uninstall.exe

myradioplayer

This is part of the Sendori web browser toolbar and extension that will modify the browser's default search provider, DNS, and home page functions. The application uninstall.exe by myradioplayer has been detected as adware by 11 anti-malware scanners. The program is a setup application that uses the NSIS (Nullsoft Scriptable Install System) installer. This is the uninstaller utility registered in the Windows Control Panel for the program myradioplayer by myradioplayer.
Publisher:
myradioplayer  (signed and verified)

Product:
myradioplayer

Version:
4.0.0.0

MD5:
3ff215446866c7076e0db53e026ddf77

SHA-1:
f7e6c89dd4c321e35e5859dbb6217d9af158f403

SHA-256:
3213de9ae2704b40f51ca875181318decabb4cd292b408c2b5eb7f227db50047

Scanner detections:
11 / 68

Status:
Adware

Analysis date:
5/12/2024 8:27:56 AM UTC  (today)

Scan engine
Detection
Engine version

Agnitum Outpost
PUA.Sendori
7.1.1

Comodo Security
ApplicUnwnt
20153

Dr.Web
Threat.Undefined
9.0.1.05190

ESET NOD32
Win32/AdWare.Sendori.C application
7.0.302.0

Fortinet FortiGate
Riskware/Sendori
11/21/2014

Malwarebytes
PUP.Optional.MyRadioPlayer.A
v2014.11.21.12

McAfee
Artemis!FEA7FEE6BDE3
5600.6939

NANO AntiVirus
Riskware.Win32.Plugin.dgqnuz
0.28.6.63474

Reason Heuristics
PUP.myradioplayer.J
14.12.18.11

Trend Micro House Call
Suspici.34695612
7.2.325

VIPRE Antivirus
Threat.4150696
34948

File size:
530.9 KB (543,608 bytes)

Copyright:
© myradioplayer All rights reserved.

File type:
Executable application (Win32 EXE)

Installer:
NSIS (Nullsoft Scriptable Install System)

Language:
English (United States)

Common path:
C:\Program Files\myradioplayer\uninstall.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
8/14/2014 8:00:00 PM

Valid to:
8/14/2017 7:59:59 PM

Subject:
CN=myradioplayer, O=myradioplayer, L=San Leandro, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
42911589C907180DE25AE153A05008F6

File PE Metadata
Compilation timestamp:
12/5/2009 5:53:24 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
12288:zLFgsNbW8I09PYw9dUXxlxt8WZGKVIp2zsI8aUu6:PFRNbW8JYCa/xewGUE2g6a

Entry address:
0x355E

Entry point:
81, EC, 80, 01, 00, 00, 53, 55, 56, 33, DB, 57, 89, 5C, 24, 18, C7, 44, 24, 10, B8, A7, 40, 00, 33, F6, C6, 44, 24, 14, 20, FF, 15, 30, 80, 40, 00, 68, 01, 80, 00, 00, FF, 15, B0, 80, 40, 00, 53, FF, 15, 88, 82, 40, 00, 6A, 08, A3, 98, 10, 43, 00, E8, D6, 2E, 00, 00, A3, E4, 0F, 43, 00, 53, 8D, 44, 24, 34, 68, 60, 01, 00, 00, 50, 53, 68, E8, A7, 42, 00, FF, 15, 58, 81, 40, 00, 68, AC, A7, 40, 00, 68, E0, 07, 43, 00, E8, DC, 29, 00, 00, FF, 15, AC, 80, 40, 00, BF, 00, 70, 43, 00, 50, 57, E8, CA, 29, 00, 00...
 
[+]

Entropy:
7.9057

Packer / compiler:
Nullsoft install system v2.x

Code size:
25 KB (25,600 bytes)

Program Uninstaller
Program name:
myradioplayer

Display publisher:
myradioplayer

Display version:
4.0.0

Uninstall string:
C:\Program Files (x86)\myradioplayer\Uninstall.exe


Remove uninstall.exe - Powered by Reason Core Security