uninstall.exe

iWin, Inc

The program is a setup application that uses the NSIS (Nullsoft Scriptable Install System) installer. This is the uninstaller utility registered in the Windows Control Panel for the program Wonderful Wizard of Oz (quitar).
Publisher:
iWin, Inc  (signed and verified)

MD5:
082c8a2267f49918b29ad7ab8ab268d2

SHA-1:
631f14c47b65e36dd1ab9418a59f5e670815158b

SHA-256:
e656a58da3d04d20dee6438b9155186dbb3de0f2dbd3805fe121d7ef24f41b8a

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/23/2024 9:43:35 AM UTC  (today)

File size:
106.7 KB (109,256 bytes)

File type:
Executable application (Win32 EXE)

Installer:
NSIS (Nullsoft Scriptable Install System)

Digital Signature
Signed by:

Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
11/11/2008 1:00:00 AM

Valid to:
11/17/2010 12:59:59 AM

Subject:
CN="iWin, Inc", OU=SECURE APPLICATION DEVELOPMENT, O="iWin, Inc", L=San Francisco, S=California, C=US

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
49D63444577DD6032954EF0D46052C79

File PE Metadata
Compilation timestamp:
1/28/2009 8:42:55 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

Entry address:
0x340C

Entry point:
81, EC, D4, 02, 00, 00, 53, 55, 56, 57, 6A, 20, 33, ED, 5E, 89, 6C, 24, 18, C7, 44, 24, 10, 70, 85, 40, 00, 89, 6C, 24, 14, FF, 15, 30, 80, 40, 00, 68, 01, 80, 00, 00, FF, 15, B4, 80, 40, 00, 55, FF, 15, B0, 82, 40, 00, 6A, 08, A3, 98, B3, 47, 00, E8, 64, 27, 00, 00, 55, 68, B4, 02, 00, 00, A3, B0, B2, 47, 00, 8D, 44, 24, 38, 50, 55, 68, 6C, 85, 40, 00, FF, 15, 80, 81, 40, 00, 68, 54, 85, 40, 00, 68, A0, 32, 47, 00, E8, 32, 26, 00, 00, FF, 15, B0, 80, 40, 00, 50, BF, A0, C0, 4C, 00, 57, E8, 20, 26, 00, 00...
 
[+]

Packer / compiler:
Nullsoft install system v2.x

Code size:
26 KB (26,624 bytes)

Program Uninstaller
Program name:
Wonderful Wizard of Oz (quitar)

Uninstall string:
"C:\users\{user}\desktop\juegos\wonderful wizard of oz\uninstall.exe"


Scan uninstall.exe - Powered by Reason Core Security