macuninstall.exe

The executable macuninstall.exe has been detected as malware by 31 anti-virus scanners. This is a setup and installation application, however the file is not signed with an authenticode signature from a trusted source. This is the uninstaller utility registered in the Windows Control Panel for the program USB-Ethernet Adapter Device.
MD5:
7b5c1dc8f1e58d6ee5e2f65f9c1752e5

SHA-1:
c881fc1bbfeded0a2850f4eeb10211098127fe0d

SHA-256:
3e6ecfda6357afd1f259aba6b4af0a473fa76c391dc933f1c642f9cf580b705c

Scanner detections:
31 / 68

Status:
Malware

Analysis date:
2/7/2026 11:29:26 PM UTC  (a few moments ago)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Graftor.116163
-40

AhnLab V3 Security
Trojan/Win32.Agent.R88539
3.8.3.16

Avira AntiVirus
TR/Samca.oannw
8.3.3.4

Arcabit
Trojan.Graftor.D1C5C3
1.0.0.793

avast!
Win32:Spyware-gen [Spy]
2014.9-170315

AVG
Generic35.CFKO.dropper
2018.0.2438

Baidu Antivirus
Win32.Trojan.WisdomEyes.16070401.9500
4.0.3.17315

Bitdefender
Gen:Variant.Graftor.116163
1.0.20.370

Clam AntiVirus
Win.Trojan.Agent-1234576
0.99.211

Dr.Web
Trojan.PWS.Banker1.15860
9.0.1.074

Emsisoft Anti-Malware
Gen:Variant.Graftor.116163
8.17.03.15.04

ESET NOD32
Win32/Delf.SBT
11.14832

Fortinet FortiGate
W32/Delf.SBT!tr
3/15/2017

F-Prot
W32/A-16f82ab9
v6.4.7.1.166

F-Secure
Gen:Variant.Graftor.116163
11.2017-15-03_4

G Data
Gen:Variant.Graftor.116163
17.3.25

IKARUS anti.virus
Trojan-PWS.Banker6
0.1.3.4

K7 AntiVirus
Trojan
13.2422220

Kaspersky
Trojan.Win32.Agent
14.0.0.-1314

McAfee
GenericR-CRM!7B5C1DC8F1E5
5600.6094

MicroWorld eScan
Gen:Variant.Graftor.116163
18.0.0.222

NANO AntiVirus
Trojan.Win32.Agent.douvop
1.0.70.14475

nProtect
Trojan/W32.Agent.7091200
17.01.26.02

Panda Antivirus
Trj/Genetic.gen
17.03.15.04

Qihoo 360 Security
HEUR/QVM05.1.0000.Malware.Gen
1.0.0.1120

Quick Heal
Trojan.Agent
3.17.14.00

Rising Antivirus
Malware.Generic!zsJixADD3vT@5 (thunder)
23.00.65.17313

Sophos
Mal/Generic-S
4.98

Vba32 AntiVirus
Trojan.Agent
3.12.26.4

VIPRE Antivirus
Trojan.Win32.Generic
55516

Zillya! Antivirus
Trojan.Agent.Win32.289785
2.0.0.3182

File size:
6.8 MB (7,091,200 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Windows\System32\macuninstall.exe

File PE Metadata
Compilation timestamp:
2/17/2012 8:25:39 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

Entry address:
0x139974

Entry point:
55, 8B, EC, 83, C4, F0, B8, 30, 05, 53, 00, E8, 90, 0C, ED, FF, A1, 48, F6, 53, 00, 8B, 00, E8, C4, 86, F7, FF, A1, 48, F6, 53, 00, 8B, 00, C6, 40, 5B, 00, 8B, 0D, 64, F6, 53, 00, A1, 48, F6, 53, 00, 8B, 00, 8B, 15, D8, FB, 52, 00, E8, B9, 86, F7, FF, A1, 48, F6, 53, 00, 8B, 00, E8, FD, 87, F7, FF, E8, 98, CC, EC, FF, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
1.2 MB (1,278,464 bytes)

Program Uninstaller
Program name:
USB-Ethernet Adapter Device

Uninstall string:
C:\Windows\System32\MacUnInstall.exe


Remove macuninstall.exe - Powered by Reason Core Security