videodownloadtoolbar.exe

Video Download Toolbar

Sakysoft s.r.l.

The application videodownloadtoolbar.exe by Sakysoft s.r.l has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
Sakysoft s.r.l. uninominale  (signed by Sakysoft s.r.l.)

Product:
Video Download Toolbar

Version:
2.6.0.0

MD5:
7edec59272f44bed2e5096220f18d8e8

SHA-1:
67f44b427858d6b01640976b4bcc581ec62174ff

SHA-256:
051d8e5cf0a6207b2045fa3164586866d3e17edf1d9eb08d97d1d90df090c4f1

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
12/25/2024 3:10:35 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Optional.Toolbar.U
14.11.11.13

File size:
5.3 MB (5,535,632 bytes)

Product version:
2.6.0.0

Copyright:
Sakysoft s.r.l. uninominale 2009-2012

Trademarks:
Sakysoft s.r.l. uninominale 2009-2012

Original file name:
Video Download Toolbar

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\roaming\videodownloadtoolbar\videodownloadtoolbar.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
2/27/2012 6:00:00 PM

Valid to:
2/27/2013 5:59:59 PM

Subject:
CN=Sakysoft s.r.l., OU=IT02517520306, O=Sakysoft s.r.l., STREET=Via Gorghi 6, L=Udine, S=UD, PostalCode=33100, C=IT

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
0084576543B0DE88CA5B6C674671DD2C69

File PE Metadata
Compilation timestamp:
5/28/2012 6:44:03 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
98304:yPG8an/rJUKfRiJD8l5Jh/xK0VTHWg/EsiYg7dru5fat7r9g:0aeD8nng05S1r9g

Entry address:
0x437284

Entry point:
55, 8B, EC, 83, C4, F0, 53, B8, D0, 4C, 82, 00, E8, 73, 44, BD, FF, 8B, 1D, AC, AE, 84, 00, 33, C0, 55, 68, 72, 73, 83, 00, 64, FF, 30, 64, 89, 20, 8B, 03, E8, 08, 3A, CD, FF, 33, C0, 55, 68, 5D, 73, 83, 00, 64, FF, 30, 64, 89, 20, E8, 19, D9, FE, FF, 68, 80, 73, 83, 00, 6A, FF, 6A, 00, E8, D3, 60, BD, FF, A3, 48, 55, 8D, 00, E8, 61, 62, BD, FF, 3D, B7, 00, 00, 00, 75, 24, 6A, 00, 68, BC, 73, 83, 00, E8, BE, 6B, BD, FF, A3, 4C, 55, 8D, 00, 83, 3D, 4C, 55, 8D, 00, 00, 74, 05, E8, 73, D8, FE, FF, E8, AA, FB...
 
[+]

Entropy:
6.5105

Developed / compiled with:
Microsoft Visual C++

Code size:
4.2 MB (4,414,464 bytes)

Remove videodownloadtoolbar.exe - Powered by Reason Core Security