Should I block it?
Yes, 98% block recommendation.
Possible reasons:
Multiple malware detections
Performance resource utilization
Additional versions
(Note, SelectionLinks publishes each variation of this file with the same version, but the hashes are unique.)
Relationships
SelectionLinks.dll
SelectionLinks by SelectionLinks
Version: | 1.0.0.1 |
MD5: | 0329208f6cc2d9b3c575c377977318f4 |
SHA1: | 92b405525cdb25459e009ffdee21c75d70bec440 |
SHA256: | ed17c1edc3dfb83feb56f7d03e4f1321ad1df1d24b5765761ab53aa25c421ee8 |
Warning 13 antivirus scanners has detected malware.
Overview
selectionlinks.dll is malware that is loaded as dynamic link library that runs in the context of Internet Explorer. It is installed in Internet Explorer as a Browser Helper Object (BHO) which has full acess to the web browser's behaviors and content. It is installed with a couple of know programs including SelectionLinks published by Objectify Media and VideoFileDownload published by VideoFileDownload.
Details
File name: | selectionlinks.dll |
Publisher: | SelectionLinks |
Product name: | SelectionLinks |
Typical file path: | C:\Program Files\oapps\selectionlinks.dll |
File version: | 1.0.0.1 |
Size: | 472.5 KB (483,840 bytes) |
Build date: | 4/19/2013 1:49 PM |
Digital DNA |
File packed: | No |
.NET CLR: | No |
More details
Programs
The following programs will install this file
SelectionLinks by Objectify Media is a web browser extension for Intenet Explorer and Firefox. SelectionLinks collects and stores information about your web browsing habits and sends this information to its remote servers so they can suggest services or provide advertising via the in-context search results. SelectionLinks shows advertisements or additional content within web pages rendered while the SelectionLinks is installed. Selectio...
VideoFileDownload is a web browser plug-in and standard alone application (some versions) that allow for saving of YouTube vides to the computers local hard drive. Within the stand alone application, you can specify a YouTube URL and the stream will be saved.
Behaviors
Internet Explorer Browser Helper Object
Located in the registry at 'SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects'
- BHO CLSID: {5F815AD7-A955-4943-91C4-7A96C2932399}
- BHO CLSID: {1C8501DD-5580-48AB-B25C-6D5DBE835A6A}
- BHO CLSID: {5BDE3F24-D7B3-40D9-BD31-D1CFF12C47B4}
- BHO CLSID: {878B8524-AED5-4870-9A96-A515440DAC75}
- BHO CLSID: {7825CFB6-490A-436B-9F26-4A7B5CFC01A9}
- BHO CLSID: {F6222CB7-E738-4DA5-B305-28E5F1ED8B1E}
- BHO CLSID: {300BEC06-B743-4D19-86B9-11DC711D7FFB}
Malware detections
Based on 40+ industry antivirus scanners, 13 of them detected the following malware.
Antivirus engine | Engine version | Detection |
AVG |
13.0.0.3169 |
Generic5.AGLA |
Baidu Antivirus |
3.5.1.41473 |
AdWare.Win32.Facetheme.F |
Bkav Security |
1.3.0.4246 |
HW32.Laneul.xqko |
Comodo Internet Security |
17030 |
ApplicUnwnt |
Dr.Web |
8.13.10.6 |
Trojan.Click2.55174 |
ESET NOD32 |
7.8862 |
Win32/AdWare.Facetheme.F |
McAfee |
5.600.1067 |
Artemis!0329208F6CC2 |
McAfee Gateway Anti-Malware |
v2013-dat |
Artemis!0329208F6CC2 |
Norman |
7.02.06 |
Suspicious_Gen4.EYPPT |
Sophos |
4.93.0 |
Selection Links |
SUPERAntiSpyware |
5.6.0.1032 |
Adware.FaceTheme |
Trend Micro HouseCall |
9.700.0.1001 |
TROJ_GEN.R47H1E9 |
VIPRE Antivirus |
21992 |
Adware.Win32.Facetheme (fs) |
Distribution by Windows OS
OS version | distribution |
Windows 8 Pro |
25.00% |
|
Windows 7 Ultimate |
25.00% |
|
Windows 7 Home Premium |
12.50% |
|
Microsoft Windows XP |
12.50% |
|
Windows 8 |
12.50% |
|
Windows 8 Enterprise |
6.25% |
|
Windows Vista Home Premium |
6.25% |
|
Distribution by country
United States installs about 46.67% of SelectionLinks.
Distribution by PC manufacturer
PC Manufacturer | distribution |
Dell |
40.00% |
|
American Megatrends |
13.33% |
|
Toshiba |
13.33% |
|
Acer |
13.33% |
|
ASUS |
13.33% |
|
Hewlett-Packard |
6.67% |
|