uninstall.exe

Search Snacks, LLC

This is part of the InfoAtoms browser extension which will display variopus forms of advertising in the web browser by injecting new ads such as banner, text-links and search results. The application uninstall.exe, “Search Snacks Setup” by Search Snacks has been detected as adware by 13 anti-malware scanners. The program is a setup application that uses the NSIS (Nullsoft Scriptable Install System) installer. This is the uninstaller utility registered in the Windows Control Panel for the program Search Snacks 1.10.0.5 by Search Snacks.
Publisher:
Search Snacks  (signed by Search Snacks, LLC)

Product:
Search Snacks

Description:
Search Snacks Setup

Version:
1.10.0.5

MD5:
8587b6d99621ce56017e018b78cad03e

SHA-1:
6f9b64a99458466f37ba9eb6ea14877d660df4bf

SHA-256:
38f9ea65d5e1d571d90c8154c0d5132392e766e11bcffca6caf89aefb2379dac

Scanner detections:
13 / 68

Status:
Adware

Analysis date:
12/24/2024 1:30:37 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Adware.Vitruvian.B
753

AhnLab V3 Security
PUP/Win32.SearchSnacks
2015.01.12

AVG
Snacks
2016.0.3231

Bitdefender
Adware.Vitruvian.B
1.0.20.60

Dr.Web
Adware.Plugin.274
9.0.1.012

Emsisoft Anti-Malware
Adware.Vitruvian
8.15.01.12.04

F-Secure
Adware.Vitruvian.B
11.2015-12-01_2

G Data
Adware.Vitruvian
15.1.24

Malwarebytes
PUP.Optional.SearchSnacks.A
v2015.01.12.04

MicroWorld eScan
Adware.Vitruvian.B
16.0.0.36

nProtect
Adware.Vitruvian.B
15.01.09.01

Reason Heuristics
PUP.Installer.SearchSnacks.J
15.1.12.16

VIPRE Antivirus
InfoAtoms
36574

File size:
311.5 KB (318,936 bytes)

Product version:
1.10.0.5

Copyright:
(c) 2014 Search Snacks

Original file name:
searchsnacks-setup.exe

File type:
Executable application (Win32 EXE)

Installer:
NSIS (Nullsoft Scriptable Install System)

Language:
Language Neutral

Common path:
C:\Program Files\searchsnacks_1.10.0.5\uninstall.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
4/3/2014 2:07:56 PM

Valid to:
4/3/2016 2:07:56 PM

Subject:
E=support@search-snacks.com, CN="Search Snacks, LLC", O="Search Snacks, LLC", L=Dover, S=Delaware, C=US

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
11213239AF4AE4C69B97F803376A194F08F4

File PE Metadata
Compilation timestamp:
12/5/2009 2:52:06 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
6144:PSRw1q7u5D+lJlNKoJQZj0YX8ezdJDq8z0oEi/xvI:kww5lNZmZj0YXtdFxXtpg

Entry address:
0x323C

Entry point:
81, EC, 80, 01, 00, 00, 53, 55, 56, 33, DB, 57, 89, 5C, 24, 18, C7, 44, 24, 10, 30, 91, 40, 00, 33, F6, C6, 44, 24, 14, 20, FF, 15, 30, 70, 40, 00, 68, 01, 80, 00, 00, FF, 15, B4, 70, 40, 00, 53, FF, 15, 7C, 72, 40, 00, 6A, 08, A3, 58, 6F, 44, 00, E8, 09, 2C, 00, 00, A3, A4, 6E, 44, 00, 53, 8D, 44, 24, 34, 68, 60, 01, 00, 00, 50, 53, 68, 58, 9C, 42, 00, FF, 15, 58, 71, 40, 00, 68, B8, 91, 40, 00, 68, A0, 2E, 44, 00, E8, BC, 28, 00, 00, FF, 15, B0, 70, 40, 00, BF, 00, F0, 46, 00, 50, 57, E8, AA, 28, 00, 00...
 
[+]

Entropy:
7.0629

Packer / compiler:
Nullsoft install system v2.x

Code size:
23 KB (23,552 bytes)

Program Uninstaller
Program name:
Search Snacks 1.10.0.5

Display publisher:
Search Snacks

Display version:
1.10.0.5

Uninstall string:
C:\Program Files (x86)\SearchSnacks_1.10.0.5\Uninstall.exe


Remove uninstall.exe - Powered by Reason Core Security