toolbar67144747.exe

The application toolbar67144747.exe has been detected as a potentially unwanted program by 22 anti-malware scanners. According to AVG, this software downloads additional adware offers during setup.
MD5:
7fc3b62c0ff1c9e9283e7a6c27c18630

SHA-1:
2d6ddd367b347ae2a33943a1b82af811f70916d9

SHA-256:
3318f6a0e3826315525536e7a3af63280e93d181f94c78af1660ec94b2940dc2

Scanner detections:
22 / 68

Status:
Potentially unwanted

Analysis date:
4/24/2024 10:42:14 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Zusy.94862
865

Avira AntiVirus
Adware/AgentCV.A.6915
7.11.152.10

avast!
Win32:Adware-gen [Adw]
2014.9-140922

AVG
Downloader.Small
2015.0.3343

Baidu Antivirus
Adware.Win32.Lollipop
4.0.3.14529

Bitdefender
Gen:Variant.Zusy.94862
1.0.20.1325

Comodo Security
Application.Win32.Lollipop.Q
18365

Emsisoft Anti-Malware
Gen:Variant.Zusy.94862
8.14.09.22.01

ESET NOD32
Win32/AdWare.Lollipop.U application
7.0.302.0

Fortinet FortiGate
Riskware/Lollipop
9/22/2014

F-Secure
Gen:Variant.Zusy.94862
11.2014-22-09_2

G Data
Gen:Variant.Zusy.94862
14.9.24

IKARUS anti.virus
AdWare.Lollipop
t3scan.1.6.1.0

K7 AntiVirus
Adware
13.1712436

Kaspersky
not-a-virus:HEUR:AdWare.Win32.Lollipop
14.0.0.3792

McAfee
Artemis!FB0E62F4C6EB
5600.6999

MicroWorld eScan
Gen:Variant.Zusy.94862
15.0.0.795

NANO AntiVirus
Riskware.Win32.Lollipop.czgmgu
0.28.0.59921

Qihoo 360 Security
Win32/Virus.Adware.4f7
1.0.0.1015

Reason Heuristics
Threat.Win.Reputation.IMP
14.9.22.13

Sophos
Generic PUA AO
4.98

Trend Micro House Call
Suspicious_GEN.F47V0615
7.2.265

File size:
424 KB (434,176 bytes)

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\toolbar67144747.exe

File PE Metadata
Compilation timestamp:
5/28/2014 6:48:00 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
6144:anNrznA0D+i7hRrE8Ilfvjxyw+3RmBAC/7/avo+S24U:aNoa+i7hRrE8Ivjximt/7coJ2r

Entry address:
0x4734

Entry point:
E8, 0F, B5, 00, 00, E9, 78, FE, FF, FF, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, 20, C9, 44, 00, 89, 0D, 1C, C9, 44, 00, 89, 15, 18, C9, 44, 00, 89, 1D, 14, C9, 44, 00, 89, 35, 10, C9, 44, 00, 89, 3D, 0C, C9, 44, 00, 66, 8C, 15, 38, C9, 44, 00, 66, 8C, 0D, 2C, C9, 44, 00, 66, 8C, 1D, 08, C9, 44, 00, 66, 8C, 05, 04, C9, 44, 00, 66, 8C, 25, 00, C9, 44, 00, 66, 8C, 2D, FC, C8, 44, 00, 9C, 8F, 05, 30, C9, 44, 00, 8B, 45, 00, A3, 24, C9, 44, 00, 8B, 45, 04, A3, 28, C9, 44, 00, 8D, 45, 08, A3, 34, C9, 44...
 
[+]

Code size:
270.5 KB (276,992 bytes)

Remove toolbar67144747.exe - Powered by Reason Core Security