Verify.dll

Mindspark Toolbar Platform for Internet Explorer

Mindspark Interactive Network

This library is part of the Mindspark toolbar which uses the Ask.com search property to install a web browser extension and modify the browser's search, home and new tab features in order to redirect web searches to the IAC property. The module Verify.dll, “Mindspark Toolbar Platform” by Mindspark Interactive Network has been detected as a potentially unwanted program by 27 anti-malware scanners. This particular feature is designed to hijack the browser in an attempt to prevent other resources from modify the browser's search and home pages.
Publisher:
Mindspark  (signed by Mindspark Interactive Network)

Product:
Mindspark Toolbar Platform for Internet Explorer

Description:
Mindspark Toolbar Platform

Version:
1.0.7.262

MD5:
d578ed6d85d1d31e30609a1034f2d1b7

SHA-1:
0b00f37e39857509296ee6c4953dc70efa5dd739

SHA-256:
6e23d2b66d2051088f97875581c64bbc1f6c3bc74c605b766aa0334d50571813

Scanner detections:
27 / 68

Status:
Potentially unwanted

Explanation:
Part of the MyWebSearch/Mindspark/Ask web browser extension and toolbar.

Analysis date:
4/18/2024 11:43:39 PM UTC  (a few moments ago)

Scan engine
Detection
Engine version

Agnitum Outpost
PUA.Toolbar.MyWebSearch
7.1.1

AhnLab V3 Security
PUP/Win32.MyWebSearch
2015.10.03

Avira AntiVirus
TR/Trash.Gen
7.11.30.172

avast!
Win32:Mindspark-A [PUP]
2014.9-151126

AVG
Toolbar.MyWebSearch
2016.0.2913

Baidu Antivirus
PUA.Win32.MyWebSearch
4.0.3.151126

Bkav FE
W32.HfsAdware
1.3.0.7383

Comodo Security
Application.Win32.MyWebSearch.R
23508

Dr.Web
9.0.1.0330

ESET NOD32
Win32/Toolbar.MyWebSearch.AU potentially unwanted
9.12496

Fortinet FortiGate
Riskware/MyWebSearch
11/26/2015

F-Prot
W32/Mywebsearch.K.gen
v6.4.7.1.166

G Data
Win32.Application.Agent.Z47MLP
15.11.25

IKARUS anti.virus
PUA.SearchProtect
t3scan.1.9.5.0

Kaspersky
not-a-virus:WebToolbar.Win32.MyWebSearch
14.0.0.1061

Malwarebytes
PUP.Optional.MindSpark
v2015.11.26.08

McAfee
Artemis!2F1B8F028C74
5600.6569

Qihoo 360 Security
Win32/Virus.WebToolbar.f1d
1.0.0.1015

Quick Heal
PUA.Webwatcher.OD9
11.15.14.00

Reason Heuristics
PUP.Mindspark.MindsparkInteractiveNetwork.Toolbar (M)
15.11.26.20

Rising Antivirus
PE:Malware.Generic/QRS!1.9E2D[F1]
23.00.65.151124

Sophos
Generic PUA HL (PUA)
4.98

SUPERAntiSpyware
PUP.MindSpark/Variant
9483

Vba32 AntiVirus
AdWare.MySearch
3.12.26.4

VIPRE Antivirus
44930

ViRobot
Trojan.Win32.S.Agent.69448.B[h]
2014.3.20.0

Zillya! Antivirus
2.0.0.2484

File size:
67.8 KB (69,456 bytes)

Product version:
2.5.15.30

Copyright:
Copyright © 2009-2015 Mindspark Interactive Network, Inc.

Original file name:
Verify.dll

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\Program Files\fromdoctopdf_65\bar\1.bin\verify.dll

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
4/19/2015 7:00:00 PM

Valid to:
6/18/2018 6:59:59 PM

Subject:
CN=Mindspark Interactive Network, O=Mindspark Interactive Network, L=Yonkers, S=New York, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
438D4291E43C2DFFEEAAAEE5B6C070B5

File PE Metadata
Compilation timestamp:
8/4/2015 12:13:42 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
768:jW+ctUF1bjBVxwBkah8YAwRT5Ok+hk/kkPn2nEDy3lFhR5VMJbw3HXJ61Q:jR2U/tkkebywkAM3lFhzVl3HJ

Entry address:
0x40BF

Entry point:
8B, FF, 55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, 0C, 26, 00, 00, FF, 75, 08, 8B, 4D, 10, 8B, 55, 0C, E8, EC, FE, FF, FF, 59, 5D, C2, 0C, 00, 8B, FF, 55, 8B, EC, 83, 7D, 08, 00, 74, 2D, FF, 75, 08, 6A, 00, FF, 35, 80, FA, 00, 10, FF, 15, 80, A0, 00, 10, 85, C0, 75, 18, 56, E8, B0, 26, 00, 00, 8B, F0, FF, 15, 64, A0, 00, 10, 50, E8, 60, 26, 00, 00, 59, 89, 06, 5E, 5D, C3, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, B8, F0, 00, 10, 89, 0D, B4, F0, 00, 10, 89, 15, B0, F0, 00, 10, 89, 1D, AC, F0, 00, 10, 89...
 
[+]

Entropy:
6.2931

Code size:
35.5 KB (36,352 bytes)

Remove Verify.dll - Powered by Reason Core Security