uninst.exe

PriceFountain

The application uninst.exe has been detected as a potentially unwanted program by 22 anti-malware scanners. This is the uninstaller utility registered in the Windows Control Panel for the program PriceFountain (remove only) by Price Fountain.
Publisher:
PriceFountain

Product:
PriceFountain

Version:
1.0.6.2

MD5:
bab11090ea4f0644ba140cc08a25493c

SHA-1:
eb4477d93a5c47a83eb8870ac255121b09f61dc5

SHA-256:
6b5ccabebcd0812067614c0a7c7db9755a38e6becb9eafc1b40f5b966847b082

Scanner detections:
22 / 68

Status:
Potentially unwanted

Analysis date:
4/26/2024 3:50:26 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Adware.Kazy.454119
826

Agnitum Outpost
Riskware.Agent
7.1.1

Avira AntiVirus
TR/Graftor.1257472
7.11.182.158

avast!
Win32:Adware-BZP [PUP]
2014.9-141101

AVG
Generic5
2015.0.3304

Baidu Antivirus
Adware.Win32.DealPly
4.0.3.14111

Bitdefender
Gen:Variant.Adware.Kazy.454119
1.0.20.1525

Emsisoft Anti-Malware
Gen:Variant.Adware.Kazy.454119
8.14.11.01.06

ESET NOD32
Win32/DealPly (variant)
8.10652

Fortinet FortiGate
Adware/DealPly
11/1/2014

F-Prot
W32/A-3442f84d
v6.4.7.1.166

F-Secure
Gen:Variant.Adware.Kazy.454119
11.2014-01-11_7

G Data
Gen:Variant.Adware.Kazy.454119
14.11.24

Kaspersky
not-a-virus:AdWare.Win32.DealPly
14.0.0.3014

McAfee
Artemis!BAB11090EA4F
5600.6960

MicroWorld eScan
Gen:Variant.Kazy.454119
15.0.0.915

NANO AntiVirus
Trojan.Win32.Delphi.dggece
0.28.6.62995

Qihoo 360 Security
Win32/Trojan.385
1.0.0.1015

Reason Heuristics
Threat.Win.Reputation.IMP
14.11.10.18

Rising Antivirus
PE:Trojan.Win32.Generic.175D5C01!391994369
23.00.65.141030

Sophos
Generic PUA AD
4.98

Trend Micro House Call
TROJ_GEN.R0C1H06JU14
7.2.305

File size:
2.4 MB (2,530,304 bytes)

Product version:
1.0.6.2

Copyright:
Copyright © 2014 PriceFountain

Trademarks:
[12345678] [default:default] PriceFountain is a trademark or registered trademark in the U.S. and/or other countries.

Original file name:
pfinst.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\pricefountain\uninst.exe

File PE Metadata
Compilation timestamp:
10/29/2014 6:12:19 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
49152:9sFvhlZXwAyZgHOwVGodXiTcNQGeh5FX9zVgYR0LPEpaV:YJlZkZg7ywSGeHt9zCUmEpaV

Entry address:
0xD822C

Entry point:
E8, 28, 28, 01, 00, E9, 7B, FE, FF, FF, 55, 8B, EC, 8B, 45, 0C, 83, EC, 20, 56, 57, 6A, 08, 59, BE, 48, 26, 52, 00, 8D, 7D, E0, F3, A5, 8B, 4D, 08, 5F, 5E, 85, C0, 74, 0D, F6, 00, 10, 74, 08, 8B, 01, 8B, 40, FC, 8B, 40, 18, 89, 4D, F8, 89, 45, FC, 85, C0, 74, 0C, F6, 00, 08, 74, 07, C7, 45, F4, 00, 40, 99, 01, 8D, 45, F4, 50, FF, 75, F0, FF, 75, E4, FF, 75, E0, FF, 15, 28, 43, 51, 00, C9, C2, 08, 00, 55, 8B, EC, 56, FC, 8B, 75, 0C, 8B, 4E, 08, 33, CE, E8, 28, B9, FF, FF, 6A, 00, 56, FF, 76, 14, FF, 76, 0C...
 
[+]

Code size:
1.1 MB (1,125,376 bytes)

Program Uninstaller
Program name:
PriceFountain (remove only)

Display publisher:
Price Fountain

Display version:
1.0.6.2

Uninstall string:
"C:\users\{user}\appdata\local\pricefountain\uninst.exe" \uninstall


Remove uninst.exe - Powered by Reason Core Security