IdcSrv.dll

IdcSrv

APN LLC

This installer is part of the Ask.com (APN) network which will install the Ask.com branded toolbar or browser extension which will take control of the web browser's search functions. The module IdcSrv.dll by APN has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. The program is a setup application that uses the APN Stub installer.
Publisher:
APN  (signed by APN LLC)

Product:
IdcSrv

Description:
IDC Server

Version:
31.19.1.2516

MD5:
d9bdb9ed667c22ff0124f84f6a197dce

SHA-1:
79aa656e1ec2528011895539b37a6195ead96099

SHA-256:
b87e4edc6be442d2d701ffe02d39799c876bbe9f8a14c51baeb2fed6b182cc5d

Scanner detections:
1 / 68

Status:
Potentially unwanted

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
12/23/2024 11:28:32 PM UTC  (a few moments ago)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Ask (M)
17.3.9.1

File size:
449.9 KB (460,680 bytes)

Product version:
31.19.1.2516

Copyright:
(c) APN LLC. All rights reserved.

Original file name:
IdcSrv.dll

File type:
Dynamic link library (Win32 DLL)

Installer:
APN Stub

Language:
English (United States d'America)

Common path:
C:\users\{user}\appdata\local\askpartnernetwork\toolbar\updater\idc\idcsrv.dll

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
2/26/2015 1:00:00 AM

Valid to:
5/28/2018 1:59:59 AM

Subject:
CN=APN LLC, O=APN LLC, L=Oakland, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
74BAC30967391B08242D79F7F79449E2

File PE Metadata
Compilation timestamp:
4/21/2015 12:25:35 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
12.0

Entry address:
0x46C36

Entry point:
55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, 59, 84, 00, 00, FF, 75, 10, FF, 75, 0C, FF, 75, 08, E8, 07, 00, 00, 00, 83, C4, 0C, 5D, C2, 0C, 00, 6A, 0C, 68, A8, 84, 06, 10, E8, FB, 07, 00, 00, 33, C0, 40, 8B, 75, 0C, 85, F6, 75, 0C, 39, 35, 20, DA, 06, 10, 0F, 84, E4, 00, 00, 00, 83, 65, FC, 00, 83, FE, 01, 74, 05, 83, FE, 02, 75, 35, 8B, 0D, D8, B3, 05, 10, 85, C9, 74, 0C, FF, 75, 10, 56, FF, 75, 08, FF, D1, 89, 45, E4, 85, C0, 0F, 84, B1, 00, 00, 00, FF, 75, 10, 56, FF, 75, 08, E8, 11, FE, FF, FF, 89, 45, E4...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
357 KB (365,568 bytes)

Remove IdcSrv.dll - Powered by Reason Core Security