Smartbar.Common.dll

Smartbar.Common

Veristaff. Com Ltd

This is part of the Linkury/SnapDo monetization software, a web browser toolbar used to hijack a user's search in order to collect revenues. The SmartBar is a a potentially unwanted toolbar and Windows Gadget that is advertising supported (adware). The module Smartbar.Common.dll by Veristaff. Com has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat. This file is typically installed with the program LPT System Updater Service by Linkury Ltd. which is a potentially unwanted software program.
Publisher:
Veristaff. Com Ltd  (signed and verified)

Product:
Smartbar.Common

Version:
1.0.0.0

MD5:
6058c9de003e59e4506518d33ca1f95a

SHA-1:
1e48b5340b2eb2b43a8120eee6b26e963ace76ce

SHA-256:
77e63eb6ce13f8996766c6e34c1b6aff508bcf94dc817efdc9e6a4830b1f4185

Scanner detections:
1 / 68

Status:
Adware

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
1/24/2025 12:18:43 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Resoft.Veristaf (M)
16.5.14.0

File size:
17.1 KB (17,528 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © 2013

Original file name:
Smartbar.Common.dll

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\Program Files\lpt\smartbar.common.dll

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
7/14/2014 4:37:25 PM

Valid to:
7/15/2015 4:37:25 PM

Subject:
CN=Veristaff. Com Ltd, O=Veristaff. Com Ltd, L=Herzliya, S=Herzliya, C=IL

Issuer:
CN=GlobalSign CodeSigning CA - SHA256 - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121327C47596D5E76D675A39A539249C1B5

File PE Metadata
Compilation timestamp:
11/11/2013 10:08:46 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
192:RFuyNy7AlCSP8o3wxX8ha8gEo3lqGD0IyZZ6H6LCnLrb0hSbe+PjP3kxlq3I8hvv:3uEl28hOEyD0Iyf6aCnLr3PL0xI

Entry address:
0x451E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.1595

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
9.5 KB (9,728 bytes)

The file Smartbar.Common.dll has been discovered within the following program.

LPT System Updater Service  by Linkury Ltd.
This is a potentially unwanted web browser extension this is distributed and installed by PINWID LTD, ReSoft LTD., MY POP SHOP LTD and Linkury. It will display advertisements including banners and popups in the user's web browser.
81% remove it
 
Powered by Should I Remove It?

Remove Smartbar.Common.dll - Powered by Reason Core Security