2jEzSetp.DLL

Recipe Hub Easy Installer

Mindspark Interactive Network

This library is part of the Mindspark toolbar which uses the Ask.com search property to install a web browser extension and modify the browser's search, home and new tab features in order to redirect web searches to the IAC property. The module 2jEzSetp.DLL by Mindspark Interactive Network has been detected as a potentially unwanted program by 13 anti-malware scanners.
Publisher:
Recipe Hub  (signed by Mindspark Interactive Network)

Product:
Recipe Hub Easy Installer

Version:
1, 2, 11, 3

MD5:
bd8bad3dace4e3c67e9b663e52f71285

SHA-1:
35c322a5589d30ccf63e3bfc8a5e2ae8968968e9

SHA-256:
bf4e1218b0651e98216c110c197d62a994f0b5928596142906672efadbfb754e

Scanner detections:
13 / 68

Status:
Potentially unwanted

Explanation:
Part of the MyWebSearch/Mindspark/Ask web browser extension and toolbar.

Analysis date:
4/26/2024 2:12:16 PM UTC  (today)

Scan engine
Detection
Engine version

Agnitum Outpost
PUA.Toolbar.MyWebSearch
7.1.1

avast!
Win32:Mindspark-A [PUP]
2014.9-140920

AVG
Zango
2015.0.3345

Baidu Antivirus
Adware.Win32.MyWebSearch
4.0.3.14920

Clam AntiVirus
Win.Adware.Websearch-72
0.98/21411

Dr.Web
9.0.1.0263

ESET NOD32
Win32/Toolbar.MyWebSearch (variant)
8.9436

McAfee
Artemis!BD8BAD3DACE4
5600.7001

NANO AntiVirus
Riskware.Win32.WebSearch.ddutde
0.28.2.62151

Panda Antivirus
Adware/WebSearch
14.09.20.07

Reason Heuristics
PUP.Installer.MindsparkInteractiveNetwork.I
14.9.20.19

VIPRE Antivirus
30122

Zillya! Antivirus
2.0.0.1925

File size:
798.9 KB (818,048 bytes)

Product version:
1, 2, 11, 3

Copyright:
Copyright © 2003, 2004, 2005, 2006, 2007, 2008, 2009, 2010, 2011, 2012, 2013

Original file name:
2jEzSetp.DLL

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\Program Files\recipehub_2jei\installr\1.bin\2jezsetp.dll

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
4/9/2012 6:00:00 PM

Valid to:
5/6/2015 5:59:59 PM

Subject:
CN=Mindspark Interactive Network, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Mindspark Interactive Network, L=White Plains, S=NewYork, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
098417F7EA6406EC7B320590E17A65B7

File PE Metadata
Compilation timestamp:
11/19/2013 1:58:41 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
6144:7cxEMa0+O57B55+hDHSQoGCUQFwvzC2Zr3OzNQxHOU8QfOlO0OXnPCsmX+YUh9b0:el+O5NCsV0QFoO52N38ZoAh

Entry address:
0x1AC77

Entry point:
8B, FF, 55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, D4, 3B, 00, 00, FF, 75, 08, 8B, 4D, 10, 8B, 55, 0C, E8, EC, FE, FF, FF, 59, 5D, C2, 0C, 00, 8B, FF, 55, 8B, EC, E8, 38, 1B, 00, 00, 85, C0, 74, 07, 50, E8, F0, 1C, 00, 00, 59, FF, 75, 08, FF, 15, FC, 41, 02, 10, CC, 6A, 0C, 68, 18, C7, 02, 10, E8, 5B, 09, 00, 00, E8, 8B, 1B, 00, 00, 83, 65, FC, 00, FF, 70, 58, FF, 50, 54, 50, E8, C0, FF, FF, FF, 8B, 45, EC, 8B, 08, 8B, 09, 89, 4D, E4, 50, 51, E8, 06, 3A, 00, 00, 59, 59, C3, 8B, 65, E8, FF, 75, E4, E8, E0, 08...
 
[+]

Entropy:
6.6162

Code size:
136.5 KB (139,776 bytes)

Remove 2jEzSetp.DLL - Powered by Reason Core Security