uninst.exe

VideoBox

Baidu (China) Co., Ltd.

The application uninst.exe, “VideoBox's Uninstall Program” by Baidu (China) Co. has been detected as a potentially unwanted program by 37 anti-malware scanners. The program is a setup application that uses the NSIS (Nullsoft Scriptable Install System) installer. This is the uninstaller utility registered in the Windows Control Panel for the program VideoBox by Baidu Online Network Technology (Beijing) Co., Ltd.. This file is typically installed with the program VideoBox by Baidu, Inc.. This program installs potentially unwanted software on your PC at the same time as the software you are trying to install, without adequate consent.
Publisher:
Baidu Online Network Technology (Beijing) Co., Ltd.  (signed by Baidu (China) Co., Ltd.)

Product:
VideoBox

Description:
VideoBox's Uninstall Program

Version:
1.6.7.367

MD5:
ea2e2da9beba893504abf4c27baf00ab

SHA-1:
4451156c10ab762e51db599e3e9bdf6b996f1a95

SHA-256:
4408a71460e6712e8b20411d3fc0a3f69e0930f792befe34c39c1f93fcc0651d

Scanner detections:
37 / 68

Status:
Potentially unwanted

Analysis date:
4/18/2024 2:34:03 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Application.Bundler.Agent.B
856

Agnitum Outpost
PUA.Agent
7.1.1

AhnLab V3 Security
14.10.02

Avira AntiVirus
ADWARE/Adware.Gen7
7.11.147.26

avast!
Adware-gen [Adw]
2014.9-141002

AVG
Adware AdPlugin
2015.0.3334

Baidu Antivirus
Trojan.Win32.Clikug
4.0.3.14102

Bitdefender
Application.Bundler.Agent.B
1.0.20.1375

Clam AntiVirus
Win.Adware.Ibryte-592
0.98/19086

Comodo Security
Application.Win32.iBryte.WRP
18251

Dr.Web
Adware.iBryte.473
9.0.1.0275

Emsisoft Anti-Malware
Gen:Variant.Adware.Graftor.145314
8.14.10.02.09

ESET NOD32
Win32/AdWare.iBryte.AR application
8.7.0.302.0

Fortinet FortiGate
W32/Zbot.AAN!tr
10/2/2014

F-Prot
W32/A-c255719d
v6.4.7.1.166

F-Secure
Application.Bundler.Agent
11.2014-02-10_5

G Data
Win32.Adware.Ibryte
14.10.24

IKARUS anti.virus
t3scan.1.6.1.0

K7 AntiVirus
Unwanted-Program
13.177.12013

Kaspersky
not-a-virus:Downloader.NSIS.Agent
14.0.0.3163

Malwarebytes
v2014.10.02.09

McAfee
Trojan.Artemis!2BDA97A3EE62
5600.6990

Microsoft Security Essentials
TrojanClicker:Win32/Clikug.A
1.10401

MicroWorld eScan
Application.Bundler.Agent.B
15.0.0.825

NANO AntiVirus
Trojan.Win32.Agent.cxjjsz
0.28.0.59608

nProtect
Adware.IBryte.Y
14.08.13.01

Panda Antivirus
Trj/Genetic.gen
14.10.02.09

Qihoo 360 Security
Malware.QVM10.Gen
1.0.0.1015

Reason Heuristics
Threat.Win.Reputation.IMP
14.6.26.19

Rising Antivirus
PE:Malware.iBryte!6.192B
23.00.65.14930

SUPERAntiSpyware
PUP.OptimumInstaller/Variant
10324

Trend Micro House Call
TROJ_CLIKUG.A
7.2.275

Trend Micro
TROJ_CLIKUG.A
10.465.02

Vba32 AntiVirus
3.12.26.0

VIPRE Antivirus
Threat.4778314
29418

Zillya! Antivirus
Adware.iBryte.Win32.854
2.0.0.1790

File size:
779.3 KB (797,968 bytes)

Product version:
1.6.7.367

Copyright:
Copyright (C) 2000-2014

File type:
Executable application (Win32 EXE)

Installer:
NSIS (Nullsoft Scriptable Install System)

Common path:
C:\users\{user}\appdata\roaming\baidu\videobox\uninst.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
2/22/2012 11:18:27 AM

Valid to:
2/22/2015 11:18:27 AM

Subject:
CN="Baidu (China) Co., Ltd.", O="Baidu (China) Co., Ltd.", L=Shanghai, S=Shanghai, C=CN

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121DF7675AAA08D1B49A83A480F14855D24

File PE Metadata
Compilation timestamp:
12/25/2013 7:01:32 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
12288:81J9M31LjlDWPn493stBfjf1tbktatTB2B9uZlBQY9z+/V5acC2y3TP44KqxV2Gm:661vnBQfnktaT89uZllIVY2y3jzKdMzU

Entry address:
0x31FD

Entry point:
81, EC, D4, 02, 00, 00, 53, 55, 56, 57, 6A, 20, 33, ED, 5E, 89, 6C, 24, 14, C7, 44, 24, 10, D8, 92, 40, 00, 89, 6C, 24, 1C, FF, 15, 34, 70, 40, 00, 68, 01, 80, 00, 00, FF, 15, 34, 71, 40, 00, 55, FF, 15, AC, 72, 40, 00, 6A, 08, A3, 58, 92, 42, 00, E8, 9F, 2E, 00, 00, A3, A4, 91, 42, 00, 55, 8D, 44, 24, 34, 68, B4, 02, 00, 00, 50, 55, 68, 58, 06, 42, 00, FF, 15, 7C, 71, 40, 00, 68, C0, 92, 40, 00, 68, A0, 81, 42, 00, E8, 0A, 2B, 00, 00, FF, 15, 38, 71, 40, 00, BB, 00, 40, 43, 00, 50, 53, E8, F8, 2A, 00, 00...
 
[+]

Entropy:
7.7603

Packer / compiler:
Nullsoft install system v2.x

Code size:
23.5 KB (24,064 bytes)

Program Uninstaller
Program name:
VideoBox

Display publisher:
Baidu Online Network Technology (Beijing) Co., Ltd.

Display version:
1.6.7.347

Uninstall string:
C:\users\{user}\appdata\roaming\baidu\videobox\uninst.exe


The file uninst.exe has been discovered within the following program.

VideoBox  by Baidu, Inc.
www.baidu.com
About 3% of users remove it
 
Powered by Should I Remove It?

Remove uninst.exe - Powered by Reason Core Security