emailnotifier.exe

Email Notifier (TimeWarner Edition)

Visicom Media Inc.

This is part of the Visicom VMN web browser toolbar and extension that will modify the browser's default search provider, DNS, and home page functions. The application emailnotifier.exe, “Email Notifier User Interface” by Visicom Media has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
Visicom Media Inc.  (signed and verified)

Product:
Email Notifier (TimeWarner Edition)

Description:
Email Notifier User Interface

Version:
1.0.1.37

MD5:
fa5d02f03b3c05cdbf28c7d283422c52

SHA-1:
e140b339cfec21bdaf731e0868eaa22aca33e4fc

SHA-256:
9dfcbe638589da0e742220eb06cd8d4172114e91edc517217f721b3ac09bf2ad

Scanner detections:
1 / 68

Status:
Potentially unwanted

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
11/23/2024 11:37:23 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Visicom
17.2.27.14

File size:
19.2 MB (20,090,880 bytes)

Product version:
1.0.0.0

File type:
Executable application (Win32 EXE)

Language:
English (Canada)

Common path:
C:\ProgramData\emailnotifier\emailnotifier.exe

Digital Signature
Authority:
Thawte, Inc.

Valid from:
5/8/2014 5:00:00 AM

Valid to:
6/21/2016 4:59:59 AM

Subject:
CN=Visicom Media Inc., OU=SECURE APPLICATION DEVELOPMENT, O=Visicom Media Inc., L=Brossard, S=Quebec, C=CA

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
266F9E30991B0C3EFC03DA9B8CDDB68D

File PE Metadata
Compilation timestamp:
9/11/2014 11:11:34 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

Entry address:
0xE0C98

Entry point:
55, 8B, EC, 83, C4, E0, 33, C0, 89, 45, E8, 89, 45, E4, 89, 45, E0, 89, 45, EC, B8, 50, F2, 4D, 00, E8, D2, 68, F2, FF, 33, C0, 55, 68, 55, 0E, 4E, 00, 64, FF, 30, 64, 89, 20, A1, 7C, 50, 4E, 00, 8B, 00, E8, C4, 12, F9, FF, A1, 7C, 50, 4E, 00, 8B, 00, BA, 6C, 0E, 4E, 00, E8, 6B, 0D, F9, FF, B2, 01, B8, 84, 0E, 4E, 00, E8, 0F, F1, F2, FF, 84, C0, 74, 40, B1, 01, B2, 01, A1, 7C, 8C, 4D, 00, E8, 85, 8F, FF, FF, A3, 84, B2, 4E, 00, 33, C0, 55, 68, 2A, 0D, 4E, 00, 64, FF, 30, 64, 89, 20, 33, C0, 5A, 59, 59, 64...
 
[+]

Entropy:
0.5933

Developed / compiled with:
Microsoft Visual C++

Code size:
894 KB (915,456 bytes)

Windows Firewall Allowed Program
Name:
email notifier


Remove emailnotifier.exe - Powered by Reason Core Security