default-search.dll

AZTEC MEDIA INC.

The module default-search.dll by AZTEC MEDIA INC has been detected as adware by 16 anti-malware scanners. This file is typically installed with the program Assets Manager by Aztec Media inc. which is a potentially unwanted software program.
Publisher:
AZTEC MEDIA INC.  (signed and verified)

MD5:
94e3a6157124f87735fb16005bff9dd5

SHA-1:
945d1f5e27ea0d032c7adba22979ea914e6552b6

SHA-256:
cdac9fc0bc72640d4069f9f726bce08d2fad762fb98be92fd151e2b5f51e3dbb

Scanner detections:
16 / 68

Status:
Adware

Analysis date:
5/2/2024 2:53:00 PM UTC  (today)

Scan engine
Detection
Engine version

AhnLab V3 Security
PUP/Win32.SearchSuite
2015.05.17

Baidu Antivirus
Adware.Win32.SearchSuite
4.0.3.1576

Bkav FE
W32.HfsAdware
1.3.0.6379

ESET NOD32
Win32/Toolbar.SearchSuite.AB potentially unwanted (variant)
9.11638

Fortinet FortiGate
Riskware/SearchSuite
7/6/2015

G Data
Win32.Application.Searchsuite
15.7.25

K7 AntiVirus
Adware
13.204.15934

McAfee
SearchSuite
5600.6712

Panda Antivirus
Trj/Genetic.gen
15.07.06.11

Qihoo 360 Security
HEUR/QVM30.1.Malware.Gen
1.0.0.1015

Quick Heal
PUA.Aztecmedia.Gen
7.15.14.00

Reason Heuristics
PUP.AZTECMEDIA (M)
15.7.6.23

Sophos
SearchSuite
4.98

Trend Micro House Call
TROJ_GEN.R03EC0EE715
7.2.187

Trend Micro
TROJ_GEN.R03EC0EE715
10.465.06

VIPRE Antivirus
Adware.SearchSuite
40292

File size:
1.7 MB (1,792,736 bytes)

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\Program Files\assets manager\smdmf\default-search.dll

Digital Signature
Authority:
Thawte, Inc.

Valid from:
4/9/2015 3:00:00 AM

Valid to:
5/19/2016 2:59:59 AM

Subject:
CN=AZTEC MEDIA INC., OU=Development, O=AZTEC MEDIA INC., L=Panama City, S=Panama, C=PA

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
4DCD479A23FD2DC0994F996E411C47C1

File PE Metadata
Compilation timestamp:
4/20/2015 4:02:00 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
49152:5njMp466wZGrDqhznEK4AZVYMR+r3RqetGmeK4DXAsc1Eq:5njMVGrGhYK4ALY98I

Entry address:
0xE5B2D

Entry point:
8B, FF, 55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, 8E, DF, 00, 00, FF, 75, 08, 8B, 4D, 10, 8B, 55, 0C, E8, EC, FE, FF, FF, 59, 5D, C2, 0C, 00, 8B, FF, 55, 8B, EC, B8, FF, FF, 00, 00, 83, EC, 14, 66, 39, 45, 08, 0F, 84, 87, 00, 00, 00, 53, 56, FF, 75, 0C, 8D, 4D, EC, E8, 6B, C8, FF, FF, 8B, 75, EC, 8B, 4E, 14, 33, DB, 3B, CB, 75, 15, 8B, 45, 08, 8D, 48, BF, 66, 83, F9, 19, 77, 04, 66, 83, C0, 20, 0F, B7, C0, EB, 4B, B8, 00, 01, 00, 00, 6A, 01, 66, 39, 45, 08, 73, 1E, FF, 75, 08, E8, AF, BB, 00, 00, 59, 85, C0...
 
[+]

Entropy:
6.6025

Code size:
1.1 MB (1,190,912 bytes)

The file default-search.dll has been discovered within the following program.

Assets Manager  by Aztec Media inc.
Asset Manager is an adware web browser add-on that injects advertising in the user's browser as well as hijacks various browser settings such as the home page, search provider and new tab page. Its is protected and difficult to remove.
80% remove it
 
Powered by Should I Remove It?

Remove default-search.dll - Powered by Reason Core Security