IncrediMail MediaBar Deutsch 2 Toolbar

IncrediMail MediaBar Deutsch 2 Toolbar

Known Toolbar

by Perion Network Ltd.

What is IncrediMail MediaBar Deutsch 2 Toolbar?

IncrediMail MediaBar Deutsch 2 Toolbar is software application developed by Perion Network Ltd.. It is most commonly found on computers running Windows 7 with nearly 75.00% of installations running this operating system. IncrediMail MediaBar Deutsch 2 Toolbar's installer is typically 4.00 MB in size and installs around 19 files. The most common release is 6.8.9.0 with 58.47% of all installations currently using this version.

IncrediMail MediaBar Deutsch 2 Toolbar is most popular in Germany with 78.21% of installations residing in this country.

IncrediMail MediaBar Deutsch 2 Toolbar adds 2 scheduled tasks to the Windows Task Scheduler launching the program at randomly scheduled times. When using a computer that is connected to the internet, IncrediMail MediaBar Deutsch 2 Toolbar is known to create 1 firewall exception to allow inbound and outbound connectivity.

About IncrediMail MediaBar Deutsch 2 Toolbar?

The IncrediMail MediaBar Deutsch 2 Toolbar is a Conduit toolbar designed for use with Internet Explorer and Firefox. This toolbar is capable of gathering and retaining data related to the user's web browsing activities, which is then transmitted to Conduit for the purpose of delivering targeted services and advertising through the toolbar. It is important to exercise caution during the installation process, as the toolbar may attempt to alter the user's home page and search provider settings. Additionally, it provides standard features such as a search box. In the event that the home page and search settings are modified by the toolbar, the user will be required to manually restore these settings if they choose to uninstall the toolbar. Furthermore, it is possible for the toolbar to automatically download and install updates without providing notification to the user. Per the End User License Agreement (EULA), the Application has the ability to collect and retain information about the user's web browsing activities on the local device. This locally stored information may interact with the Application and send relevant data to Conduit servers in order to suggest services or deliver personalized advertising. It is important to note that only generalized inferences are passed from the Application to the servers.

Multiple virus scanners have detected malware in IncrediMail MediaBar Deutsch 2 Toolbar.

uninstall.exe (MD5: b728fa6a309e5d18141947b95b730e95) has been flagged by 2 scanners:
Scanner Software Result
Panda Antivirus PUP/Conduit.A
VIPRE Antivirus Conduit (fs)
tbIncr.dll (MD5: 1a8438854dd15e4389f5bdef502c369d) has been flagged by 19 scanners:
Scanner Software Result
AVware Conduit (fs)
Baidu-International Adware.Win32.Conduit.Y
Bkav FE W32.HfsAdware
Dr.Web Adware.Conduit.299
ESET-NOD32 a variant of Win32/Toolbar.Conduit.B potentially unwanted
Panda Antivirus PUP/Conduit.A
VIPRE Antivirus Conduit (fs)
Antiy-AVL GrayWare[WebToolbar:not-a-virus]/Win32.Agent.azm
Cyren W32/Conduit.TTAU-0102
F-Prot W32/Conduit.A
G Data Win32.Application.Conduit.F
K7 AntiVirus Trojan ( 004b219d1 )
K7GW Trojan ( 004b219d1 )
Kaspersky not-a-virus:WebToolbar.Win32.Agent.azm
Comodo Security Application.Win32.Conduit.~A
Malwarebytes PUP.Optional.Conduit
TrendMicro-HouseCall TROJ_GEN.F47V1113
Agnitum Outpost PUA.Toolbar.Conduit!
IKARUS anti.virus PUA.ClientConnect
tbInc2.dll (MD5: 975993043e355206a1fba5a702044f0c) has been flagged by 11 scanners:
Scanner Software Result
Comodo Security Application.Win32.Conduit.~A
ESET-NOD32 a variant of Win32/Toolbar.Conduit.B
Malwarebytes PUP.Optional.Conduit
Panda Antivirus Adware/Conduit
TrendMicro-HouseCall TROJ_GEN.F47V1113
VIPRE Antivirus Conduit (fs)
Agnitum Outpost PUA.Toolbar.Conduit!
Dr.Web Adware.Conduit.16
Bkav FE W32.HfsAdware.C534
G Data Win32.Adware.Conduit.B
IKARUS anti.virus PUA.ClientConnect
prxtbIncr.dll (MD5: d0133250565180c9dc8ee0aecccbfd53) has been flagged by 19 scanners:
Scanner Software Result
Antiy-AVL GrayWare[WebToolbar:not-a-virus]/Win32.Agent.azm
AVware Conduit (fs)
Baidu-International Adware.Win32.Conduit.M
Cyren W32/Conduit.TTAU-0102
ESET-NOD32 Win32/Toolbar.Conduit.N potentially unwanted
F-Prot W32/Conduit.A
G Data Win32.Application.Conduit.F
K7 AntiVirus Trojan ( 004b219d1 )
K7GW Trojan ( 004b219d1 )
Kaspersky not-a-virus:WebToolbar.Win32.Agent.azm
Panda Antivirus PUP/Conduit.A
VIPRE Antivirus Conduit (fs)
Comodo Security Application.Win32.Conduit.~A
Malwarebytes PUP.Optional.Conduit
TrendMicro-HouseCall TROJ_GEN.F47V1113
Agnitum Outpost PUA.Toolbar.Conduit!
Dr.Web Adware.Conduit.16
Bkav FE W32.HfsAdware.C534
IKARUS anti.virus PUA.ClientConnect
prxtbInc0.dll (MD5: 4b5780c90e38e579a651dbc4774a1f1f) has been flagged by 8 scanners:
Scanner Software Result
Agnitum Outpost PUA.Toolbar.Conduit!
Dr.Web Adware.Conduit.16
ESET-NOD32 Win32/Toolbar.Conduit.W
Panda Antivirus PUP/Conduit.A
VIPRE Antivirus Conduit (fs)
Bkav FE W32.HfsAdware.C534
G Data Win32.Adware.Conduit.B
IKARUS anti.virus PUA.ClientConnect

