WhiteSmoke US New Toolbar

WhiteSmoke US New Toolbar

Known Toolbar

by WhiteSmoke

What is WhiteSmoke US New Toolbar?

WhiteSmoke US New Toolbar is software application developed by WhiteSmoke. It is most commonly found on computers running Windows 7 with nearly 80.22% of installations running this operating system. WhiteSmoke US New Toolbar's installer is typically 4.00 MB in size and installs around 16 files. The most common release is 6.9.0.16 with 59.04% of all installations currently using this version.

WhiteSmoke US New Toolbar is most popular in the United States with 62.16% of installations residing in this country.

WhiteSmoke US New Toolbar adds 1 scheduled task to the Windows Task Scheduler launching the program at randomly scheduled times.

About WhiteSmoke US New Toolbar?

The WhiteSmoke US New Toolbar is a browser extension that features a Conduit toolbar to enhance the user's web browsing experience. The toolbar collects information about the user's browsing habits and securely transmits this data to Conduit in order to offer personalized services and targeted advertisements within the toolbar interface.

Multiple virus scanners have detected malware in WhiteSmoke US New Toolbar.

tbWhi2.dll (MD5: 975993043e355206a1fba5a702044f0c) has been flagged by 9 scanners:
Scanner Software Result
Comodo Security Application.Win32.Conduit.~A
ESET-NOD32 a variant of Win32/Toolbar.Conduit.B
Malwarebytes PUP.Optional.Conduit
Panda Antivirus Adware/Conduit
TrendMicro-HouseCall TROJ_GEN.F47V1113
VIPRE Antivirus Conduit (fs)
Agnitum Outpost PUA.Toolbar.Conduit!
Dr.Web Adware.Conduit.16
Bkav FE HW32.Stranact.ckae
prxtbWhi2.dll (MD5: 02d550437bd96f4b2add86fd4073e60e) has been flagged by 6 scanners:
Scanner Software Result
Agnitum Outpost PUA.Toolbar.Conduit!
Dr.Web Adware.Conduit.16
ESET-NOD32 Win32/Toolbar.Conduit.X
Panda Antivirus PUP/Conduit.A
VIPRE Antivirus Conduit (fs)
Bkav FE HW32.Stranact.ckae
tbWhi0.dll (MD5: cef32b574f8c732bacafd93210642dbb) has been flagged by 4 scanners:
Scanner Software Result
Bkav FE HW32.Stranact.ckae
ESET-NOD32 a variant of Win32/Toolbar.Conduit.B
Panda Antivirus PUP/Conduit.A
VIPRE Antivirus Conduit (fs)
prxtbWhi0.dll (MD5: c89d9c80fd468c6b51c4aadcc8463c2d) has been flagged by 13 scanners:
Scanner Software Result
AVware Conduit (fs)
Baidu-International PUA.Win32.Conduit.BX
ESET-NOD32 Win32/Toolbar.Conduit.X
Fortinet FortiGate Riskware/Toolbar_Conduit
G Data Win32.Application.Conduit.F
Panda Antivirus PUP/Conduit.A
VIPRE Antivirus Conduit (fs)
Comodo Security Application.Win32.Conduit.~A
Malwarebytes PUP.Optional.Conduit
TrendMicro-HouseCall TROJ_GEN.F47V1113
Agnitum Outpost PUA.Toolbar.Conduit!
Dr.Web Adware.Conduit.16
Bkav FE HW32.Stranact.ckae
WhiteSmoke_US_NewToolbarHelper.exe (MD5: da11d78d765e4b8fa4cfa5a37e8a94ff) has been flagged by 14 scanners:
Scanner Software Result
Baidu-International Adware.Win32.Conduit.45
ESET-NOD32 Win32/Toolbar.Conduit.Q
G Data Win32.Adware.Conduit
IKARUS anti.virus PUA.ClientConnect
Panda Antivirus PUP/Conduit.A
AVware Conduit (fs)
Fortinet FortiGate Riskware/Toolbar_Conduit
VIPRE Antivirus Conduit (fs)
Comodo Security Application.Win32.Conduit.~A
Malwarebytes PUP.Optional.Conduit
TrendMicro-HouseCall TROJ_GEN.F47V1113
Agnitum Outpost PUA.Toolbar.Conduit!
Dr.Web Adware.Conduit.16
Bkav FE HW32.Stranact.ckae

Software Behaviors

Scheduled tasks:
  • WhiteSmoke_US_NewToolbarHelper.exe is scheduled as a task with the class '{34C01E1F-1D33-4264-8F52-97E13432C5E2}' (runs on registration).

Software Details

URL:
https://whitesmokeusnew.ourtoolbar.com
Support:
https://whitesmokeusnew.ourtoolbar.com/help
Installation path:
C:\Program Files\whitesmoke_us_new
Uninstaller:
C:\Program Files\WhiteSmoke_US_New\uninstall.exe toolbar
Size:
4.00 MB
Language:
English

WhiteSmoke US New Toolbar Executable Details

Name:
WhiteSmoke US New Toolbar
Path:
C:\Program Files\whitesmoke_us_new\WhiteSmoke_US_NewToolbarHelper.exe
MD5:
da11d78d765e4b8fa4cfa5a37e8a94ff
SHA-1:
SHA-256:
Files installed by WhiteSmoke US New Toolbar
File Type Filename MD5
DLL
c89d9c80fd468c6b51c4aadcc8463c2d
DLL
d02a0fcc9755f67b07ed08bacb9dde82
DLL
54fd5436d7c0e6fecca23bf35d682e3a
DLL
83fb63e3a985ffe3a72de8d42a86b797
EXE
da11d78d765e4b8fa4cfa5a37e8a94ff
EXE
c43c9475ac260b607c5fb3276ecca355