Malware

Win32/Toolbar.Visicom.D potentially unwanted removal guide

Malware Removal

The Win32/Toolbar.Visicom.D potentially unwanted is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Toolbar.Visicom.D potentially unwanted virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Authenticode signature is invalid

How to determine Win32/Toolbar.Visicom.D potentially unwanted?


File Info:

name: 2BBF9C0868C27E74935A.mlw
path: /opt/CAPEv2/storage/binaries/a2ee6129d18571b0ce38b09c739aacbb84172690df855aaaaeb7ce29e5fd3459
crc32: 3900C546
md5: 2bbf9c0868c27e74935a997db12ea976
sha1: b149686b865f5887c9ef9a1fc4cf26274d3148c2
sha256: a2ee6129d18571b0ce38b09c739aacbb84172690df855aaaaeb7ce29e5fd3459
sha512: 2b1f9c4e3474c88f7c8bb0ace003903abb6f877c10f0670667664182fc5227fd20bd207de858c256861dd1f3b781fdfd0c18281e466102de1a4baa0b2d0b696a
ssdeep: 3072:F+IeLdoY5H/6RPqXmZvaykBUfGGvmpxVEuR2KrwSYDbppcrosz+VRuNKQS+UqMl2:F2dPmAWvadPWQYcngG33
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T18E748D12B281E033E4A2017193798BB38D3DB9312B2955D7F3D54EAD1AB42D0F639B67
sha3_384: f5896551ae1a0799bbad307770cad684e73df12f6e663cbab7de508ec6bc76b2863428e410d9e72307b69b0a535e31c6
ep_bytes: e8a9f80000e9000000006a1468a0b344
timestamp: 2015-04-13 09:52:53

Version Info:

CompanyName: Search-Protect
FileDescription: Search-Protect
FileVersion: 0.16.0.0
InternalName: Updater.exe
LegalCopyright: Copyright (C) 2014
OriginalFilename: Updater.exe
ProductName: Search-Protect
ProductVersion: 0.16.0.0
Translation: 0x0009 0x04b0

Win32/Toolbar.Visicom.D potentially unwanted also known as:

DrWebTrojan.Siggen9.27600
CynetMalicious (score: 100)
McAfeeGenericRXQS-ZH!2BBF9C0868C2
CylanceUnsafe
ZillyaTrojan.Badur.Win32.13616
SangforPUP.Win32.Visicom.8
AlibabaAdWare:Win32/SearchProtect.38c6ede8
K7GWTrojan ( 00499e801 )
K7AntiVirusTrojan ( 00499e801 )
CyrenW32/Graftor.CH.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Toolbar.Visicom.D potentially unwanted
TrendMicro-HouseCallTROJ_FRS.0NA103L420
Paloaltogeneric.ml
ClamAVWin.Trojan.Badur-87
Kasperskynot-a-virus:AdWare.Win32.SearchProtect.ty
NANO-AntivirusTrojan.Win32.Badur.dicpbc
SUPERAntiSpywarePUP.Visicom/Variant
AvastFileRepMalware [PUP]
TencentMalware.Win32.Gencirc.114ca96c
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_FRS.0NA103L420
McAfee-GW-EditionGenericRXQS-ZH!2BBF9C0868C2
SophosConduit Search Protect (PUA)
JiangminAdWare.SearchProtect.oy
WebrootPua.Adware.Gen
Antiy-AVLTrojan/Generic.ASMalwS.C831CA
ZoneAlarmnot-a-virus:AdWare.Win32.SearchProtect.ty
MicrosoftTrojan:Win32/Occamy.CA2
AhnLab-V3Trojan/Win32.HDC.C626300
VBA32BScope.Adware.NSIS.Zaitu
MalwarebytesPUP.Optional.Visicom
APEXMalicious
RisingPUF.Visicom!8.2B6 (CLOUD)
YandexPUA.Toolbar.Visicom!SnReMtFHNa4
MAXmalware (ai score=100)
MaxSecureTrojan.Malware.300983.susgen
FortinetRiskware/Visicom
AVGFileRepMalware [PUP]
PandaTrj/GdSda.A

How to remove Win32/Toolbar.Visicom.D potentially unwanted?

Win32/Toolbar.Visicom.D potentially unwanted removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment