uninstall.exe

360 Amigo System SpeedUp

Business Bakers

The application uninstall.exe by Business Bakers has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. This is a setup and installation application and has been known to bundle potentially unwanted software.
Publisher:
360Amigo  (signed by Business Bakers)

Product:
360 Amigo System SpeedUp

Version:
1.2.1.1200

MD5:
0f5023a890d117e3cc46505aa1bd1f63

SHA-1:
ff6a2e8fec221419f3d1d96b9356cf97bccaaff6

SHA-256:
f81365c2e3ef78de41fef7d13ae374deec5543637a6bd44a2e1c3aee3ea91ce9

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
12/26/2024 5:27:43 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Win32.Generic
16.10.9.4

File size:
2.2 MB (2,319,432 bytes)

Product version:
1.2

Copyright:
Copyright 2009-2010 by 360Amigo

Trademarks:
360Amigo

Original file name:
Setup.exe

File type:
Executable application (Win32 EXE)

Language:
English (United Kingdom)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\uninstall.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
7/29/2010 8:00:00 PM

Valid to:
7/30/2011 7:59:59 PM

Subject:
CN=Business Bakers, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Business Bakers, L=Helsinki, S=Helsinki, C=FI

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
71346AFF5AC5D072DC31F7DC3A872308

File PE Metadata
Compilation timestamp:
6/19/1992 6:22:17 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:1lhqKCEKkMC1bDLW6iReDtNQojkjKk0+BvEpxpF5sXJQz8ePIwts:1RCLkB13h1kJpEpxZsZQK

Entry address:
0x657001

Entry point:
60, E9, 3D, 04, 00, 00, 4F, 07, 69, 88, A7, C8, 6D, 33, 97, 1A, 29, 88, A4, FE, 46, 15, 77, 1C, 29, 88, 24, 9E, 91, C1, E3, 23, 6D, 01, 3A, DF, 24, CC, A7, 2C, E8, EE, A4, 23, 6D, 4F, 22, 10, 54, CC, A7, 23, 6D, 88, A7, AE, E8, 8C, ED, 67, 6D, D8, 58, B6, 6D, C3, E3, 23, E4, 0D, A7, 69, 29, 88, 2C, DB, E0, 15, B6, 69, 29, 88, F4, 73, 92, 1D, 5B, 69, 29, 88, 2E, A6, 91, B7, E3, 23, E0, 15, B9, 69, 29, 88, F4, 74, 92, 1D, 5B, 69, 29, 88, 2E, A6, 6D, C8, E3, 23, E0, 0D, 12, 1A, 29, 88, 58, C3, BD, 2F, AD, 23...
 
[+]

Entropy:
7.9962

Packer / compiler:
ASPack v2.11

Code size:
679 KB (695,296 bytes)

Remove uninstall.exe - Powered by Reason Core Security