uninstaller.exe

Anything or Nothing

The application uninstaller.exe by Anything or Nothing has been detected as a potentially unwanted program by 12 anti-malware scanners. The program is a setup application that uses the NSIS (Nullsoft Scriptable Install System) installer. This is the uninstaller utility registered in the Windows Control Panel for the program Treasure Track by Treasure Track. This file is typically installed with the program Treasure Track by Yontoo Technology, Inc. which is a potentially unwanted software program. It will plug into the web browser and display context-based advertisements by overwriting existing ads or by inserting new ones on various web pages.
Publisher:
Anything or Nothing  (signed and verified)

Version:
2.0.5754.40894

MD5:
afed199e73479df2accf3b87af842524

SHA-1:
4cf911d8811fe1e1b1f11517bf2d5001a1d44cf0

SHA-256:
e3a20317cfc91a531b71b49d2df19980481a87cab5abdd35322149342ab63221

Scanner detections:
12 / 68

Status:
Potentially unwanted

Explanation:
Injects advertising in the web browser in various formats.

Analysis date:
4/27/2024 3:53:20 AM UTC  (today)

Scan engine
Detection
Engine version

Avira AntiVirus
ADWARE/BrowseFox.Gen
8.3.2.2

Arcabit
PUP.Adware.BrowseFox.eec
1.0.0.576

AVG
Generic
2016.0.2962

Bkav FE
W32.HfsAdware
1.3.0.7237

Clam AntiVirus
Win.Adware.Browsefox-725
0.98/21511

Dr.Web
Trojan.Yontoo.2775
9.0.1.0282

K7 AntiVirus
Riskware
13.210.17460

Kaspersky
not-a-virus:AdWare.NSIS.BrowseFox
14.0.0.1303

Malwarebytes
PUP.Optional.Yontoo
v2015.10.09.08

Panda Antivirus
Generic Suspicious
15.10.09.08

Sophos
Generic PUA EM (PUA)
4.98

SUPERAntiSpyware
PUP.BrowseFox/Variant
9580

File size:
305.6 KB (312,936 bytes)

Product version:
2015.10.03

File type:
Executable application (Win32 EXE)

Installer:
NSIS (Nullsoft Scriptable Install System)

Language:
English (United States)

Common path:
C:\Program Files\treasure track\uninstaller.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
7/9/2015 2:00:00 AM

Valid to:
7/9/2016 1:59:59 AM

Subject:
CN=Anything or Nothing, O=Anything or Nothing, L=San Diego, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
39B310F7EFA25D2884A35990FA6D6B45

File PE Metadata
Compilation timestamp:
6/5/2014 1:58:31 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
6144:LQ33/RdOSnM3DoFFjuvf/toNQ8dqLuJoU0U7Hd8CntQOHHM+HFFTjXdpNnT2K:m/XnM3D0Fw/tN8dkmLtpHHHrh73

Entry address:
0x31E4

Entry point:
81, EC, 80, 01, 00, 00, 53, 55, 56, 33, DB, 57, 89, 5C, 24, 18, C7, 44, 24, 10, E0, 73, 40, 00, 33, F6, C6, 44, 24, 14, 20, FF, 15, 30, 70, 40, 00, 68, 01, 80, 00, 00, FF, 15, B0, 70, 40, 00, 53, FF, 15, 7C, 72, 40, 00, 6A, 08, A3, B8, 6C, 44, 00, E8, 1B, 25, 00, 00, 53, 68, 60, 01, 00, 00, A3, C0, 6B, 44, 00, 8D, 44, 24, 38, 50, 53, 68, DB, 73, 40, 00, FF, 15, 58, 71, 40, 00, 68, D0, 73, 40, 00, 68, C0, 2B, 44, 00, E8, 0D, 24, 00, 00, FF, 15, AC, 70, 40, 00, 50, BF, 00, F0, 46, 00, 57, E8, FB, 23, 00, 00...
 
[+]

Packer / compiler:
Nullsoft install system v2.x

Code size:
22.5 KB (23,040 bytes)

Program Uninstaller
Program name:
Treasure Track

Display publisher:
Treasure Track

Display version:
2.0.5754.40894

Uninstall string:
"C:\Program Files (x86)\Treasure Track\uninstaller.exe" /ut RM


The file uninstaller.exe has been discovered within the following program.

Treasure Track  by Yontoo Technology, Inc.
www.treasuretrack.net/support
87% remove it
 
Powered by Should I Remove It?

Remove uninstaller.exe - Powered by Reason Core Security