uninstall.exe

Iminent Protection

SIEN S.A.

This is the SIEN AppScion Installer which bundles applications with offers for additional 3rd party software, mostly unwanted adware, and may be installed with minimal consent. The application uninstall.exe by SIEN S.A has been detected as a potentially unwanted program by 8 anti-malware scanners. The program is a setup application that uses the SIEN SuperInstall installer. This is the uninstaller utility registered in the Windows Control Panel for the program IminentToolbar by Iminent.
Publisher:
Iminent  (signed by SIEN S.A.)

Product:
Iminent Protection

Version:
7.24.1.1

MD5:
fae6bb5f5b223921fc2c38deb65b9a92

SHA-1:
74c1e18392b94e3ecb392a1ad14ed9945f117f19

SHA-256:
5403c3ced3af8a46ec36db181143be375435f35eeda9a3835db2c8db31d612d3

Scanner detections:
8 / 68

Status:
Potentially unwanted

Description:
This 'download manager' is also considered bundleware, a utility designed to download software (possibly legitimate or opensource) and bundle it with a number of optional offers including ad-supported utilities, toolbars, shopping comparison tools and browser extensions.

Analysis date:
4/25/2024 5:20:09 AM UTC  (today)

Scan engine
Detection
Engine version

Avira AntiVirus
Adware/Iminent.AB
7.11.188.194

Dr.Web
Adware.Downware.8755
9.0.1.0304

Malwarebytes
PUP.Optional.Iminent
v2014.10.31.08

Qihoo 360 Security
Win32/Virus.Adware.1ef
1.0.0.1015

Reason Heuristics
PUP.SIENSA.J
14.10.31.20

Trend Micro House Call
Suspicious_GEN.F47V1125
7.2.337

Vba32 AntiVirus
BScope.Trojan-Dropper.Injector
3.12.26.3

VIPRE Antivirus
Iminent
34372

File size:
1.1 MB (1,198,752 bytes)

Product version:
7.24.1.1

File type:
Executable application (Win32 EXE)

Bundler/Installer:
SIEN SuperInstall

Language:
English (United States)

Common path:
C:\Program Files\iminent\inst\bootstrapper\uninstall.exe

Digital Signature
Signed by:

Authority:
GlobalSign nv-sa

Valid from:
5/12/2014 10:20:39 AM

Valid to:
5/13/2015 10:20:39 AM

Subject:
E=support@sien.com, CN=SIEN S.A., O=SIEN S.A., L=Paris, C=FR

Issuer:
CN=GlobalSign CodeSigning CA - SHA256 - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121D12A06D1B366EFC0AF40F74B7D6BFEFE

File PE Metadata
Compilation timestamp:
10/30/2014 4:05:56 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
24576:5tueiHMFpZhYS0rkbWI4Mjnldbm49+yHpp5awGs7skb+L2A4UDYBu5:6e3bZS4bWWnld7Aav5awR7r+ZbDYBu5

Entry address:
0xB396D

Entry point:
E8, 4D, 42, 01, 00, E9, 89, FE, FF, FF, 6A, 0C, 68, 08, B4, 50, 00, E8, BD, 35, 00, 00, 33, DB, 89, 5D, E4, 33, C0, 8B, 7D, 08, 3B, FB, 0F, 95, C0, 3B, C3, 75, 14, E8, A8, 8D, FF, FF, C7, 00, 16, 00, 00, 00, E8, A5, 54, 00, 00, 33, C0, EB, 79, 33, C0, 8B, 75, 0C, 3B, F3, 0F, 95, C0, 3B, C3, 74, DE, 33, C0, 38, 1E, 0F, 95, C0, 3B, C3, 74, D3, E8, AD, 6F, 00, 00, 89, 45, 08, 3B, C3, 75, 0D, E8, 6F, 8D, FF, FF, C7, 00, 18, 00, 00, 00, EB, CA, 89, 5D, FC, 38, 1F, 75, 20, E8, 5B, 8D, FF, FF, C7, 00, 16, 00, 00...
 
[+]

Code size:
919 KB (941,056 bytes)

Program Uninstaller
Program name:
IminentToolbar

Display publisher:
Iminent

Display version:
7.44.3.1

Uninstall string:
"C:\Program Files\Iminent\inst\Bootstrapper\uninstall.exe" /REQUIREADMIN /REMTOOLBAR /JSNCONFIG="C:\Program Files\Iminent\inst\Bootstrapper\MetroConfig.json"


Remove uninstall.exe - Powered by Reason Core Security