uninstall.exe

Qzoneinteractive

The application uninstall.exe by Qzoneinteractive has been detected as a potentially unwanted program by 10 anti-malware scanners. This is the uninstaller utility registered in the Windows Control Panel for the program Windows CloudController Manager by Windows CloudController Manager.
Publisher:
Qzoneinteractive  (signed and verified)

MD5:
9abcc869260bb82fea880a62d842f4e9

SHA-1:
535e3a68d70a4f1ca52bb2d3512e92820f566d3e

Scanner detections:
10 / 68

Status:
Potentially unwanted

Analysis date:
4/26/2024 2:45:29 PM UTC  (today)

Scan engine
Detection
Engine version

AhnLab V3 Security
Win-PUP/Helper.CloudPop.1073032
2013.08.24

Bitdefender
Trojan.Generic.KD.810582
1.0.20.560

Comodo Security
TrojWare.Win32.Trojan.Agent.Gen
16811

Emsisoft Anti-Malware
Trojan.Generic.KD.810582
8.15.04.22.01

G Data
Trojan.Generic.KD.810582
15.4.22

IKARUS anti.virus
Trojan.SuspectCRC
t3scan.2.0.127

Malwarebytes
Adware.KorAd
v2015.04.22.01

MicroWorld eScan
Trojan.Generic.KD.810582
16.0.0.336

Panda Antivirus
Suspicious file
15.04.22.01

Rising Antivirus
Trojan.Win32.Generic.144474F8
23.00.65.15420

File size:
1 MB (1,073,032 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\cloudpop\uninstall.exe

Digital Signature
Authority:
Thawte, Inc.

Valid from:
11/14/2011 9:00:00 AM

Valid to:
11/14/2012 8:59:59 AM

Subject:
CN=Qzoneinteractive, OU=EC Team, O=Qzoneinteractive, L=Gwangjin-gu, S=Seoul, C=KR

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
51790DE8CFF3FB8E48D3E671F9021D0B

File PE Metadata
Compilation timestamp:
6/20/1992 7:22:17 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:3YGrg0yF8Ycd16RWJ3ESOYehlxaR906Bzuc:3Yzcd13gHGvuc

Entry address:
0xE330C

Entry point:
55, 8B, EC, 83, C4, E8, 53, 33, C0, 89, 45, EC, 89, 45, E8, B8, E4, 2D, 4E, 00, E8, DF, 37, F2, FF, 33, C0, 55, 68, CB, 33, 4E, 00, 64, FF, 30, 64, 89, 20, 8D, 55, E8, A1, C0, B8, 4E, 00, 8B, 00, E8, C6, 8F, FC, FF, 8B, 45, E8, 8D, 55, EC, E8, 63, 85, F2, FF, 8B, 45, EC, E8, 0F, 1A, F2, FF, 50, 6A, FF, 6A, 00, E8, 3D, 3A, F2, FF, 8B, D8, E8, BE, 3B, F2, FF, 3D, B7, 00, 00, 00, 75, 08, 53, E8, 71, 3D, F2, FF, EB, 3B, A1, C0, B8, 4E, 00, 8B, 00, E8, DF, 88, FC, FF, 8B, 0D, C4, B3, 4E, 00, A1, C0, B8, 4E, 00...
 
[+]

Entropy:
6.6291

Developed / compiled with:
Microsoft Visual C++

Code size:
905 KB (926,720 bytes)

Program Uninstaller
Program name:
Windows CloudController Manager

Display publisher:
Windows CloudController Manager

Display version:
1.0

Uninstall string:
C:\Program Files\cloudpop\uninstall.exe delete


Remove uninstall.exe - Powered by Reason Core Security