OfferBLVD

OfferBLVD

Known Adware

by ReSoft Ltd.

What is OfferBLVD?

OfferBLVD is software application developed by ReSoft Ltd.. It is most commonly found on computers running Windows 10 with nearly 60.00% of installations running this operating system. OfferBLVD's installer is typically 1.00 MB in size and installs around 8 files. The most common release is 1.0.6.5 with 56.00% of all installations currently using this version.

OfferBLVD is most popular in India with 31.03% of installations residing in this country.

OfferBLVD adds 1 scheduled task to the Windows Task Scheduler launching the program at randomly scheduled times.

About OfferBLVD?

OfferBLVD, also known as SnapDo, is a Smartbar adware application distributed by the same distributor as Linkury by Resoft. This adware software is designed to display unwanted ads, potentially unwanted programs (PUPs), and other offers. Once installed, OfferBLVD integrates into the user's web browser using various methods and delivers ads such as banner ads, text-links, coupons, price comparisons, and other offers. These ads may be injected into the browser itself or displayed as pop-ups outside of the browser. In some cases, the source of the ad is attributed, but in most cases, it is not, potentially leading to confusion for the user. According to ReSoft, OfferBLVD is marketed as a solution for users who compare prices while browsing the web. It is described as an advanced, dynamic, and user-friendly tool that automatically offers the best prices and coupons for the products being shopped for online. OfferBLVD aims to help users save money effortlessly and is offered as a free tool.

Multiple virus scanners have detected malware in OfferBLVD.

OfferBLVD.exe (MD5: 03edc2a7a007dc2f7bd8382c28fdff60) has been flagged by 37 scanners:
Scanner Software Result
Lavasoft Ad-Aware Trojan.Generic.12954911
ALYac Trojan.Generic.12954911
avast! Win32:GenMaliciousA-FSK [Adw]
AVG Generic6
AVware Adware.Linkury (fs)
Baidu-International PUA.Win32.Ag.81
Bitdefender Trojan.Generic.12954911
Cyren W32/GenPua.03EDC2A7!Olympus
Emsisoft Anti-Malware Trojan.Generic.12954911
ESET-NOD32 a variant of MSIL/Toolbar.Linkury.M potentially unwanted
F-Secure Trojan.Generic.12954911
G Data Trojan.Generic.12954911
Jiangmin AdWare/MSIL.chx
Kaspersky not-a-virus:HEUR:AdWare.MSIL.DealPly
McAfee RDN/Generic PUP.z!fn
McAfee-GW-Edition RDN/Generic PUP.z!fn
MicroWorld-eScan Trojan.Generic.12954911
NANO AntiVirus Riskware.Win32.Toolbar.dnrlcd
nProtect Trojan.Generic.12954911
Panda Antivirus Generic Suspicious
Symantec Trojan.Gen
Tencent Msil.Adware.Dealply.Glx
Trend Micro TROJ_GEN.R002C0OCG15
TrendMicro-HouseCall TROJ_GEN.R002C0OCG15
VIPRE Antivirus Adware.Linkury (fs)
Agnitum Outpost PUA.Toolbar.Linkury!
Avira TR/Kazy.468568
CAT-QuickHeal AdWare.MSIL.r3 (Not a Virus)
Comodo Security UnclassifiedMalware
Fortinet FortiGate Adware/Linkury
K7 AntiVirus Trojan ( 700000121 )
K7GW Trojan ( 700000121 )
Qihoo-360 Win32/Trojan.554
Rising Antivirus PE:Trojan.Win32.Generic.1784AD16!394571030
Sophos Generic PUA MG (PUA)
SUPERAntiSpyware Adware.Linkury/Variant
Total Defense Heur/TrojanHorse.ZCHY!suspicious
OfferBLVDW.exe (MD5: f9776683ca262da6e4113410c3f78f25) has been flagged by 26 scanners:
Scanner Software Result
Agnitum Outpost PUA.Toolbar.Linkury!
avast! Win32:PUP-gen [PUP]
Avira TR/Kazy.468568
AVware Trojan.Win32.Generic!BT
Baidu-International Adware.MSIL.Linkury.M
CAT-QuickHeal AdWare.MSIL.r3 (Not a Virus)
Comodo Security UnclassifiedMalware
ESET-NOD32 a variant of MSIL/Toolbar.Linkury.M.gen potentially unwanted
Fortinet FortiGate Adware/Linkury
G Data Win32.Application.SmartBar.D
Jiangmin AdWare/MSIL.fep
K7 AntiVirus Trojan ( 700000121 )
K7GW Trojan ( 700000121 )
Kaspersky not-a-virus:AdWare.MSIL.PennyBee.o
McAfee Artemis!F9776683CA26
McAfee-GW-Edition Artemis!PUP
NANO AntiVirus Trojan.Win32.Kazy.dhorhg
Panda Antivirus Trj/CI.A
Qihoo-360 Win32/Trojan.554
Rising Antivirus PE:Trojan.Win32.Generic.1784AD16!394571030
Sophos Generic PUA MG (PUA)
SUPERAntiSpyware Adware.Linkury/Variant
Symantec Trojan.Gen.2
Total Defense Heur/TrojanHorse.ZCHY!suspicious
Trend Micro TROJ_GEN.R0C1C0EGJ15
VIPRE Antivirus Trojan.Win32.Generic!BT

Software Behaviors

Services:
  • OfferBLVD.exe runs as a service named 'OfferBLVD service' (OfferBLVD) "OfferBLVD".
Scheduled tasks:
  • PackerV2.exe is scheduled as a task with the class '{E8A6ACAA-971F-489F-9739-8126987AB711}' (runs on registration).

Software Details

URL:
https://www.offerblvd.com
Support:
Installation path:
C:\Program Files\offerblvd
Uninstaller:
C:\Program Files\OfferBLVD\uninstall.exe
Size:
1.00 MB
Language:
English

OfferBLVD Executable Details

Primary executable:
OfferBLVD.exe
Name:
OfferBLVD
Path:
C:\Program Files\offerblvd\OfferBLVD.exe
MD5:
03edc2a7a007dc2f7bd8382c28fdff60
SHA-1:
SHA-256:
Files installed by OfferBLVD
File Type Filename MD5
EXE
c8979769eaa80840e869610bf6c4739a
EXE
9643b8aaab7deef86ce0faaff36db76c
DLL
2bff97c12342e8eb70cd520e8b67f36d
EXE
02418c3533493e0ac6df342d64186d4d
EXE
005090b72162a8ea3f09ff1611f21780
EXE
03edc2a7a007dc2f7bd8382c28fdff60
EXE
f9776683ca262da6e4113410c3f78f25
EXE
40134f1969e15959282e1a4475c5d740