Uninstall.exe

Crime Watch

Mathematical Applications

This is the uninstall module for the Injekt branded web browser extension program which injects advertising in the web browser as well as modifies the browser settings. The uninstaller is registered within Control Panel > Add/Remove Programs. The application Uninstall.exe, “CrimeWatch Uninstall” by Mathematical Applications has been detected as adware by 5 anti-malware scanners. This is a self-extracting archive and installer and has been known to bundle potentially unwanted software. This is the uninstaller utility registered in the Windows Control Panel for the program CrimeWatch by Mathematical Applications. This file is typically installed with the program CrimeWatch by Mathematical Applications which is a potentially unwanted software program.
Publisher:
Mathematical Applications  (signed and verified)

Product:
Crime Watch

Description:
CrimeWatch Uninstall

Version:
1.0.0.0

MD5:
b8345c70bd05184a3a3f8dba6e773c59

SHA-1:
becfd12a16435377a579415d466e93a888d8a486

SHA-256:
709189a18533f57ad332c76d97b83fb2bb3cf532a10c76a0301a9431af1c3d93

Scanner detections:
5 / 68

Status:
Adware

Explanation:
Injects display ads (banner ads), in-text ads, interstitial ads, or other types of ads in the web browser as well as alters the browsers settings (home page, search, DNS, and security protocols).

Analysis date:
5/11/2024 12:45:05 AM UTC  (today)

Scan engine
Detection
Engine version

Avira AntiVirus
ADWARE/Adware.Gen7
7.11.197.26

Comodo Security
ApplicUnwnt
20438

ESET NOD32
MSIL/Adware.PullUpdate.J.gen application
7.0.302.0

Malwarebytes
PUP.Optional.CrimeWatch.A
v2014.12.21.11

Reason Heuristics
PUP.MathematicalApplications.J
14.12.21.22

File size:
651.3 KB (666,952 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © Mathematical Applications 2014

Original file name:
Uninstall.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\ProgramData\crimewatch\uninstall.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
10/26/2014 7:00:00 PM

Valid to:
10/27/2015 6:59:59 PM

Subject:
CN=Mathematical Applications, O=Mathematical Applications, L=St. James, S=St. James, C=BB

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
79F6406432970C77D2FA7772E5EB6BDC

File PE Metadata
Compilation timestamp:
12/18/2014 6:14:40 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
12288:5WjPpjrQAWuC1OsnOyGcUq9BWILoWv/tFA1/SuVSXJnI8xcQ1qm0Cm:OqAWbGq9BJLoWXU1KuVSXJb24q3Cm

Entry address:
0x840EE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
7.7149

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
520.5 KB (532,992 bytes)

Program Uninstaller
Program name:
CrimeWatch

Display publisher:
Mathematical Applications

Display version:
3.0.26

Uninstall string:
"C:\ProgramData\CrimeWatch\uninstall.exe"


The file Uninstall.exe has been discovered within the following program.

CrimeWatch  by Mathematical Applications
CrimeWatch (by Injekts Media, dba Mathematical Applications) is an ad-supported program that may deliver third-party advertisements in the form of coupons, price-comparisons, display media, affiliate links, banners, popups/popunders and other links through means including but not limited to the content of any web page accessed, plug-ins, add-ons, or the browser itself.
88% remove it
 
Powered by Should I Remove It?

Remove Uninstall.exe - Powered by Reason Core Security