vmntoolbarsetup.exe

Visicom Media Inc.

This is part of the Visicom VMN web browser toolbar and extension that will modify the browser's default search provider, DNS, and home page functions. The application vmntoolbarsetup.exe by Visicom Media has been detected as a potentially unwanted program by 6 anti-malware scanners. The program is a setup application that uses the NSIS (Nullsoft Scriptable Install System) installer.
Publisher:
Visicom Media Inc.  (signed and verified)

MD5:
058e2b7d7f35dddc1686dd8447c3ede4

SHA-1:
7abcaf3877a6bf00063feb7a25e05134b85e1971

Scanner detections:
6 / 68

Status:
Potentially unwanted

Analysis date:
5/10/2024 4:59:51 AM UTC  (today)

Scan engine
Detection
Engine version

AVG
Generic2
2015.0.3345

Norman
W32/VmnToolbar.A
11.20140920

Panda Antivirus
Adware/WebSearch
14.09.20.11

Quick Heal
Trojan.Agent.nj
9.14.11.00

Reason Heuristics
PUP.Installer.VisicomMedia.P
14.9.20.23

Vba32 AntiVirus
AdWare.Win32.BHO.w
3.12.14.3

File size:
1 MB (1,089,704 bytes)

File type:
Executable application (Win32 EXE)

Installer:
NSIS (Nullsoft Scriptable Install System)

Common path:
C:\Program Files\vmn toolbox 4\vmntoolbar\vmntoolbarsetup.exe

Digital Signature
Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
5/31/2006 1:00:00 AM

Valid to:
6/22/2007 12:59:59 AM

Subject:
CN=Visicom Media Inc., OU=SECURE APPLICATION DEVELOPMENT, O=Visicom Media Inc., L=Brossard, S=Quebec, C=CA

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
46009F112341EB9E47AD9A71D868DC95

File PE Metadata
Compilation timestamp:
12/17/2005 3:37:42 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
24576:kV55vz6+dRrrjEya3x0/EmEwnRE+kYPHX9OK2rocdVz3kd:kV55LNRbs32/EVwnKJYfX9O1oKVz0d

Entry address:
0x3131

Entry point:
81, EC, 80, 01, 00, 00, 53, 55, 56, 33, F6, 57, 89, 74, 24, 18, BD, 38, 92, 40, 00, 89, 74, 24, 10, C6, 44, 24, 14, 20, FF, 15, 30, 70, 40, 00, 56, FF, 15, 84, 72, 40, 00, A3, D0, 43, 42, 00, 56, 8D, 44, 24, 34, 68, 60, 01, 00, 00, 50, 56, 68, F8, FC, 41, 00, FF, 15, 6C, 71, 40, 00, 68, 28, 92, 40, 00, 68, 20, 3B, 42, 00, E8, BF, 27, 00, 00, BB, 00, B4, 42, 00, BF, 00, 04, 00, 00, 53, 57, FF, 15, B4, 70, 40, 00, E8, 5F, FF, FF, FF, 85, C0, 75, 24, 68, FB, 03, 00, 00, 53, FF, 15, 58, 71, 40, 00, 68, 20, 92...
 
[+]

Entropy:
7.9910

Packer / compiler:
Nullsoft install system v2.x

Code size:
22.5 KB (23,040 bytes)

Remove vmntoolbarsetup.exe - Powered by Reason Core Security