vmntoolbar.dll

VMN Toolbar

Visicom Media Inc.

This is part of the Visicom VMN web browser toolbar and extension that will modify the browser's default search provider, DNS, and home page functions. The module vmntoolbar.dll by Visicom Media has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. It is installed within the context of Internet Explore as a BHO (Browser Helper Object) under the name ‘VMN Toolbar’. This file is typically installed with the program VMN Toolbar by Visicom Media Inc. which is a potentially unwanted software program.
Publisher:
Visicom Media Inc.  (signed and verified)

Product:
VMN Toolbar

Version:
4.0.3.238

MD5:
3308a562098dbc506a2701dd3c5fb6cd

SHA-1:
554aa04154d33af988ccacc9c3de79c1d27b8756

SHA-256:
245193ccba073e4b372d21bedb164c4c98c41c60c0f3a592e783321f8b94496d

Scanner detections:
1 / 68

Status:
Potentially unwanted

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
11/14/2024 3:15:30 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Visicom.VisicomMedia.Toolbar (M)
16.1.23.0

File size:
1.6 MB (1,707,264 bytes)

Product version:
4.0

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\Program Files\vmntoolbar\vmntoolbar.dll

Digital Signature
Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
6/24/2005 1:48:39 AM

Valid to:
6/20/2006 10:44:48 AM

Subject:
CN=Visicom Media Inc., OU=Secure Application Development, O=Visicom Media Inc., L=Brossard, S=Quebec, C=CA

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
3F88F4

File PE Metadata
Compilation timestamp:
6/20/1992 12:22:17 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:5ymoOLhxHOb3kDizFiKxiuzSLvl7S98m45ARHSknQJ2U20e05YmyKrmNByYf:5ymqA2SARyknQIU2hNOrmNHf

Entry address:
0x15FE5C

Entry point:
55, 8B, EC, 83, C4, C4, B8, 68, E3, 55, 00, E8, B4, 79, EA, FF, 83, 3D, FC, 57, 56, 00, 00, 75, 14, B8, 6C, E2, 55, 00, A3, FC, 57, 56, 00, B8, 01, 00, 00, 00, E8, E3, E3, FF, FF, E8, D6, 51, EA, FF, 8B, C0, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
1.4 MB (1,436,160 bytes)

Internet Explorer BHO
CLSID:
{4E7BD74F-2B8D-469E-8DA9-FD60BB9AAE33}

CLSID name:
VMN Toolbar


The file vmntoolbar.dll has been discovered within the following program.

VMN Toolbar  by Visicom Media Inc.
The VMN Toolbar is a Visicom toolbar installed in your Web browser that collects and stores information about your web browsing habits and sends this information to Visicom so they can suggest services or provide ads via the toolbar.
software.visicommedia.com
78% remove it
 
Powered by Should I Remove It?

Remove vmntoolbar.dll - Powered by Reason Core Security