unins000.exe

Cheng Du VTools Information Technology

The application unins000.exe by Cheng Du VTools Information Technology has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. This is a setup and installation application and has been known to bundle potentially unwanted software. This is the uninstaller utility registered in the Windows Control Panel for the program Online Games Downloader v2.0 by VTools.
Publisher:

Description:
Setup/Uninstall

Version:
51.1052.0.0

MD5:
a9619967229dc7020011bfb7679d4817

SHA-1:
55319b4d794c0d1e6fe8f30d50114c2a0e314612

SHA-256:
5ffef74bd7d6f68b391a2f9a8b4872ebac0667107b975bbb43e18255989f7405

Scanner detections:
1 / 68

Status:
Potentially unwanted

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
4/19/2024 4:20:19 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP (M)
17.1.1.8

File size:
1.1 MB (1,160,160 bytes)

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\Program Files\online games downloader\unins000.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
1/25/2010 7:00:00 PM

Valid to:
1/26/2012 6:59:59 PM

Subject:
CN=Cheng Du VTools Information Technology, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Cheng Du VTools Information Technology, L=ChengDu, S=SiChuan, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
74ABEBE80CBD793FD40D60CBD6D03A38

File PE Metadata
Compilation timestamp:
3/17/2011 6:22:55 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

Entry address:
0xFAF7C

Entry point:
55, 8B, EC, 83, C4, F0, 53, 56, 57, B8, 10, 94, 4F, 00, E8, AD, DF, F0, FF, 6A, EC, A1, 7C, ED, 4F, 00, 8B, 00, 8B, 98, 70, 01, 00, 00, 53, E8, 40, EE, F0, FF, 25, 7F, FF, FF, FF, 50, 6A, EC, A1, 7C, ED, 4F, 00, 53, E8, 95, F0, F0, FF, 33, C0, 55, 68, F7, AF, 4F, 00, 64, FF, 30, 64, 89, 20, 6A, 01, E8, E8, E7, F0, FF, E8, 83, E1, FF, FF, A1, 48, 90, 4F, 00, 50, 68, AC, 90, 4F, 00, A1, 7C, ED, 4F, 00, 8B, 00, E8, 50, 0E, F8, FF, E8, D7, E1, FF, FF, 33, C0, 5A, 59, 59, 64, 89, 10, EB, 19, E9, E4, 96, F0, FF...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
999 KB (1,022,976 bytes)

Program Uninstaller
Program name:
Online Games Downloader v2.0

Display publisher:
VTools

Display version:
2.0.0.0

Uninstall string:
"C:\Program Files (x86)\Online Games Downloader\unins000.exe"


Remove unins000.exe - Powered by Reason Core Security