uninst.exe

PriceMeter

The application uninst.exe by PriceMeter has been detected as adware by 14 anti-malware scanners. This is the uninstaller utility registered in the Windows Control Panel for the program Price Metar (remove only) by Price Meter.
Publisher:
PriceMeter  (signed and verified)

MD5:
69313c60f94acfb23c4b0ed4ce7e2c51

SHA-1:
e5a8879a87f61134a5d6bcdd75130f5ef3a379e0

SHA-256:
4cac206fe34d4699189b44f7b939dc6586f07b31e172168f868297122b432ac7

Scanner detections:
14 / 68

Status:
Adware

Analysis date:
5/11/2024 1:51:55 AM UTC  (today)

Scan engine
Detection
Engine version

AVG
MalSign.Primet
2015.0.3501

Dr.Web
Adware.Shopper.388
9.0.1.0107

Emsisoft Anti-Malware
Gen:Variant.Adware.DealPly
8.15.07.22.05

ESET NOD32
Win32/DealPly.Q potentially unwanted application
9.7.0.302.0

F-Prot
W32/A-b4cd7179
v6.4.7.1.166

F-Secure
Gen:Variant.Adware.DealPly
11.2015-22-07_4

Kaspersky
not-a-virus:AdWare.Win32.DealPly
14.0.0.1699

McAfee
Program.Adware-PMeter
5600.6697

Norman
Gen:Variant.Adware.DealPly.2
11.20150722

Reason Heuristics
PUP.PriceMeter.G
14.4.17.15

Sophos
PUA 'DealPly Updater'
5.15

Trend Micro House Call
ADW_PRICEMETER
7.2.107

Trend Micro
ADW_PRICEMETER
10.465.17

VIPRE Antivirus
Threat.4150696
41608

File size:
646.5 KB (662,024 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\pricemeter\uninst.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
1/13/2014 5:30:00 AM

Valid to:
1/14/2015 5:29:59 AM

Subject:
CN=PriceMeter, O=PriceMeter, STREET=63 Rotchild Blvd, L=Tel Aviv, S=Tel Aviv, PostalCode=65785, C=IL

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
3BC5844507FA9A5E38487A5D679A8EB9

File PE Metadata
Compilation timestamp:
4/9/2014 8:06:38 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
12288:itjkP55Pu/rDY8NA/f8bqNJUSoeYCu8TeEWbV4a4euG4pPfE37MLwRdi1:CjyPuJqNLuz4pIISdU

Entry address:
0x32770

Entry point:
E8, 6A, D7, 00, 00, E9, 7F, FE, FF, FF, 55, 8B, EC, 6A, 00, FF, 75, 08, E8, 04, 00, 00, 00, 59, 59, 5D, C3, 55, 8B, EC, 83, EC, 2C, A1, 30, 56, 46, 00, 33, C5, 89, 45, FC, 56, FF, 75, 0C, 8B, 75, 08, 8D, 4D, D4, E8, 1C, EA, FF, FF, 85, F6, 75, 17, E8, 8C, 2F, 00, 00, C7, 00, 16, 00, 00, 00, E8, 6B, 6B, 00, 00, D9, EE, EB, 28, 83, C6, 02, 0F, B7, 06, 6A, 08, 50, E8, AB, C2, 00, 00, 59, 59, 85, C0, 75, EC, 8D, 45, D4, 50, 8D, 45, E4, 56, 50, E8, 7D, D8, 00, 00, DD, 40, 10, 83, C4, 0C, 80, 7D, E0, 00, 5E, 74...
 
[+]

Entropy:
6.7990

Code size:
312 KB (319,488 bytes)

Program Uninstaller
Program name:
Price Metar (remove only)

Display publisher:
Price Meter

Display version:
1.0.7.4

Uninstall string:
"C:\users\{user}\appdata\local\pricemeter\uninst.exe" \uninstall


Remove uninst.exe - Powered by Reason Core Security