uninstalltoolwizcare.exe

ToolWiz Care

XII CNC Inc.

This is a setup program which is used to install the application. This is the uninstaller utility registered in the Windows Control Panel for the program Toolwiz Care by ToolWiz Care. This file is installed with the program Toolwiz Care. The file has been seen being downloaded from download.toolwiz.com.
Publisher:
ToolWiz  (signed by XII CNC Inc.)

Product:
ToolWiz Care

Version:
2.0.0.3500

MD5:
22c3a519e0a1b1e78b6332632b90ee7e

SHA-1:
2a8e878dc483a28c9859b32cd07d5d09240b834b

SHA-256:
dd41d48f83e03dec73f2c20d038e126383904a2e2f0d1b9b81a3bec4bf6741b5

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
11/15/2024 10:22:59 PM UTC  (today)

Scan engine
Detection
Engine version

Rising Antivirus
PE:Trojan.Agent!6.670
23.00.65.14201

File size:
7.6 MB (7,965,504 bytes)

Product version:
2.0

Copyright:
Copyright(c) 2012 by ToolWiz.com

Trademarks:
ToolWiz

Original file name:
Setup.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\toolwizcarefree\uninstalltoolwizcare.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
8/28/2012 5:00:00 PM

Valid to:
9/28/2013 4:59:59 PM

Subject:
CN=XII CNC Inc., OU=Digital ID Class 3 - Microsoft Software Validation v2, O=XII CNC Inc., L=Anyang-si, S=Gyunggi-do, C=KR

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
5AE657C73341F9A5D7BDDD336C543E67

File PE Metadata
Compilation timestamp:
6/19/1992 3:22:17 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
196608:MR/7Sdhfj9ad4So6fJEKtHjRqQi7a/ymodvcf0y5kK:M1Kqo6HtHdqQua/yrK0yqK

Entry address:
0xFD9001

Entry point:
60, E9, 3D, 04, 00, 00, E1, 0B, 60, BC, F9, D1, 5C, 77, 29, 20, A0, BC, FC, C3, 87, 59, C9, 26, A0, BC, 7C, A4, 58, 06, 3D, E7, 5B, 45, 96, E3, A5, 00, F9, F5, E0, 22, FC, E6, 5B, 83, 7E, 1A, 95, 00, F9, E6, 5B, BC, F9, 73, E1, C0, 43, 2B, 5C, 0C, F8, 7C, 5C, 07, 3D, E7, E4, 41, F9, 30, A0, BC, 84, DF, E9, 59, 0A, 31, A0, BC, 4C, 37, 5B, 52, F5, 31, A0, BC, 82, 6C, 58, FC, 3D, E7, E8, 59, 17, 31, A0, BC, 4C, 3E, 5B, 52, F5, 31, A0, BC, 82, 6C, 5C, FC, 3D, E7, E8, 41, AE, 20, A0, BC, F8, C7, 78, 23, 0E, E7...
 
[+]

Entropy:
7.9938

Packer / compiler:
ASPack v2.11

Code size:
1.3 MB (1,399,808 bytes)

Program Uninstaller
Program name:
Toolwiz Care

Display publisher:
ToolWiz Care

Display version:
2.0.0.3500

Uninstall string:
"C:\Program Files (x86)\ToolwizCareFree\UninstallToolwizCare.exe" /REMOVE


The file uninstalltoolwizcare.exe has been discovered within the following program.

Toolwiz Care  by ToolWiz
Publisher's description - “ToolWiz Care is a set of free-of-charge tools designed to speed up your PC and give your system a full range of care.”
www.Toolwiz.com
4% remove it
 
Powered by Should I Remove It?

The file uninstalltoolwizcare.exe has been seen being distributed by the following URL.

Scan uninstalltoolwizcare.exe - Powered by Reason Core Security