softonic.dll

Softonic Toolbar

Montera Technologeis LTD

This is part of the Montera web browser toolbar and extension that will modify the browser's default search provider, DNS, and home page functions. The module softonic.dll by Montera Technologeis has been detected as adware by 10 anti-malware scanners. It is installed within the context of Internet Explore as a BHO (Browser Helper Object) under the name ‘Softonic Helper Object’.
Publisher:
Softonic.com  (signed by Montera Technologeis LTD)

Product:
Softonic Toolbar

Version:
1.8.20.0

MD5:
a563ea80b62d9d3664dad0990e4ed51a

SHA-1:
54cbeecf2f4ab81622d6708e8a849e3663853f4d

SHA-256:
ef347fb1a770e6467ba4b3cb3478e35a721e81f60b88c9222ded4c1dbe79bf13

Scanner detections:
10 / 68

Status:
Adware

Analysis date:
11/15/2024 12:52:19 AM UTC  (today)

Scan engine
Detection
Engine version

AVG
MalSign.Skodna
2015.0.3337

Boost by Reason
Optional.BHO.Montera.I
188838

Comodo Security
ApplicUnwnt
17069

Dr.Web
Adware.Privitize.1
9.0.1.0338

ESET NOD32
Win32/Toolbar.Escort (variant)
7.9122

McAfee
Artemis!8A4827E91E29
5600.6993

Reason Heuristics
PUP.BHO.Montera.I
14.8.7.19

Trend Micro House Call
TROJ_GEN.F47V0809
7.2.338

Vba32 AntiVirus
AdWare.DelBar
3.12.24.3

VIPRE Antivirus
Montiera
22186

File size:
294.4 KB (301,464 bytes)

Product version:
1.8.20.0

Copyright:
(c) Softonic.com. All rights reserved.

File type:
Dynamic link library (Win32 DLL)

Language:
Hebräisch (Israel)

Common path:
C:\Program Files\softonic\softonic\1.8.21.14\bh\softonic.dll

Digital Signature
Authority:
COMODO CA Limited

Valid from:
6/4/2013 2:00:00 AM

Valid to:
6/5/2014 1:59:59 AM

Subject:
CN=Montera Technologeis LTD, O=Montera Technologeis LTD, STREET="18, Amammi st", L=Even Yehuda, S=Hasharon, PostalCode=40500, C=IL

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
263C38E0402CCF0F902FDFFA54E20AD6

File PE Metadata
Compilation timestamp:
6/11/2013 4:28:11 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
6144:UsxaILoTyPviq7pN+RL0h+g4Su84Jzbm/jNj7zo:DaIkTyPviqX+Q+g4Su84JWR/o

Entry address:
0x1E800

Entry point:
8B, FF, 55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, AC, 7B, 00, 00, FF, 75, 08, 8B, 4D, 10, 8B, 55, 0C, E8, EC, FE, FF, FF, 59, 5D, C2, 0C, 00, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 55, 8B, EC, 57, 56, 8B, 75, 0C, 8B, 4D, 10, 8B, 7D, 08, 8B, C1, 8B, D1, 03, C6, 3B, FE, 76, 08, 3B, F8, 0F, 82, A0, 01, 00, 00, 81, F9, 80, 00, 00, 00, 72, 1C, 83, 3D, 80, 2E, 04, 10, 00, 74, 13, 57, 56, 83, E7, 0F, 83, E6, 0F, 3B, FE, 5E, 5F, 75, 05, E9, E3, 7B, 00, 00, F7, C7, 03, 00, 00, 00, 75, 14, C1, E9, 02, 83...
 
[+]

Code size:
195.5 KB (200,192 bytes)

Internet Explorer BHO
Display name:
Softonic Helper Object

CLSID:
{E87806B5-E908-45FD-AF5E-957D83E58E68}


Remove softonic.dll - Powered by Reason Core Security