Home Malware Programs Bad Toolbars Music Toolbar by Bandoo Media

Music Toolbar by Bandoo Media

Posted: August 22, 2013

Threat Metric

Ranking: 5,474
Threat Level: 2/10
Infected PCs: 66,663
First Seen: August 22, 2013
Last Seen: March 10, 2025
OS(es) Affected: Windows

Music Toolbar is a potentially unwanted toolbar developed and distributed by Bandoo Media, a company well-known for releasing a broad range of toolbars and other potentially unwanted applications. While the Music Toolbar isn't dangerous, its presence may have a negative impact on your browsing experience. It may clutter your web browser's interface, and, in some cases, it may hijack your browser's settings to set-up custom redirects, as well as to change your default search engine and homepage. Music Toolbar by Bandoo Media may be installed on your computer by downloading the software from an official download location or by installing freeware that is bundled with this potentially unwanted toolbar. Music Toolbar by Bandoo Media may be installed accidentally, but because of this application's harmless nature, you shouldn't be too worried if you notice Music Toolbar in your web browser. Although Music Toolbar won't damage your computer or operating system as a severe threat would, we strongly advise you to remove the toolbar because it doesn't introduce any important or needed features.

Aliases

Search.FD2 [AVG]

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



C:\Users\<username>\AppData\Local\VirtualStore\Program Files (x86)\Music Toolbar\Datamngr\x64\setmgrc1.cfg File name: setmgrc1.cfg
Size: 36.24 KB (36248 bytes)
MD5: eb32809c5d1662d3fd19efa17d0e9b0e
Detection count: 222
Mime Type: unknown/cfg
Path: C:\Users\<username>\AppData\Local\VirtualStore\Program Files (x86)\Music Toolbar\Datamngr\x64\setmgrc1.cfg
Group: Malware file
Last Updated: December 30, 2021
C:\Windows.old.005\Program Files\Music App\Datamngr\DatamngrCoordinator.exe File name: DatamngrCoordinator.exe
Size: 3.2 MB (3204312 bytes)
MD5: 1565d16979786c29b6ac7b570ac295b1
Detection count: 124
File type: Executable File
Mime Type: unknown/exe
Path: C:\Windows.old.005\Program Files\Music App\Datamngr\DatamngrCoordinator.exe
Group: Malware file
Last Updated: August 14, 2022
C:\Program Files\Music Toolbar\Datamngr\SRTOOL~1\IE\__searchresultsDx.dll File name: __searchresultsDx.dll
Size: 92.56 KB (92560 bytes)
MD5: 86051904dd4addd413042d65e051ee1c
Detection count: 122
File type: Dynamic link library
Mime Type: unknown/dll
Path: C:\Program Files\Music Toolbar\Datamngr\SRTOOL~1\IE\__searchresultsDx.dll
Group: Malware file
Last Updated: January 22, 2022
C:\Users\<username>\Documents\rose\Program Files\Music Toolbar\Datamngr\SRTOOL~1\IE\searchresultsDx.dll File name: searchresultsDx.dll
Size: 92.56 KB (92560 bytes)
MD5: 4d4d62c2d2c45b3290f11b51cb10cdb3
Detection count: 59
File type: Dynamic link library
Mime Type: unknown/dll
Path: C:\Users\<username>\Documents\rose\Program Files\Music Toolbar\Datamngr\SRTOOL~1\IE\searchresultsDx.dll
Group: Malware file
Last Updated: November 16, 2021

More files

Registry Modifications

The following newly produced Registry Values are:

CLSID{0482f641-460c-4e43-a3bb-0b4f55c3bdab}{88D8ECB7-204F-4EFD-8134-F6341F76C672}HKEY..\..\..\..{RegistryKeys}Software\AppDataLow\Software\ftalkmusictoolbarhaSoftware\AppDataLow\Software\imeshjzipmusictoolbarSoftware\Microsoft\Internet Explorer\Approved Extensions\{88D8ECB7-204F-4EFD-8134-F6341F76C672}Software\Microsoft\Internet Explorer\Approved Extensions\{A40DC6C5-79D0-4CA8-A185-8FF989AF1115}Software\Microsoft\Internet Explorer\Approved Extensions\{ED904E55-8CF8-4E5A-B35E-D0E87A571D9F}SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{88d8ecb7-204f-4efd-8134-f6341f76c672}SOFTWARE\Microsoft\Internet Explorer\Toolbar\{ed904e55-8cf8-4e5a-b35e-d0e87a571d9f}SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{0482f641-460c-4e43-a3bb-0b4f55c3bdab}Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6fcaba44-a441-481f-895e-bddfd81a6cc2}SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{ed904e55-8cf8-4e5a-b35e-d0e87a571d9f}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A40DC6C5-79D0-4ca8-A185-8FF989AF1115}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{ED904E55-8CF8-4E5A-B35E-D0E87A571D9F}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{ED904E55-8CF8-4E5A-B35E-D0E87A571D9F}SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{88d8ecb7-204f-4efd-8134-f6341f76c672}SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{0482f641-460c-4e43-a3bb-0b4f55c3bdab}SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{ed904e55-8cf8-4e5a-b35e-d0e87a571d9f}Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6fcaba44-a441-481f-895e-bddfd81a6cc2}SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{ed904e55-8cf8-4e5a-b35e-d0e87a571d9f}SYSTEM\ControlSet001\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{4782D77D-11C5-4096-8E63-24322A0A59B8}SYSTEM\ControlSet001\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{F0C2F8AE-213B-4B78-8DDA-D44A4F663377}SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{4782D77D-11C5-4096-8E63-24322A0A59B8}SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{F0C2F8AE-213B-4B78-8DDA-D44A4F663377}HKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}ftalkmusictoolbarhaCRftalkmusictoolbarhaFFftalkmusictoolbarhaIEimeshjzipmusictoolbarCRimeshjzipmusictoolbarIEimeshmusicboxtoolbar181CRimeshmusicboxtoolbar181FFMusic ToolbarshareazamusictoolbardlaIE

Additional Information

The following directories were created:
%LocalAppData%\ftalkmusictoolbarha%PROGRAMFILES%\Music App%PROGRAMFILES(x86)%\Music App%ProgramFiles%\Music Toolbar%ProgramFiles(x86)%\Music Toolbar%USERPROFILE%\AppData\LocalLow\ftalkmusictoolbarha%USERPROFILE%\AppData\LocalLow\imeshmusicboxtoolbarnew%USERPROFILE%\AppData\LocalLow\shareazamusictoolbardla%USERPROFILE%\Application Data\imeshmusicboxtoolbarnew
The following URL's were detected:
imeshmusicboxtoolbar
Loading...