628fedd0e602406f1c54f67e529488b54a6f4fbf

ManyCam Virtual Webcam

Visicom Media Inc.

This is part of the Visicom VMN web browser toolbar and extension that will modify the browser's default search provider, DNS, and home page functions. The file 628fedd0e602406f1c54f67e529488b54a6f4fbf by Visicom Media has been detected as a potentially unwanted program by 0 anti-malware scanners. The program is a setup application that uses the NSIS (Nullsoft Scriptable Install System) installer. It is installed within the Mozilla Firefox web browser as part of an addin/plugin.
Publisher:
Visicom Media Inc.  (signed and verified)

Product:
ManyCam Virtual Webcam

Version:
4.0.52.5534

MD5:
54c6b8e2d28a02d0e2296f519eb0e1c1

SHA-1:
412cf710b3faf8c9a2a51a32561a415556ec179d

SHA-256:
864203600b6607cb4aa3f181d93b9261e0892f0237de642fd8f5aa0b18649a80

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/27/2024 1:38:12 AM UTC  (today)

File size:
14.4 MB (15,131,247 bytes)

Product version:
4.0.52.5534

Copyright:
(c) 2006-2014 Visicom Media Inc.

Installer:
NSIS (Nullsoft Scriptable Install System)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\mozilla\firefox\profiles\{user}.default\cache2\entries\628fedd0e602406f1c54f67e529488b54a6f4fbf

Digital Signature
Authority:
Thawte, Inc.

Valid from:
4/17/2012 5:00:00 PM

Valid to:
6/21/2014 4:59:59 PM

Subject:
CN=Visicom Media Inc., OU=SECURE APPLICATION DEVELOPMENT, O=Visicom Media Inc., L=Brossard, S=Quebec, C=CA

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
2B19B54BB7ABEE1A2623111C029AF449

File PE Metadata
Compilation timestamp:
12/5/2009 2:50:46 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

Entry address:
0x323C

Entry point:
81, EC, 80, 01, 00, 00, 53, 55, 56, 33, DB, 57, 89, 5C, 24, 18, C7, 44, 24, 10, 30, 91, 40, 00, 33, F6, C6, 44, 24, 14, 20, FF, 15, 30, 70, 40, 00, 68, 01, 80, 00, 00, FF, 15, B4, 70, 40, 00, 53, FF, 15, 7C, 72, 40, 00, 6A, 08, A3, 58, 3F, 42, 00, E8, 09, 2C, 00, 00, A3, A4, 3E, 42, 00, 53, 8D, 44, 24, 34, 68, 60, 01, 00, 00, 50, 53, 68, 58, F4, 41, 00, FF, 15, 58, 71, 40, 00, 68, B8, 91, 40, 00, 68, A0, 36, 42, 00, E8, BC, 28, 00, 00, FF, 15, B0, 70, 40, 00, BF, 00, 90, 42, 00, 50, 57, E8, AA, 28, 00, 00...
 
[+]

Entropy:
7.9998

Packer / compiler:
Nullsoft install system v2.x

Code size:
23 KB (23,552 bytes)

Remove 628fedd0e602406f1c54f67e529488b54a6f4fbf - Powered by Reason Core Security