uvk_en.exe

Ultra Virus Killer

Alfredo Anibal santos silva

The application uvk_en.exe by Alfredo Anibal santos silva has been detected as a potentially unwanted program by 8 anti-malware scanners. This is the uninstaller utility registered in the Windows Control Panel for the program UVK - Ultra Virus Killer by Carifred. Additionally, the file is typically installed by a number of programs including UVK - Ultra Virus Killer by Carifred and Mastertech Computers Corp Repair Tool by Mastertech Computers Corp. While running, it connects to the Internet address biz141.inmotionhosting.com on port 80 using the HTTP protocol.
Publisher:
Carifred  (signed by Alfredo Anibal santos silva)

Product:
Ultra Virus Killer

Version:
7.4.1.0

MD5:
1cb6e7906081d847bd6ff46f19cff8ea

SHA-1:
ea0c0958d96010758a98ee0a922d658af7bccc99

SHA-256:
e7f73ecc8a95ebbb43cf2f4325263394913c3a100646dd6a6e7f17fdb1fa2e74

Scanner detections:
8 / 68

Status:
Potentially unwanted

Analysis date:
4/27/2024 1:48:19 AM UTC  (today)

Scan engine
Detection
Engine version

ESET NOD32
Detection.Undefined
9.7.0.302.0

McAfee
Artemis!437B8FAAAABC
5600.6652

NANO AntiVirus
Trojan.Win32.Autoit.dbiolu
0.28.0.60475

Reason Heuristics
PUP.AlfredoAnibalsantossilva (M)
15.9.5.6

Rising Antivirus
AU3SCRIPT:Trojan.Script.VBS.StartPage.rf!1596587
23.00.65.15903

Total Defense
Win32/Tnega.AVVX
37.0.11218

Trend Micro House Call
Suspicious_GEN.F47V0621
7.2.248

Zillya! Antivirus
Trojan.Disfa.Win32.35876
2.0.0.2387

File size:
1.6 MB (1,676,256 bytes)

Product version:
7.4.0.0

Copyright:
Carifred © 2010 - 2015

Trademarks:
Carifred.com

Original file name:
UVK.exe

File type:
Executable application (Win64 EXE)

Language:
English (United Kingdom)

Common path:
C:\Program Files\uvk - ultra virus killer\uvk_en.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
3/8/2014 7:00:00 PM

Valid to:
3/9/2019 6:59:59 PM

Subject:
CN=Alfredo Anibal santos silva, O=Alfredo Anibal santos silva, STREET=Résidence les angéliques, STREET=Rue du grand large, L=Port vendres, S=Languedoc - Roussillon, PostalCode=66660, C=FR

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00E4E0EEAC938C9428AF79577D5C6F9663

File PE Metadata
Compilation timestamp:
9/4/2015 2:00:51 PM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
12.0

CTPH (ssdeep):
49152:sgTiSxZga5GBoZtVeIajw5hc7NZypsVYl7s3:XHmoZtoNY6V6I3

Entry address:
0x2F7DC

Entry point:
48, 83, EC, 28, E8, BF, B3, 00, 00, 48, 83, C4, 28, E9, 36, FE, FF, FF, CC, CC, 8B, 05, EA, 9B, 0A, 00, 44, 8B, C2, 23, CA, 41, F7, D0, 44, 23, C0, 44, 0B, C1, 44, 89, 05, D5, 9B, 0A, 00, C3, 48, 83, EC, 28, E8, 87, 28, 00, 00, 48, 85, C0, 74, 0A, B9, 16, 00, 00, 00, E8, A8, 28, 00, 00, F6, 05, B5, 9B, 0A, 00, 02, 74, 29, B9, 17, 00, 00, 00, E8, 25, 1D, 01, 00, 85, C0, 74, 07, B9, 07, 00, 00, 00, CD, 29, 41, B8, 01, 00, 00, 00, BA, 15, 00, 00, 40, 41, 8D, 48, 02, E8, 52, 09, 00, 00, B9, 03, 00, 00, 00, E8...
 
[+]

Entropy:
7.3258

Code size:
672 KB (688,128 bytes)

Program Uninstaller
Program name:
UVK - Ultra Virus Killer

Display publisher:
Carifred

Display version:
7.4.1.0

Uninstall string:
C:\Program Files\UVK - Ultra Virus Killer\UVK_en.exe -Uninst


The file uvk_en.exe has been discovered within the following programs.

Mastertech Computers Corp Repair Tool  by Mastertech Computers Corp
www.carifred.com/uvk
About 7% of users remove it
About 9% of users remove it
 
Powered by Should I Remove It?

The executing file has been seen to make the following network communication in live environments.

TCP (HTTP):
Connects to biz141.inmotionhosting.com  (216.194.169.105:80)

Remove uvk_en.exe - Powered by Reason Core Security