toolbar32.dll
Toolbar by Zugo Ltd (Signed)
Warning 13 antivirus scanners has detected malware in various versions of toolbar32.dll.
Overview
toolbar32.dll has 5 known versions, the most recent one is 2.5.0.0. It is installed as an Internet Explorer extension as a Browser Helper Object, often without any obvious user interface, and will start when IE loads. The average file size is about 498.53 KB. It is an authenticode code-signed executable issued to Zugo Ltd by the certification authority The USERTRUST Network. The library is loaded into Internet Explorer as a BHO (browser helper object).
What is toolbar32.dll?
StartNow toolbar is developed by Zugo and it gives you instant access to multimedia search, Facebook one click away, your local weather forecast and many other features that give you the best online experience. It is simple, light weight and blends perfectly with your browser to give you instant access to your favourite sites and information.
About toolbar32.dll (from Zugo Ltd)
“StartNow toolbar is developed by Zugo and it gives you instant access to multimedia search, Facebook one click away, your local weather forecast and many other features that give you the best online e”
Details |
File name: | toolbar32.dll |
Product name: | Toolbar |
Typical file path: | C:\Program Files\startnow toolbar\toolbar32.dll |
Original name: | Toolbar |
Certificate |
Issued to: | Zugo Ltd |
Authority (CA): | The USERTRUST Network |
Expiration date: | Sunday, January 27, 2013 |
Programs installed in
(Note, the programs listed below are for all versions of Toolbar.)
“When you install PDFlite with default settings it may install a toolbar. PDFlite is free, and we include this toolbar to help support its development costs. With this toolbar you can search and click ...”
StartNow is a web browser toolbar that changes your homepage and redirects valid searches. StartNow toolbar is developed by Zugo and it gives you instant access to multimedia search, Facebook one clic...
EazelBar is a web browser plugin for Intenet Explorer and Firefox. The toolbar collects and stores information about your web browsing habits and sends this information to Conduit so they can suggest ...
Behaviors
(Note, the behaviors below are for all versions of toolbar32.dll, select a unique version for details.)
Internet Explorer Browser Helper Object
Located in the registry at 'SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects'
- BHO CLSID: {7413F9FC-8E54-4c93-BEB7-1225EB0970CA}
- BHO CLSID: {FE478DC2-E4AD-4197-8F80-5E456BEBC57F}
- BHO CLSID: {6E13D095-45C3-4271-9475-F3B48227DD9F}
Internet Explorer toolbars
Located in the registry at 'SOFTWARE\Microsoft\Internet Explorer\Toolbar'
- CLSID: {EBD839AE-B08C-4fb7-859B-F54AF16C159F}
- CLSID: {5911488E-9D1E-40ec-8CBB-06B231CC153F}
Malware detections
Based on 40+ industry antivirus scanners, 13 of them detected the following malware.
Antivirus engine | Engine version | Detection | File version |
Comodo Internet Security |
15672 |
UnclassifiedMalware |
2.5.0.0 |
Dr.Web |
8.13.4.8 |
Adware.Zugo.71 |
2.5.0.0 |
Dr.Web |
8.13.4.10 |
Adware.Zugo.71 |
2.4.0.0 |
Dr.Web |
8.13.10.1 |
Adware.Toolbar.176 |
1.0.0.5 |
Dr.Web |
8.13.10.10 |
Adware.Toolbar.176 |
1.0.0.5 |
Emsisoft Anti-Malware |
3.0.0.575 |
Riskware.Win32.Toolbar.Zugo.AMN (A) |
2.4.0.0 |
eSafe |
7.0.17.0 |
Win32.Trojan |
2.5.0.0 |
eSafe |
7.0.17.0 |
Win32.Trojan |
2.4.0.0 |
ESET NOD32 |
7.8154 |
a variant of Win32/Toolbar.Zugo |
2.5.0.0 |
ESET NOD32 |
7.8173 |
Win32/Toolbar.Zugo |
2.4.0.0 |
Fortinet |
5.0.43.0 |
Adware/Zugo |
2.4.0.0 |
SUPERAntiSpyware |
5.6.0.1008 |
PUP.StartNow Toolbar |
2.4.0.0 |
VIPRE Antivirus |
10150 |
Zugo Ltd (v) |
2.3.0.0 |
All file variations of toolbar32.dll
Distribution by Windows OS
OS version | distribution |
Windows 7 Ultimate N |
33.33% |
|
Microsoft Windows XP |
22.22% |
|
Windows 7 Ultimate |
22.22% |
|
Windows 7 Home Premium |
11.11% |
|
Windows 7 Professional |
11.11% |
|
Distribution by country
United States installs about 50.00% of Toolbar.
Distribution by PC manufacturer
PC Manufacturer | distribution |
Lenovo |
50.00% |
|
Dell |
25.00% |
|
Hewlett-Packard |
12.50% |
|
Acer |
12.50% |
|