uninstall.exe

The application uninstall.exe has been detected as a potentially unwanted program by 4 anti-malware scanners. The program is a setup application that uses the NSIS (Nullsoft Scriptable Install System) installer, however the file is not signed with an authenticode signature from a trusted source. This is the uninstaller utility registered in the Windows Control Panel for the program Remote Desktop Access (VuuPC) by CMI Limited. This file is typically installed with the program Remote Desktop Access (VuuPC) by CMI Limited which is a potentially unwanted software program. It is built using the Crossrider cross-browser extension platform. While the file utilizes the Crossrider framework and delivery services, it is not owned by Crossrider.
Description:
install

Version:
1.0.0.0

MD5:
487e588ef5b0d782f539ed1a387987cd

SHA-1:
f6992a4519135d8a42c1759b18051c2a815f5cff

SHA-256:
4dce34cdaada1efbce07ab8f2b581781d67f874c6bc707ba3399367d97e19707

Scanner detections:
4 / 68

Status:
Potentially unwanted

Explanation:
The software may change the browser's home page and search provider settings as well as display advertisements.

Analysis date:
4/26/2024 5:33:09 AM UTC  (today)

Scan engine
Detection
Engine version

AhnLab V3 Security
PUP/Win32.SilenceInstaller
2014.11.22

Baidu Antivirus
PUA.Win32.VOPackage
4.0.3.141121

Dr.Web
Trojan.Crossrider.39897
9.0.1.05190

ESET NOD32
Win32/VOPackage.AS potentially unwanted application
7.0.302.0

File size:
116 KB (118,798 bytes)

Product version:
1.0.0.0

Copyright:
(C) 2014

File type:
Executable application (Win32 EXE)

Installer:
NSIS (Nullsoft Scriptable Install System)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\roaming\vopackage\uninstall.exe

File PE Metadata
Compilation timestamp:
12/5/2009 5:50:52 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
3072:EgXdZt9P6D3XJtRceAS3HOW+q/etDx21NtBcp+jnYrPo4s8:Ee34BmS3HTEtt2NB6+szn

Entry address:
0x30FA

Entry point:
81, EC, 80, 01, 00, 00, 53, 55, 56, 33, DB, 57, 89, 5C, 24, 18, C7, 44, 24, 10, 60, 91, 40, 00, 33, F6, C6, 44, 24, 14, 20, FF, 15, 30, 70, 40, 00, 68, 01, 80, 00, 00, FF, 15, B0, 70, 40, 00, 53, FF, 15, 7C, 72, 40, 00, 6A, 08, A3, 18, EC, 42, 00, E8, F1, 2B, 00, 00, A3, 64, EB, 42, 00, 53, 8D, 44, 24, 34, 68, 60, 01, 00, 00, 50, 53, 68, 98, 8F, 42, 00, FF, 15, 58, 71, 40, 00, 68, 54, 91, 40, 00, 68, 60, E3, 42, 00, E8, A4, 28, 00, 00, FF, 15, AC, 70, 40, 00, BF, 00, 40, 43, 00, 50, 57, E8, 92, 28, 00, 00...
 
[+]

Entropy:
7.5563

Packer / compiler:
Nullsoft install system v2.x

Code size:
23.5 KB (24,064 bytes)

Program Uninstaller
Program name:
Remote Desktop Access (VuuPC)

Display publisher:
CMI Limited

Display version:
1.0.0.0

Uninstall string:
"C:\users\{user}\appdata\roaming\vopackage\uninstall.exe"


The file uninstall.exe has been discovered within the following program.

Developed and distributed through bundled installer from Click Me In. The software may be bundled by 3rd-party products using the InstallCore distribution platform.
vuupc.com/terms.html
About 82% of users remove it
 
Powered by Should I Remove It?

Remove uninstall.exe - Powered by Reason Core Security