SmartbarInternetExplorerBHO.dll

Muvic

PINWID LTD

The module SmartbarInternetExplorerBHO.dll by PINWID has been detected as adware by 3 anti-malware scanners. It is installed within the context of Internet Explore as a BHO (Browser Helper Object) under the name ‘MuvicEngine’. Additionally, the file is typically installed by a number of programs including Muvic Smartbar by Pinwid Ltd. and Snap.Do Engine by ReSoft Ltd., both potentially unwanted software.
Publisher:
PINWID LTD  (signed and verified)

Product:
Muvic

Version:
1.0.0.0

MD5:
30e5d818157870e635c5ad9555b7717c

SHA-1:
4faf05d77171c0d04104da9110ec60594de5f753

SHA-256:
2c9b9b9b5d6389dfda540a76155d9c2ca3546aa423db4d7aa52dab4c2e220f86

Scanner detections:
3 / 68

Status:
Adware

Analysis date:
4/19/2024 12:24:03 PM UTC  (today)

Scan engine
Detection
Engine version

AVG
Pindi
2015.0.3415

ESET NOD32
MSIL/Toolbar.Linkury.E potentially unwanted application
7.0.302.0

Reason Heuristics
PUP.PINWID.BB
14.7.11.21

File size:
138.5 KB (141,856 bytes)

Product version:
1.0.0.0

Original file name:
SmartbarInternetExplorerBHO.dll

File type:
Dynamic link library (Win32 DLL)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\smartbar\application\smartbarinternetexplorerbho.dll

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
2/4/2014 4:00:00 PM

Valid to:
2/5/2015 3:59:59 PM

Subject:
CN=PINWID LTD, O=PINWID LTD, STREET=14 Shenkar Arie, L=HERZLIYA, S=NA, PostalCode=46733, C=IL

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00D9AC9FC9A1B1E8FD63013E3CCE7B0578

File PE Metadata
Compilation timestamp:
6/15/2014 7:24:58 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
1536:OP+fweC+kpTX4TuQZNYRKUfAjtledhTmtaFyQHGvCXsedOGRc9izzr4yff8teLvr:Oh9Ub6GvCi09s2o2skAiersH0E71

Entry address:
0x2256E

Entry point:
FF, 25, 00, 20, 00, 10, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
5.9463

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
129.5 KB (132,608 bytes)

Internet Explorer BHO
CLSID:
{31ad400d-1b06-4e33-a59a-90c2c140cba0}

CLSID name:
MuvicEngine


The file SmartbarInternetExplorerBHO.dll has been discovered within the following programs.

Muvic Smartbar  by Pinwid Ltd.
This adware injects advertising in the user's Internet browser by running as an extension and/or add-on. Ads are delivered in the form of banners and text-links (roll-overs) as well as some popup ads.
www.browse-search.com/?
80% remove it
Muvic Smartbar Engine  by Pinwid Ltd.
This adware program injects advertisements with its affiliate ad providers in order to serve a number of ad types including banner, inline text links and popups.
82% remove it
Snap.Do  by ReSoft Ltd.
Snap.Do is a web browser addin/toolbar (depending on the browser it is installed within) that plugs into all the major web browsers including Internet Explorer, Chrome and Firefox. Snap.
snap.do
85% remove it
Snap.Do Engine  by ReSoft Ltd.
Snap.
83% remove it
 
Powered by Should I Remove It?

Remove SmartbarInternetExplorerBHO.dll - Powered by Reason Core Security