uninstall.exe

Jenkat Games Arcade App

Jenkat Media, Inc

The application uninstall.exe by Jenkat Media, Inc has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. The program is a setup application that uses the NSIS (Nullsoft Scriptable Install System) installer. This is the uninstaller utility registered in the Windows Control Panel for the program Jenkat Games Arcade App by Jenkat Media Inc..
Publisher:
Jenkat Media Inc.  (signed by Jenkat Media, Inc)

Product:
Jenkat Games Arcade App

Version:
1.2.0

MD5:
d7cabccbb5701ef9cb529af33b639ada

SHA-1:
3d38606db4b16532c0a693797d1387940b08cd53

SHA-256:
681864b9835f99942c811243c8c9c5406fd1eb7f7e65c3e5bea8bebd05622206

Scanner detections:
1 / 68

Status:
Potentially unwanted

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
12/23/2024 11:19:33 PM UTC  (a few moments ago)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.JenkatMedia.Installer (M)
16.3.8.6

File size:
140.6 KB (143,984 bytes)

Product version:
1.2.0

File type:
Executable application (Win32 EXE)

Installer:
NSIS (Nullsoft Scriptable Install System)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\roaming\jgarcadeapp\jenkat games arcade app\uninstall.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
2/27/2014 2:00:00 AM

Valid to:
3/30/2015 1:59:59 AM

Subject:
CN="Jenkat Media, Inc", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Jenkat Media, Inc", L=Lake Elmo, S=Minnesota, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
5D7470CB5DF1CA3BBA22A38CF2E4AF70

File PE Metadata
Compilation timestamp:
12/6/2009 12:50:46 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
3072:ZQIURTXJbfKjMbE4AuiU4ZwR+ORN52Li4AM:ZsFiYbE4A9xZwIkOLCM

Entry address:
0x323C

Entry point:
81, EC, 80, 01, 00, 00, 53, 55, 56, 33, DB, 57, 89, 5C, 24, 18, C7, 44, 24, 10, 30, 91, 40, 00, 33, F6, C6, 44, 24, 14, 20, FF, 15, 30, 70, 40, 00, 68, 01, 80, 00, 00, FF, 15, B4, 70, 40, 00, 53, FF, 15, 7C, 72, 40, 00, 6A, 08, A3, 58, 3F, 42, 00, E8, 09, 2C, 00, 00, A3, A4, 3E, 42, 00, 53, 8D, 44, 24, 34, 68, 60, 01, 00, 00, 50, 53, 68, 58, F4, 41, 00, FF, 15, 58, 71, 40, 00, 68, B8, 91, 40, 00, 68, A0, 36, 42, 00, E8, BC, 28, 00, 00, FF, 15, B0, 70, 40, 00, BF, 00, 90, 42, 00, 50, 57, E8, AA, 28, 00, 00...
 
[+]

Entropy:
7.4735

Packer / compiler:
Nullsoft install system v2.x

Code size:
23 KB (23,552 bytes)

Program Uninstaller
Program name:
Jenkat Games Arcade App

Display publisher:
Jenkat Media Inc.

Display version:
1.5.0

Uninstall string:
C:\users\{user}\appdata\roaming\jgarcadeapp\jenkat games arcade app\uninstall.exe


Remove uninstall.exe - Powered by Reason Core Security