Should I block it?

40%
40% of PCs block this file from running.
Possible reason:
Performance resource utilization

VersionsAdditional versions

21.2.0.1139 50.00%
20.1.0.3831 50.00%

Relationships

Parent process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
RegOpenKeyExW, CryptVerifySignatureW, CryptReleaseContext, InitializeSecurityDescriptor, SetSecurityDescriptorDacl, CryptGetHashParam, RegEnumKeyExW, RegQueryInfoKeyW, RegSetValueExW, RegCloseKey, RegDeleteValueW, RegDeleteKeyW, RegCreateKeyExW, CryptAcquireContextW, CryptCreateHash, CryptHashData, CryptDestroyHash, CryptDestroyKey
crypt32.dll
CryptDecodeObjectEx, CryptImportPublicKeyInfo
gdi32.dll
GetObjectW, CreateSolidBrush, GetDeviceCaps, BitBlt, CreateCompatibleDC, CreateCompatibleBitmap, DeleteDC, SelectObject, DeleteObject, GetStockObject
kernel32.dll
LoadLibraryW, InterlockedIncrement, InterlockedDecrement, FreeLibrary, LoadLibraryExW, WaitForMultipleObjects, QueueUserWorkItem, WriteFile, CreateFileW, DeleteFileW, Sleep, FindClose, FindNextFileW, FindFirstFileW, WaitForSingleObject, GetFileAttributesW, CreateThread, GetCommandLineW, SetErrorMode, OutputDebugStringW, InterlockedPopEntrySList, VirtualFree, InterlockedPushEntrySList, InterlockedCompareExchange, GetProcessHeap, SetEndOfFile, LCMapStringW, GetStringTypeW, WideCharToMultiByte, WriteConsoleW, SetStdHandle, CreateFileA, GetSystemTimeAsFileTime, GetTickCount, SizeofResource, GetEnvironmentStringsW, FreeEnvironmentStringsW, IsValidCodePage, GetOEMCP, GetACP, GetCPInfo, HeapSize, HeapReAlloc, TlsFree, TlsSetValue, TlsGetValue, TlsAlloc, ExitProcess, HeapDestroy, HeapCreate, SetFilePointer, GetFileType, GetStdHandle, SetHandleCount, GetConsoleMode, GetConsoleCP, IsProcessorFeaturePresent, IsDebuggerPresent, SetUnhandledExceptionFilter, UnhandledExceptionFilter, TerminateProcess, GetCurrentProcessId, CloseHandle, GetModuleHandleW, GetProcAddress, LocalFree, CreateEventW, FindResourceExW, FindResourceW, LoadResource, FlushFileBuffers, LockResource, DeleteCriticalSection, InitializeCriticalSectionAndSpinCount, lstrcmpiW, SetEvent, SetLastError, GetCurrentThreadId, RaiseException, EnterCriticalSection, GlobalAlloc, GlobalLock, GlobalUnlock, GetModuleFileNameW, MulDiv, lstrcmpW, GetLastError, lstrlenW, lstrlenA, GetCurrentProcess, FlushInstructionCache, GetStartupInfoW, HeapSetInformation, ExitThread, EncodePointer, DecodePointer, VirtualQuery, GetSystemInfo, VirtualAlloc, VirtualProtect, RtlUnwind, HeapAlloc, HeapFree, ReadFile, MultiByteToWideChar, LeaveCriticalSection, QueryPerformanceCounter
ole32.dll
StringFromGUID2, OleLockRunning, CoGetClassObject, CLSIDFromProgID, CLSIDFromString, CoCreateInstance, CoTaskMemAlloc, CreateStreamOnHGlobal, OleInitialize, OleUninitialize, CoTaskMemRealloc, CoTaskMemFree, CoUninitialize, CoInitialize, CoRevokeClassObject, CoReleaseServerProcess, CoAddRefServerProcess, CoRegisterClassObject, CoInitializeEx
shell32.dll
SHGetFolderPathAndSubDirW
shlwapi.dll
PathFileExistsW, UrlCreateFromPathW
urlmon.dll
CoInternetSetFeatureEnabled
user32.dll
CreateWindowExW, DestroyWindow, IsWindow, SendMessageW, DefWindowProcW, PostMessageW, CallWindowProcW, GetKeyState, GetWindow, GetParent, GetSysColor, CharNextW, MoveWindow, SetWindowPos, GetClientRect, ClientToScreen, ScreenToClient, GetDC, ReleaseDC, GetWindowLongW, SetWindowLongW, DispatchMessageW, CharUpperW, PostThreadMessageW, GetMessageW, UnregisterClassA, TranslateMessage, RegisterWindowMessageW, GetWindowTextLengthW, GetWindowTextW, SetWindowTextW, CreateAcceleratorTableW, RegisterClassExW, LoadCursorW, GetClassInfoExW, SetFocus, GetFocus, DestroyAcceleratorTable, GetDesktopWindow, BeginPaint, EndPaint, FillRect, ReleaseCapture, GetClassNameW, GetDlgItem, IsChild, SetCapture, RedrawWindow, InvalidateRgn, InvalidateRect

