GenericAskToolbar.dll

Toolbar

IAC Search and Media

This installer is part of the Ask.com (APN) network which will install the Ask.com branded toolbar or browser extension which will take control of the web browser's search functions. The module GenericAskToolbar.dll, “Search-Results Toolbar” by IAC Search and Media has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. The program is a setup application that uses the APN Stub installer. It is installed within the context of Internet Explore as a BHO (Browser Helper Object) under the name ‘Search-Results Toolbar BHO’. This file is typically installed with the program Search-Results Toolbar by Search-Results.com which is a potentially unwanted software program.
Publisher:
Search-Results  (signed by IAC Search and Media)

Product:
Toolbar

Description:
Search-Results Toolbar

Version:
5.9.1.14019

MD5:
ed4e71af001451da68d8c9fdbc2efea1

SHA-1:
5abbcc0edb0457fbdd2b7dd0449baaca8ba6842c

Scanner detections:
1 / 68

Status:
Potentially unwanted

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
4/23/2024 10:44:24 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.BHO.IACSearchandMedia.R
14.8.8.0

File size:
1.4 MB (1,435,112 bytes)

Product version:
5.9.1.14019

Copyright:
(c) Search-Results. All rights reserved.

Original file name:
GenericAskToolbar.dll

File type:
Dynamic link library (Win32 DLL)

Installer:
APN Stub

Language:
English (United States)

Common path:
C:\Program Files\ask.com\genericasktoolbar.dll

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
10/21/2009 2:00:00 AM

Valid to:
10/21/2012 1:59:59 AM

Subject:
CN=IAC Search and Media, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=IAC Search and Media, L=Oakland, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
596DF135D6540E700E84211A065D9C98

Registration
CLSIDs:
{00000000-6E41-4FD3-8538-502F5495E5FC}, {D4027C7F-154A-4066-A1AD-4243D8127440}

ProgID:
GenericAskToolbar.ToolbarWnd.1

COM registered:
Yes

File PE Metadata
Compilation timestamp:
9/29/2010 8:11:33 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
24576:Ba2MgD7Yws51kHeB2bDhwWhbUzM/kajGNlZ/BXFljL3TZoPxYDZNXTtZZBshA1b1:c23Yws51CeBc+fKeFRFl33TZoJsNXTH3

Entry address:
0xB5825

Entry point:
8B, FF, 55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, A5, E3, 00, 00, FF, 75, 08, 8B, 4D, 10, 8B, 55, 0C, E8, EC, FE, FF, FF, 59, 5D, C2, 0C, 00, 6A, 0C, 68, B0, B1, 10, 10, E8, B4, 29, 00, 00, 33, DB, 89, 5D, E4, 33, C0, 8B, 7D, 08, 3B, FB, 0F, 95, C0, 3B, C3, 75, 1C, E8, EC, 24, 00, 00, C7, 00, 16, 00, 00, 00, 53, 53, 53, 53, 53, E8, ED, CD, FF, FF, 83, C4, 14, 33, C0, EB, 79, 33, C0, 8B, 75, 0C, 3B, F3, 0F, 95, C0, 3B, C3, 74, D6, 33, C0, 38, 1E, 0F, 95, C0, 3B, C3, 74, CB, E8, 98, E6, 00, 00, 89, 45, 08, 3B...
 
[+]

Code size:
896 KB (917,504 bytes)

Internet Explorer BHO
Display name:
Search-Results Toolbar BHO

CLSID:
{D4027C7F-154A-4066-A1AD-4243D8127440}

CLSID name:
Softonic Toolbar


The file GenericAskToolbar.dll has been discovered within the following program.

Search-Results Toolbar  by Search-Results.com
The Search-Results Toolbar by APN is an advertising supported toolbar for Intenet Explorer and Firefox (a web browser extension) that is typically installed via a software bundler.
87% remove it
 
Powered by Should I Remove It?

Remove GenericAskToolbar.dll - Powered by Reason Core Security