Is Uninstalr safe?
Signed Win32 EXE 'Uninstalr' from Great Software Company scans clean across 76 engines including 17 top-tier ones like BitDefender, Kaspersky, and Avast—safe to use.
This 7.4 MB signed executable named Uninstalr claims to be from Great Software Company OÜ. It passed undetected by all 76 antivirus engines we checked, with 17 high-trust engines like BitDefender and Kaspersky confirming clean. Go ahead and run it if you need the uninstaller functionality.
2eb88a7c5396c486e4…9629aaad82bf7cRecommended next actions
Before opening
Open it only when its sender or download source is one you independently trust.
If you already opened it
Keep normal device protection enabled and stop if the file behaves unexpectedly.
Intelligence
The saved assessment, checked against the scan evidence and recorded coverage.
The reasoning behind this verdict
This section explains the evidence supporting the verdict and keeps conflicting or missing signals visible.
This 7.4 MB signed executable named Uninstalr claims to be from Great Software Company OÜ. It passed undetected by all 76 antivirus engines we checked, with 17 high-trust engines like BitDefender and Kaspersky confirming clean. Go ahead and run it if you need the uninstaller functionality.
The file is a Win32 EXE packed with UPX, has an overlay, and checks the USB bus, which can sometimes trigger heuristics but did not here. It carries a valid Authenticode signature from Great Software Company OÜ dated March 2026 and has been seen for 27 days with a reputation score of 1. Our antivirus network ran 76 scans: 71 undetected, 1 timeout, and zero malicious hits—including zero from 17 Tier-1 engines like Avast, AVG, BitDefender, DrWeb, Emsisoft, ESET-NOD32, F-Secure, Fortinet, GData, Ikarus, and Kaspersky. No external threat intel hits confirm any issues. With full clean consensus and a valid signature, this file poses no detected threat.
What We Detected
Signed 7.4 MB Win32 EXE named Uninstalr, first seen 27 days ago, with UPX packing, overlay data, and USB bus checks. All 76 engines reported clean (71 undetected, 1 timeout), including 17 Tier-1 engines like BitDefender and Kaspersky.
Threat Behavior
No malicious behavior detected; it would not steal data, encrypt files, or download threats if run. The packing and USB checks are benign traits common in legitimate tools.
What To Do Now
Use it as an uninstaller if sourced reliably. Monitor system behavior initially due to its young age and low reputation score.
- Valid Authenticode signature by Great Software Company OÜ.
- 17 Tier-1 engines (Avast, AVG, Avira, BitDefender, DrWeb, Emsisoft, ESET-NOD32, F-Secure, Fortinet, GData, Ikarus, Kaspersky) all clean.
- Zero malicious detections from 76 total engines.
- No hits in CIRCL, MalwareBazaar, or YARAify databases.
- Consistent 'undetected' results across tiers.
- File is young: only 27 days since first submission.
- Low reputation score of 1.
- Packed with UPX, which can obscure analysis.
- Contains overlay data and marked as partially corrupt.
- Performs USB bus checks, uncommon in standard uninstallers.
- Filename 'Uninstalr' appears misspelled.
Run the file if it came from a trusted download source. Consider verifying with your own antivirus or sandbox if concerned about the packing and USB checks.
Coverage & freshness
Complete means the check returned a usable result. It does not mean the file is safe.
Antivirus
Complete0 of 76 engines flagged the file.
Sandbox
Not runNo runtime observation is recorded for this report.
No timestamp recordedNetwork
Not runNo contacted-host reputation check is recorded.
No timestamp recordedYARA
Not runNo rule evaluation is recorded for this report.
No timestamp recordedExternal intel
Not runNo independent reference checks are recorded.
No timestamp recorded
Behavior
Plain-English impact first, then the observed runtime evidence.
Runtime behavior was not available
The report does not treat a missing runtime observation as a clean result.
Detection & Forensics
Consensus, attribution, signatures, code structure, prevalence, and identity.
Evidence integrity
Chain of custody for the facts preserved in this report.
- 0rule hits recorded
- 0 / 76engines flagged
- 3traceable evidence facts
Why these facts are shown
Each statement identifies whether it was directly recorded or derived from saved scan facts.
- 01
0 of 76 antivirus engines flagged the file.
Verdict inputView chapterProvenanceObservedSourceAntivirus analysisObserved at - 02
One or more independent reference checks were incomplete or unavailable.
ProvenanceDerivedSourceExternal-intelligence coverageObserved at - 03
No completed runtime observation is available for this file.
ProvenanceDerivedSourceRuntime coverageObserved at
Detection sources at a glance
Category: clean
This legacy report does not record whether the independent reference checks completed.
YARA rules
Not runThis report does not contain a completed YARA rule pass.
0 of 76 engines flagged this file
View all 76 engine results
PE structure
Not applicablePE structure analysis applies to Windows executable formats, not this file type.
Fingerprint and provenance
- File name
- Uninstalr
- Format
- Win32 EXE
- Code signing
- Signature valid: Great Software Company OÜ
- Size
- 7.1 MB
- Last analyzed
- Apr 21, 2026, 7:32 AM UTC
2eb88a7c5396c486e4d2bb81490a02d62dddf2e3273b5a805a9629aaad82bf7cSafety & FAQ
Complete recovery guidance and answers for the next decision.
What to do now
This file appears low risk based on the evidence available now.
- Recovery step 01
Open it only when its sender or download source is one you independently trust.
- Recovery step 02
A clean result reduces known risk, but it cannot guarantee that every new or targeted threat has been detected.
- Recovery step 03
Keep your antivirus and Windows updates switched on so you stay protected.
Safety FAQ
Direct answers grounded in the saved verdict and evidence in this report.
Is Uninstalr safe?
What is Uninstalr?
How many antivirus engines detected Uninstalr?
Is Uninstalr digitally signed?
What is the SHA-256 hash of Uninstalr?
Is it safe to open Uninstalr?
How up to date is this analysis of Uninstalr?
Community
Member reviews and reports for this exact file hash.