CShared.dll

Crawler Shared Library

Crawler, LLC

The module CShared.dll by Crawler has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. Additionally, the file is typically installed by a number of programs including Crawler 3D Aquarium Screensaver by Crawler, LLC and Crawler Smileys by Crawler, LLC.
Publisher:
Crawler.com  (signed by Crawler, LLC)

Product:
Crawler Shared Library

Description:
Crawler Toolbar

Version:
5.0.0.159

MD5:
445e9e04450dfe075e0f781c97256bb8

SHA-1:
8f3b6968f1c74735b3a91895dba0a747c9153b0a

SHA-256:
308c85bb1ea74c87374a77d881bde49278a9791b275fad2c3ad57fe23e3bb512

Scanner detections:
1 / 68

Status:
Potentially unwanted

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
11/5/2024 2:44:46 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Crawler (M)
17.3.13.16

File size:
811.5 KB (830,928 bytes)

Product version:
5.0.0.159

Copyright:
© Crawler.com

Original file name:
CShared.dll

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\Program Files\crawler\shared\cshared.dll

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
11/26/2008 1:00:00 AM

Valid to:
12/13/2010 12:59:59 AM

Subject:
CN="Crawler, LLC", OU=IT, OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Crawler, LLC", L=Boca Raton, S=Florida, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
2BB61CFF3A3CCE8EA9D1B965D643FEC8

Registration
CLSIDs:
{183643C8-EE67-4574-9A38-927852E34163}, {54ECA872-DB2A-4C6B-BBB2-F3777C6786CC}, {8736C681-37A0-40C6-A0F0-4C083409151C}, {DB35C569-5624-4CFC-8043-E5139F55A073}, {EFB46ED3-8FD8-4051-8FD6-DD9CE7E63BEF}

ProgIDs:
CShared.TB4Server, CShared.TB4Client, CShared.TB4Script, CShared.TB4Server2

COM registered:
Yes

File PE Metadata
Compilation timestamp:
3/10/2010 1:22:05 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

Entry address:
0x8F224

Entry point:
55, 8B, EC, 83, C4, C4, B8, 70, D8, 48, 00, E8, A4, 86, F7, FF, E8, 3F, 5F, F7, FF, 8D, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
568.5 KB (582,144 bytes)

Safe for Initializing Control
CLSID:
{8736C681-37A0-40C6-A0F0-4C083409151C}


The file CShared.dll has been discovered within the following programs.

During setup the installer tries to get the user to install the Crawler Toolbar, a potentially unwanted web browser toolbar.
www.Crawler.com
55% remove it
Crawler Smileys  by Crawler, LLC
Publisher's description - “Enjoy free animated smileys and emoticons in your IM messages and emails. Choose from over 2500 animated free emoticons and smileys. Spice up your messages and posts in blogs and forums with free Crawler Smiley.”
www.crawler.com
65% remove it
 
Powered by Should I Remove It?

Remove CShared.dll - Powered by Reason Core Security