Software Behaviors

Firewall:
  • IncrediMail_MediaBar_Deutsch_2ToolbarHelper1.exe is added as a firewall exception for 'C:\Program Files\eTvOnline.ro\eTvOnline.roToolbarHelper.exe'.
Scheduled tasks:
  • uninstall.exe is scheduled as a task with the class '{42CD7A24-AF4B-44A0-A119-1C6F9B6E2A90}' (runs on registration).
  • IncrediMail_MediaBar_Deutsch_2ToolbarHelper.exe is scheduled as a task with the class '{B8E8E278-F25D-478A-BAB2-24A5EDB01F6C}' (runs on registration).

Software Details

URL:
https://incredimailmediabardeutsch2.ourtoolbar.com
Support:
https://incredimailmediabardeutsch2.ourtoolbar.com/help
Installation path:
C:\Program Files\incredimail_mediabar_deutsch_2
Uninstaller:
C:\Program Files\IncrediMail_MediaBar_Deutsch_2\uninstall.exe toolbar
Size:
4.00 MB
Language:
English

IncrediMail MediaBar Deutsch 2 Toolbar Executable Details

Primary executable:
tbIncr.dll
Name:
IncrediMail MediaBar Deutsch 2 Toolbar
Path:
C:\Program Files\incredimail_mediabar_deutsch_2\tbIncr.dll
MD5:
1a8438854dd15e4389f5bdef502c369d
SHA-1:
–
SHA-256:
–
Files installed by IncrediMail MediaBar Deutsch 2 Toolbar
File Type Filename MD5
EXE
b728fa6a309e5d18141947b95b730e95
DLL
tbIncr.dll
Malware
1a8438854dd15e4389f5bdef502c369d
DLL
tbInc2.dll
Malware
975993043e355206a1fba5a702044f0c
DLL
d0133250565180c9dc8ee0aecccbfd53
DLL
860dd9b6c947f1594788da567d685503
DLL
4b5780c90e38e579a651dbc4774a1f1f
DLL
66544b26974fba1616f31f9731759252
DLL
76b3946090c94bb38dbbca54ac8ff9f7
DLL
a6594cce7090a7f1c8cc818890ec4bf4
DLL
2f44287ae8f3f6530b4f3413dfeab722