adc.dll

nbiz Ltd.

The module adc.dll by nbiz has been detected as adware by 30 anti-malware scanners.
Publisher:
nbiz Ltd.  (signed and verified)

MD5:
e3f6ee7d4bff934b35d0e1c612446f7d

SHA-1:
43fc8d495094efcbccf276e6df0474485515f382

Scanner detections:
30 / 68

Status:
Adware

Analysis date:
4/25/2024 9:35:44 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Graftor.38172
429

Agnitum Outpost
Adware.Kraddare
7.1.1

AhnLab V3 Security
PUP/Win32.PlusTab
2014.07.11

Avira AntiVirus
Adware/Kraddare.B.3
7.11.160.42

avast!
Win32:Adware-BBJ [PUP]
2014.9-151203

AVG
AdSearcher
2016.0.2907

Baidu Antivirus
AdWare.Win32.Kraddare
4.0.3.15123

Bitdefender
Gen:Variant.Graftor.38172
1.0.20.1685

Bkav FE
W32.MscontrolFamTO
1.3.0.4959

Clam AntiVirus
Adware.Adsearcher
0.98/21411

Emsisoft Anti-Malware
Gen:Variant.Graftor.38172
8.15.12.03.01

ESET NOD32
Win32/Adware.Kraddare.AF
9.10078

Fortinet FortiGate
Riskware/Kraddare
12/3/2015

F-Secure
Gen:Variant.Graftor.38172
11.2015-03-12_5

G Data
Gen:Variant.Graftor.38172
15.12.24

IKARUS anti.virus
AdWare.Kraddare
t3scan.1.6.1.0

K7 AntiVirus
Trojan
13.180.12683

McAfee
Artemis!E3F6EE7D4BFF
5600.6563

MicroWorld eScan
Gen:Variant.Graftor.38172
16.0.0.1011

NANO AntiVirus
Riskware.Win32.Kraddare.cysmhg
0.28.0.60698

Norman
Suspicious_Gen2.IWHME
11.20151203

nProtect
Abuse-Worry/W32.Small.29280
14.07.09.03

Panda Antivirus
Trj/CI.A
15.12.03.01

Qihoo 360 Security
Win32/Virus.Adware.10a
1.0.0.1015

Quick Heal
AdWare.InfoTab.r6 (Not a Virus)
12.15.14.00

Reason Heuristics
PUP.nbiz (M)
15.12.3.1

Rising Antivirus
PE:Trojan.Win32.Generic.1268BADB!308853467
23.00.65.151201

Sophos
Generic PUA ED
4.98

Vba32 AntiVirus
Adware.Kraddare
3.12.26.3

VIPRE Antivirus
Kraddare
31168

File size:
28.6 KB (29,280 bytes)

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\Program Files\plustab\adc.dll

Digital Signature
Signed by:

Authority:
Thawte, Inc.

Valid from:
12/4/2010 9:00:00 AM

Valid to:
2/3/2012 8:59:59 AM

Subject:
CN=nbiz Ltd., OU=Development Department, O=nbiz Ltd., L=Gangnam-gu, S=Seoul, C=KR

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
68D3A7B1E914D885509C1651FE2008D0

File PE Metadata
Compilation timestamp:
11/9/2010 9:52:30 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
384:XJB/dcV8stH6KWoUYcxqlVLi1hFRqQATEffmW401OTOtXRcdYJLuPkCQuHjf:5B9loHcxqlg1heLTEAeOTOtBcILuD

Entry address:
0x2D6B

Entry point:
8B, FF, 55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, 3B, 04, 00, 00, FF, 75, 08, 8B, 4D, 10, 8B, 55, 0C, E8, CC, FE, FF, FF, 59, 5D, C2, 0C, 00, FF, 25, C4, 50, 00, 10, 68, ED, 2D, 00, 10, 64, FF, 35, 00, 00, 00, 00, 8B, 44, 24, 10, 89, 6C, 24, 10, 8D, 6C, 24, 10, 2B, E0, 53, 56, 57, A1, 18, 70, 00, 10, 31, 45, FC, 33, C5, 50, 89, 65, E8, FF, 75, F8, 8B, 45, FC, C7, 45, FC, FE, FF, FF, FF, 89, 45, F8, 8D, 45, F0, 64, A3, 00, 00, 00, 00, C3, 8B, 4D, F0, 64, 89, 0D, 00, 00, 00, 00, 59, 5F, 5F, 5E, 5B, 8B, E5, 5D...
 
[+]

Entropy:
6.3332

Code size:
13 KB (13,312 bytes)

Remove adc.dll - Powered by Reason Core Security