Uninstall.exe

Finance Alert

Valid Applications

This is the uninstall module for the Injekt branded web browser extension program which injects advertising in the web browser as well as modifies the browser settings. The uninstaller is registered within Control Panel > Add/Remove Programs. The application Uninstall.exe, “FinanceAlert Uninstall” by Valid Applications has been detected as adware by 20 anti-malware scanners. This is a self-extracting archive and installer and has been known to bundle potentially unwanted software. This is the uninstaller utility registered in the Windows Control Panel for the program FinanceAlert by Valid Applications.
Publisher:
Valid Applications  (signed and verified)

Product:
Finance Alert

Description:
FinanceAlert Uninstall

Version:
1.0.0.0

MD5:
828fd4d5c58552acf605f2f1c0e314fa

SHA-1:
db5797d417fc7d117a4b3c2e260995badc0cf2b3

SHA-256:
b9e2adb91bf21dd8f5d6efc8d58ca45c54adf437dc1e42ec61769ad9e22017b0

Scanner detections:
20 / 68

Status:
Adware

Explanation:
Injects display ads (banner ads), in-text ads, interstitial ads, or other types of ads in the web browser as well as alters the browsers settings (home page, search, DNS, and security protocols).

Analysis date:
4/25/2024 6:38:39 AM UTC  (today)

Scan engine
Detection
Engine version

AhnLab V3 Security
PUP/Win32.FinanceAlert
2015.06.04

Avira AntiVirus
ADWARE/Adware.Gen7
7.11.216.228

AVG
Generic
2016.0.3029

Baidu Antivirus
Adware.MSIL.PullUpdate
4.0.3.1582

Bkav FE
W32.HfsAdware
1.3.0.6379

Comodo Security
ApplicUnwnt
21737

Dr.Web
Trojan.Yontoo.1745
9.0.1.0214

ESET NOD32
MSIL/Adware.PullUpdate.J.gen application
9.7.0.302.0

Fortinet FortiGate
Adware/Agent
8/2/2015

F-Secure
Trojan.GenericKD.2099421
11.2015-02-08_1

G Data
Win32.Application.Agent.3OF49F
15.8.25

Kaspersky
not-a-virus:AdWare.Win64.Agent
14.0.0.1642

Malwarebytes
PUP.Optional.FinanceAlert.A
v2015.08.02.04

McAfee
Program.Artemis!F76C58CB6058
5600.6685

NANO AntiVirus
Riskware.Win32.Agent.dqcvye
0.30.10.952

Panda Antivirus
Generic Suspicious
15.08.02.04

Qihoo 360 Security
HEUR/QVM03.0.Malware.Gen
1.0.0.1015

Reason Heuristics
PUP.Injekt.ValidApplications.Installer (M)
15.8.2.16

Sophos
Generic PUA KI
4.98

VIPRE Antivirus
Injekt
38386

File size:
639.3 KB (654,592 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © Valid Applications 2015

Original file name:
Uninstall.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\ProgramData\financealert\uninstall.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
10/14/2014 5:00:00 PM

Valid to:
10/15/2015 4:59:59 PM

Subject:
CN=Valid Applications, O=Valid Applications, L=St. James, S=St. James, C=BB

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
085BF49B5A62F0A47208B968B1916037

File PE Metadata
Compilation timestamp:
7/31/2015 11:10:58 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
12288:1aqACfmYsi53d21yZGmELMhZ61I/xe1TeD:sqTfJsAdRIH4hY1AecD

Entry address:
0x840EE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
7.6046

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
520.5 KB (532,992 bytes)

Program Uninstaller
Program name:
FinanceAlert

Display publisher:
Valid Applications

Display version:
3.0.76

Uninstall string:
"C:\ProgramData\FinanceAlert\uninstall.exe"


Remove Uninstall.exe - Powered by Reason Core Security