uninstalldt.exe

Search Results, LLC

The application uninstalldt.exe, “Uninstall DefaultTab” by Search Results has been detected as adware by 7 anti-malware scanners. This is a self-extracting archive and installer and has been known to bundle potentially unwanted software. This is the uninstaller utility registered in the Windows Control Panel for the program DefaultTab by Search Results, LLC.
Publisher:
Search Results, LLC  (signed and verified)

Product:
Search Results, LLC

Description:
Uninstall DefaultTab

Version:
1.0.2.0

MD5:
e1fb5cfb12b9ae70a4b002ee1816de87

SHA-1:
b8cd45b576030ed08a9f4e3258fde0f6bb3fdea8

Scanner detections:
7 / 68

Status:
Adware

Analysis date:
4/25/2024 11:11:53 AM UTC  (today)

Scan engine
Detection
Engine version

Avira AntiVirus
TR/Trash.Gen
7.11.30.172

Baidu Antivirus
Adware.Win32.DefaultTab
4.0.3.14818

Dr.Web
Trojan.Damaged.1
9.0.1.0230

Emsisoft Anti-Malware
Android.Adware.Kuguo
8.14.08.18.06

Reason Heuristics
PUP.SearchResults.L
14.8.18.18

SUPERAntiSpyware
Trojan.Agent/Gen-Nullo[Short]
10413

VIPRE Antivirus
Threat.4729122
29708

File size:
625.1 KB (640,136 bytes)

Product version:
1.0.2.0

Copyright:
Search Results, LLC

Trademarks:
Search Results, LLC

Original file name:
uninstalldt.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Documents and Settings\{user}\Application data\defaulttab\defaulttab\uninstalldt.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
4/24/2012 8:00:00 PM

Valid to:
4/25/2014 7:59:59 PM

Subject:
CN="Search Results, LLC", O="Search Results, LLC", STREET="2751 Hennepin Ave S #252", L=Minneapolis, S=MN, PostalCode=55405, C=US

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00B6815DF3B6D64839E008D65B53EF0170

File PE Metadata
Compilation timestamp:
6/19/1992 6:22:17 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
12288:pqjdCmRKwC3uivX93WD4ZuG5YHX0I2yXKd0OnLpfZJUGrkp145Jh:pqUmRQu3DOZOjXXCVNfZ2Grkp14/h

Entry address:
0x196001

Entry point:
60, E8, 03, 00, 00, 00, E9, EB, 04, 5D, 45, 55, C3, E8, 01, 00, 00, 00, EB, 5D, BB, ED, FF, FF, FF, 03, DD, 81, EB, 00, 60, 19, 00, 83, BD, 88, 04, 00, 00, 00, 89, 9D, 88, 04, 00, 00, 0F, 85, CB, 03, 00, 00, 8D, 85, 94, 04, 00, 00, 50, FF, 95, A9, 0F, 00, 00, 89, 85, 8C, 04, 00, 00, 8B, F0, 8D, 7D, 51, 57, 56, FF, 95, A5, 0F, 00, 00, AB, B0, 00, AE, 75, FD, 38, 07, 75, EE, 8D, 45, 7A, FF, E0, 56, 69, 72, 74, 75, 61, 6C, 41, 6C, 6C, 6F, 63, 00, 56, 69, 72, 74, 75, 61, 6C, 46, 72, 65, 65, 00, 56, 69, 72, 74...
 
[+]

Entropy:
7.9722

Packer / compiler:
ASPack v2.12

Code size:
1.3 MB (1,362,432 bytes)

Program Uninstaller
Program name:
DefaultTab

Display publisher:
Search Results, LLC

Display version:
2.2.7.0

Uninstall string:
"C:\Documents and Settings\Mama\Application Data\DefaultTab\DefaultTab\uninstalldt.exe"


Remove uninstalldt.exe - Powered by Reason Core Security