uninst.exe

Emil Fickel

Publisher:
Emil Fickel  (signed and verified)

MD5:
3b121bce905b3fd18d9efe0d736625b4

SHA-1:
a165a63d30897a15cbd7b50b69057481b120338e

SHA-256:
05b8091dc26f7c5f48329b9088a45e33d290758b910531d3fab1bc38c311a412

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/5/2024 1:14:29 AM UTC  (today)

File size:
65.9 KB (67,496 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\temp\uninst.exe

Digital Signature
Signed by:

Authority:
StartCom Ltd.

Valid from:
1/21/2013 12:45:53 PM

Valid to:
1/22/2015 5:26:12 PM

Subject:
E=info@efsoftware.com, CN=Emil Fickel, L=Wiesbaden, S=Hessen, C=DE, Description=dV9Dfq1BQ5R6OMgY

Issuer:
CN=StartCom Class 2 Primary Intermediate Object CA, OU=Secure Digital Certificate Signing, O=StartCom Ltd., C=IL

Serial number:
0897

File PE Metadata
Compilation timestamp:
5/9/2014 9:48:51 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
1536:24C4wExueARiQsN5eP5kxWP0MJce0+4o:JFNQV5uocT+4

Entry address:
0x34CD

Entry point:
E8, 0A, 35, 00, 00, E9, 78, FE, FF, FF, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, D8, 11, 41, 00, 89, 0D, D4, 11, 41, 00, 89, 15, D0, 11, 41, 00, 89, 1D, CC, 11, 41, 00, 89, 35, C8, 11, 41, 00, 89, 3D, C4, 11, 41, 00, 66, 8C, 15, F0, 11, 41, 00, 66, 8C, 0D, E4, 11, 41, 00, 66, 8C, 1D, C0, 11, 41, 00, 66, 8C, 05, BC, 11, 41, 00, 66, 8C, 25, B8, 11, 41, 00, 66, 8C, 2D, B4, 11, 41, 00, 9C, 8F, 05, E8, 11, 41, 00, 8B, 45, 00, A3, DC, 11, 41, 00, 8B, 45, 04, A3, E0, 11, 41, 00, 8D, 45, 08, A3, EC, 11, 41...
 
[+]

Code size:
45 KB (46,080 bytes)

The file uninst.exe has been discovered within the following program.

EF StartUp Manager  by EFSoftware
Publisher's description - “When starting Windows, a number of other programs are also started. Some are necessarily, but the autostarting mechanism is used also by programs, which spy the computer. Finally is simple possible that some unused programs are started and use system resources.”
www.efsoftware.com/su/e.htm
10% remove it
 
Powered by Should I Remove It?

Scan uninst.exe - Powered by Reason Core Security