SmartbarVersionsHelper.exe

SmartbarVersionsHelper

ReSoft LTD.

The application SmartbarVersionsHelper.exe by ReSoft has been detected as adware by 24 anti-malware scanners.
Publisher:
ReSoft LTD.  (signed and verified)

Product:
SmartbarVersionsHelper

Version:
1.0.0.0

MD5:
3ffc3cb0cf65681b0e47471778cfab82

SHA-1:
338293947a80366dd5cae7a76ff3068c6d10fe23

SHA-256:
dcaf27b1612ddfb5db2ee004809c97b36ca0fe4bad6cf9b4b8ae47b9fa67ca45

Scanner detections:
24 / 68

Status:
Adware

Analysis date:
4/25/2024 11:24:06 PM UTC  (a few moments ago)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Adware.Heur.am1@g9b@9Mc
355

AhnLab V3 Security
PUP/Win32.SmartBar
2014.09.12

Avira AntiVirus
TR/Dropper.MSIL.Gen
7.11.140.10

AVG
Adware AdInject.Resoft
2017.0.2833

Baidu Antivirus
Adware.Win32.Linkury
4.0.3.16215

Bitdefender
Gen:Adware.Heur.bm1@gnQhqZ
1.0.20.230

Bkav FE
W32.HfsAdware
1.3.0.6379

Comodo Security
ApplicUnwnt
18061

Dr.Web
Adware.Linkury.38
9.0.1.046

Emsisoft Anti-Malware
Gen:Adware.Heur.am1@g9b@9Mc
8.16.02.15.09

ESET NOD32
MSIL/Toolbar.Linkury.E potentially unwanted application
10.7.0.302.0

F-Secure
Gen:Adware.Heur.am1@g9b@9Mc
11.2016-15-02_2

G Data
Gen:Adware.Heur.bm1@gnQhqZ
16.2.24

IKARUS anti.virus
Trojan-Dropper.MSIL
t3scan.2.2.29

Kaspersky
not-a-virus:WebToolbar.MSIL.SmartBar
14.0.0.658

Malwarebytes
PUP.Optional.SmartBar.A
v2016.02.15.09

McAfee
Artemis!DA8CD22E1FFE
5600.6489

MicroWorld eScan
Gen:Adware.Heur.bm1@gnQhqZ
17.0.0.138

NANO AntiVirus
Trojan.Win32.Toolbar.djikwp
0.30.0.65070

Norman
Gen:Adware.Heur.am1@g9b@9Mc
11.20160215

Reason Heuristics
PUP.Resoft (M)
16.2.15.9

SUPERAntiSpyware
Trojan.Agent/Gen-Nullo[Short]
9322

Trend Micro House Call
TROJ_GEN.F47V0404
7.2.46

VIPRE Antivirus
Adware.Linkury
28106

File size:
14.5 KB (14,880 bytes)

Product version:
1.0.0.0

Original file name:
SmartbarVersionsHelper.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\smartbar\application\smartbarversionshelper.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
8/1/2013 2:00:00 AM

Valid to:
8/2/2015 1:59:59 AM

Subject:
CN=ReSoft LTD., O=ReSoft LTD., STREET=4th Hanevi'im, L=Tel Aviv, S=Israel, PostalCode=64356, C=IL

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
51FA31336CEC649121E9A908289950D2

File PE Metadata
Compilation timestamp:
8/29/2013 11:55:50 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
384:1kfNUGDUyoQTQpddgtzJIFrnhCxYPLg8Jb6:SUGXtzwrMER6

Entry address:
0x343E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
5.5 KB (5,632 bytes)

Remove SmartbarVersionsHelper.exe - Powered by Reason Core Security