, S=Alaska, C=US, PostalCode=99501, STREET=900 W 5th Ave Ste 101, SERIALNUMBER=10007133, OID.1.3.6.1.4.1.311.60.2.1.2=Alaska, OID.1.3.6.1.4.1.311.60.2.1.3=US, OID.2.5.4.15=Private Organization

Issuer:
CN=DigiCert EV Code Signing CA, OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
0BCF3EB418817C9E52AFCF6DA113DC9D

File PE Metadata
Compilation timestamp:
12/5/2009 11:50:29 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
1536:ViZU91Rzv4f/+LHgmpoM4sXJBg+VVkLjAyNFpFWlT5oQqmYSoC:ViezvrL9oMXJBJojAmEWrs

Entry address:
0x30DE

Entry point:
81, EC, 80, 01, 00, 00, 53, 55, 56, 33, DB, 57, 89, 5C, 24, 18, C7, 44, 24, 10, 60, 91, 40, 00, 33, F6, C6, 44, 24, 14, 20, FF, 15, 30, 70, 40, 00, 68, 01, 80, 00, 00, FF, 15, B0, 70, 40, 00, 53, FF, 15, 7C, 72, 40, 00, 6A, 08, A3, 58, 27, 7A, 00, E8, F1, 2B, 00, 00, A3, A4, 26, 7A, 00, 53, 8D, 44, 24, 34, 68, 60, 01, 00, 00, 50, 53, 68, 68, DC, 79, 00, FF, 15, 58, 71, 40, 00, 68, 54, 91, 40, 00, 68, A0, 1E, 7A, 00, E8, A4, 28, 00, 00, FF, 15, AC, 70, 40, 00, BF, 00, 80, 7A, 00, 50, 57, E8, 92, 28, 00, 00...
 
[+]

Packer / compiler:
Nullsoft install system v2.x

Code size:
23 KB (23,552 bytes)

Program Uninstaller
Program name:
SpyZooka

Display publisher:
ZookaWare

Display version:
1.0.0.0

Uninstall string:
C:\Program Files\SpyZooka\uninst.exe


The file uninst.exe has been discovered within the following program.

SpyZooka  by ZookaWare
Publisher's description - “SpyZooka doesn’t detect safe cookies to give the appearance that there is more spyware on your computer than there really is. We only detect real advertising cookies that track what you do online and display ads to you.”
zookaware.com/spyzooka
57% remove it
 
Powered by Should I Remove It?

Remove uninst.exe - Powered by Reason Core Security