dtuser.exe

Lavasoft Limited

This is part of the Visicom VMN web browser toolbar and extension that will modify the browser's default search provider, DNS, and home page functions. The application dtuser.exe by Lavasoft Limited has been detected as adware by 0 anti-malware scanners. This is installed with Ad-Aware Security Toolbar.
Publisher:
Visicom Media Inc.  (signed by Lavasoft Limited)

Description:
DtUser

Version:
1, 0, 0, 103

MD5:
36c526937271e735ffee0534a25528c6

SHA-1:
6fbc16e25042103d211ef57be2688260f4d7b1ba

SHA-256:
603c5e25946e06fe223a39988b6ff3ce2b882cca4806bb69f8edd5a54fd47917

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/25/2024 12:04:57 AM UTC  (today)

File size:
502.3 KB (514,352 bytes)

Product version:
1, 0, 0, 103

Copyright:
© 2010-2013 Visicom Media Inc.

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\lavasoft\adaware securesearch toolbar\dtuser.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
8/7/2013 8:00:00 PM

Valid to:
7/24/2015 7:59:59 PM

Subject:
CN=Lavasoft Limited, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Lavasoft Limited, L=sliema, S=Malta, C=MT

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
0E13B3A79AA60B7EA934163F5237606B

File PE Metadata
Compilation timestamp:
1/24/2014 2:22:26 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

Entry address:
0x1D47D

Entry point:
E8, 17, 86, 00, 00, E9, 79, FE, FF, FF, 8B, FF, 55, 8B, EC, 5D, E9, 8B, 07, 00, 00, 8B, FF, 55, 8B, EC, FF, 75, 08, 51, E8, FF, 86, 00, 00, 59, 59, 5D, C2, 04, 00, 8B, FF, 51, C7, 01, B8, A6, 45, 00, E8, 7B, 86, 00, 00, 59, C3, 8B, FF, 55, 8B, EC, 56, 8B, F1, E8, E3, FF, FF, FF, F6, 45, 08, 01, 74, 07, 56, E8, B8, FF, FF, FF, 59, 8B, C6, 5E, 5D, C2, 04, 00, 8B, FF, 55, 8B, EC, FF, 75, 08, 51, E8, 52, 88, 00, 00, 59, 59, 5D, C2, 04, 00, 8B, FF, 51, E8, A1, 87, 00, 00, 59, C3, 8B, FF, 55, 8B, EC, 8B, 45, 08...
 
[+]

Entropy:
6.9512

Code size:
306.5 KB (313,856 bytes)

Windows Firewall Allowed Program
Name:
ad-aware security toolbar dtx broker


The file dtuser.exe has been discovered within the following program.

The Ad-Aware Security Toolbar for Internet Explorer and Firefox is a Conduit OurToolbar Community smartbar or a Visicom toolbar, depedning on the installed version.
toolbar.lavasoft.com
69% remove it
 
Powered by Should I Remove It?

Remove dtuser.exe - Powered by Reason Core Security