eUninstall.exe

eCyber

Taiwan Shui Mu Chih Ching Technology Limited

The application eUninstall.exe, “eCyber uninstall application” by Taiwan Shui Mu Chih Ching Technology Limited has been detected as adware by 2 anti-malware scanners. This is the uninstaller utility registered in the Windows Control Panel for the program WinZipper by Taiwan Shui Mu Chih Ching Technology Limited.. This file is typically installed with the program WinZipper by Taiwan Shui Mu Chih Ching Technology Limited. which is a potentially unwanted software program.
Publisher:
Taiwan Shui Mu Chih Ching Technology Limited.  (signed by Taiwan Shui Mu Chih Ching Technology Limited)

Product:
eCyber

Description:
eCyber uninstall application

Version:
1.4.8.7624

MD5:
e097843373d0698f97ea89f0b67a3b2f

SHA-1:
bc9296cc8d92ea375a8e56822cbed2f359f89acc

SHA-256:
8ff67b6fba3bfc8e4d857905131fe982b59062edf268fe46a5f6563e530b130f

Scanner detections:
2 / 68

Status:
Adware

Analysis date:
4/23/2024 9:19:25 AM UTC  (today)

Scan engine
Detection
Engine version

Comodo Security
TrojWare.Win32.Trojan.Agent.Gen
17350

Reason Heuristics
PUP.TaiwanShuiMuChihChingTechnologyLimited.K
14.4.8.23

File size:
1 MB (1,055,912 bytes)

Product version:
1.4.8.7624

Copyright:
Copyright (C) 2012

Original file name:
eUninstall.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\winzipper\euninstall.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
3/13/2013 9:15:13 AM

Valid to:
3/14/2014 9:15:13 AM

Subject:
CN=Taiwan Shui Mu Chih Ching Technology Limited, O=Taiwan Shui Mu Chih Ching Technology Limited, L=新北, S=台湾, C=TW

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121243D90C81CD8FEC70E99813154FB6459

File PE Metadata
Compilation timestamp:
6/20/2013 8:21:30 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
12288:usE7a10aFF5z4FGBsUhsxxJCS/T3FjwPNRChyTt1Bp6w0F+DHjyKMY54lvHMvTs/:veQFhBsUh4xJCqtgDaYcPQT82xF/mfV

Entry address:
0x86D69

Entry point:
E8, 36, 5D, 00, 00, E9, 89, FE, FF, FF, 8B, FF, 55, 8B, EC, 83, EC, 10, FF, 75, 0C, 8D, 4D, F0, E8, 7B, F8, FF, FF, 8B, 45, F0, 83, B8, AC, 00, 00, 00, 01, 7E, 13, 8D, 45, F0, 50, 6A, 04, FF, 75, 08, E8, 9F, 5D, 00, 00, 83, C4, 0C, EB, 10, 8B, 80, C8, 00, 00, 00, 8B, 4D, 08, 0F, B7, 04, 48, 83, E0, 04, 80, 7D, FC, 00, 74, 07, 8B, 4D, F8, 83, 61, 70, FD, C9, C3, 8B, FF, 55, 8B, EC, 83, 3D, E8, 7E, 4E, 00, 00, 75, 12, 8B, 45, 08, 8B, 0D, 08, 2C, 4E, 00, 0F, B7, 04, 41, 83, E0, 04, 5D, C3, 6A, 00, FF, 75, 08...
 
[+]

Entropy:
6.4103

Code size:
680.5 KB (696,832 bytes)

Program Uninstaller
Program name:
WinZipper

Display publisher:
Taiwan Shui Mu Chih Ching Technology Limited.

Display version:
1.4.8

Uninstall string:
C:\Program Files\WinZipper\eUninstall.exe


The file eUninstall.exe has been discovered within the following programs.

WinZipper  by Taiwan Shui Mu Chih Ching Technology Limited.
The free and trial versions bundle various potentually unwanted toolbars and web browser extensions including the AVG Toolbar which modifies the browser's search and home page settings..
www.winzipper.com
75% remove it
 
Powered by Should I Remove It?

Remove eUninstall.exe - Powered by Reason Core Security