Elf

Elf

Known Toolbar

by Conduit Ltd.

What is Elf?

Elf is software application developed by Conduit Ltd.. It is most commonly found on computers running Windows 7 with nearly 60.00% of installations running this operating system. Elf's installer is typically 10.00 MB in size and installs around 23 files. The most common release is 6.3.0.26 with 61.1% of all installations currently using this version.

Elf is most popular in the United States with 65.10% of installations residing in this country.

Elf adds 1 scheduled task to the Windows Task Scheduler launching the program at randomly scheduled times. When using a computer that is connected to the internet, Elf is known to create 1 firewall exception to allow inbound and outbound connectivity.

About Elf?

Elf 1.12 Toolbar is a web browser plugin designed for Internet Explorer, Chrome, and Firefox. It offers a range of features, including a search box, and is intended to enhance the browsing experience. The toolbar may collect and store information about users' web browsing habits to provide relevant services and advertising. It is important to note that the installation process requires careful attention to prevent changes to the home page and search provider settings. If these settings are modified, the user will need to manually revert them back following the uninstallation of the toolbar. Additionally, the toolbar may automatically download and install updates, with notification to the user. In accordance with the License Agreement, the Application may collect and store browsing information locally on the device to customize services and ads. This information is generalized and serves to improve the relevance of suggested services and advertisements.

Multiple virus scanners have detected malware in Elf.

uninstall.exe (MD5: b728fa6a309e5d18141947b95b730e95) has been flagged by 3 scanners:
Scanner Software Result
Panda Antivirus PUP/Conduit.A
VIPRE Antivirus Conduit (fs)
ESET-NOD32 a variant of Win32/Toolbar.Conduit.P
tbElf2.dll (MD5: cef32b574f8c732bacafd93210642dbb) has been flagged by 9 scanners:
Scanner Software Result
Bkav FE HW32.Stranact
ESET-NOD32 a variant of Win32/Toolbar.Conduit.B
Panda Antivirus PUP/Conduit.A
VIPRE Antivirus Conduit (fs)
AVware Conduit (fs)
Baidu-International Adware.Win32.Conduit.Y
Dr.Web Adware.Conduit.299
G Data Win32.Application.Conduit.F
IKARUS anti.virus PUA.ClientConnect
tbElf0.dll (MD5: 1a8438854dd15e4389f5bdef502c369d) has been flagged by 9 scanners:
Scanner Software Result
AVware Conduit (fs)
Baidu-International Adware.Win32.Conduit.Y
Bkav FE W32.HfsAdware.C534
Dr.Web Adware.Conduit.299
ESET-NOD32 a variant of Win32/Toolbar.Conduit.B potentially unwanted
Panda Antivirus PUP/Conduit.A
VIPRE Antivirus Conduit (fs)
G Data Win32.Application.Conduit.F
IKARUS anti.virus PUA.ClientConnect
tbElf_.dll (MD5: d9a0ce26ada5bd15b1b03a752ddf14a6) has been flagged by 4 scanners:
Scanner Software Result
AVware Conduit (fs)
ESET-NOD32 a variant of Win32/Toolbar.Conduit.B
Panda Antivirus PUP/Conduit.A
VIPRE Antivirus Conduit (fs)
prxtbElf0.dll (MD5: 9117027aea464e41c60b87b9826e8447) has been flagged by 9 scanners:
Scanner Software Result
AVware Conduit (fs)
Baidu-International PUA.Win32.Conduit.BX
ESET-NOD32 a variant of Win32/Toolbar.Conduit.X
G Data Win32.Application.Conduit.F
Panda Antivirus PUP/Conduit.A
VIPRE Antivirus Conduit (fs)
Bkav FE W32.HfsAdware.C534
Dr.Web Adware.Conduit.300
IKARUS anti.virus PUA.ClientConnect

Software Behaviors

Firewall:
  • Elf_1.12ToolbarHelper.exe is added as a firewall exception for 'C:\Program Files\eTvOnline.ro\eTvOnline.roToolbarHelper.exe'.
Scheduled tasks:
  • Elf_1.12ToolbarHelper.exe is scheduled as a task with the class '{B8E8E278-F25D-478A-BAB2-24A5EDB01F6C}' (runs on registration).

Software Details

URL:
https://elf112.ourtoolbar.com
Support:
https://elf112.ourtoolbar.com/help
Installation path:
C:\Program Files\elf_1.12
Uninstaller:
C:\Program Files\Elf_1.12\uninstall.exe
Size:
10.00 MB
Language:
English

Elf Executable Details

Primary executable:
tbElf2.dll
Name:
Elf
Path:
C:\Program Files\elf_1.12\tbElf2.dll
MD5:
cef32b574f8c732bacafd93210642dbb
SHA-1:
SHA-256:
Files installed by Elf
File Type Filename MD5
EXE
b728fa6a309e5d18141947b95b730e95
EXE
5cf949316c40314d66b45f0bf00aa6f6
EXE
56bc02a4bbc848a5374837fbb379ec78
DLL
tbElf2.dll
Malware
cef32b574f8c732bacafd93210642dbb
DLL
tbElf0.dll
Malware
1a8438854dd15e4389f5bdef502c369d
DLL
tbElf_.dll
Malware
d9a0ce26ada5bd15b1b03a752ddf14a6
DLL
4c163bd2a5905d18893ee311608e8c54
DLL
9117027aea464e41c60b87b9826e8447
DLL
3a5627e0ab06f3ca7fb238ce5ee8cdf9
DLL
ca4ec20fe5227224fb98c74032d5dc26