WhiteSmoke US New Toolbar

WhiteSmoke US New Toolbar

Known Toolbar

by WhiteSmoke

What is WhiteSmoke US New Toolbar?

WhiteSmoke US New Toolbar is software application developed by WhiteSmoke. It is most commonly found on computers running Windows 7 with nearly 80.22% of installations running this operating system. WhiteSmoke US New Toolbar's installer is typically 4.00 MB in size and installs around 16 files. The most common release is 6.9.0.16 with 59.04% of all installations currently using this version.

WhiteSmoke US New Toolbar is most popular in the United States with 62.16% of installations residing in this country.

WhiteSmoke US New Toolbar adds 1 scheduled task to the Windows Task Scheduler launching the program at randomly scheduled times.

About WhiteSmoke US New Toolbar?

The WhiteSmoke US New Toolbar is a browser extension that features a Conduit toolbar to enhance the user's web browsing experience. The toolbar collects information about the user's browsing habits and securely transmits this data to Conduit in order to offer personalized services and targeted advertisements within the toolbar interface.

Multiple virus scanners have detected malware in WhiteSmoke US New Toolbar.

tbWhi2.dll (MD5: 975993043e355206a1fba5a702044f0c) has been flagged by 9 scanners:
Scanner Software Result
Comodo Security Application.Win32.Conduit.~A
ESET-NOD32 a variant of Win32/Toolbar.Conduit.B
Malwarebytes PUP.Optional.Conduit
Panda Antivirus Adware/Conduit
TrendMicro-HouseCall TROJ_GEN.F47V1113
VIPRE Antivirus Conduit (fs)
Agnitum Outpost PUA.Toolbar.Conduit!
Dr.Web Adware.Conduit.16
Bkav FE HW32.Stranact.ckae
prxtbWhi2.dll (MD5: 02d550437bd96f4b2add86fd4073e60e) has been flagged by 6 scanners:
Scanner Software Result
Agnitum Outpost PUA.Toolbar.Conduit!
Dr.Web Adware.Conduit.16
ESET-NOD32 Win32/Toolbar.Conduit.X
Panda Antivirus PUP/Conduit.A
VIPRE Antivirus Conduit (fs)
Bkav FE HW32.Stranact.ckae
tbWhi0.dll (MD5: cef32b574f8c732bacafd93210642dbb) has been flagged by 4 scanners:
Scanner Software Result
Bkav FE HW32.Stranact.ckae
ESET-NOD32 a variant of Win32/Toolbar.Conduit.B
Panda Antivirus PUP/Conduit.A
VIPRE Antivirus Conduit (fs)
prxtbWhi0.dll (MD5: c89d9c80fd468c6b51c4aadcc8463c2d) has been flagged by 13 scanners:
Scanner Software Result
AVware Conduit (fs)
Baidu-International PUA.Win32.Conduit.BX
ESET-NOD32 Win32/Toolbar.Conduit.X
Fortinet FortiGate Riskware/Toolbar_Conduit
G Data Win32.Application.Conduit.F
Panda Antivirus PUP/Conduit.A
VIPRE Antivirus Conduit (fs)
Comodo Security Application.Win32.Conduit.~A
Malwarebytes PUP.Optional.Conduit
TrendMicro-HouseCall TROJ_GEN.F47V1113
Agnitum Outpost PUA.Toolbar.Conduit!
Dr.Web Adware.Conduit.16
Bkav FE HW32.Stranact.ckae
WhiteSmoke_US_NewToolbarHelper.exe (MD5: da11d78d765e4b8fa4cfa5a37e8a94ff) has been flagged by 14 scanners:
Scanner Software Result
Baidu-International Adware.Win32.Conduit.45
ESET-NOD32 Win32/Toolbar.Conduit.Q
G Data Win32.Adware.Conduit
IKARUS anti.virus PUA.ClientConnect
Panda Antivirus PUP/Conduit.A
AVware Conduit (fs)
Fortinet FortiGate Riskware/Toolbar_Conduit
VIPRE Antivirus Conduit (fs)
Comodo Security Application.Win32.Conduit.~A
Malwarebytes PUP.Optional.Conduit
TrendMicro-HouseCall TROJ_GEN.F47V1113
Agnitum Outpost PUA.Toolbar.Conduit!
Dr.Web Adware.Conduit.16
Bkav FE HW32.Stranact.ckae

Software Behaviors

Scheduled tasks:
  • WhiteSmoke_US_NewToolbarHelper.exe is scheduled as a task with the class '{34C01E1F-1D33-4264-8F52-97E13432C5E2}' (runs on registration).

Software Details

URL:
https://whitesmokeusnew.ourtoolbar.com
Support:
https://whitesmokeusnew.ourtoolbar.com/help
Installation path:
C:\Program Files\whitesmoke_us_new
Uninstaller:
C:\Program Files\WhiteSmoke_US_New\uninstall.exe toolbar
Size:
4.00 MB
Language:
English

WhiteSmoke US New Toolbar Executable Details

Name:
WhiteSmoke US New Toolbar
Path:
C:\Program Files\whitesmoke_us_new\WhiteSmoke_US_NewToolbarHelper.exe
MD5:
da11d78d765e4b8fa4cfa5a37e8a94ff
SHA-1:
SHA-256:
Files installed by WhiteSmoke US New Toolbar
File Type Filename MD5
EXE
ab91a7350a5fddcdf0a7b0c60e8e4e71
DLL
tbWhi2.dll
Malware
975993043e355206a1fba5a702044f0c
DLL
02d550437bd96f4b2add86fd4073e60e
DLL
e94cd032c188546fd629b194364f19c4
DLL
f7057821b040a7d169711ce27c55012a
DLL
bbccf6b24155d931fd339c6c4210710c
DLL
d46078b3d29bf33be627b431c22f6399
DLL
30154e5d7cba4d89f0313e5c0c8893b4
DLL
367ef01c64a948849c024e653be5f18a
DLL
tbWhi0.dll
Malware
cef32b574f8c732bacafd93210642dbb