APNIC.dll

Stub Installer

APN LLC

This installer is part of the Ask.com (APN) network which will install the Ask.com branded toolbar or browser extension which will take control of the web browser's search functions. The module APNIC.dll, “APN Install Checker” by APN has been detected as a potentially unwanted program by 2 anti-malware scanners. The program is a setup application that uses the APN Stub installer. This version of the installer will bundle the Ask.com Toolbar, a potentially unwanted web browser extension.
Publisher:
Ask Partner Network  (signed by APN LLC)

Product:
Stub Installer

Description:
APN Install Checker

Version:
6.6.0.13

MD5:
d6ce1ab7ee18983fcd95c5d483c96b81

SHA-1:
170e95d460f6646d76779b4fe097711093f9ec14

SHA-256:
d7d9e015635e6ed44f8eafc28c6cdbf92079a9a30ef55fd8c729653965e60403

Scanner detections:
2 / 68

Status:
Potentially unwanted

Explanation:
Bundles that Ask.com toolbar as a third-party offer, a web browser extension that may modify a user's search and home pages.

Analysis date:
4/25/2024 10:20:46 AM UTC  (today)

Scan engine
Detection
Engine version

ESET NOD32
Win32/Bundled.Toolbar.Ask
8.9190

Reason Heuristics
PUP.Installer.APN.F
14.8.7.21

File size:
158.6 KB (162,440 bytes)

Product version:
6.6.0.13

Copyright:
Copyright © 2011 Ask Partner Network. All rights reserved.

Original file name:
APNIC.dll

File type:
Dynamic link library (Win32 DLL)

Installer:
APN Stub

Language:
English (United States)

Common path:
C:\ProgramData\apn\apn-stub\w3iv6-g\apnic.dll

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
4/16/2012 3:00:00 AM

Valid to:
4/9/2015 2:59:59 AM

Subject:
CN=APN LLC, OU=Distribution, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=APN LLC, L=Oakland, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
27EAB3DE0B03D88D5C4A2AE477B84DFA

File PE Metadata
Compilation timestamp:
3/4/2013 10:02:43 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
3072:lfNx1J/4d0qmze8eN3iE4lFATZyhekJHEfgzaA5QyCjO8B7:lRJ/90d4l8kJHDC5B7

Entry address:
0xC16D

Entry point:
8B, FF, 55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, 5D, 7F, 00, 00, FF, 75, 08, 8B, 4D, 10, 8B, 55, 0C, E8, EC, FE, FF, FF, 59, 5D, C2, 0C, 00, 8B, 54, 24, 0C, 8B, 4C, 24, 04, 85, D2, 74, 69, 33, C0, 8A, 44, 24, 08, 84, C0, 75, 16, 81, FA, 00, 01, 00, 00, 72, 0E, 83, 3D, A8, 4C, 02, 10, 00, 74, 05, E9, 0B, 80, 00, 00, 57, 8B, F9, 83, FA, 04, 72, 31, F7, D9, 83, E1, 03, 74, 0C, 2B, D1, 88, 07, 83, C7, 01, 83, E9, 01, 75, F6, 8B, C8, C1, E0, 08, 03, C1, 8B, C8, C1, E0, 10, 03, C1, 8B, CA, 83, E2, 03, C1, E9, 02...
 
[+]

Entropy:
6.4842

Code size:
108.5 KB (111,104 bytes)

Remove APNIC.dll - Powered by Reason Core Security