toolbarupdater.exe

ToolbarU Application

AVG Technologies

It runs as a separate (within the context of its own process) windows Service named “vToolbarUpdater11.0.2”.
Publisher:
AVG Technologies  (signed and verified)

Product:
ToolbarU Application

Version:
11, 0, 0, 9

MD5:
56e1e4442e4613fb2039a6b7421f4e58

SHA-1:
f23ac17157554bb1e7526ef8dbe8aef3747ca97a

SHA-256:
aae02f6ddb6df03feb28bff484c80d5f11159c59cc3aaaae76f0882e0db33f40

Scanner detections:
4 / 68

Status:
Clean  (4 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
4/19/2024 3:40:35 PM UTC  (today)

Scan engine
Detection
Engine version

AhnLab V3 Security
Win-Trojan/Agent.945328
2013.09.27

Boost by Reason
Optional.Service.AVGTechnologies.O
188163

Emsisoft Anti-Malware
Win32.Expiro.BK
8.14.02.21.12

ViRobot
Trojan.Win32.S.Agent.945328
2011.4.7.4223

File size:
910.9 KB (932,736 bytes)

Product version:
11, 0, 0, 9

Copyright:
Copyright (C) 2011

Original file name:
ToolbarU.exe

File type:
Executable application (Win32 EXE)

Language:
Hebrew (Israel)

Common path:
C:\Program Files\common files\avg secure search\vtoolbarupdater\11.0.2\toolbarupdater.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
5/7/2010 2:00:00 AM

Valid to:
5/7/2012 1:59:59 AM

Subject:
CN=AVG Technologies, OU=AVG Quick ThreatScan, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=AVG Technologies, L=Brno, S=Jihomoravsky kraj, C=CZ

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
5E0F996FDACC017461390F9605E65CBE

File PE Metadata
Compilation timestamp:
4/10/2012 11:07:32 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
9.0

CTPH (ssdeep):
24576:AzL8ESfc/N73jwHTZCi7FiVqsW3XXXXedqrlTgWPbt:AP/l8oUFinW3XXXXedqrlTgWPbt

Entry address:
0x94A1C

Entry point:
E8, C8, EA, 00, 00, E9, A4, FE, FF, FF, 6A, 0C, 68, 08, 12, 4D, 00, E8, DA, 86, 00, 00, 33, F6, 89, 75, E4, 33, C0, 8B, 5D, 08, 3B, DE, 0F, 95, C0, 3B, C6, 75, 1C, E8, 9C, 50, 00, 00, C7, 00, 16, 00, 00, 00, 56, 56, 56, 56, 56, E8, 19, FD, FF, FF, 83, C4, 14, 33, C0, EB, 7B, 33, C0, 8B, 7D, 0C, 3B, FE, 0F, 95, C0, 3B, C6, 74, D6, 33, C0, 66, 39, 37, 0F, 95, C0, 3B, C6, 74, CA, E8, B3, ED, 00, 00, 89, 45, 08, 3B, C6, 75, 0D, E8, 5A, 50, 00, 00, C7, 00, 18, 00, 00, 00, EB, C9, 89, 75, FC, 66, 39, 33, 75, 20...
 
[+]

Code size:
716.5 KB (733,696 bytes)

Service
Display name:
vToolbarUpdater11.0.2

Type:
Win32OwnProcess


Scan toolbarupdater.exe - Powered by Reason Core Security