Information about tbTV_B.dll

tbTV_B.dll

tbTV_B.dll is a Windows file recorded in the ThreatInfo database. It is associated with Conduit Toolbar. The reported company name is Conduit Ltd.. The current detection status is Undefined, based on the latest analysis from 2021-01-03 06:34:32 (5 years ago).

ThreatInfo does not have a final classification for this file yet. Use the technical details below to compare the hash, size, signature, and observed locations with the copy found on your device.

Product Name: Conduit Toolbar
Company Name: Conduit Ltd.
MD5: 73406fa9287b36ca4163797c73a2cd04
Size: 4 MB
First Published: 2017-05-21 10:03:43 (8 years ago)
Latest Published: 2021-01-03 06:34:32 (5 years ago)
Status: Undefined (on last analysis)
Analysis Date: 2021-01-03 06:34:32 (5 years ago)
Signed By: Conduit Ltd.
Status: Valid

The signature on tbTV_B.dll is reported as valid. A valid signature helps confirm publisher identity, but it does not automatically make the file safe if the installer was bundled, abused, or downloaded from an untrusted source.

%localappdata%\temp
%programfiles%\mercan
%localappdata%\flv_runner
%localappdata%\malware_fighter
%localappdata%\internethelper
%localappdata%\max_es_atube
%localappdata%\utorrentcontrol2
%programfiles%\flv_runner
%sysdrive%\docume~1\stephan\locals~1\temp
%localappdata%\brothersoft_extreme

ThreatInfo has observed tbTV_B.dll in the locations listed above. Files found in temporary folders, user profile folders, startup locations, or unusual application directories should be reviewed more carefully than files installed under a known program directory.

tbedrs.dll
nsl713.tmp.tbFile.dll
tbmerc.dll
tbmer0.dll
tbmererror.dll
tbFLV_.dll
tbMalw.dll
A0147265.dll
tbInte.dll
tbMax0.dll
tbuTo0.dll
tbProd.dll
tbWis0.dll
tbDVD0.dll
tbBro0.dll
tbuTor.dll
A0229491.dll
A0229494.dll
tbBS_P.dll
tbPods.dll
A0288179.dll
A0289488.dll
A0291210.dll
A0293575.dll
A0288740.dll
tbBitT.dll
tbVuz0.dll
tbKur2.dll
nsx5DCB.tmp.tbWise.dll
tbBus0.dll
A0241219.dll
A0241216.dll
tbAsha.dll
tbGos0.dll
tbWise.dll
tbRadi.dll
tbCon0.dll
tbRec2.dll
tbWin0.dll
tbXfir.dll
tbNan0.dll
tbVuze.dll
tbiNTE.dll
tbDVDV.dll
tbFile.dll
tbPro3.dll
tbFLV3.dll
tbWhit.dll
tb2al0.dll
tbMar0.dll
tbWinl.dll
tbPro2.dll
tbSof0.dll
tbWall.dll
tbPro0.dll
tbDVD2.dll
tbBit0.dll
tbSomo.dll
tbTV_B.dll

This hash has been seen with multiple file names. Alternate names can appear when software is updated, copied between folders, packed by an installer, or deliberately renamed to avoid recognition. Compare the exact MD5 above before assuming two names refer to the same file.

17.3%
10.9%
9.1%
8.8%
4.3%
4.0%
3.3%
3.0%
3.0%
2.7%
2.7%
2.4%
2.4%
2.1%
2.1%
1.8%
1.8%
1.8%
1.5%
1.2%
1.2%
1.2%
1.2%
0.9%
0.6%
0.6%
0.6%
0.6%
0.6%
0.6%
0.6%
0.6%
0.6%
0.6%
0.6%
0.3%
0.3%
0.3%
0.3%
0.3%
0.3%
0.3%

The strongest geographic signal for this file is United States with 17.3% of observed hits. Geographic distribution can help identify targeted campaigns, regional software bundles, or where a file is most commonly reported.

Windows 7 48.3%
Windows 10 34.7%
Windows XP 12.8%
Windows Vista 1.8%
Windows 8.1 1.2%
Windows 8 0.9%
Windows Server 2003 0.3%

The most common operating system signal for tbTV_B.dll is Windows 7 with 48.3% of observed hits. If your system differs from the common profile, check whether the file was introduced by a specific installer, archive, or removable device.

tbTV_B.dll is identified as pe for 32 systems. The subsystem is Windows GUI. PE header values are useful for triage, especially when they do not match the expected publisher, product, or release timeline.

Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x10000000
Entry Address: 0x0027ff98

PE Sections:

Name Size of data MD5
.text 2934272 1e49806fe605bf682d100e24b218aa22
.rdata 738816 244578c111e505c495c896d4d1440cf5
.data 35840 63ed76b2f3036cff05f77c208a31cfd1
SHARED 18944 2474f6359b2686ebcc034214ecda6253
.rsrc 483328 d4ab32902f303fe1c91049745e116689
.reloc 233472 5e2e8617e26a90dd98bdc374f41ed4e4

PE section names and hashes can reveal packing, injected resources, or unusual build artifacts. Sections with uncommon names, very large raw data, or hashes that differ from a trusted copy deserve additional review.

More information: