Serif DrawPlus Toolbar

Serif DrawPlus Toolbar

Known Toolbar

by Conduit Ltd.

What is Serif DrawPlus Toolbar?

Serif DrawPlus Toolbar is software application developed by Conduit Ltd.. It is most commonly found on computers running Windows 7 with nearly 65.00% of installations running this operating system. Serif DrawPlus Toolbar's installer is typically 9.00 MB in size and installs around 18 files. The most common release is 6.8.5.1 with 30.00% of all installations currently using this version.

Serif DrawPlus Toolbar is most popular in the United States with 61.54% of installations residing in this country.

Serif DrawPlus Toolbar adds 2 scheduled tasks to the Windows Task Scheduler launching the program at randomly scheduled times. When using a computer that is connected to the internet, Serif DrawPlus Toolbar is known to create 1 firewall exception to allow inbound and outbound connectivity.

About Serif DrawPlus Toolbar?

The Serif DrawPlus Toolbar is a community toolbar developed by Conduit, designed to integrate with popular web browsers such as Internet Explorer, Chrome, and Firefox. The toolbar serves as an advertising platform, displaying ads and potentially modifying the browser's settings to track usage statistics. It is often bundled with third-party software to generate revenue. Upon installation, users may be prompted to modify their home and search pages, although these options are typically pre-selected and can be overlooked. If the toolbar is removed, the user must manually revert their browser settings. Additionally, according to the End User License Agreement (EULA), the company may automatically download updates and collect and store information about the user's web browsing activities for targeted advertising and personalized services. The EULA states, "By Using a Conduit Software you may enable Conduit to access, use and collect a variety of information, both personal and non-personal, regarding your Internet Browser, your browsing habits, and information about your computer".

Multiple virus scanners have detected malware in Serif DrawPlus Toolbar.

uninstall.exe (MD5: b728fa6a309e5d18141947b95b730e95) has been flagged by 3 scanners:
Scanner Software Result
Panda Antivirus PUP/Conduit.A
VIPRE Antivirus Conduit (fs)
ESET-NOD32 a variant of Win32/Toolbar.Conduit.P
tbSeri.dll (MD5: 1a8438854dd15e4389f5bdef502c369d) has been flagged by 10 scanners:
Scanner Software Result
AVware Conduit (fs)
Baidu-International Adware.Win32.Conduit.Y
Bkav FE W32.HfsAdware.C534
Dr.Web Adware.Conduit.299
ESET-NOD32 a variant of Win32/Toolbar.Conduit.B potentially unwanted
Panda Antivirus PUP/Conduit.A
VIPRE Antivirus Conduit (fs)
Fortinet FortiGate Riskware/Toolbar_Conduit
G Data Win32.Application.Conduit.F
IKARUS anti.virus PUA.ClientConnect
tbSer2.dll (MD5: e1b87b513c14d3a417b1a027be739de1) has been flagged by 3 scanners:
Scanner Software Result
ESET-NOD32 a variant of Win32/Toolbar.Conduit.B
Panda Antivirus Adware/Conduit
VIPRE Antivirus Conduit (fs)
tbSer0.dll (MD5: 3d45f0adf444c9239497923162027417) has been flagged by 16 scanners:
Scanner Software Result
ESET-NOD32 a variant of Win32/Toolbar.Conduit.B
VIPRE Antivirus Conduit (fs)
Antiy-AVL GrayWare[WebToolbar:not-a-virus]/Win32.Agent.azm
AVware Conduit (fs)
Baidu-International Adware.Win32.Conduit.M
Cyren W32/Conduit.TTAU-0102
F-Prot W32/Conduit.A
G Data Win32.Application.Conduit.F
K7 AntiVirus Trojan ( 004b219d1 )
K7GW Trojan ( 004b219d1 )
Kaspersky not-a-virus:WebToolbar.Win32.Agent.azm
Panda Antivirus PUP/Conduit.A
Bkav FE W32.HfsAdware.C534
Dr.Web Adware.Conduit.299
Fortinet FortiGate Riskware/Toolbar_Conduit
IKARUS anti.virus PUA.ClientConnect
ldrtbSeri.dll (MD5: 5b9b1f88e9a9dcd1b1699b192aca297e) has been flagged by 3 scanners:
Scanner Software Result
ESET-NOD32 a variant of Win32/Toolbar.Conduit.P
VIPRE Antivirus Conduit (fs)
Panda Antivirus PUP/Conduit.A

Software Behaviors

Firewall:
  • Serif_DrawPlusToolbarHelper.exe is added as a firewall exception for 'C:\Program Files\eTvOnline.ro\eTvOnline.roToolbarHelper.exe'.
Scheduled tasks:
  • uninstall.exe is scheduled as a task with the class '{42CD7A24-AF4B-44A0-A119-1C6F9B6E2A90}' (runs on registration).
  • Serif_DrawPlusToolbarHelper.exe is scheduled as a task with the class '{B8E8E278-F25D-478A-BAB2-24A5EDB01F6C}' (runs on registration).

Software Details

URL:
https://serifdrawplus.ourtoolbar.com
Support:
https://serifdrawplus.ourtoolbar.com/help
Installation path:
C:\Program Files\serif_drawplus
Uninstaller:
C:\Program Files\Serif_DrawPlus\uninstall.exe toolbar
Size:
9.00 MB
Language:
English

Serif DrawPlus Toolbar Executable Details

Primary executable:
tbSer0.dll
Name:
Serif DrawPlus Toolbar
Path:
C:\Program Files\serif_drawplus\tbSer0.dll
MD5:
3d45f0adf444c9239497923162027417
SHA-1:
SHA-256:
Files installed by Serif DrawPlus Toolbar
File Type Filename MD5
EXE
b728fa6a309e5d18141947b95b730e95
DLL
tbSeri.dll
Malware
1a8438854dd15e4389f5bdef502c369d
DLL
tbSer2.dll
Malware
e1b87b513c14d3a417b1a027be739de1
DLL
tbSer0.dll
Malware
3d45f0adf444c9239497923162027417
DLL
5b9b1f88e9a9dcd1b1699b192aca297e
DLL
ce49528c9b0b3b3018ee2f70e76b362a
DLL
8f7928532b88f3c8ae75d7af16d13bdd
DLL
9a302f14b18a9fb9b351ad7048cc15b5
DLL
c89d9c80fd468c6b51c4aadcc8463c2d
DLL
d0133250565180c9dc8ee0aecccbfd53