tmp0000000288c6a7396bdf5727

MySearchDial Toolbar

Montiera Technologies LTD

It is part of the Montiera web browser toolbar monetization platform which injects browser search and advertising within the user's web browser. The file tmp0000000288c6a7396bdf5727 by Montiera Technologies has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
MySearchDial  (signed by Montiera Technologies LTD)

Product:
MySearchDial Toolbar

Version:
1.8.29.0

MD5:
827256722d267f6bc2925c9017fb8313

SHA-1:
882cde75356578754cfdc8146887c10ae80f50f1

SHA-256:
1399adc630eb66152b3519e5ffc487978904883cd23e684053be820d13d9c551

Scanner detections:
1 / 68

Status:
Potentially unwanted

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
11/5/2024 2:39:34 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Montiera (M)
17.2.16.7

File size:
512 KB (524,288 bytes)

Product version:
1.8.29.0

Copyright:
(c) MySearchDial All rights reserved.

Language:
English (United States)

Common path:
C:\windows\temp\tmp0000000288c6a7396bdf5727

Digital Signature
Authority:
COMODO CA Limited

Valid from:
6/25/2013 9:00:00 PM

Valid to:
6/26/2014 8:59:59 PM

Subject:
CN=Montiera Technologies LTD, O=Montiera Technologies LTD, STREET="18, Amammi st", L=Even Yehuda, S=Hasharon, PostalCode=40500, C=IL

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
3E6A02DA5FCBA17D267CD5B0DBC10A17

File PE Metadata
Compilation timestamp:
12/25/2013 10:48:08 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

Entry address:
0x1AF9E

Entry point:
8B, FF, 55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, 5E, 7B, 00, 00, FF, 75, 08, 8B, 4D, 10, 8B, 55, 0C, E8, EC, FE, FF, FF, 59, 5D, C2, 0C, 00, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 55, 8B, EC, 57, 56, 8B, 75, 0C, 8B, 4D, 10, 8B, 7D, 08, 8B, C1, 8B, D1, 03, C6, 3B, FE, 76, 08, 3B, F8, 0F, 82, A0, 01, 00, 00, 81, F9, 80, 00, 00, 00, 72, 1C, 83, 3D, 00, E8, 03, 10, 00, 74, 13, 57, 56, 83, E7, 0F, 83, E6, 0F, 3B, FE, 5E, 5F, 75, 05, E9, 72, 7D, 00, 00, F7, C7, 03, 00, 00, 00, 75, 14, C1, E9...
 
[+]

Code size:
180.5 KB (184,832 bytes)

Remove tmp0000000288c6a7396bdf5727 - Powered by Reason Core Security