uninstall.exe

Goobzo LTD

The application uninstall.exe by Goobzo has been detected as adware by 11 anti-malware scanners. This is the uninstaller utility registered in the Windows Control Panel for the program Object Browser by Object Browser. This file is typically installed with the program Object Browser which is a potentially unwanted software program. It is built using the Crossrider cross-browser extension platform. While the file utilizes the Crossrider framework and delivery services, it is not owned by Crossrider.
Publisher:
Goobzo LTD  (signed and verified)

MD5:
9649374698c10f632b626cb00c7a7336

SHA-1:
f94acaaa45f7f8c68c852bdd7654a8b4283f6570

SHA-256:
1234ede21c81723e0e2f881dbeddd407b4de18cd50c08410309a3c8dba1a8a81

Scanner detections:
11 / 68

Status:
Adware

Explanation:
The software may change the browser's home page and search provider settings as well as display advertisements.

Analysis date:
4/24/2024 11:36:09 PM UTC  (a few moments ago)

Scan engine
Detection
Engine version

Avira AntiVirus
TR/Crypt.ZPACK.Gen2
7.11.30.172

AVG
Skodna
2015.0.3368

Baidu Antivirus
Adware.Win32.CrossAd
4.0.3.14829

Dr.Web
Trojan.Crossrider.29493
9.0.1.05190

G Data
Win32.Application.Shopperpro
14.8.24

IKARUS anti.virus
PUA.Plush
t3scan.1.7.5.0

NANO AntiVirus
Trojan.Win32.GoogUpdate.decyum
0.28.2.61861

Panda Antivirus
Adware/Goobzo
14.08.29.05

Reason Heuristics
PUP.Goobzo.J
14.8.29.3

Vba32 AntiVirus
Trojan.GoogUpdate
3.12.26.3

VIPRE Antivirus
Threat.4792716
32210

File size:
99.9 KB (102,256 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\object browser\uninstall.exe

Digital Signature
Signed by:

Authority:
Thawte, Inc.

Valid from:
5/1/2013 5:00:00 PM

Valid to:
5/2/2015 4:59:59 PM

Subject:
CN=Goobzo LTD, O=Goobzo LTD, L=Haifa, S=Israel, C=IL

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
120B25DDE57B88636AD4D97D23B99C88

File PE Metadata
Compilation timestamp:
8/10/2014 3:04:46 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
1536:alcoO6flPORZJ6kC6vfHTrp0hRlvqEclV2sWjcd7faLk:6coOqVgZnOxqXV57faLk

Entry address:
0x4F25

Entry point:
E8, 38, 66, 00, 00, E9, 00, 00, 00, 00, 6A, 14, 68, 88, 6E, 41, 00, E8, 25, 0A, 00, 00, E8, 43, 33, 00, 00, 0F, B7, F0, 6A, 02, E8, CB, 65, 00, 00, 59, B8, 4D, 5A, 00, 00, 66, 39, 05, 00, 00, 40, 00, 74, 04, 33, DB, EB, 33, A1, 3C, 00, 40, 00, 81, B8, 00, 00, 40, 00, 50, 45, 00, 00, 75, EB, B9, 0B, 01, 00, 00, 66, 39, 88, 18, 00, 40, 00, 75, DD, 33, DB, 83, B8, 74, 00, 40, 00, 0E, 76, 09, 39, 98, E8, 00, 40, 00, 0F, 95, C3, 89, 5D, E4, E8, AC, 5F, 00, 00, 85, C0, 75, 08, 6A, 1C, E8, DC, 00, 00, 00, 59, E8...
 
[+]

Entropy:
6.3600

Code size:
65.5 KB (67,072 bytes)

Program Uninstaller
Program name:
Object Browser

Display publisher:
Object Browser

Display version:
1.34.7.29

Uninstall string:
C:\Program Files\Object Browser\Uninstall.exe /fcp=1


The file uninstall.exe has been discovered within the following program.

Object Browser  by Object Browser
Object Browser is an adware style application that runs in the web browser as a toolbar and web extension.
66% remove it
 
Powered by Should I Remove It?

Remove uninstall.exe - Powered by Reason Core Security