uninstall.exe

Visicom Media Inc.

This is part of the Visicom VMN web browser toolbar and extension that will modify the browser's default search provider, DNS, and home page functions. The application uninstall.exe by Visicom Media has been detected as a potentially unwanted program by 2 anti-malware scanners.
Publisher:
Visicom Media Inc.  (signed and verified)

MD5:
b72b0310bba112bdf22ea23d12184424

SHA-1:
7ce81bcf01e0280bbe822216bfb4f9809fe08c94

Scanner detections:
2 / 68

Status:
Potentially unwanted

Analysis date:
11/14/2024 3:20:28 PM UTC  (today)

Scan engine
Detection
Engine version

Comodo Security
UnclassifiedMalware
10440

Reason Heuristics
PUP.Visicom.VisicomMedia (M)
15.11.5.23

File size:
69.2 KB (70,872 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Documents and Settings\{user}\Local settings\temp\uninstall.exe

Digital Signature
Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
5/30/2006 5:00:00 PM

Valid to:
6/21/2007 4:59:59 PM

Subject:
CN=Visicom Media Inc., OU=SECURE APPLICATION DEVELOPMENT, O=Visicom Media Inc., L=Brossard, S=Quebec, C=CA

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
46009F112341EB9E47AD9A71D868DC95

File PE Metadata
Compilation timestamp:
6/19/1992 3:22:17 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
1536:iNtY4MevGUUiT2M8GJHEp/rDtMm81exE1Enovp:iE4MmDOi6/rDt/KexLnI

Entry address:
0xE3C0

Entry point:
55, 8B, EC, 83, C4, F0, B8, 50, E3, 40, 00, E8, 90, 6A, FF, FF, 33, C0, 55, 68, 47, E4, 40, 00, 64, FF, 30, 64, 89, 20, BA, 30, 07, 41, 00, B8, 01, 00, 00, 00, E8, B7, 47, FF, FF, A1, 30, 07, 41, 00, BA, 5C, E4, 40, 00, E8, 2C, 62, FF, FF, 75, 0A, E8, 59, E2, FF, FF, E8, B4, CE, FF, FF, A1, 30, 07, 41, 00, BA, 70, E4, 40, 00, E8, 11, 62, FF, FF, 75, 0A, E8, FE, F2, FF, FF, E8, 99, CE, FF, FF, A1, 30, 07, 41, 00, BA, 84, E4, 40, 00, E8, F6, 61, FF, FF, 75, 05, E8, D3, FD, FF, FF, 33, C0, 5A, 59, 59, 64, 89...
 
[+]

Entropy:
6.6154

Developed / compiled with:
Microsoft Visual C++

Code size:
53.5 KB (54,784 bytes)

Remove uninstall.exe - Powered by Reason Core Security