AddressBarInstance.dll

Smart Address Bar

Think Tank Labs LLC

The module AddressBarInstance.dll, “Smart Address Bar DLL” by Think Tank Labs has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
Think Tank Labs LLC  (signed and verified)

Product:
Smart Address Bar

Description:
Smart Address Bar DLL

Version:
1.0.3.0

MD5:
7b1f804a2bc40c6339c6740a22cc7e66

SHA-1:
b8a04c57affa628b250e6d0b2aabfbfc85818c09

SHA-256:
9af6544e8a1318f59e842124290a9b8a05c2411e5b93bc734f9aadca42e18a59

Scanner detections:
1 / 68

Status:
Potentially unwanted

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
4/19/2024 12:07:40 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.ThinkTankLabs (M)
17.1.30.18

File size:
402.3 KB (411,927 bytes)

Product version:
1.0.3.0

Copyright:
© Think Tank Labs, LLC

Original file name:
AddressBarInstance.dll

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\Program Files\wintoflash suggestor\addressbarinstance.dll

Digital Signature
Authority:
GoDaddy.com, Inc.

Valid from:
4/25/2012 3:26:47 AM

Valid to:
4/25/2014 3:26:47 AM

Subject:
CN=Think Tank Labs LLC, OU=Internet, O=Think Tank Labs LLC, L=Newport Beach, S=CA, C=US

Issuer:
SERIALNUMBER=07969287, CN=Go Daddy Secure Certification Authority, OU=http://certificates.godaddy.com/repository, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US

Serial number:
00C784C63AD412

File PE Metadata
Compilation timestamp:
5/24/2012 8:35:21 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

Entry address:
0x28FA7

Entry point:
E9, A8, A5, FD, FF, 83, 7D, 0C, 01, 75, 05, E8, E7, B6, 00, 00, FF, 75, 08, 8B, 4D, 10, 8B, 55, 0C, E8, EC, FE, FF, FF, 59, 5D, C2, 0C, 00, CC, CC, 68, 30, 90, 02, 10, 64, FF, 35, 00, 00, 00, 00, 8B, 44, 24, 10, 89, 6C, 24, 10, 8D, 6C, 24, 10, 2B, E0, 53, 56, 57, A1, 74, B3, 04, 10, 31, 45, FC, 33, C5, 50, 89, 65, E8, FF, 75, F8, 8B, 45, FC, C7, 45, FC, FE, FF, FF, FF, 89, 45, F8, 8D, 45, F0, 64, A3, 00, 00, 00, 00, C3, 8B, 4D, F0, 64, 89, 0D, 00, 00, 00, 00, 59, 5F, 5F, 5E, 5B, 8B, E5, 5D, 51, C3, CC, CC...
 
[+]

Entropy:
6.9477

Packer / compiler:
Xtreme-Protector v1.05

Code size:
252 KB (258,048 bytes)

Remove AddressBarInstance.dll - Powered by Reason Core Security