Toolbar.exe

Toolbar Core by APN LLC (Signed)

Remove Toolbar.exe
Version:   20.1.0.3831
MD5:   8e7c68951a8af8824215396595482248
SHA1:   8b5e42cd1274409a2b2c39d29ea03d8a50bf8764
SHA256:   c6234d43e0b67893248ec9aa3f1812cce19e8d8a163a14b864cec3293bf432c9

Overview

toolbar.exe executes as a process with the local user's privileges typically within the context of its parent svchost.exe (Host Process for Windows Services by Microsoft Corporation). The file is digitally signed by APN LLC which was issued by the VeriSign certificate authority (CA).

DetailsDetails

File name:toolbar.exe
Publisher:APN LLC.
Product name:Toolbar Core
Typical file path:C:\Program Files\askpartnernetwork\toolbar\toolbar.exe
File version:20.1.0.3831
Size:260.13 KB (266,376 bytes)
Certificate
Issued to:APN LLC
Authority (CA):VeriSign
Effective date:Sunday, April 15, 2012
Expiration date:Wednesday, April 8, 2015
Digital DNA
PE subsystem:Windows GUI
File packed:No
.NET CLR:No
More details
Network connections
  • [UDP] listens on port 49843

  • ResourcesResource utilization

    (Note: statistics below are averages based on a minimum sample size of 200 unique participants)
    Averages
     
    CPU
    Total CPU:0.10755186%
    0.028634%
    Kernel CPU:0.06255769%
    0.013761%
    User CPU:0.04499417%
    0.014873%
    Kernel CPU time:1,014 ms/min
    100,923,805ms/min
    CPU cycles:4,447,492/sec
    17,470,203/sec
    Memory
    Private memory:24.03 MB
    21.59 MB
    Private (maximum):40.1 MB
    Private (minimum):29.75 MB
    Non-paged memory:24.03 MB
    21.59 MB
    Virtual memory:207.88 MB
    140.96 MB
    Virtual memory (peak):212.36 MB
    169.69 MB
    Working set:40.12 MB
    18.61 MB
    Working set (peak):41.77 MB
    37.95 MB
    Page faults:15,535/min
    2,039/min
    I/O
    I/O read transfer:82.36 KB/sec
    1.02 MB/min
    I/O read operations:87/sec
    343/min
    I/O write transfer:31 Bytes/sec
    274.99 KB/min
    I/O write operations:1/sec
    227/min
    I/O other transfer:6.13 KB/sec
    448.09 KB/min
    I/O other operations:464/sec
    1,671/min
    Resource allocations
    Threads:13
    12
    Handles:317
    600
    GUI GDI count:21
    103
    GUI USER count:53
    49

    BehaviorsProcess properties

    Integrety level:Medium
    Platform:32-bit
    Command line:"C:\Program Files\askpartnernetwork\toolbar\toolbar.exe" -embedding
    Owner:User
    Parent process:svchost.exe (Host Process for Windows Services by Microsoft Corporation)

    ResourcesThreads

    Averages
     
    Toolbar.exe (main module)
    Total CPU:0.12485375%
    0.272967%
    Kernel CPU:0.04030711%
    0.107585%
    User CPU:0.08454663%
    0.165382%
    CPU cycles:2,591,194/sec
    5,741,424/sec
    Memory:272 KB
    1.16 MB
    RPCRT4.dll
    Total CPU:0.09230714%
    Kernel CPU:0.05874091%
    User CPU:0.03356623%
    CPU cycles:2,054,325/sec
    Memory:780 KB
    mshtml.dll (Windows Internet Explorer by Microsoft)
    Total CPU:0.01176251%
    Kernel CPU:0.01176251%
    User CPU:0.00000000%
    CPU cycles:313,309/sec
    Memory:11.77 MB
    msvcrt.dll (Windows NT CRT DLL by Microsoft)
    Total CPU:0.00836477%
    Kernel CPU:0.00098409%
    User CPU:0.00738068%
    CPU cycles:201,392/sec
    Memory:680 KB

    Common loaded modules

    These are modules that are typiclaly loaded within the context of this process.

    Windows OS versionsDistribution by Windows OS

    OS versiondistribution
    Microsoft Windows XP 50.00%
    Windows Vista Home Basic 50.00%

    Distribution by countryDistribution by country

    BS installs about 100.00% of Toolbar Core.

    OEM distributionDistribution by PC manufacturer

    PC Manufacturerdistribution
    Dell 100.00%
    Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

    Download it for FREE