unins000.exe

TUTO4PC COM INTERNATIONAL SL

This is the Eorezo installer which may include software offers for unwanted programs including toolbars. The application unins000.exe by TUTO4PC COM INTERNATIONAL SL has been detected as adware by 14 anti-malware scanners. This is the uninstaller utility registered in the Windows Control Panel for the program GamesDesktop 025.214 by GAMESDESKTOP.
Publisher:
TUTO4PC COM INTERNATIONAL SL  (signed and verified)

Description:
Setup/Uninstall

Version:
51.52.0.0

MD5:
d6d46d90b805c04b1595fffdefc08523

SHA-1:
9ed2de1b952822a33d3f51503fca42b127298708

SHA-256:
f32f2824df0ad371a9e29582943acefbdba4f688357067871db558b0a6a2f413

Scanner detections:
14 / 68

Status:
Adware

Analysis date:
4/26/2024 6:56:50 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Adware.Eorezo.CD
719

AhnLab V3 Security
Win-PUP/EoRezo
2015.02.16

Avira AntiVirus
Adware/EoRezo.bonc
7.11.210.104

Baidu Antivirus
Adware.Win32.EoRezo
4.0.3.15216

Bitdefender
Adware.Eorezo.CD
1.0.20.235

Emsisoft Anti-Malware
Adware.Eorezo.CD
8.15.02.16.02

F-Secure
Adware.Eorezo.CD
11.2015-16-02_2

G Data
Adware.Eorezo.CD
15.2.25

MicroWorld eScan
Adware.Eorezo.CD
16.0.0.141

nProtect
Adware.Eorezo.CD
15.02.13.01

Qihoo 360 Security
HEUR/QVM41.1.Malware.Gen
1.0.0.1015

Reason Heuristics
PUP.Installer.Eorezo
15.2.16.2

Sophos
TUTO4PC
4.98

VIPRE Antivirus
Tuto4PC
37598

File size:
689.5 KB (706,056 bytes)

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\Program Files\gmsd_us_214\unins000.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
6/3/2014 4:55:26 AM

Valid to:
7/28/2015 8:19:10 AM

Subject:
E=contact@tutoriales100.com, CN=TUTO4PC COM INTERNATIONAL SL, O=TUTO4PC COM INTERNATIONAL SL, L=BARCELONA, C=ES

Issuer:
CN=GlobalSign CodeSigning CA - SHA256 - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121C8382D4ADA7C0F9495915A4D5B4D8C97

File PE Metadata
Compilation timestamp:
6/19/1992 6:22:17 PM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
12288:zTPcYn5c/rPx37/zHBA6a5UeYpChr1CERdSrNdyR6D3o1ammx9J:nPcYn5c/rPx37/zHBA6pFpCZ1CEuD3oA

Entry address:
0x98CFC

Entry point:
55, 8B, EC, 83, C4, F4, 53, 56, 57, E8, 3A, A6, F6, FF, E8, 91, C9, F6, FF, E8, 08, D6, F6, FF, E8, AB, D6, F6, FF, E8, 2E, 0C, F7, FF, E8, 41, 7A, F7, FF, E8, A4, 7C, F7, FF, E8, FB, 9B, F7, FF, E8, 0E, 03, F8, FF, E8, 09, C2, F8, FF, E8, CC, 69, F9, FF, E8, B3, 7C, F9, FF, E8, FE, 69, FB, FF, E8, C5, 6E, FB, FF, E8, C4, 76, FB, FF, E8, A3, 8A, FB, FF, E8, 96, A4, FB, FF, E8, 55, E3, FB, FF, E8, 54, F2, FB, FF, E8, 67, 05, FC, FF, E8, 86, B8, FC, FF, E8, D5, 40, FD, FF, E8, FC, FF, FD, FF, E8, 5F, B3, FE...
 
[+]

Entropy:
6.5200

Developed / compiled with:
Microsoft Visual C++

Code size:
608 KB (622,592 bytes)

Program Uninstaller
Program name:
GamesDesktop 025.214

Display publisher:
GAMESDESKTOP

Uninstall string:
"C:\Program Files\gmsd_us_214\unins000.exe"


Remove unins000.exe - Powered by Reason Core Security