uninstall.exe

OpenIV

New Technology Studio

Publisher:
New Technology Studio

Product:
OpenIV

Description:
OpenIV setup

Version:
1.0.0.0

MD5:
92bf46042a439094a6fd5aaac282212b

SHA-1:
09676a01a210633313ef2d2c7c37e51de6acc825

SHA-256:
6922c1c6f344eee08d7e9ad2b8ce38f38f8002c3f6315f326657584843e0a460

Scanner detections:
2 / 68

Status:
Clean  (2 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
11/15/2024 3:39:14 AM UTC  (today)

Scan engine
Detection
Engine version

AhnLab V3 Security
Trojan/Win32.Genome
2014.06.14

Trend Micro House Call
TROJ_GEN.F47V0603
7.2.165

File size:
5.2 MB (5,498,368 bytes)

Product version:
1.0.0.0

Copyright:
© New Technology Studio

Original file name:
ovisetup.exe

File type:
Executable application (Win32 EXE)

Language:
Russian (Russia)

Common path:
C:\users\{user}\appdata\local\new technology studio\apps\openiv\uninstall.exe

File PE Metadata
Compilation timestamp:
6/1/2014 1:45:27 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
98304:V3TxH4k4dbzWTFiQ9wgmSMadxfcjFVpPN:9T7FzcSfCFVpF

Entry address:
0x3083B4

Entry point:
55, 8B, EC, 83, C4, F0, 53, 56, 57, B8, 58, B2, 6F, 00, E8, 61, 5D, D0, FF, 33, D2, 55, 68, F3, 83, 70, 00, 64, FF, 32, 64, 89, 22, A1, B4, 55, 6F, 00, E8, 1D, D3, FE, FF, A1, B4, 55, 6F, 00, E8, B3, D8, FE, FF, 33, C0, 5A, 59, 59, 64, 89, 10, EB, 24, E9, D0, 02, D0, FF, 01, 00, 00, 00, EC, D6, 41, 00, 04, 84, 70, 00, 8B, C8, 33, D2, A1, B4, 55, 6F, 00, E8, 22, DA, FE, FF, E8, DD, 05, D0, FF, 5F, 5E, 5B, E8, 89, 0B, D0, FF, 90, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.6847

Developed / compiled with:
Microsoft Visual C++

Code size:
3 MB (3,173,888 bytes)

The file uninstall.exe has been seen being distributed by the following 2 URLs.

Scan uninstall.exe - Powered by Reason Core Security