Want CNET to notify you of price drops and the latest stories?
X

How to find out if your Lenovo is infected with the Superfish adware and remove it

There's no need to panic. It's a relatively simple process to remove Lenovo's "Superfish" adware. Here's what you need to know.

Dan_Graziano2.jpg
Dan_Graziano2.jpg
Dan Graziano Associate Editor / How To
Dan Graziano is an associate editor for CNET. His work has appeared on BGR, Fox News, Fox Business, and Yahoo News, among other publications. When he isn't tinkering with the latest gadgets and gizmos, he can be found enjoying the sights and sounds of New York City.
Dan Graziano

Sarah Tew/CNET

Users on Lenovo's forums have discovered that the Chinese company has been preloading some consumer PC models with a software called Superfish Visual Discovery. In short, the software tracks your searches and browsing habits (even on secure sites) and uses this information to place additional advertisements on the sites you visit. It's unclear what models have come preloaded with the software, although users have reported finding it on Lenovo Y50, Z40, Z50, G50 and Yoga 2 Pro models.

screen-shot-2015-02-19-at-1-17-10-pm.png
Ideally this is the screen you will see. Screenshot by Dan Graziano/CNET

LastPass has created a Web tool that makes it easy to check to see if your computer is infected. You can check by simply clicking on this link. To manually check for the Superfish adware and uninstall it, head to the Windows Control Panel, select Programs and click Uninstall a Program. Search the list for VisualDiscovery. If it is there, click the program and select Uninstall.

superfish.png
Screenshot by Rob Graham

You're not finished yet, though, there is one more step. You must also uninstall the Superfish certificates. Start by clicking the Windows Start button and typingcertmgr.msc in the search box. Launch the certmgr.msc program, click on Trusted Root Certification Authorities, followed by Certificates. Search through the certificates for anything mentioning Superfish Inc. Once you have found the certificates, right-click them and select Delete.

To make sure you have fully removed the program, restart your browser and revisit the LastPass web tool.