uninstaller.exe

Mpagosx, S.L.

The application uninstaller.exe by Mpagosx, S.L has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat. This is a setup and installation application and has been known to bundle potentially unwanted software. This is the uninstaller utility registered in the Windows Control Panel for the program Windows Service Pack (Yaimo) by Mpagosx,S.L..
Publisher:
Mpagosx, S.L.  (signed and verified)

MD5:
e43b17f9b0186d31915400b0015b659c

SHA-1:
26ee90b1e5152105a14917ee18f1d1dd79ba3450

SHA-256:
10fc3e270584536e9c71c45b191cc5bf8408f669cb2c8591f8aed69a1e5a7634

Scanner detections:
1 / 68

Status:
Adware

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
12/26/2024 11:46:31 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Mpagosx.Installer (M)
16.4.3.17

File size:
738.8 KB (756,552 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\yaimo\uninstaller.exe

Digital Signature
Signed by:

Authority:
DigiCert Inc

Valid from:
9/30/2013 9:00:00 PM

Valid to:
10/6/2014 9:00:00 AM

Subject:
CN="Mpagosx, S.L.", O="Mpagosx, S.L.", L=Cornella de Llobregat, S=Barcelona, C=ES

Issuer:
CN=DigiCert Assured ID Code Signing CA-1, OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
03CACC59110CD7A6D5B2E5BEDBE8D8C7

File PE Metadata
Compilation timestamp:
6/5/2014 10:52:35 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
12.0

CTPH (ssdeep):
12288:DRwhBGoaxeYX51b7I+bZGhKeZh3EFW5IbJpiCf96dwtJb/0:DRwhUoaAE1b7IaZG42Eo5iie9F0

Entry address:
0x8117B

Entry point:
E8, D6, 8B, 00, 00, E9, 7B, FE, FF, FF, 3B, 0D, 4C, 17, 4B, 00, 75, 02, F3, C3, E9, F6, 22, 00, 00, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 57, 56, 8B, 74, 24, 10, 8B, 4C, 24, 14, 8B, 7C, 24, 0C, 8B, C1, 8B, D1, 03, C6, 3B, FE, 76, 08, 3B, F8, 0F, 82, 68, 03, 00, 00, 0F, BA, 25, 18, 48, 4B, 00, 01, 73, 07, F3, A4, E9, 17, 03, 00, 00, 81, F9, 80, 00, 00, 00, 0F, 82, CE, 01, 00, 00, 8B, C7, 33, C6, A9, 0F, 00, 00, 00, 75, 0E, 0F, BA, 25, B0, 17, 4B, 00, 01, 0F, 82, DA, 04, 00, 00, 0F, BA, 25, 18, 48...
 
[+]

Code size:
621 KB (635,904 bytes)

Program Uninstaller
Program name:
Windows Service Pack (Yaimo)

Display publisher:
Mpagosx,S.L.

Uninstall string:
C:\Program Files\Yaimo\Uninstaller.exe


Remove uninstaller.exe - Powered by Reason Core Security