186_x64.dll

The module 186_x64.dll has been detected as adware by 20 anti-malware scanners. It is installed within the context of Internet Explore as a BHO (Browser Helper Object) under the name ‘SpeedChecker’. This file is typically installed with the program SpeedChecker by Revizer Technologies which is a potentially unwanted software program. This is part of the Revizer line of web browser extensions that inject 3rd-party advertisements in the user's web browser as well as setup a proxy server for the browser in order to track behaviors and display context based-ads from various partners (mostly adware).
MD5:
46c012fac8846ec593b00c770194269c

SHA-1:
a05d050381d197eea84888a4cffb9de80ea4cb3f

SHA-256:
9d502fbdd1abfc3bc09d78df622b4d9df0ce76082c72a47254d19e4e3ffcfb0c

Scanner detections:
20 / 68

Status:
Adware

Analysis date:
4/25/2024 12:34:02 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Application.Generic.1155738
658

Agnitum Outpost
PUA.AddLyrics
7.1.1

avast!
Win32:AddLyrics-BK [Adw]
2014.9-150418

Baidu Antivirus
Adware.Win64.AddLyrics
4.0.3.15418

Bitdefender
Application.Generic.1155738
1.0.20.540

Comodo Security
ApplicUnwnt
21739

Dr.Web
Trojan.Lyrics.342
9.0.1.0108

ESET NOD32
Win64/Adware.AddLyrics (variant)
9.11462

F-Secure
Application.Generic.1155738
11.2015-18-04_7

G Data
Application.Generic.1155738
15.4.25

IKARUS anti.virus
AdWare.AddLyrics
t3scan.1.8.9.0

K7 AntiVirus
Adware
13.202.15567

McAfee
Artemis!46C012FAC884
5600.6792

MicroWorld eScan
Application.Generic.1155738
16.0.0.324

Reason Heuristics
Adware.Revizer
15.4.18.5

Sophos
BlockNSurf
4.98

SUPERAntiSpyware
Adware.AddLyrics/Variant
9928

Trend Micro House Call
TROJ_GEN.R00UH05BE15
7.2.108

VIPRE Antivirus
Revizer.b
39276

Zillya! Antivirus
Adware.AddLyrics.Win64.10
2.0.0.2135

File size:
226 KB (231,424 bytes)

File type:
Dynamic link library (Win64 DLL)

Language:
English (United States)

Common path:
C:\Program Files\ver8speedchecker\186_x64.dll

Registration
CLSID:
{6BA91C7A-5442-54BB-FBF4-40080F07DF36}

COM registered:
Yes

File PE Metadata
Compilation timestamp:
1/15/2015 9:35:29 AM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
3072:3IXUIhA4LwANeJZDL2syPAtTmd42odHzpIH/i+xlT+eolTpojODFsBOrUy:3IXP5wANEaP4Tmd4pBdBaEUWGkX

Entry address:
0xD614

Entry point:
48, 89, 5C, 24, 08, 48, 89, 74, 24, 10, 57, 48, 83, EC, 20, 49, 8B, F8, 8B, DA, 48, 8B, F1, 83, FA, 01, 75, 05, E8, 1B, 6E, 00, 00, 4C, 8B, C7, 8B, D3, 48, 8B, CE, 48, 8B, 5C, 24, 30, 48, 8B, 74, 24, 38, 48, 83, C4, 20, 5F, E9, 03, 00, 00, 00, CC, CC, CC, 48, 8B, C4, 48, 89, 58, 20, 4C, 89, 40, 18, 89, 50, 10, 48, 89, 48, 08, 56, 57, 41, 56, 48, 83, EC, 50, 49, 8B, F0, 8B, DA, 4C, 8B, F1, BA, 01, 00, 00, 00, 89, 50, B8, 85, DB, 75, 0F, 39, 1D, 58, 04, 02, 00, 75, 07, 33, C0, E9, D2, 00, 00, 00, 8D, 43, FF...
 
[+]

Code size:
109 KB (111,616 bytes)

Internet Explorer BHO
Display name:
SpeedChecker

CLSID:
{6BA91C7A-5442-54BB-FBF4-40080F07DF36}


The file 186_x64.dll has been discovered within the following program.

SpeedChecker  by Revizer Technologies
SpeedChecker is a potentially unwanted adware program that injects ads into the user's browser. This includes inserting into web pages or displaying ads over parts of existing web page advertisements, banners, coupons or text links that would not otherwise appear.
83% remove it
 
Powered by Should I Remove It?

Remove 186_x64.dll - Powered by Reason Core Security