Should I block it?

60%
60% of PCs block this file from running.
Possible reason:
Performance resource utilization

VersionsAdditional versions

1, 0, 1, 35 6.00%
1, 0, 1, 35 4.00%
1, 0, 1, 35 10.00%
1, 0, 1, 34 22.00%
1, 0, 1, 34 2.00%
1, 0, 1, 33 2.00%
1, 0, 1, 32 2.00%
1, 0, 1, 30 6.00%
1, 0, 1, 30 38.00%
1, 0, 1, 15 8.00%

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
GetSecurityDescriptorSacl, RegQueryValueExA, RegCloseKey, RegOpenKeyA, SetSecurityInfo, ConvertStringSecurityDescriptorToSecurityDescriptorW, RegDeleteValueA, RegOpenKeyExA, RegCreateKeyExA, RegSetValueExA
kernel32.dll
GetTickCount, WriteFile, InitializeCriticalSection, Sleep, CreateDirectoryA, FindFirstFileA, GetProcAddress, RemoveDirectoryA, CopyFileA, FindClose, LoadLibraryA, CreateFileMappingA, MoveFileA, FindNextFileA, DeleteCriticalSection, CloseHandle, DeleteFileA, GlobalAlloc, GetLastError, GlobalFree, OpenMutexA, GetModuleFileNameA, CreateMutexA, GetVersionExA, LocalFree, SetFilePointer, SystemTimeToFileTime, SetFileTime, FreeLibrary, ReadFile, GetCurrentDirectoryA, LocalFileTimeToFileTime, GetStringTypeW, GetStringTypeA, FlushFileBuffers, SetStdHandle, GetLocaleInfoA, GetCurrentProcessId, QueryPerformanceCounter, GetEnvironmentStringsW, FreeEnvironmentStringsW, GetEnvironmentStrings, FreeEnvironmentStringsA, GetTimeZoneInformation, GetConsoleMode, GetConsoleCP, LCMapStringW, MultiByteToWideChar, WideCharToMultiByte, LCMapStringA, IsValidCodePage, GetOEMCP, UnmapViewOfFile, MapViewOfFile, CreateFileA, WriteConsoleA, GetConsoleOutputCP, WriteConsoleW, SetEnvironmentVariableA, SetEndOfFile, GetProcessHeap, CompareStringA, GetACP, GetCPInfo, HeapReAlloc, CompareStringW, GetFileAttributesA, GetModuleHandleW, ExitProcess, TerminateProcess, GetCurrentProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsDebuggerPresent, HeapFree, HeapAlloc, GetSystemTimeAsFileTime, GetCommandLineA, GetStartupInfoA, RaiseException, RtlUnwind, TlsGetValue, TlsAlloc, TlsSetValue, TlsFree, InterlockedIncrement, SetLastError, GetCurrentThreadId, InterlockedDecrement, GetStdHandle, LeaveCriticalSection, EnterCriticalSection, InitializeCriticalSectionAndSpinCount, HeapSize, SetHandleCount, GetFileType, HeapCreate, VirtualFree, VirtualAlloc, GetModuleHandleA
shell32.dll
SHGetFolderPathA, ShellExecuteA
user32.dll
wsprintfA, DestroyWindow, SetTimer, CreateDialogParamA, KillTimer, LoadIconA, SendMessageA, IsDialogMessageA, TranslateMessage, MessageBoxA, PeekMessageA, SetClassLongA, GetDlgItem, CheckDlgButton, GetLastInputInfo, ShowWindow, IsDlgButtonChecked, DispatchMessageA, SetWindowTextA, MessageBoxIndirectA, GetDesktopWindow
version.dll
VerQueryValueA, GetFileVersionInfoA, GetFileVersionInfoSizeA
wininet.dll
HttpSendRequestA, InternetConnectA, HttpQueryInfoA, InternetOpenA, InternetCloseHandle, InternetReadFile, HttpOpenRequestA

visicom_antiphishing.exe

Anti-phishing Domain Advisor by Visicom Media Inc. (Signed)

Remove visicom_antiphishing.exe
Version:   1, 0, 1, 30
MD5:   43cc960ed33ad7b552772711284b0cdd
SHA1:   035a0720d094dbeb26496cd4b3606f9685cd2338
SHA256:   22c9c4cee1a2587bdd67d982c9abc67240df40db366337fa0f5a6b23614b884b

What is visicom_antiphishing.exe?

The Visicom Anti-phishing Domain Advisor Toolbar, powered by Panda Security, will analyze the current web sites you are visiting against a URL database and determine if the site is a potential phishing threat. The toolbar is also included in both Panda Cloud Antivirus free and paid version.

About visicom_antiphishing.exe (from Visicom Media Inc.)

