AKDeInstall.exe

DeInstall

AKApplications e.K.

This is a setup and installation application. This is the uninstaller utility registered in the Windows Control Panel for the program Z-DBackup by IMU Andreas Baumann.
Publisher:
AKApplications e.K.  (signed and verified)

Product:
DeInstall

Description:
DeInstaller

Version:
4.3.520

MD5:
c329d2fe29b84a736fce6f14e78cc121

SHA-1:
f560a7007fe31f3ffed3ca293653a9de9f5894b4

SHA-256:
8320b658646409560da1601ab4be8db3f9fc76a595b8d7a375b0b666c5c14a88

Scanner detections:
3 / 68

Status:
Clean  (3 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
4/25/2024 9:58:00 PM UTC  (today)

Scan engine
Detection
Engine version

Dr.Web
infected with Trojan.MulDrop6.14086
9.0.1.05190

NANO AntiVirus
Trojan.Win32.Siggen5.cxfrbr
0.28.2.62286

Trend Micro House Call
Suspicious_GEN.F47V0827
7.2.361

File size:
250.9 KB (256,888 bytes)

Product version:
4.3.520

Copyright:
Copyright (C), AKApplications

Original file name:
AKDeInstall.exe

File type:
Executable application (Win32 EXE)

Language:
German (Germany)

Common path:
C:\Program Files\z-dbackup\{f2da54f3-f7fb-4ae8-9b33-bea5391e4a03}\akdeinstall.exe

Digital Signature
Authority:
DigiCert Inc

Valid from:
12/10/2013 1:00:00 AM

Valid to:
4/13/2017 2:00:00 PM

Subject:
CN=AKApplications e.K., O=AKApplications e.K., L=Hamburg, C=DE, PostalCode=22767, STREET=Gerritstraße 14, SERIALNUMBER=HRA 115662, OID.1.3.6.1.4.1.311.60.2.1.2=Hamburg, OID.1.3.6.1.4.1.311.60.2.1.3=DE, OID.2.5.4.15=Private Organization

Issuer:
CN=DigiCert EV Code Signing CA (SHA2), OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
0C44F8C00D7FAEF31FAB20A802D640E4

File PE Metadata
Compilation timestamp:
11/12/2015 4:42:40 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
3072:BZvvnlly1/OEOVEaskDIu1Nv/bkeSBfX6JAQZf5VNsycGTIK+r6:zlQiVt71NLfmfX6JAajNsny0+

Entry address:
0x13DBC

Entry point:
55, 8B, EC, 6A, FF, 68, 88, 8D, 41, 00, 68, 26, 3F, 41, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 68, 53, 56, 57, 89, 65, E8, 33, DB, 89, 5D, FC, 6A, 02, FF, 15, AC, 65, 41, 00, 59, 83, 0D, 84, 30, 43, 00, FF, 83, 0D, 88, 30, 43, 00, FF, FF, 15, B0, 65, 41, 00, 8B, 0D, 78, 30, 43, 00, 89, 08, FF, 15, B4, 65, 41, 00, 8B, 0D, 74, 30, 43, 00, 89, 08, A1, B8, 65, 41, 00, 8B, 00, A3, 80, 30, 43, 00, E8, 61, A6, FF, FF, 39, 1D, F8, D0, 41, 00, 75, 0C, 68, 50, 3F, 41, 00, FF, 15, BC, 65...
 
[+]

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
84 KB (86,016 bytes)

Program Uninstaller
Program name:
Z-DBackup

Display publisher:
IMU Andreas Baumann

Display version:
6.3.0.10

Uninstall string:
C:\Program Files (x86)\Z-DBackup\{F2DA54F3-F7FB-4AE8-9B33-BEA5391E4A03}\AKDeInstall.exe /x


Scan AKDeInstall.exe - Powered by Reason Core Security