input_hook.dll

ManyCam Virtual Webcam

ManyCam (VISICOM MÉDIA INC.)

This is part of the Visicom VMN web browser toolbar and extension that will modify the browser's default search provider, DNS, and home page functions. The module input_hook.dll by ManyCam (VISICOM MÉDIA INC.) has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
Visicom Media Inc.  (signed by ManyCam (VISICOM MÉDIA INC.))

Product:
ManyCam Virtual Webcam

Version:
1.0.0.1

MD5:
9bda365136e953b4531c2ba38a13410a

SHA-1:
900c9c45c48ddc544c548f72d6e4608e20f2892b

SHA-256:
bd0004c48b24b6445af2d4fa505b76d5a2b2b702f35a4aa55a00d47b163c48d1

Scanner detections:
1 / 68

Status:
Adware

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
11/5/2024 2:53:47 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Visicom
17.3.15.15

File size:
14.5 KB (14,864 bytes)

Product version:
1.0.0.1

Copyright:
(c) 2006-2015 Visicom Media Inc.

Original file name:
input_hook.dll

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\Program Files\manycam\input_hook.dll

Digital Signature
Authority:
Symantec Corporation

Valid from:
2/29/2016 9:00:00 PM

Valid to:
3/1/2019 8:59:59 PM

Subject:
CN=ManyCam (VISICOM MÉDIA INC.), O=ManyCam (VISICOM MÉDIA INC.), L=Brossard, S=Quebec, C=CA, SERIALNUMBER=1145963121, OID.2.5.4.15=Private Organization, OID.1.3.6.1.4.1.311.60.2.1.2=Quebec, OID.1.3.6.1.4.1.311.60.2.1.3=CA

Issuer:
CN=Symantec Class 3 Extended Validation Code Signing CA - G2, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
041C319EDA4F5240F1802BA471E11BB9

File PE Metadata
Compilation timestamp:
3/15/2017 4:19:53 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
12.0

Entry address:
0x136B

Entry point:
55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, D2, 04, 00, 00, FF, 75, 10, FF, 75, 0C, FF, 75, 08, E8, 07, 00, 00, 00, 83, C4, 0C, 5D, C2, 0C, 00, 6A, 10, 68, B8, 21, 00, 10, E8, A6, 05, 00, 00, 33, C0, 40, 8B, F0, 89, 75, E4, 33, DB, 89, 5D, FC, 8B, 7D, 0C, 89, 3D, 10, 30, 00, 10, 89, 45, FC, 85, FF, 75, 0C, 39, 3D, 18, 30, 00, 10, 0F, 84, D4, 00, 00, 00, 3B, F8, 74, 05, 83, FF, 02, 75, 38, A1, C8, 20, 00, 10, 85, C0, 74, 0E, FF, 75, 10, 57, FF, 75, 08, FF, D0, 8B, F0, 89, 75, E4, 85, F6, 0F, 84, B1, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
2.5 KB (2,560 bytes)

Remove input_hook.dll - Powered by Reason Core Security