uninstall.exe

Sailor Project

This potentially unwanted Internet browser extension is built upon and distributed using the free Crossrider platform and will deliver advertisements to the web browser in various formats such as banner, text hyper-links, inline text and transitional ads. The application uninstall.exe by Sailor Project has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat. This is a setup and installation application and has been known to bundle potentially unwanted software. This is the uninstaller utility registered in the Windows Control Panel for the program OMG-Music+_05 by BND_C. It is distributed as part of the Brightcircle group of browser-extensions.
Publisher:
Sailor Project  (signed and verified)

MD5:
ec9c743935b1f4d5749a29ef39c670f1

SHA-1:
1bd9ae10206b7c37c8c37e7bd57daca41c3d4e13

SHA-256:
05d5cfa96fba028eb9440da43909e014a710c90effc12dc5daa0d48a2a4f3f03

Scanner detections:
1 / 68

Status:
Adware

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
5/25/2020 7:43:45 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Brightcircle (M)
17.3.12.3

File size:
88.4 KB (90,472 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\omg-music+_05\uninstall.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
7/18/2014 2:00:00 AM

Valid to:
7/19/2015 1:59:59 AM

Subject:
CN=Sailor Project, O=Sailor Project, STREET=Athinodorou 3, STREET=Dasoupoli Strovolos, L=Nicosia, S=Cyprus, PostalCode=2025, C=CY

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
47C5F145C734CD3D086C0A102176F0A1

File PE Metadata
Compilation timestamp:
7/30/2014 12:03:55 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

Entry address:
0x56DE

Entry point:
E8, 6D, 5B, 00, 00, E9, 00, 00, 00, 00, 6A, 14, 68, 68, 3F, 41, 00, E8, 2C, 0A, 00, 00, E8, 4A, 33, 00, 00, 0F, B7, F0, 6A, 02, E8, 00, 5B, 00, 00, 59, B8, 4D, 5A, 00, 00, 66, 39, 05, 00, 00, 40, 00, 74, 04, 33, DB, EB, 33, A1, 3C, 00, 40, 00, 81, B8, 00, 00, 40, 00, 50, 45, 00, 00, 75, EB, B9, 0B, 01, 00, 00, 66, 39, 88, 18, 00, 40, 00, 75, DD, 33, DB, 83, B8, 74, 00, 40, 00, 0E, 76, 09, 39, 98, E8, 00, 40, 00, 0F, 95, C3, 89, 5D, E4, E8, E1, 54, 00, 00, 85, C0, 75, 08, 6A, 1C, E8, DC, 00, 00, 00, 59, E8...
 
[+]

Code size:
54.5 KB (55,808 bytes)

Program Uninstaller
Program name:
OMG-Music+_05

Display publisher:
BND_C

Display version:
1.34.7.29

Uninstall string:
C:\Program Files (x86)\OMG-Music+_05\Uninstall.exe /fcp=1


Remove uninstall.exe - Powered by Reason Core Security