f3REProx.dll

Smiley Central

FunWebProducts.com

The module f3REProx.dll, “Smiley Central Rich Edit DLL” has been detected as adware by 10 anti-malware scanners.
Publisher:
FunWebProducts.com

Product:
Smiley Central

Description:
Smiley Central Rich Edit DLL

Version:
1, 0, 3, 6

MD5:
f04edb9a6b04bb8db090a96d9f8e28cf

SHA-1:
0e932e2893a455dc1e26d5d7889307086ce34c82

SHA-256:
8067b31983019e14395a2db31a590cb80a0b8a7390f4caf762af3d91acc8bdcf

Scanner detections:
10 / 68

Status:
Adware

Explanation:
Part of the MyWebSearch/Mindspark/Ask web browser extension and toolbar.

Analysis date:
4/18/2024 4:32:56 PM UTC  (today)

Scan engine
Detection
Engine version

AhnLab V3 Security
Win-PUP/Toolbar.FunWeb.189872
2013.12.14

avast!
Win32:FunWeb-B [PUP]
2014.9-141031

Baidu Antivirus
Trojan.Win32.Toolbar
4.0.3.1514

Bkav FE
W32.Clod3bd.Trojan
1.3.0.4613

Clam AntiVirus
Adware.FunWebProducts-5
0.98/18355

ESET NOD32
Win32/Toolbar.MyWebSearch
9.9170

Fortinet FortiGate
Riskware/FunWeb
1/4/2015

MicroWorld eScan
Win32/Toolbar.MyWebSearch.D
16.0.0.12

Reason Heuristics
PUP.FunWebProducts.I
14.10.31.22

VIPRE Antivirus
MyWebSearch Toolbar (not malicious)
24320

File size:
185.4 KB (189,872 bytes)

Product version:
2, 3, 0, 0

Copyright:
Copyright © 2003, 2004, 2005, 2006, 2007, 2008, 2009, 2010

Original file name:
f3REProx.dll

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\Program Files\mywebsearch\bar\3.bin\f3reprox.dll

File PE Metadata
Compilation timestamp:
3/18/2010 4:40:05 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
3072:ypPCQ30vxA+NBseSU8BPQ4bf/NcXJm0OZZ91nJUe8vW:0CtxA+NH8OZOZZ91nJUeIW

Entry address:
0xDC2C

Entry point:
55, 8B, EC, 83, 7D, 0C, 01, 56, 8B, 75, 08, 75, 0B, 89, 35, 9C, B8, 01, 10, E8, 20, 00, 00, 00, FF, 75, 10, FF, 75, 0C, 56, E8, 22, 27, 00, 00, 83, 7D, 0C, 00, 8B, F0, 75, 05, E8, 3E, 00, 00, 00, 8B, C6, 5E, 5D, C2, 0C, 00, 68, 78, B8, 01, 10, FF, 15, CC, 71, 01, 10, 68, 80, A0, 01, 10, 68, 00, A0, 01, 10, E8, 03, 00, 00, 00, 59, 59, C3, 56, 8B, 74, 24, 08, 3B, 74, 24, 0C, 73, 0D, 8B, 06, 85, C0, 74, 02, FF, D0, 83, C6, 04, EB, ED, 5E, C3, A1, 98, B8, 01, 10, 85, C0, 74, 2F, 8B, 0D, 94, B8, 01, 10, 56, 8D...
 
[+]

Entropy:
6.5452

Developed / compiled with:
Microsoft Visual C++

Code size:
88 KB (90,112 bytes)

Remove f3REProx.dll - Powered by Reason Core Security