LiteToolbar.dll

Pinball Corporation.

This is a component for the Pinball ad-supported platform which may deliver advertisemenst to the web browser in the form of banner and text ads. The module LiteToolbar.dll by Pinball has been detected as adware by 30 anti-malware scanners. It is installed as a toolbar in Internet Explore as ‘SeekmoToolbar’.
Publisher:
Pinball Corporation.  (signed and verified)

Version:
11.0.0.0

MD5:
d7256f924c34ad7fe63206bc2d61c52e

SHA-1:
c232d59a6e63d1a0b33b0cb94c10f6c547249a14

SHA-256:
1e636496ad82dcd444b0a8bf8ec09dfeb54e2b5abe8573870e83431736cad6c6

Scanner detections:
30 / 68

Status:
Adware

Analysis date:
4/25/2024 10:24:40 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Adware.Heur.ku9@Riekfhii
801

Agnitum Outpost
Adware.Hotbar
7.1.1

Avira AntiVirus
ADSPY/AdSpy.Gen2
7.11.154.136

avast!
Win32:HotBar-CJ [PUP]
2014.9-141126

AVG
Zango
2015.0.3279

Bitdefender
Gen:Adware.Heur.ku9@Riekfhii
1.0.20.1650

Bkav FE
W32.LitetoolbarLT.Trojan
1.3.0.4959

Clam AntiVirus
Suspect.W32.AdInstall
0.98/21155

Comodo Security
ApplicUnwnt.Win32.AdWare.HotBar.DE
18519

Dr.Web
Adware.Hotbar.685
9.0.1.0330

Emsisoft Anti-Malware
Gen:Adware.Heur.ku9@Riekfhii
8.14.11.26.07

Fortinet FortiGate
Adware/PlatriumSA
11/26/2014

F-Secure
Gen:Adware.Heur.ku9@Riekfhii
11.2014-26-11_4

G Data
Gen:Adware.Heur.ku9@Riekfhii
14.11.24

IKARUS anti.virus
not-a-virus:AdWare.Win32.HotBar
t3scan.1.6.1.0

Kaspersky
not-a-virus:AdWare.Win32.HotBar
14.0.0.2888

Malwarebytes
Adware.HotBar.SM
v2014.11.26.07

McAfee
Adware-HotBar.g
5600.6935

Microsoft Security Essentials
Adware:Win32/Hotbar
1.10600

MicroWorld eScan
Gen:Adware.Heur.ku9@Riekfhii
15.0.0.990

NANO AntiVirus
Riskware.Win32.HotBar.cqubfq
0.28.0.60253

Reason Heuristics
PUP.Toolbar.PinballCorporation.L
14.11.26.7

Rising Antivirus
PE:Trojan.Win32.Generic.127236E3!309475043
23.00.65.141124

Sophos
ClickPotato Installer
4.98

SUPERAntiSpyware
Trojan.Agent/Gen
10214

Total Defense
Win32/Zango.Pinball[HOTBAR]
37.0.10993

Vba32 AntiVirus
AdWare.HotBar
3.12.26.0

VIPRE Antivirus
Pinball Corporation.
30214

ViRobot
Adware.BHO.178480
2011.4.7.4223

Zillya! Antivirus
Adware.Hotbar.Win32.79
2.0.0.1821

File size:
174.3 KB (178,480 bytes)

Product version:
11.0.0.0

Original file name:
LiteToolbar.dll

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\Program Files\seekmo\bin\14.0.108.0\litetoolbar.dll

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
5/19/2009 2:00:00 AM

Valid to:
5/20/2011 1:59:59 AM

Subject:
CN=Pinball Corporation., OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Pinball Corporation., L=Bellevue, S=Washington, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
4FEAB55730A755A456FE6C18A4791C1A

File PE Metadata
Compilation timestamp:
1/13/2011 9:23:55 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
3072:L0npepOY2CYULfD9CeFGM/7XvlUos5UMsFNxbME:IEpOGnfDOM/7X5hz/ME

Entry address:
0x10306

Entry point:
8B, FF, 55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, 9F, 77, 00, 00, FF, 75, 08, 8B, 4D, 10, 8B, 55, 0C, E8, EC, FE, FF, FF, 59, 5D, C2, 0C, 00, CC, CC, CC, 68, 30, FB, 00, 10, 64, FF, 35, 00, 00, 00, 00, 8B, 44, 24, 10, 89, 6C, 24, 10, 8D, 6C, 24, 10, 2B, E0, 53, 56, 57, A1, 94, 51, 02, 10, 31, 45, FC, 33, C5, 50, 89, 65, E8, FF, 75, F8, 8B, 45, FC, C7, 45, FC, FE, FF, FF, FF, 89, 45, F8, 8D, 45, F0, 64, A3, 00, 00, 00, 00, C3, 8B, 4D, F0, 64, 89, 0D, 00, 00, 00, 00, 59, 5F, 5F, 5E, 5B, 8B, E5, 5D, 51, C3, 8B...
 
[+]

Code size:
119 KB (121,856 bytes)

Internet Explorer Toolbar
Display name:
SeekmoToolbar

CLSID:
{7C207950-B633-40B8-95B3-E3E08502BE44}


Remove LiteToolbar.dll - Powered by Reason Core Security