uninst.exe

The program is a setup application that uses the NSIS (Nullsoft Scriptable Install System) installer. This is the uninstaller utility registered in the Windows Control Panel for the program GMailGarner 0.99.5 by Larry Zhu (larry1zhu@gmail.com).
MD5:
4d32c34b2ab11f1849f9f52af10d799e

SHA-1:
d36688c1409822479d4890642ac5277faedfe310

SHA-256:
3249b0c97e389da22f12587675be5f4c8791012efda3ecffb8170ea92b7c4feb

Scanner detections:
1 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
4/30/2024 3:30:42 PM UTC  (today)

Scan engine
Detection
Engine version

Emsisoft A-Squared
Trojan-Downloader.Win32.Zlob.bczq!A2
4.5.0.24

File size:
34.1 KB (34,925 bytes)

File type:
Executable application (Win32 EXE)

Installer:
NSIS (Nullsoft Scriptable Install System)

Common path:
C:\Program Files\gmailgarner\uninst.exe

File PE Metadata
Compilation timestamp:
11/17/2007 3:35:32 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

Entry address:
0x3225

Entry point:
81, EC, 80, 01, 00, 00, 53, 55, 56, 33, DB, 57, 89, 5C, 24, 18, C7, 44, 24, 10, 90, 91, 40, 00, 33, F6, C6, 44, 24, 14, 20, FF, 15, 30, 70, 40, 00, 68, 01, 80, 00, 00, FF, 15, B4, 70, 40, 00, 53, FF, 15, 7C, 72, 40, 00, 6A, 08, A3, B8, 3F, 42, 00, E8, EC, 2A, 00, 00, A3, 04, 3F, 42, 00, 53, 8D, 44, 24, 34, 68, 60, 01, 00, 00, 50, 53, 68, B8, F4, 41, 00, FF, 15, 58, 71, 40, 00, 68, 18, 92, 40, 00, 68, 00, 37, 42, 00, E8, A3, 27, 00, 00, FF, 15, B0, 70, 40, 00, BF, 00, 90, 42, 00, 50, 57, E8, 91, 27, 00, 00...
 
[+]

Packer / compiler:
Nullsoft install system v2.x

Code size:
22.5 KB (23,040 bytes)

Program Uninstaller
Program name:
GMailGarner 0.99.5

Display publisher:
Larry Zhu (larry1zhu@gmail.com)

Display version:
0.99.5

Uninstall string:
C:\Program Files (x86)\GMailGarner\uninst.exe


Scan uninst.exe - Powered by Reason Core Security