searchresultstb.dll

DTX Toolbar

IAC Search and Media

This is a component of the Ask.com toolbar, a browser extension that will modify the default web browser's search provider, home page and various other settings. The module searchresultstb.dll, “DTX kernel Module” by IAC Search and Media has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
IAC Search and Media  (signed and verified)

Product:
DTX Toolbar

Description:
DTX kernel Module

Version:
5, 0, 8, 275

MD5:
b640626ba61e1d4028f6840bd246fec7

SHA-1:
4b31f5594e0e2f02a71be6cbef82587705aa0179

SHA-256:
52f97e1ff21e0feed69d4fc32873b95e43fb4b9486308ae650236e8c3abfbbd8

Scanner detections:
1 / 68

Status:
Potentially unwanted

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
4/26/2024 3:54:34 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Ask (M)
16.12.31.14

File size:
536.4 KB (549,304 bytes)

Product version:
5, 0, 8, 275

Copyright:
Copyright 2014 IAC Search and Media

Original file name:
dtBand.dll

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\Program Files\movies toolbar\datamngr\srtool~1\ie\searchresultstb.dll

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
1/23/2014 3:30:00 AM

Valid to:
10/21/2015 3:29:59 AM

Subject:
CN=IAC Search and Media, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=IAC Search and Media, L=Oakland, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
5367F5135FCC8B151C3E3EE4BEFD1DFB

File PE Metadata
Compilation timestamp:
3/20/2014 10:26:57 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

Entry address:
0x44FF9

Entry point:
8B, FF, 55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, E0, C8, 00, 00, FF, 75, 08, 8B, 4D, 10, 8B, 55, 0C, E8, EC, FE, FF, FF, 59, 5D, C2, 0C, 00, 6A, 0C, 68, 98, 58, 07, 10, E8, C4, BA, FF, FF, 6A, 0E, E8, 60, 23, 00, 00, 59, 83, 65, FC, 00, 8B, 75, 08, 8B, 4E, 04, 85, C9, 74, 2F, A1, 68, D4, 07, 10, BA, 64, D4, 07, 10, 89, 45, E4, 85, C0, 74, 11, 39, 08, 75, 2C, 8B, 48, 04, 89, 4A, 04, 50, E8, 08, B7, FF, FF, 59, FF, 76, 04, E8, FF, B6, FF, FF, 59, 83, 66, 04, 00, C7, 45, FC, FE, FF, FF, FF, E8, 0A, 00, 00, 00...
 
[+]

Entropy:
6.5790

Code size:
381 KB (390,144 bytes)

Remove searchresultstb.dll - Powered by Reason Core Security