NP2vEISb.DLL

DailyBibleGuide Installer Plugin Stub

Mindspark Interactive Network

This library is part of the Mindspark toolbar which uses the Ask.com search property to install a web browser extension and modify the browser's search, home and new tab features in order to redirect web searches to the IAC property. The module NP2vEISb.DLL, “DailyBibleGuide Installer Plugin Stub for 32-bit Windows” by Mindspark Interactive Network has been detected as a potentially unwanted program by 16 anti-malware scanners.
Publisher:
DailyBibleGuide  (signed by Mindspark Interactive Network)

Product:
DailyBibleGuide Installer Plugin Stub

Description:
DailyBibleGuide Installer Plugin Stub for 32-bit Windows

Version:
1, 0, 0, 1

MD5:
e1489f8379636b79d0fc7f31c03f9ad4

SHA-1:
65a875e26179ba7b6da84c6090d2c1e5b672b76d

SHA-256:
952ab7fa6b44b20ee91f3c109fd743ee36034e0b46c30a45fbf6f3f6e1260d51

Scanner detections:
16 / 68

Status:
Potentially unwanted

Explanation:
Part of the MyWebSearch/Mindspark/Ask web browser extension and toolbar.

Analysis date:
4/16/2024 5:31:23 PM UTC  (today)

Scan engine
Detection
Engine version

Agnitum Outpost
PUA.Toolbar.MyWebSearch
7.1.1

AhnLab V3 Security
Adware/Win32.MyWebSearch
2014.10.19

AVG
Skodna.Generic
2015.0.3312

Baidu Antivirus
Adware.Win32.MyWebSearch
4.0.3.141024

Clam AntiVirus
Win.Adware.Downware-476
0.98/21411

Comodo Security
UnclassifiedMalware
19840

Dr.Web
Tool.InstallToolbar.5
9.0.1.0297

ESET NOD32
Win32/Toolbar.MyWebSearch
8.10584

Fortinet FortiGate
Riskware/MyWebSearch
10/24/2014

F-Prot
W32/A-301cf6c3
v6.4.7.1.166

Kaspersky
not-a-virus:WebToolbar.Win32.MyWebSearch
14.0.0.3055

Qihoo 360 Security
Win32/Virus.WebToolbar.6a1
1.0.0.1015

Reason Heuristics
PUP.Installer.MindsparkInteractiveNetwork.I
14.10.24.0

Rising Antivirus
PE:Trojan.Win32.Generic.12C05EF8!314597112
23.00.65.141022

VIPRE Antivirus
34044

Zillya! Antivirus
2.0.0.1959

File size:
30 KB (30,768 bytes)

Product version:
2, 3, 0, 0

Copyright:
Copyright © 2005, 2006, 2007, 2008, 2009

Original file name:
NP2vEISb.DLL

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\Program Files\dailybibleguideei\installr\4.bin\np2veisb.dll

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
5/30/2010 7:00:00 PM

Valid to:
5/6/2012 6:59:59 PM

Subject:
CN=Mindspark Interactive Network, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Mindspark Interactive Network, L=White Plains, S=NewYork, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
41730EB0E6D92A476E16628A0DBEFB36

File PE Metadata
Compilation timestamp:
11/18/2011 4:34:16 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
192:ZDSyjLIsIBDDX62xTRCATUSxC+ebCf3EkQpkqs1IPMyowJL/h0S:Zm4LIsWXNFQATdx0bCf1qMYJLSS

Entry address:
0x10C2

Entry point:
55, 8B, EC, 83, 7D, 0C, 01, 56, 8B, 75, 08, 75, 0B, 89, 35, 0C, 31, 00, 10, E8, 20, 00, 00, 00, FF, 75, 10, FF, 75, 0C, 56, E8, 1F, 06, 00, 00, 83, 7D, 0C, 00, 8B, F0, 75, 05, E8, 3E, 00, 00, 00, 8B, C6, 5E, 5D, C2, 0C, 00, 68, E8, 30, 00, 10, FF, 15, 60, 20, 00, 10, 68, 14, 30, 00, 10, 68, 00, 30, 00, 10, E8, 03, 00, 00, 00, 59, 59, C3, 56, 8B, 74, 24, 08, 3B, 74, 24, 0C, 73, 0D, 8B, 06, 85, C0, 74, 02, FF, D0, 83, C6, 04, EB, ED, 5E, C3, A1, 08, 31, 00, 10, 85, C0, 74, 2F, 8B, 0D, 04, 31, 00, 10, 56, 8D...
 
[+]

Entropy:
3.2946

Developed / compiled with:
Microsoft Visual C++

Code size:
4 KB (4,096 bytes)

Remove NP2vEISb.DLL - Powered by Reason Core Security