uninstall.exe

Toolbar Uninstaller

Visicom Media Inc.

This is part of the Visicom VMN web browser toolbar and extension that will modify the browser's default search provider, DNS, and home page functions. The application uninstall.exe by Visicom Media has been detected as a potentially unwanted program by 2 anti-malware scanners. The program is a setup application that uses the NSIS (Nullsoft Scriptable Install System) installer.
Publisher:
Visicom Media Inc.  (signed and verified)

Product:
Toolbar Uninstaller

Version:
1.0.1.5

MD5:
6197cf9c1cf1d9140c66a9f7739c3e64

SHA-1:
a2e32949602dc5600f18bdb77b2b590a2ab7201e

SHA-256:
8a26cee412b5e91d7d609c49d3984e6cf62137eed1780c324256f6d23e098201

Scanner detections:
2 / 68

Status:
Potentially unwanted

Analysis date:
12/25/2024 3:31:49 PM UTC  (today)

Scan engine
Detection
Engine version

Panda Antivirus
Suspicious file
14.01.30.01

Reason Heuristics
PUP.ToolbarUninstaller.VisicomMedia.J
14.10.1.11

File size:
67 KB (68,568 bytes)

Copyright:
© Visicom Media Inc.

Trademarks:
Dynamic Toolbar, All Rights Reserved

File type:
Executable application (Win32 EXE)

Installer:
NSIS (Nullsoft Scriptable Install System)

Language:
English (United States)

Common path:
C:\Program Files\nasdaq\uninstall.exe

Digital Signature
Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
5/27/2008 8:00:00 PM

Valid to:
6/22/2010 7:59:59 PM

Subject:
CN=Visicom Media Inc., OU=SECURE APPLICATION DEVELOPMENT, O=Visicom Media Inc., L=Brossard, S=Quebec, C=CA

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
70DEF7A1CF826EC0B9F2257933EA429B

File PE Metadata
Compilation timestamp:
4/27/2007 3:59:36 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
1536:1zVmz/J+Oku5zR+QmJHkFHgGIvFTOM1AqZHmitJX9tSzn4J:9YUOXr+QmJEtgp9OM1ACrtbtSzn8

Entry address:
0x32FA

Entry point:
81, EC, 80, 01, 00, 00, 53, 55, 56, 33, DB, 57, 89, 5C, 24, 18, C7, 44, 24, 10, 70, 91, 40, 00, 33, F6, C6, 44, 24, 14, 20, FF, 15, 30, 70, 40, 00, 53, FF, 15, 78, 72, 40, 00, A3, D4, 3F, 42, 00, 53, 8D, 44, 24, 34, 68, 60, 01, 00, 00, 50, 53, 68, E8, F4, 41, 00, FF, 15, 54, 71, 40, 00, 68, 2C, 92, 40, 00, 68, 20, 37, 42, 00, E8, 9A, 27, 00, 00, FF, 15, B4, 70, 40, 00, BF, 00, 90, 42, 00, 50, 57, E8, 88, 27, 00, 00, 53, FF, 15, 08, 71, 40, 00, 80, 3D, 00, 90, 42, 00, 22, A3, 20, 3F, 42, 00, 8B, C7, 75, 0A...
 
[+]

Entropy:
7.2216

Packer / compiler:
Nullsoft install system v2.x

Code size:
22.5 KB (23,040 bytes)

Remove uninstall.exe - Powered by Reason Core Security