manycamsetup.exe.tmp

ManyCam Virtual Webcam

ManyCam (VISICOM MÉDIA INC.)

This is part of the Visicom VMN web browser toolbar and extension that will modify the browser's default search provider, DNS, and home page functions. The file manycamsetup.exe.tmp by ManyCam (VISICOM MÉDIA INC.) has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
Visicom Media Inc.  (signed by ManyCam (VISICOM MÉDIA INC.))

Product:
ManyCam Virtual Webcam

Version:
5.5.0.12

MD5:
c904145cc21174b64c9931003a00c7cb

SHA-1:
00dbb998240553bf01f4f8bd5f7adb10325131b7

SHA-256:
c55adedd70fe8bcdc4bf99da19ec77bbd755e4be553a9cd6d8a137c4a7e04811

Scanner detections:
1 / 68

Status:
Adware

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
11/23/2024 4:37:02 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Visicom.Installer
17.3.15.3

File size:
64.3 MB (67,389,520 bytes)

Product version:
5.5.0.12

Copyright:
(c) 2006-2016 Visicom Media Inc.

Language:
English (United States)

Common path:
C:\users\{user}\downloads\manycamsetup.exe.tmp

Digital Signature
Authority:
Symantec Corporation

Valid from:
3/1/2016 1:00:00 AM

Valid to:
3/2/2019 12:59:59 AM

Subject:
CN=ManyCam (VISICOM MÉDIA INC.), O=ManyCam (VISICOM MÉDIA INC.), L=Brossard, S=Quebec, C=CA, SERIALNUMBER=1145963121, OID.2.5.4.15=Private Organization, OID.1.3.6.1.4.1.311.60.2.1.2=Quebec, OID.1.3.6.1.4.1.311.60.2.1.3=CA

Issuer:
CN=Symantec Class 3 Extended Validation Code Signing CA - G2, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
041C319EDA4F5240F1802BA471E11BB9

File PE Metadata
Compilation timestamp:
4/2/2016 4:20:09 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

Entry address:
0x326C

Entry point:
E9, 8A, 29, 00, 00, 00, 53, 55, 56, 57, 33, DB, 68, 01, 80, 00, 00, 89, 5C, 24, 20, C7, 44, 24, 14, 30, 91, 40, 00, 89, 5C, 24, 1C, C6, 44, 24, 18, 20, FF, 15, B4, 70, 40, 00, FF, 15, B0, 70, 40, 00, 66, 3D, 06, 00, 74, 11, 53, E8, 07, 2E, 00, 00, 3B, C3, 74, 07, 68, 00, 0C, 00, 00, FF, D0, BE, 80, 72, 40, 00, 56, E8, 83, 2D, 00, 00, 56, FF, 15, AC, 70, 40, 00, 8D, 74, 06, 01, 38, 1E, 75, EB, 6A, 0D, E8, DB, 2D, 00, 00, 6A, 0B, E8, D4, 2D, 00, 00, A3, 64, 3F, 42, 00, FF, 15, 38, 70, 40, 00, 53, FF, 15, 6C...
 
[+]

Entropy:
8.0000

Packer / compiler:
Xtreme-Protector v1.05

Code size:
23.5 KB (24,064 bytes)

Remove manycamsetup.exe.tmp - Powered by Reason Core Security