uninstaller.exe

The application uninstaller.exe has been detected as a potentially unwanted program by 10 anti-malware scanners. This is a setup and installation application, however the file is not signed with an authenticode signature from a trusted source. This is the uninstaller utility registered in the Windows Control Panel for the program Mipony Download Manager Packages. The setup program uses the InstallCore engine which may bundle additional software offers including toolbars and browser extensions.
Remove uninstaller.exe - Powered by Reason Core Security
MD5:
e5215b2165f9ca3a96343d56e77f8ce2

SHA-1:
53ecbb20bfd169bd95961c3eada89678a1378bf4

SHA-256:
35c6beef3f9d544c994b689695096fe8da74555c430df0c85d0194e57362457f

Scanner detections:
10 / 68

Status:
Potentially unwanted

Explanation:
Uses the InstallCore download manager to install additional potentially unwanted software which may include extensions such as DealPly and various toolbars.

Analysis date:
12/7/2016 9:41:10 AM UTC  (today)

Scan engine
Detection
Engine version

Avira AntiVirus
ADWARE/Patched.Ren.Gen
7.11.154.66

avast!
Win32:Sality
140608-0

AVG
Adware InstallCore.PQ
2014.0.3955

Dr.Web
Adware.InstallCore.90
9.0.1.05190

ESET NOD32
Win32/InstallCore.AZ potentially unwanted application
7.0.302.0

F-Prot
W32/InstallCore.W.gen
4.6.5.141

Panda Antivirus
Trj/Genetic.gen
14.06.10.07

Rising Antivirus
PE:Malware.XPACK-LNR/Heur!1.5594
23.00.65.14608

Vba32 AntiVirus
BScope.P2P-Worm.Palevo
3.12.26.0

VIPRE Antivirus
Threat.4150696
30086

Remove uninstaller.exe - Powered by Reason Core Security
File size:
1.1 MB (1,114,624 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\uninstaller.exe

File PE Metadata
Compilation timestamp:
6/20/1992 2:22:17 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
12288:v6uSzswzh83eptRBBpLUlm5zckVdzfwKcp+fTSUCymNu6sBCYQhkjHvX8IxtjGIw:SW3eptHWezDdrc0TZCymNfYZPX8Itrk

Entry address:
0xD8830

Entry point:
55, 8B, EC, 83, C4, F0, B8, 34, 8A, 40, 00, E8, 55, F5, FF, FF, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
877.5 KB (898,560 bytes)

Program Uninstaller
Program name:
Mipony Download Manager Packages

Uninstall string:
C:\Users\User\AppData\Roaming\Mipony Download Manager Packages\uninstaller.exe /Uninstall /NM="Mipony Download Manager Packages" /AN="" /MBN="Mipony Download Manager Packages"


Remove uninstaller.exe - Powered by Reason Core Security