uninstall.exe

Protoss Warp app

Include File Inc. LLC

The executable uninstall.exe has been detected as malware by 1 anti-virus scanner. This is a self-extracting archive and installer and has been known to bundle potentially unwanted software.
Publisher:
Include File Inc. LLC  (signed and verified)

Product:
Protoss Warp app

Description:
Protoss Warp

Version:
1, 0, 1234, 1

MD5:
d4b94578f3f7698fdecd9d4ffb5e2779

SHA-1:
ebc471bbf1aef05cb45b7d9d7e166a1ba56bc0e9

SHA-256:
bbfcceea4198f280f3cd206782965c1ec701eb441199860351ffcd0cc640ccb5

Scanner detections:
1 / 68

Status:
Malware

Analysis date:
11/15/2024 2:32:28 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Adeare.ExpressDownloader (M)
17.3.16.13

File size:
5 MB (5,265,632 bytes)

Product version:
10.192.2.1

Copyright:
Protoss Warp (c) 2016

Original file name:
Protoss Warp.exe

File type:
Executable application (Win32 EXE)

Language:
English

Common path:
C:\Program Files\srpnfiles\uninstall.exe

Digital Signature
Authority:
Include File Inc. LLC

Valid from:
10/15/2016 12:20:05 AM

Valid to:
10/15/2017 12:20:05 AM

Subject:
CN=Include File LLC, OU=Include File Inc. LLC, O=Include File Inc. LLC, S=London, C=UK

Issuer:
CN=Include File LLC, C=UK, S=London, L=London, E=admin@includefile.com, OU=Include File Inc. LLC, O=Include File Inc. LLC

Serial number:
100001

File PE Metadata
Compilation timestamp:
10/15/2016 12:54:40 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
14.0

Entry address:
0x165044

Entry point:
E8, B2, 06, 00, 00, E9, 00, 00, 00, 00, 6A, 14, 68, C0, 69, 66, 00, E8, 46, 06, 00, 00, 6A, 01, E8, 4C, FB, FF, FF, 59, 84, C0, 75, 07, 6A, 07, E8, 04, 02, 00, 00, 32, DB, 88, 5D, E7, 83, 65, FC, 00, E8, 35, FA, FF, FF, 88, 45, DC, A1, 0C, 8A, 67, 00, 33, C9, 41, 3B, C1, 74, DC, 85, C0, 75, 49, 89, 0D, 0C, 8A, 67, 00, 68, D4, 2A, 61, 00, 68, B0, 2A, 61, 00, E8, 23, 09, 05, 00, 59, 59, 85, C0, 74, 11, C7, 45, FC, FE, FF, FF, FF, B8, FF, 00, 00, 00, E9, F6, 00, 00, 00, 68, AC, 2A, 61, 00, 68, C0, 23, 61, 00...
 
[+]

Entropy:
7.5173

Code size:
2.1 MB (2,166,784 bytes)

Remove uninstall.exe - Powered by Reason Core Security