The Anti-phishing Domain Advisor ensures you navigate the Web safely by protecting you from "phishing sites" (copycats of legitimate sites that steal your personal info) or "malware sites" designed to

DetailsDetails

File name:visicom_antiphishing.exe
Publisher:Visicom Media Inc. (Powered by Panda Security)
Product name:Anti-phishing Domain Advisor
Description:Visicom Media Anti-phishing Domain Advisor (Powered by Panda Security)
Typical file path:C:\ProgramData\anti-phishing domain advisor\visicom_antiphishing.exe
File version:1, 0, 1, 30
Product version:1.0
Size:212.16 KB (217,256 bytes)
Certificate
Issued to:Visicom Media Inc.
Authority (CA):Thawte
Expiration date:Saturday, June 21, 2014
Digital DNA
PE subsystem:Windows GUI
File packed:No
.NET CLR:No
More details

ResourcesPrograms

The following programs will install this file
Visicom Media Inc.
  82% remove
The Visicom Anti-phishing Domain Advisor Toolbar, powered by Panda Security, will analyze the current web sites you are visiting against a URL database and determine if the site is a potential phishing threat. The toolbar is also included in both Panda Cloud Antivirus free and paid version. The toolbar will automaticlaly modify the user's web browser home page, DNS settings and search settings (per their EULA).

BehaviorsBehaviors

Startup files (all users) run
Runs under the registry key 'HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run'
  • 'Anti-phishing Domain Advisor' → "C:\ProgramData\Anti-phishing Domain Advisor\visicom_antiphishing.exe"
Network connections
  • [TCP] visicom-47.nationalnet.com (66.115.174.8:80)

  • ResourcesResource utilization

    (Note: statistics below are averages based on a minimum sample size of 200 unique participants)
    Averages
     
    CPU
    Total CPU:0.05198159%
    0.028634%
    Kernel CPU:0.01259020%
    0.013761%
    User CPU:0.03939139%
    0.014873%
    Kernel CPU time:12,509 ms/min
    100,923,805ms/min
    CPU cycles:2,392,283/sec
    17,470,203/sec
    Context switches:8/sec
    284/sec
    Memory
    Private memory:7.55 MB
    21.59 MB
    Private (maximum):24.87 MB
    Private (minimum):12.11 MB
    Non-paged memory:7.55 MB
    21.59 MB
    Virtual memory:131.2 MB
    140.96 MB
    Virtual memory (peak):161.36 MB
    169.69 MB
    Working set:14.58 MB
    18.61 MB
    Working set (peak):71.94 MB
    37.95 MB
    Page faults:1,004,250/min
    2,039/min
    I/O
    I/O read transfer:156.04 KB/sec
    1.02 MB/min
    I/O read operations:20/sec
    343/min
    I/O write transfer:1.79 KB/sec
    274.99 KB/min
    I/O write operations:1/sec
    227/min
    I/O other transfer:5.29 KB/sec
    448.09 KB/min
    I/O other operations:30/sec
    1,671/min
    Resource allocations
    Threads:8
    12
    Handles:255
    600
    GUI GDI count:9
    103
    GUI GDI peak:9
    142
    GUI USER count:3
    49
    GUI USER peak:5
    71

    BehaviorsProcess properties

    Integrety level:Undefined
    Platform:32-bit
    Command lines:
    • "C:\ProgramData\anti-phishing domain advisor\visicom_antiphishing.exe"
    • "C:\Documents and Settings\user\Application data\anti-phishing domain advisor\visicom_antiphishing.exe"
    Owner:User
    Parent process:Explorer.EXE (Windows Explorer by Microsoft)

    ResourcesThreads

    Averages
     
    visicom_antiphishing.exe (main module)
    Total CPU:0.05892743%
    0.272967%
    Kernel CPU:0.01080745%
    0.107585%
    User CPU:0.04811998%
    0.165382%
    CPU cycles:1,685,971/sec
    5,741,424/sec
    Context switches:10/sec
    79/sec
    Memory:228 KB
    1.16 MB
    WININET.dll
    Total CPU:0.00261161%
    Kernel CPU:0.00261161%
    User CPU:0.00000000%
    CPU cycles:23,102/sec
    Memory:980 KB
    ntdll.dll
    Total CPU:0.00002202%
    Kernel CPU:0.00000734%
    User CPU:0.00001468%
    CPU cycles:538/sec
    Memory:1.66 MB

    Windows OS versionsDistribution by Windows OS

    OS versiondistribution
    Windows 7 Home Premium 36.00%
    Windows 7 Ultimate N 24.00%
    Microsoft Windows XP 14.00%
    Windows 7 Ultimate 12.00%
    Windows 7 Professional 8.00%
    Windows Vista Ultimate 2.00%
    Windows Vista Home Premium 2.00%
    Windows 8 Pro 2.00%

    Distribution by countryDistribution by country

    United States installs about 69.57% of Anti-phishing Domain Advisor.

    OEM distributionDistribution by PC manufacturer

    PC Manufacturerdistribution
    Dell 34.78%
    Hewlett-Packard 21.74%
    Toshiba 17.39%
    Acer 13.04%
    Lenovo 8.70%
    Samsung 4.35%
    Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

    Download it for FREE