so.dll

Object Model

APN LLC

This is a component of the Ask.com toolbar, a browser extension that will modify the default web browser's search provider, home page and various other settings. The module so.dll by APN has been detected as a potentially unwanted program by 4 anti-malware scanners. This version of the file will bundle the Ask.com Toolbar, a potentially unwanted web browser extension.
Publisher:
APN LLC.  (signed by APN LLC)

Product:
Object Model

Version:
2.0.0.0

MD5:
d177e1101b8bdc74b4bd4f39ce259588

SHA-1:
e4687ae28eb6fe82d31ca48ffd025d86e6d428eb

SHA-256:
ce88844442d976c645891b11d2882eede05d44ef47add54e6bd6ea57a62706fc

Scanner detections:
4 / 68

Status:
Potentially unwanted

Analysis date:
4/26/2024 4:22:13 PM UTC  (today)

Scan engine
Detection
Engine version

AhnLab V3 Security
PUP/Win32.ToolbarCore
2013.10.26

Baidu Antivirus
PUA.Win32.AskToolbar
4.0.3.16211

ESET NOD32
Win32/Bundled.Toolbar.Ask (variant)
10.9439

Reason Heuristics
PUP.Ask.APN (M)
16.2.11.17

File size:
362.7 KB (371,400 bytes)

Product version:
2.0.0.25001

Copyright:
(c) APN LLC. All rights reserved.

Original file name:
ObjectModel.dll

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\Program Files\hp\hp laserjet p1000_p1500 series\Program Files\askpartnernetwork\toolbar\so.dll

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
4/16/2012 7:00:00 AM

Valid to:
4/9/2015 6:59:59 AM

Subject:
CN=APN LLC, OU=Distribution, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=APN LLC, L=Oakland, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
27EAB3DE0B03D88D5C4A2AE477B84DFA

File PE Metadata
Compilation timestamp:
7/30/2012 4:43:35 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
6144:TdXZPYyMo7siIJ7vxMpvIZKPkXn1TBlbGLiopkBl48XBvSnA:51YyMolIJ7vCpvI4PkX1TDYcBl48XBgA

Entry address:
0x27259

Entry point:
8B, FF, 55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, 09, 72, 00, 00, FF, 75, 08, 8B, 4D, 10, 8B, 55, 0C, E8, EC, FE, FF, FF, 59, 5D, C2, 0C, 00, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, B0, CE, 04, 10, 89, 0D, AC, CE, 04, 10, 89, 15, A8, CE, 04, 10, 89, 1D, A4, CE, 04, 10, 89, 35, A0, CE, 04, 10, 89, 3D, 9C, CE, 04, 10, 66, 8C, 15, C8, CE, 04, 10, 66, 8C, 0D, BC, CE, 04, 10, 66, 8C, 1D, 98, CE, 04, 10, 66, 8C, 05, 94, CE, 04, 10, 66, 8C, 25, 90, CE, 04, 10, 66, 8C, 2D, 8C, CE, 04, 10, 9C, 8F, 05, C0, CE...
 
[+]

Entropy:
6.5053

Code size:
208.5 KB (213,504 bytes)

Remove so.dll - Powered by Reason Core Security