File details
File name: mwsbar.dll
Name: My Web Search Bar for Internet Explorer, FireFox, email clients, and messenger clients
Description: My Web Search
Version: 2, 3, 98, 9
Size: 813.51 KB
Original file name: mwsBar.dll
Digital certificate
Certificate authority:
VeriSign
Expiration date: 5/6/2015
Resource utilization |  |
Total CPU: 0.0004537477%
User CPU: 0.0004537477%
CPU Cycle count /sec:
12,105
Module memory size:
816 KB
Internet Explorer BHO details
CLSID: {07B18EA1-A523-4961-B6BB-170DE4475CCA}
Startup files (all users) run details
Name: My Web Search Bar
Command: rundll32 C:\Program Files1\MYWEBS~1\bar\1.bin\MWSBAR.DLL,S
Internet Explorer toolbar details
CLSID: {07B18EA9-A523-4961-B6BB-170DE4475CCA}
IE web browser details
CLSID: {07B18EA9-A523-4961-B6BB-170DE4475CCA}
Startup files (all users) run once details
Name: MyWebSearch bar Uninstall
Command: rundll32 C:\Program Files2\UNINST~1.DLL,O -2
Image hashes
MD5: 2477b5127eae0ec82a7cc8622a28e850
SHA-1: 9043abe648d97e1e9d68498c22e6f733e520cefd
SHA-256: 36a00da79d27f38453c604e842cb9e1542dfc07d0f04f43df4d895b3da81a31f
PE image details
Subsystem: Windows GUI
File packed: No
Import Table
advapi32.dll

RegEnumValueA
OpenServiceA
QueryServiceStatus
CloseServiceHandle
RegFlushKey
RegQueryValueExA
RegDeleteKeyA
RegCreateKeyExA
RegDeleteValueA
RegCloseKey
RegOpenKeyExA
RegEnumKeyExA
RegSetValueExA
RegQueryInfoKeyA
OpenSCManagerA
CreateProcessAsUserA
SetTokenInformation
GetLengthSid
DuplicateTokenEx
OpenProcessToken
RegEnumKeyA
crypt32.dll

CertFindCertificateInStore
CertFreeCertificateContext
CertCloseStore
CryptMsgClose
CryptMsgGetParam
CryptDecodeObject
gdi32.dll

GetObjectA
SetTextColor
CreateRectRgnIndirect
CreateRectRgn
GetDeviceCaps
SelectObject
SetMapMode
CreateFontIndirectA
CreateCompatibleBitmap
CreatePalette
BitBlt
GetDIBits
CreateDIBSection
LineTo
MoveToEx
CreatePen
TextOutA
GetTextExtentExPointA
SetBkMode
CreateSolidBrush
GetBitmapBits
RectInRegion
OffsetRgn
SelectClipRgn
DeleteDC
SetPixel
GetBkColor
SelectClipPath
EndPath
CloseFigure
BeginPath
CreateBitmap
GetPixel
UpdateColors
GetObjectType
GetTextMetricsA
GetTextColor
GetStockObject
GetTextExtentPoint32A
GetTextExtentPoint32W
GetRgnBox
SetBkColor
ExtTextOutA
DeleteObject
OffsetWindowOrgEx
SetWindowOrgEx
CreateCompatibleDC
RealizePalette
SelectPalette
kernel32.dll

GlobalFree
GlobalAlloc
SetLastError
lstrcpynW
lstrcmpiW
GetModuleFileNameA
GetShortPathNameA
SizeofResource
LoadResource
FindResourceA
LoadLibraryExA
IsDBCSLeadByte
GetSystemDirectoryA
lstrcmpiA
DisableThreadLibraryCalls
HeapAlloc
GetSystemInfo
GetVersionExA
HeapCreate
RemoveDirectoryA
CopyFileA
SetFileAttributesA
HeapDestroy
CreateThread
ResetEvent
GetFileAttributesA
GetLocalTime
MoveFileA
FindClose
FindNextFileA
FindFirstFileA
DebugBreak
HeapReAlloc
HeapFree
SetCurrentDirectoryA
LockResource
SetEndOfFile
SetFilePointer
UnmapViewOfFile
MapViewOfFile
CreateFileMappingA
FlushFileBuffers
SetFileTime
GetFileTime
SetThreadPriority
ResumeThread
CallNamedPipeA
CompareFileTime
SystemTimeToFileTime
GetUserDefaultLangID
GetSystemTimeAsFileTime
WritePrivateProfileSectionA
GetPrivateProfileIntA
GetPrivateProfileStringA
lstrcpyW
GetWindowsDirectoryA
GetCommandLineA
GetDriveTypeA
GetCurrentDirectoryA
WaitForMultipleObjects
WritePrivateProfileStringA
DeleteFileA
CreateProcessA
CreateFileA
GetFileSize
ReadFile
WriteFile
GetExitCodeProcess
LoadLibraryA
FreeLibrary
GetLastError
GetProcAddress
GetTickCount
ReleaseMutex
lstrcpynA
lstrcatA
CreateDirectoryA
OpenFileMappingA
DuplicateHandle
CreateMutexA
GlobalLock
GlobalUnlock
MultiByteToWideChar
lstrlenA
WideCharToMultiByte
lstrcpyA
GetModuleHandleA
GetCurrentProcessId
lstrcmpA
lstrlenW
InterlockedDecrement
InterlockedIncrement
GetCurrentProcess
FlushInstructionCache
GetCurrentThreadId
VirtualQuery
VirtualProtect
CreateEventA
WaitForSingleObject
CloseHandle
EnterCriticalSection
LeaveCriticalSection
DeleteCriticalSection
InitializeCriticalSection
SetEvent
LocalFree
SearchPathA
lstrcatW
GetModuleFileNameW
ole32.dll

OleSetClipboard
OleFlushClipboard
CreateOleAdviseHolder
OleRegGetMiscStatus
OleRegGetUserType
OleRegEnumVerbs
CLSIDFromString
StringFromGUID2
CoTaskMemRealloc
CoTaskMemAlloc
CreateStreamOnHGlobal
CoTaskMemFree
CoFreeUnusedLibraries
GetHGlobalFromStream
OleInitialize
OleUninitialize
CoInitialize
CoUninitialize
CoCreateGuid
CoGetInterfaceAndReleaseStream
CoMarshalInterThreadInterfaceInStream
CoCreateInstance
CLSIDFromProgID
oleacc.dll

AccessibleObjectFromEvent
AccessibleChildren
WindowFromAccessibleObject
AccessibleObjectFromWindow
shell32.dll

SHGetMalloc
ShellExecuteA
SHGetPathFromIDListA
SHGetSpecialFolderLocation
user32.dll
version.dll

GetFileVersionInfoA
GetFileVersionInfoSizeA
VerQueryValueA
Export Table
dllcanunloadnow
dllgetclassobject
dllregisterserver
dllunregisterserver
e
h
o
s
update