Smartbar.Infrastructure.Plugins.InternetExplorerLocalPlugin.dll

InternetExplorerLocalPlugin

Linkury

This is part of the Linkury monetization software, a web browser toolbar used to 'hijack' a user's search in order to collect revenues. The Linkury SmartBar is a a potentially unwanted toolbar and Windows Gadget that is advertising supported. The module Smartbar.Infrastructure.Plugins.InternetExplorerLocalPlugin.dll by Linkury has been detected as adware by 18 anti-malware scanners.
Publisher:
Linkury  (signed and verified)

Product:
InternetExplorerLocalPlugin

Version:
1.2.0.0

MD5:
05eff63a8fcce023c52a2a1647a1493b

SHA-1:
ab72fedd5537ea0f4a1d3d91b43547a1107e0b2c

SHA-256:
1b9f13cad5b88422eb70e4a35c1484f5afb0cfb78a76c7e78340c51ce22a13b3

Scanner detections:
18 / 68

Status:
Adware

Analysis date:
4/25/2024 4:49:05 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Adware.Linkury.B
365

Avira AntiVirus
TR/Trash.Gen
7.11.30.172

AVG
Linkury
2017.0.2843

Bitdefender
Adware.Linkury.B
1.0.20.175

Bkav FE
W32.HfsAdware
1.3.0.6379

Dr.Web
Adware.Linkury.24
9.0.1.035

Emsisoft Anti-Malware
Adware.Linkury
8.16.02.04.11

ESET NOD32
MSIL/Toolbar.Linkury.I potentially unwanted application
10.7.0.302.0

F-Prot
W32/S-77549b0c
v6.4.7.1.166

G Data
Adware.Linkury
16.2.24

MicroWorld eScan
Adware.Linkury.B
17.0.0.105

Norman
Adware.Linkury.B
11.20160204

nProtect
Adware.Linkury.B
14.08.06.01

Panda Antivirus
PUP/LinkUry
16.02.04.11

Reason Heuristics
PUP.Linkury (M)
16.2.4.23

SUPERAntiSpyware
Trojan.Agent/Gen-Nullo[Short]
9343

Trend Micro House Call
Suspicious_GEN.F47V0620
7.2.35

VIPRE Antivirus
Adware.Linkury
30704

File size:
50.8 KB (52,024 bytes)

Product version:
1.2.0.0

Original file name:
Smartbar.Infrastructure.Plugins.InternetExplorerLocalPlugin.dll

File type:
Dynamic link library (Win32 DLL)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\linkury\application\smartbar.infrastructure.plugins.internetexplorerlocalplugin.dll

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
4/13/2011 9:00:00 PM

Valid to:
5/11/2012 8:59:59 PM

Subject:
CN=Linkury, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Linkury, L=Ramat Gan, S=Israel, C=IL

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
419F551AE006F0B2E53B5248C56F74C1

File PE Metadata
Compilation timestamp:
11/15/2011 12:52:26 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
1536:Ps1Sm+h4IqKjRIBpF1TI3tJsWo8lD9QI48p6Km:Psk7h4IqKjRIHu3hQIsT

Entry address:
0xCA4E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
43 KB (44,032 bytes)