prxglf351d.tmp.tbprod.dll

Conduit Toolbar

Conduit Ltd.

The file is part of the Conduit Toolbar platform, a web browser monetization engine that is typiclaly distributed with third party programs through a bundled installation, this particular version is part of the Conduit Toolbar bundle. The module prxglf351d.tmp.tbprod.dll by Conduit has been detected as a potentially unwanted program by 2 anti-malware scanners. Additionally, the file is typically installed by a number of programs including Elf 1 Toolbar by Conduit Ltd. and JTV Player Toolbar by Conduit Ltd., both potentially unwanted software.
Publisher:
Conduit Ltd.  (signed and verified)

Product:
Conduit Toolbar

Version:
6.3.0.26

MD5:
3a5627e0ab06f3ca7fb238ce5ee8cdf9

SHA-1:
ca2a44c549de8ddce928710201b538f6f84dbcfb

SHA-256:
a136efbef8cbe9bb86d144c9713f0e3a55f82f12f2d363bdf81715c76f55056d

Scanner detections:
2 / 68

Status:
Potentially unwanted

Explanation:
This component is distributed and installed with the Conduit Toolbar platform.

Analysis date:
5/8/2024 3:16:01 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
SearchPlugin.ConduitSearchBar.Toolbar.T
14.8.7.22

VIPRE Antivirus
Conduit
24898

File size:
171.3 KB (175,400 bytes)

Product version:
6.3.0.26

Copyright:
Copyright © Conduit Ltd. 2008.

Trademarks:
Copyright © Conduit Ltd. 2008.

Original file name:
Conduit Toolbar

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\prxglf351d.tmp.tbprod.dll

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
2/16/2010 7:00:00 PM

Valid to:
3/29/2013 7:59:59 PM

Subject:
CN=Conduit Ltd., OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Conduit Ltd., S=Israel, C=IL

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
3736DA15AF647632CCE61CD41B6577DD

File PE Metadata
Compilation timestamp:
1/3/2011 3:16:47 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
3072:wVFND7ag/cRFG5B0irjvdAj9+JugQO0SadIOtk8O7ViW8ay5gDRrOLCEkLDu:2Hqqj64JuobTfF9OurDu

Entry address:
0xA738

Entry point:
8B, FF, 55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, 34, 61, 00, 00, FF, 75, 08, 8B, 4D, 10, 8B, 55, 0C, E8, EC, FE, FF, FF, 59, 5D, C2, 0C, 00, 8B, FF, 55, 8B, EC, 5D, E9, 7E, FB, FF, FF, 8B, FF, 55, 8B, EC, 53, 56, 8B, 75, 08, 57, 33, FF, 39, 7D, 14, 75, 10, 3B, F7, 75, 10, 39, 7D, 0C, 75, 12, 33, C0, 5F, 5E, 5B, 5D, C3, 3B, F7, 74, 07, 8B, 5D, 0C, 3B, DF, 77, 1B, E8, BC, 61, 00, 00, 6A, 16, 5E, 89, 30, 57, 57, 57, 57, 57, E8, FD, 15, 00, 00, 83, C4, 14, 8B, C6, EB, D5, 39, 7D, 14, 75, 07, 33, C0, 66, 89, 06...
 
[+]

Entropy:
6.3539

Code size:
112.5 KB (115,200 bytes)

The file prxglf351d.tmp.tbprod.dll has been discovered within the following programs.

Elf 1 Toolbar  by Conduit Ltd.
Elf 1 Toolbar is a Conduit powered OurToolbar for Internet Explorer, Chrome and Firefox Web browsers. The toolbar collects and stores information about your web browsing and sends this information to OurToolbar so they can suggest services or provide ads via the toolbar.
Elf1.OurToolbar.com
75% remove it
InnoGames Hungary Toolbar  by Conduit Ltd.
InnoGames Hungary Toolbar is a Community Toolbar by Conduit that runs in IE, Chrome and Firefox Web browsers. The toolbar collects and stores information about your web browsing and sends this information to OurToolbar so they can suggest services or provide ads via the toolbar.
InnoGamesHungary.OurToolbar.com
63% remove it
JTV Player Toolbar  by Conduit Ltd.
JTV Player Toolbar is a 'Community Toolbar' from Conduit, which integrates with major web browsers including Google Chrome, Firefox and Internet Explorer.
JTVPlayer.Media-Toolbar.com
68% remove it
MaTTica Toolbar  by MaTTica
MaTTica Toolbar is a 'Community Toolbar' from Conduit, which integrates with major web browsers including Google Chrome, Firefox and Internet Explorer.
MaTTica.OurToolbar.com
61% remove it
Messenger Plus LATAM Toolbar  by Conduit Ltd.
Messenger Plus LATAM Toolbar is a Conduit Community toolbar for various web browsers. The toolbar collects information about a user's web browsing habits and sends this information to Conduit so they can suggest services or provide advertising.
MessengerPlusLATAM.OurToolbar.com
82% remove it
PageRage Toolbar  by Conduit Ltd.
PageRage Toolbar is a Community Toolbar by Conduit that runs in Internet Explorer, Chrome and Firefox Web browsers.
PageRage.CommunityToolbars.com
67% remove it
Productivity 2 Toolbar  by Conduit Ltd.
Productivity 2 Toolbar is a Community Toolbar by Conduit that runs in IE, Chrome and Firefox Web browsers. The toolbar collects and stores information about your web browsing and sends this information to OurToolbar so they can suggest services or provide ads via the toolbar.
Productivity2.OurToolbar.com
67% remove it
Soft32 Toolbar  by Conduit Ltd.
Soft32 Toolbar is a Community Toolbar by Conduit that runs in IE, Chrome and Firefox Web browsers. The toolbar collects and stores information about your web browsing and sends this information to OurToolbar so they can suggest services or provide ads via the toolbar.
Soft32.OurToolbar.com
66% remove it
Softonic-Australia Toolbar  by Softonic International S.L.
Softonic Toolbar is a Conduit powered OurToolbar in within Internet Explorer, Chrome or the Firefox Web browsers.
SoftonicAustralia.OurToolbar.com
63% remove it
Software Master Toolbar  by Conduit Ltd.
Software Master Toolbar is a Conduit toolbar (Community OurToolbar) for Intenet Explorer and Firefox.
SoftwareMaster.OurToolbar.com
79% remove it
 
Latest 20 of 15 programs
Powered by Should I Remove It?

Remove prxglf351d.tmp.tbprod.dll - Powered by Reason Core Security