aceraceuninstall.exe

Ace Race

This is the installer/setup program for a Yontoo adware component, a web browser plugin that injects unwanted ads in the browser. The application aceraceuninstall.exe by Ace Race has been detected as adware by 16 anti-malware scanners. The program is a setup application that uses the NSIS (Nullsoft Scriptable Install System) installer. This is the uninstaller utility registered in the Windows Control Panel for the program ace race by ace race. Additionally, the file is typically installed by a number of programs including ace race by Yontoo Technology, Inc. and Buzzdock by Alactro LLC, both potentially unwanted software. It will plug into the web browser and display context-based advertisements by overwriting existing ads or by inserting new ones on various web pages.
Publisher:
Ace Race  (signed and verified)

MD5:
0ab9d96e416e2cc5008e53a62a6d3ac3

SHA-1:
75ab9b0da04339e65c8a8c13ef79aa0ca0c52e20

SHA-256:
443491ded904b785fe04c09a9c419be403dae714c4423694ced99367f9fd5865

Scanner detections:
16 / 68

Status:
Adware

Explanation:
Injects advertising in the web browser in various formats.

Analysis date:
4/26/2024 9:08:47 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Dropped:Adware.BrowseFox.BB
6460321

AhnLab V3 Security
Win-PUP/BrowseFox.Gen
2015.01.29

Avira AntiVirus
ADWARE/BrowseFox.Gen4
7.11.205.178

AVG
Generic
2016.0.3216

Baidu Antivirus
Adware.Win32.BrowseFox
4.0.3.15128

Bitdefender
Dropped:Adware.BrowseFox.BB
1.0.20.140

Dr.Web
Trojan.Yontoo.474
9.0.1.05190

Emsisoft Anti-Malware
Dropped:Adware.BrowseFox.BB
9.0.0.4799

ESET NOD32
Win32/BrowseFox.C potentially unwanted application
7.0.302.0

F-Secure
Dropped:Adware.BrowseFox.BB
5.13.68

G Data
Dropped:Adware.BrowseFox.BB
15.1.25

K7 AntiVirus
Unwanted-Program
13.193.14786

MicroWorld eScan
Dropped:Adware.BrowseFox.BB
16.0.0.84

nProtect
Dropped:Adware.BrowseFox.BB
15.01.28.01

Qihoo 360 Security
Win32/Virus.Adware.650
1.0.0.1015

Reason Heuristics
PUP.Yontoo
15.1.28.11

File size:
254.7 KB (260,856 bytes)

File type:
Executable application (Win32 EXE)

Installer:
NSIS (Nullsoft Scriptable Install System)

Common path:
C:\Program Files\ace race\aceraceuninstall.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
10/7/2014 5:30:00 AM

Valid to:
10/8/2015 5:29:59 AM

Subject:
CN=Ace Race, O=Ace Race, L=Santa Monica, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
47DF877938071D6194F321723076892E

File PE Metadata
Compilation timestamp:
12/6/2009 4:22:01 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
6144:/Z+11e4HVQPy/1RWBT5aZw0k+NCsDwZm/G/HcN32m:SHVQPs1s15SwuMWp/G/8Nl

Entry address:
0x30CB

Entry point:
81, EC, 80, 01, 00, 00, 53, 55, 56, 33, DB, 57, 89, 5C, 24, 18, C7, 44, 24, 10, 60, 91, 40, 00, 33, F6, C6, 44, 24, 14, 20, FF, 15, 30, 70, 40, 00, 68, 01, 80, 00, 00, FF, 15, B0, 70, 40, 00, 53, FF, 15, 7C, 72, 40, 00, 6A, 08, A3, 38, 6F, 44, 00, E8, F1, 2B, 00, 00, A3, 84, 6E, 44, 00, 53, 8D, 44, 24, 34, 68, 60, 01, 00, 00, 50, 53, 68, 30, 9C, 42, 00, FF, 15, 58, 71, 40, 00, 68, 54, 91, 40, 00, 68, 80, 2E, 44, 00, E8, A4, 28, 00, 00, FF, 15, AC, 70, 40, 00, BF, 00, F0, 46, 00, 50, 57, E8, 92, 28, 00, 00...
 
[+]

Entropy:
7.8705

Packer / compiler:
Nullsoft install system v2.x

Code size:
22.5 KB (23,040 bytes)

Program Uninstaller
Program name:
ace race

Display publisher:
ace race

Display version:
2015.01.28.082352

Uninstall string:
C:\Program Files (x86)\ace race\aceraceuninstall.exe


The file aceraceuninstall.exe has been discovered within the following programs.

ace race  by Yontoo Technology, Inc.
Ace Race is an ad-supported program that will display third-party advertisements in the form of coupons, price-comparisons, display media, affiliate links, banners, popups/popunders and other links through means including but not limited to the content of any web page accessed, plug-ins, add-ons, or the browser itself.
acerace.net/support
86% remove it
Buzzdock  by Alactro LLC
This is a web browser extension that injects advertising. From the EULA: "Buzzdock is free to download and use. Buzzdock is supported by advertising, and users will see additional ads on websites where Buzzdock features operate.
www.buzzdock.com/faq-support
79% remove it
 
Powered by Should I Remove It?

Remove aceraceuninstall.exe - Powered by Reason Core Security