uninstall.exe

Superfish Inc. VisualDiscovery

Superfish Inc.

The application uninstall.exe by Superfish has been detected as adware by 3 anti-malware scanners. The program is a setup application that uses the NSIS (Nullsoft Scriptable Install System) installer. This is the uninstaller utility registered in the Windows Control Panel for the program Superfish Inc. VisualDiscovery by Superfish.
Publisher:
Superfish  (signed by Superfish Inc.)

Product:
Superfish Inc. VisualDiscovery

Version:
1.0.0.0

MD5:
bb3a8ac01600bb7879aee059bffa0e79

SHA-1:
bc36c1f73cb69e60399aa9d2774004ffbc3a958e

SHA-256:
7dc90a393ac8809b75f0072127852bef58c081ebe181a7aef1be1d484ef92582

Scanner detections:
3 / 68

Status:
Adware

Analysis date:
11/27/2024 4:56:06 AM UTC  (today)

Scan engine
Detection
Engine version

AVG
Superfish.4d6
2016.0.3190

Reason Heuristics
PUP.Superfish
15.3.1.9

Sophos
SuperFish
4.98

File size:
66 KB (67,544 bytes)

Product version:
1.0.0.0

File type:
Executable application (Win32 EXE)

Installer:
NSIS (Nullsoft Scriptable Install System)

Language:
Language Neutral

Common path:
C:\Program Files\lenovo\visualdiscovery\uninstall.exe

Digital Signature
Signed by:

Authority:
Thawte, Inc.

Valid from:
7/28/2013 8:00:00 PM

Valid to:
7/27/2014 7:59:59 PM

Subject:
CN=Superfish Inc., O=Superfish Inc., L=Grandville, S=Michigan, C=US

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
3E32431476CFB3E1F90955B25396A6F4

File PE Metadata
Compilation timestamp:
12/5/2009 5:50:52 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
1536:JpgpHzb9dZVX9fHMvG0D3XJPQEyS+EhcCFVb:DgXdZt9P6D3XJIilFVb

Entry address:
0x30FA

Entry point:
81, EC, 80, 01, 00, 00, 53, 55, 56, 33, DB, 57, 89, 5C, 24, 18, C7, 44, 24, 10, 60, 91, 40, 00, 33, F6, C6, 44, 24, 14, 20, FF, 15, 30, 70, 40, 00, 68, 01, 80, 00, 00, FF, 15, B0, 70, 40, 00, 53, FF, 15, 7C, 72, 40, 00, 6A, 08, A3, 18, EC, 42, 00, E8, F1, 2B, 00, 00, A3, 64, EB, 42, 00, 53, 8D, 44, 24, 34, 68, 60, 01, 00, 00, 50, 53, 68, 98, 8F, 42, 00, FF, 15, 58, 71, 40, 00, 68, 54, 91, 40, 00, 68, 60, E3, 42, 00, E8, A4, 28, 00, 00, FF, 15, AC, 70, 40, 00, BF, 00, 40, 43, 00, 50, 57, E8, 92, 28, 00, 00...
 
[+]

Entropy:
6.6191

Packer / compiler:
Nullsoft install system v2.x

Code size:
23.5 KB (24,064 bytes)

Program Uninstaller
Program name:
Superfish Inc. VisualDiscovery

Display publisher:
Superfish

Display version:
1.0.0.1

Uninstall string:
C:\Program Files (x86)\Lenovo\VisualDiscovery\uninstall.exe


Remove uninstall.exe - Powered by Reason Core Security