CToolbar.exe

Crawler Toolbar

Xacti

The application CToolbar.exe by Xacti has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
Crawler.com  (signed by Xacti)

Product:
Crawler Toolbar

Version:
5.1.0.286

MD5:
a2d22cb1b14270d416102466b68f9a7f

SHA-1:
4060f1054d66c6b1e8ceec7ee3f0e6b3b2dfc75f

Scanner detections:
1 / 68

Status:
Adware

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
5/6/2024 9:09:34 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Win32.Generic
17.1.12.13

File size:
2.2 MB (2,351,648 bytes)

Copyright:
© Crawler.com

Original file name:
CToolbar.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\crawler\toolbar\ctoolbar.exe

Digital Signature
Signed by:

Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
9/20/2007 5:30:00 AM

Valid to:
9/20/2009 5:29:59 AM

Subject:
CN=Xacti, O=Xacti, L=Boca Raton, S=Florida, C=US

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
1A0AF4E414210F437F4DAA090054A175

File PE Metadata
Compilation timestamp:
1/30/2009 7:59:22 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

Entry address:
0x14A74C

Entry point:
55, 8B, EC, 83, C4, F0, 53, 56, 57, B8, 28, 7C, 54, 00, E8, 0D, D7, EB, FF, 33, C0, 55, 68, 84, A7, 54, 00, 64, FF, 30, 64, 89, 20, 6A, 01, E8, 24, D9, EB, FF, 50, E8, 06, DB, EB, FF, 33, C0, 5A, 59, 59, 64, 89, 10, EB, 0A, E9, BB, A5, EB, FF, E8, 8A, AA, EB, FF, E8, F1, 89, FE, FF, 5F, 5E, 5B, E8, E1, AE, EB, FF, 90, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.9583

Developed / compiled with:
Microsoft Visual C++

Code size:
1.3 MB (1,347,072 bytes)

Safe for Initializing Control
CLSID:
{8736C681-37A0-40C6-A0F0-4C083409151C}


Remove CToolbar.exe - Powered by Reason Core Security