iobittoolbarie.dll

Widgi Toolbar

Spigot, Inc.

This component is part of the Spigot browser add-on, a web browser addition that is designed to modify the core search provider in order to redirect search queries through partner portals. The module iobittoolbarie.dll, “Widgi Toolbar for Internet Explorer” by Spigot has been detected as adware by 2 anti-malware scanners.
Publisher:
Spigot, Inc.  (signed and verified)

Product:
Widgi Toolbar

Description:
Widgi Toolbar for Internet Explorer

Version:
4, 8, 0, 2

MD5:
235ae1d3b19e25e4a7a98731e04d2c8b

SHA-1:
c84fdf9f65b8fb89a93758000940e9964291e78a

SHA-256:
2940c9f042d7bad332e99ad037c4afb5fd4b39ff6c759c416c101faa0c8599f9

Scanner detections:
2 / 68

Status:
Adware

Analysis date:
4/19/2024 3:42:14 AM UTC  (today)

Scan engine
Detection
Engine version

Boost by Reason
Optional.Spigot
188838

Reason Heuristics
PUP.Spigot.Toolbar (M)
16.1.17.10

File size:
1 MB (1,050,976 bytes)

Product version:
4, 8, 0, 2

Copyright:
Copyright © 2005-2011 Spigot, Inc.

Original file name:
WidgiToolbarIE.dll

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\Program Files\iobit toolbar\ie\4.8\iobittoolbarie.dll

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
3/28/2011 5:00:00 PM

Valid to:
3/28/2012 4:59:59 PM

Subject:
CN="Spigot, Inc.", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Spigot, Inc.", L=El Granada, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
205AA0CBA0AA4891C4AF524CA2EE072C

File PE Metadata
Compilation timestamp:
11/15/2011 4:25:17 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
12288:EsXpF8EXDUfW3MNo2KvXj1W+B+cW5hKGGpLeArRNV5Udwf1NoX88DV5:lsWUfW3MNoDfRW+201ND5NoXt5

Entry address:
0x866A5

Entry point:
8B, FF, 55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, F1, 03, 00, 00, FF, 75, 08, 8B, 4D, 10, 8B, 55, 0C, E8, CC, FE, FF, FF, 59, 5D, C2, 0C, 00, CC, CC, CC, CC, CC, CC, CC, CC, 51, 8D, 4C, 24, 08, 2B, C8, 83, E1, 0F, 03, C1, 1B, C9, 0B, C1, 59, E9, 5A, 04, 00, 00, 51, 8D, 4C, 24, 08, 2B, C8, 83, E1, 07, 03, C1, 1B, C9, 0B, C1, 59, E9, 44, 04, 00, 00, FF, 25, 50, 04, 09, 10, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, 40, 8B, 0B, 10, 89, 0D, 3C, 8B, 0B, 10, 89, 15, 38, 8B, 0B, 10, 89, 1D, 34, 8B, 0B, 10, 89...
 
[+]

Entropy:
5.9845

Code size:
569.5 KB (583,168 bytes)

Remove iobittoolbarie.dll - Powered by Reason Core Security