uninstall.exe

Softacular

The application uninstall.exe by Softacular has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. This is a self-extracting archive and installer and has been known to bundle potentially unwanted software. This file is typically installed with the program Rockettab by Rich River Media, LLC which is a potentially unwanted software program.
Publisher:
Softacular  (signed and verified)

Version:
1.0.5412.12749

MD5:
3120aea04bb4f6b887fe828072e0c102

SHA-1:
1db64a842b1e7d774db4b79c78defcb4efbf2157

SHA-256:
148571e80edfa676750d90c986b8cb810910b67b32711b06553b2e3a997e4d72

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
5/19/2024 9:43:15 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Softacular.Installer (M)
16.2.19.4

File size:
3.8 MB (3,942,112 bytes)

Product version:
1.0.5412.12749

Original file name:
Installer.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\windows\syswow64\uninstall.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
3/24/2014 5:30:00 AM

Valid to:
3/25/2015 5:29:59 AM

Subject:
CN=Softacular, O=Softacular, STREET="4600 Madison Ave, 10th FL", L=Kansas City, S=Missouri, PostalCode=64112, C=US

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
753A79B32D5A96BF1872FDE1AC60DEEA

File PE Metadata
Compilation timestamp:
10/26/2014 1:35:10 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
49152:ozITJPwLJVJeTo46rNg69HwFA53UO+EEuFwKidb+qQMcrF2i2HCY2ktQsYjTtw6q:o8NoLPJDBg69QXEpVipbNcrolF2pR1of

Entry address:
0x3B843B

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
7.6850

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
3.7 MB (3,892,736 bytes)

The file uninstall.exe has been discovered within the following program.

Rockettab  by Rich River Media, LLC
RocketTab is an adware program that injects advertising in the user's web browser by creating a local proxy server and routing all Internet traffic through that proxy. By re-routing traffic the service will be able to include various ads in the HTML of the displaying web page.
rockettab.com
88% remove it
 
Powered by Should I Remove It?

Remove uninstall.exe - Powered by Reason Core Security