vanity remover.exe

Vanity Remover

Geeky Productions

Publisher:
Geeky Productions

Product:
Vanity Remover

Description:
Vanity Remover - WinForms GUI

Version:
1.5.0.0

MD5:
d2db914565885a0554dd06994ad19dd8

SHA-1:
1cbfbe9952167b344e37f0ec58c3558a2dba0002

SHA-256:
60efaee4a9021f9c44b3e097898e6a2ea71fab040e94fab439262e70678ffdfb

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/23/2024 12:35:08 PM UTC  (today)

File size:
32.5 KB (33,280 bytes)

Product version:
1.5.0.0

Copyright:
Copyright © 2009 Svish

Original file name:
VanityRemover.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\Program Files\vanity remover.exe

File PE Metadata
Compilation timestamp:
10/28/2009 12:15:29 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
384:J/PFHlGdosokd7375i7gRrvP96uO9qNNNtVz2M22dp/0mDvEOnrh9Y/raNxC9qNp:TlGd7NXz722J9Y/ralOzU

Entry address:
0x7F02

Entry point:
FF, 25, 10, 7F, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, E4, 7E, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 81, E1, E7, 4A, 00, 00, 00, 00, 02, 00, 00, 00, 7B, 00, 00, 00, 34, 7F, 00, 00, 34, 61, 00, 00, 52, 53, 44, 53, 47, 5B, 3A, 98, A3, 38, 83, 47, 9E, 26, 83, E2, 5D, 19, 4A, 1E, 01, 00, 00, 00, 45, 3A, 5C, 44, 65, 76, 65, 6C, 6F, 70, 6D, 65, 6E, 74, 5C, 57, 69, 6E, 64, 6F, 77, 73, 5C, 46, 6F, 6C, 64, 65, 72, 20, 56, 61, 6E, 69, 74, 79, 20, 52, 65, 6D, 6F, 76, 65, 72, 5C, 56, 61, 6E, 69, 74, 79, 52, 65, 6D...
 
[+]

Entropy:
6.1700

Code size:
24 KB (24,576 bytes)

The file vanity remover.exe has been discovered within the following program.

Sophos Virus Removal Tool  by Sophos Limited
Publisher's description - “We know all about viruses and they’re a pain. They can slow down your computer or try to steal your data and you might not even know you’ve got one. What you need is a quick and easy way to find and get rid of them.”
www.sophos.com
7% remove it
 
Powered by Should I Remove It?

The file vanity remover.exe has been seen being distributed by the following 22 URLs.

https://download-codeplex.sec.s-msft.com/.../Release?ProjectName=vanityremover&DownloadId=89586&FileTime=129011806409530000&Build=21031

http://gsf-cf.softonic.com/1cb/fbe/.../file?SD_used=0&channel=WEB&fdh=no&id_file=80383&instance=softonic_en&type=PROGRAM&Expires=1476986245&Signature=fnCO5fqSm07pOYqdBiGNcMNXLtymuJQBAUKZ6p4CstWXBlFGueLmM87omvSuhvmN7oPhiNCmaAtzoF2yNsa2n1gltzt5DAQaPbD8iMAaWNjquumfVKv1FyCAzXCGmyUdsej1WPFOPAEJIwRtc4JqPeTd6wTbMdtCwz-sCi7zi0M_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=VanityRemover.exe

https://mega.nz/persistent/.../OZwTSSAZ

http://gsf-cf.softonic.com/1cb/fbe/.../file?SD_used=0&channel=WEB&fdh=no&id_file=80383&instance=softonic_en&type=PROGRAM&Expires=1456418822&Signature=XgD8vUhbNllYZIo-EC9DJRmMlk1ZKwdvluRI-4JcWA14VZQcILoXFLk8ibM~BIZPpT-bIfF-S6JKBKckOzRk4jKmFAWhd2Hd4iLYbDJWQo4V7ekBecx6ebStbHn-fevwYrBSdWljKl6VzIcws1AIAEGmVgXn11KiqD1q70d~DMQ_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=VanityRemover.exe

https://dw.uptodown.com/dwn/kOn_RMklTgg1B0hjjYBdtPUJjNWmUpFLPoT66qOVKx8lwc2l2F0aNBHnu2RTQpiclHXuuEPB-jKN-se3YqAVIU_JP0Exanujv3idMdud5iRVYDeQFiatR2Sfg90q1mJW/LEtar9SiultxV-YvsdUSCu2DdMru2rRLHOHZd7p00nCSmUsb1LIKKrkeN5zRNoAgkd_upoGZ_eMhEVixHaKf97gvWGfXkri4uDnZjxpkfQKIpVzO-D-Z5ZhdQJGe41_3/qldJT2-Z9KrBRcL1FMnUJ1wLblENQM-GTMvpL8CVldB6ULp-yj5MpuZ9GDFVSavSa22UTHxM9c9xQcrsIK9qXwOdYeECQ8FQq6TB79Yb6eTSBEyjyh6sBgaTGXgAaR1e/.../

http://gsf-cf.softonic.com/1cb/fbe/.../file?SD_used=0&channel=WEB&fdh=no&id_file=80383&instance=softonic_en&type=PROGRAM&Expires=1459016254&Signature=Nkvq4AnU9vHSGYl3Xl21VBxpvWw7VBuaTkkhmCnN0VGAkt~xm9iKsIt5a-pJMWKpenrg9wM52amq3iqvbTO06V3EHNJFw5rRNRLGlkT2hveHEkX1ad-WXwSceWT3N1T41OOubT-dyxAaKHKh1xVfJZF~I7EEIGbAwc3gZ-v~egs_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=VanityRemover.exe

http://gsf-cf.softonic.com/1cb/fbe/.../file?SD_used=0&channel=WEB&fdh=no&id_file=80383&instance=softonic_en&type=PROGRAM&Expires=1476246469&Signature=NdxNjfhn0Lf1TE3H-oG45MY~up-TA-HwCTxiUapFcy4YtSCmZH~1q5tg1t5KiLaPGzik9up2MMPfS~LHt6lcmh0d0chQEEgaDqpss9MmN25vQRrv3B7YxNx5wOoOLgBS~qBpY5jLfj~LMlSKKWkj7LNjWWaR2toeLe9KSiEg0eE_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=VanityRemover.exe

http://gsf-cf.softonic.com/1cb/fbe/.../file?SD_used=0&channel=WEB&fdh=no&id_file=80383&instance=softonic_en&type=PROGRAM&Expires=1480051799&Signature=Wl6r0o4G2zLShAjrR5jjGjsUf3c3Tnub2W9DCsejkD1WnwGQao~9IdtxObQqNafnRKQJK-KZzZn2PAH-~kzvNST1hvmUWWuc7vuYmIGRTLzbRIRPmCQRjiOt03h41HubLtuuOOZ6odh-9HNNPcldBxceOOrq-UfeNQ-~-Yl8C3U_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=VanityRemover.exe

http://download2032.mediafire.com/h72dzrrxyypg/.../Vanity Remover.exe

http://download1815.mediafire.com/717hk80cpabg/.../Vanity Remover.exe

Scan vanity remover.exe - Powered by Reason Core Security