iminentsrv.exe

Iminent Toolbar

Montera Technologeis LTD

This is part of the Montera web browser toolbar and extension that will modify the browser's default search provider, DNS, and home page functions. The application iminentsrv.exe by Montera Technologeis has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat. This file is typically installed with the program Iminent Toolbar on IE and Chrome by IMinent which is a potentially unwanted software program.
Publisher:
Iminent  (signed by Montera Technologeis LTD)

Product:
Iminent Toolbar

Version:
1.8.18.0

MD5:
37ee92cf7d4032ca4cfb83bfcad880e2

SHA-1:
78f917cd723e1e48e3f285af918312a42937b361

SHA-256:
14a8c3f2c628051024f18e710bd6b5d8d0fbe2ff5e023403972bb2a6e0e17caf

Scanner detections:
1 / 68

Status:
Adware

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
4/18/2024 10:09:18 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Montiera.Montera.Toolbar (M)
16.2.12.0

File size:
376.4 KB (385,432 bytes)

Product version:
1.8.18.0

Copyright:
(c) Iminent All rights reserved.

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\iminent\iminent\1.8.18.6\iminentsrv.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
5/28/2012 2:00:00 AM

Valid to:
5/29/2013 1:59:59 AM

Subject:
CN=Montera Technologeis LTD, O=Montera Technologeis LTD, STREET="18, Amammi st", L=Even Yehuda, S=Hasharon, PostalCode=40500, C=IL

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
361B49E5431DD304CA32589D28E4DD3C

File PE Metadata
Compilation timestamp:
4/20/2013 9:48:56 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
6144:DLTa/lP1AV+SnD4jBpgx5kJUZJx0lcE7EfsJbFtcIfAjn:vTa/R1AV+SnD4j3gx5eUZJx0eE7EfsJO

Entry address:
0x2AFCB

Entry point:
E8, C2, 8B, 00, 00, E9, 89, FE, FF, FF, 8B, FF, 55, 8B, EC, 83, EC, 10, 57, FF, 75, 10, 8D, 4D, F0, E8, E4, E0, FF, FF, 8B, 7D, 08, 85, FF, 75, 27, E8, 06, 15, 00, 00, C7, 00, 16, 00, 00, 00, E8, 29, 18, 00, 00, 80, 7D, FC, 00, 74, 07, 8B, 45, F8, 83, 60, 70, FD, B8, FF, FF, FF, 7F, E9, A5, 00, 00, 00, 56, 8B, 75, 0C, 85, F6, 75, 24, E8, D7, 14, 00, 00, C7, 00, 16, 00, 00, 00, E8, FA, 17, 00, 00, 80, 7D, FC, 00, 74, 07, 8B, 45, F8, 83, 60, 70, FD, B8, FF, FF, FF, 7F, EB, 78, 53, 8B, 5D, F4, 83, 7B, 08, 00...
 
[+]

Code size:
257.5 KB (263,680 bytes)

The file iminentsrv.exe has been discovered within the following program.

Iminent toolbar is a browser extension for Internet Explorer and Firefox which is used to emoticons while using Facebook and web-based email products. During installation the Iminent toolbar changes your browser's homepage to seach.iminent.
63% remove it
 
Powered by Should I Remove It?

Remove iminentsrv.exe - Powered by Reason Core Security