How to remove toolbar.exe
- File Details
- Overview
- Analysis
toolbar.exe
The module toolbar.exe has been detected as PUP.Ask
File Details
Product Name: |
|
Company Name: |
|
MD5: |
e8eca676b24ac0ef7714d543f9b25a13 |
Size: |
381 KB |
First Published: |
2017-05-31 17:02:39 (7 years ago) |
Latest Published: |
2019-07-09 00:38:24 (5 years ago) |
Status: |
PUP.Ask (on last analysis) |
|
Analysis Date: |
2019-07-09 00:38:24 (5 years ago) |
Overview
Signed By: |
APN LLC |
Status: |
Invalid (digital signature could be stolen or file could be patched) |
%system%\config\systemprofile\appdata\local\microsoft\windows\temporary internet files\content.ie5\asktoolbarinstaller-kmpv76kdom0gg.7z\program files\askpartnernetwork\toolbar |
%programfiles%\askpartnernetwork\toolbar\orj-spe\source\program files\askpartnernetwork\toolbar |
%programfiles%\askpartnernetwork\toolbar\sgt2sp-sat\source\program files\askpartnernetwork\toolbar |
%programfiles%\askpartnernetwork\toolbar\ptf-rg\source\program files\askpartnernetwork\toolbar |
%programfiles%\askpartnernetwork\toolbar |
%system%\config\systemprofile\appdata\local\microsoft\windows\temporary internet files\content.ie5\asktoolbarinstaller-kmpv7[5].7z\program files\askpartnernetwork\toolbar |
%system%\config\systemprofile\appdata\local\microsoft\windows\temporary internet files\content.ie5\asktoolbarinstaller-ptv-rg[1].7z\program files\askpartnernetwork\toolbar |
%system%\config\systemprofile\appdata\local\microsoft\windows\temporary internet files\content.ie5\asktoolbarinstaller-spc-sp[1].7z\program files\askpartnernetwork |
%system%\config\systemprofile\appdata\local\microsoft\windows\temporary internet files\content.ie5\asktoolbarinstaller-spc-sp[4].7z\program files\askpartnernetwork |
%system%\config\systemprofile\appdata\local\microsoft\windows\inetcache\ie\asktoolbarinstaller-ptv-rgaazi6h9f.7z\program files\askpartnernetwork |
|
35.0% |
|
|
10.0% |
|
|
10.0% |
|
|
10.0% |
|
|
5.0% |
|
|
5.0% |
|
|
5.0% |
|
|
5.0% |
|
|
5.0% |
|
|
5.0% |
|
|
5.0% |
|
Windows 7 |
90.0% |
|
Windows 8 |
5.0% |
|
Windows 8.1 |
5.0% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00020209 |
Name |
Size of data |
MD5 |
.text |
193024 |
c5623c2ef4ee95a90719e5c8eab84851 |
.rdata |
51200 |
18ef18608054d29caf905049b99a07cc |
.data |
11776 |
11dffbcb00fcfc05f4c2ef6af7dded50 |
.rsrc |
110592 |
f338b9fb6baf40a66de1fe6b57d6ed91 |
.reloc |
16896 |
883256d30a8e7def7c02881df9ebbd8c |