simplysearchbarx86.dll

Simply Search Bar

Bonjoy Software

The module simplysearchbarx86.dll by Bonjoy Software has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
OpenCandy Inc.  (signed by Bonjoy Software)

Product:
Simply Search Bar

Version:
1.0.1.17

MD5:
93691d19a3c7f4a5b6f36dc81a751f3f

SHA-1:
b4c66b5a1003502ac55023f7b9477b1f389f066b

SHA-256:
75fbcddf3887d4b555db6992cfddf865b58cd5d0c415ee54a8057c476da166c4

Scanner detections:
1 / 68

Status:
Adware

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
12/23/2024 10:37:40 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP (M)
16.11.18.12

File size:
174.3 KB (178,448 bytes)

Product version:
1.0.1.17

Copyright:
(c) 2013 OpenCandy Inc. All rights reserved.

Original file name:
SimplySearchBar.dll

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\Program Files\simply search bar\simplysearchbarx86.dll

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
6/12/2012 3:00:00 AM

Valid to:
6/13/2015 2:59:59 AM

Subject:
CN=Bonjoy Software, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Bonjoy Software, L=San Diego, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
757970ED986FF5350A82A40B6B8F0E38

Registration
CLSID:
{835262AA-0A80-40FC-B7FE-1255123B4F35}

COM registered:
Yes

File PE Metadata
Compilation timestamp:
5/9/2013 10:16:55 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
3072:NYN/oBZgmvmlc5p+W0JcnxJf8hgT6xXkry2kkd8hUfQ:NYGBRTnxJUh0esuCf

Entry address:
0xBCEA

Entry point:
55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, 67, 6C, 00, 00, FF, 75, 10, FF, 75, 0C, FF, 75, 08, E8, 07, 00, 00, 00, 83, C4, 0C, 5D, C2, 0C, 00, 6A, 0C, 68, 30, 10, 02, 10, E8, B7, 01, 00, 00, 33, C0, 40, 8B, 75, 0C, 85, F6, 75, 0C, 39, 35, FC, 50, 02, 10, 0F, 84, E4, 00, 00, 00, 83, 65, FC, 00, 83, FE, 01, 74, 05, 83, FE, 02, 75, 35, 8B, 0D, 50, B1, 01, 10, 85, C9, 74, 0C, FF, 75, 10, 56, FF, 75, 08, FF, D1, 89, 45, E4, 85, C0, 0F, 84, B1, 00, 00, 00, FF, 75, 10, 56, FF, 75, 08, E8, 11, FE, FF, FF, 89, 45, E4...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
96.5 KB (98,816 bytes)

Remove simplysearchbarx86.dll - Powered by Reason Core Security