Uninstall.exe

Picexa Viewer

Taiwan Shui Mu Chih Ching Technology Limited

The application Uninstall.exe by Taiwan Shui Mu Chih Ching Technology Limited has been detected as adware by 5 anti-malware scanners. This is a self-extracting archive and installer and has been known to bundle potentially unwanted software. This is the uninstaller utility registered in the Windows Control Panel for the program Picexa by Taiwan Shui Mu Chih Ching Technology Limited. This file is typically installed with the program Picexa by Taiwan Shui Mu Chih Ching Technology Limited..
Publisher:

Product:
Picexa Viewer

Version:
2.1.4.278

MD5:
d1f31d8da4e3b877dbada25048bb017a

SHA-1:
cbc4e6165977676c56f5308ea1e979323145a50b

SHA-256:
c17619ff1948d739e367a8822e235ac605448778aaaea085977e5cf42ae7e650

Scanner detections:
5 / 68

Status:
Adware

Analysis date:
11/5/2024 2:32:27 AM UTC  (today)

Scan engine
Detection
Engine version

Bkav FE
W32.HfsAdware
1.3.0.6379

Dr.Web
Adware.Mutabaha.229
9.0.1.088

herdProtect (fuzzy)
2015.7.3.16

Reason Heuristics
PUP.Installer.Thinknice
15.3.29.9

Trend Micro House Call
Suspicious_GEN.F47V0326
7.2.88

File size:
408.7 KB (418,488 bytes)

Product version:
2.1.4.278

Copyright:
Copyright (c)Taiwan Shui Mu Chih Ching Technology Limited. All Rights Reserved.

Original file name:
Uninstall.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\picexa\uninstall.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
3/6/2015 7:19:12 AM

Valid to:
3/4/2016 10:26:37 AM

Subject:
CN=Taiwan Shui Mu Chih Ching Technology Limited, O=Taiwan Shui Mu Chih Ching Technology Limited, L=Taipei City, S=Taiwan, C=TW

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
112127474DE010DA49D31D0EE8193EAC2D0E

File PE Metadata
Compilation timestamp:
3/26/2015 3:25:02 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
6144:UjVfoXfuU1O6q72Qm2deSgAQ7NzzkaGYotiV8qsZfcdClibDjZdNz6ptCJSb:QoXu2edexAGzrdSiV8qsZfcdClifnSb

Entry address:
0x32B3E

Entry point:
E8, CE, 04, 00, 00, E9, 4C, FE, FF, FF, FF, 25, 30, 92, 43, 00, 55, 8B, EC, FF, 15, 84, 91, 43, 00, 6A, 01, A3, D4, 8F, 45, 00, E8, BF, 05, 00, 00, FF, 75, 08, E8, BD, 05, 00, 00, 83, 3D, D4, 8F, 45, 00, 00, 59, 59, 75, 08, 6A, 01, E8, A5, 05, 00, 00, 59, 68, 09, 04, 00, C0, E8, A6, 05, 00, 00, 59, 5D, C3, 55, 8B, EC, 81, EC, 24, 03, 00, 00, 6A, 17, E8, 6B, 15, 00, 00, 85, C0, 74, 05, 6A, 02, 59, CD, 29, A3, B8, 8D, 45, 00, 89, 0D, B4, 8D, 45, 00, 89, 15, B0, 8D, 45, 00, 89, 1D, AC, 8D, 45, 00, 89, 35, A8...
 
[+]

Code size:
222 KB (227,328 bytes)

Program Uninstaller
Program name:
Picexa

Display publisher:
Taiwan Shui Mu Chih Ching Technology Limited

Uninstall string:
C:\Program Files (x86)\Picexa\uninstall.exe


The file Uninstall.exe has been discovered within the following program.

Picexa  by Taiwan Shui Mu Chih Ching Technology Limited.
About 2% of users remove it
 
Powered by Should I Remove It?

Remove Uninstall.exe - Powered by Reason Core Security