default-search.dll

AZTEC MEDIA INC.

The module default-search.dll by AZTEC MEDIA INC has been detected as adware by 18 anti-malware scanners. This file is typically installed with the program Assets Manager by Aztec Media inc. which is a potentially unwanted software program.
Publisher:
AZTEC MEDIA INC.  (signed and verified)

MD5:
cf864b9e3de271e3f3e812c46d118001

SHA-1:
aa4d12be12617dfcec8011752b2c822eef60967f

SHA-256:
6b100e8e7de7104d2e9bd7124a0ab16d0b25ef072fff1dece008d2a11ea58674

Scanner detections:
18 / 68

Status:
Adware

Analysis date:
12/24/2024 6:58:56 PM UTC  (today)

Scan engine
Detection
Engine version

AhnLab V3 Security
PUP/Win32.SearchSuite
2015.06.26

AVG
AdLoad
2016.0.2987

Baidu Antivirus
Adware.Win32.SearchSuite
4.0.3.15913

Bkav FE
W32.HfsAdware
1.3.0.6979

Comodo Security
UnclassifiedMalware
22580

Dr.Web
Adware.Bandoo.288
9.0.1.0256

ESET NOD32
Win32/Toolbar.SearchSuite.AB potentially unwanted (variant)
9.11846

Fortinet FortiGate
Riskware/SearchSuite
9/13/2015

G Data
Win32.Application.Searchsuite
15.9.25

K7 AntiVirus
Adware
13.205.16364

Malwarebytes
PUP.Optional.AztecMedia.A
v2015.09.13.11

McAfee
SearchSuite
5600.6643

NANO AntiVirus
Riskware.Win32.Bandoo.dshhpk
0.30.24.2266

Panda Antivirus
Trj/Genetic.gen
15.09.13.11

Quick Heal
PUA.Aztecmedia.Gen
9.15.14.00

Reason Heuristics
PUP.Bandoo.AZTECMEDIA (M)
15.9.13.23

Trend Micro
TROJ_GEN.R0EDC0EFC15
10.465.13

VIPRE Antivirus
SearchSuite
41458

File size:
1.7 MB (1,792,736 bytes)

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\Program Files\assets manager\smdmf\default-search.dll

Digital Signature
Authority:
Thawte, Inc.

Valid from:
4/9/2015 3:00:00 AM

Valid to:
5/19/2016 2:59:59 AM

Subject:
CN=AZTEC MEDIA INC., OU=Development, O=AZTEC MEDIA INC., L=Panama City, S=Panama, C=PA

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
4DCD479A23FD2DC0994F996E411C47C1

File PE Metadata
Compilation timestamp:
5/12/2015 11:31:21 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
49152:5njMp466wZGrDqhznEK4AZVYMR+r3RqUtGmZe4DXAsc1Er:5njMVGrGhYK4ALY9Dx

Entry address:
0xE5B2D

Entry point:
8B, FF, 55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, 8E, DF, 00, 00, FF, 75, 08, 8B, 4D, 10, 8B, 55, 0C, E8, EC, FE, FF, FF, 59, 5D, C2, 0C, 00, 8B, FF, 55, 8B, EC, B8, FF, FF, 00, 00, 83, EC, 14, 66, 39, 45, 08, 0F, 84, 87, 00, 00, 00, 53, 56, FF, 75, 0C, 8D, 4D, EC, E8, 6B, C8, FF, FF, 8B, 75, EC, 8B, 4E, 14, 33, DB, 3B, CB, 75, 15, 8B, 45, 08, 8D, 48, BF, 66, 83, F9, 19, 77, 04, 66, 83, C0, 20, 0F, B7, C0, EB, 4B, B8, 00, 01, 00, 00, 6A, 01, 66, 39, 45, 08, 73, 1E, FF, 75, 08, E8, AF, BB, 00, 00, 59, 85, C0...
 
[+]

Code size:
1.1 MB (1,190,912 bytes)

The file default-search.dll has been discovered within the following program.

Assets Manager  by Aztec Media inc.
Asset Manager is an adware web browser add-on that injects advertising in the user's browser as well as hijacks various browser settings such as the home page, search provider and new tab page. Its is protected and difficult to remove.
80% remove it
 
Powered by Should I Remove It?

Remove default-search.dll - Powered by Reason Core Security