breakpadinjector.dll

Firefox

Mengmeng Wang

The module breakpadinjector.dll by Mengmeng Wang has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
Mozilla Foundation  (signed by Mengmeng Wang)

Product:
Firefox

Version:
51.0

MD5:
65b62d148e1499acbefcf4b3ff2de4fa

SHA-1:
54b27eed7367e01d636d41fbb78f1b5f82231a07

SHA-256:
f9313e08e101990fd30f763d58acdd8161743fb570eee5cfd11c294d69ab41bd

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
11/16/2024 6:02:02 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Adware.Elex.MW (M)
17.3.16.10

File size:
113.2 KB (115,896 bytes)

Product version:
51.0

Copyright:
License: MPL 2

Trademarks:
Mozilla

Original file name:
breakpadinjector.dll

File type:
Dynamic link library (Win32 DLL)

Language:
Language Neutral

Common path:
C:\Program Files\firefox\breakpadinjector.dll

Digital Signature
Signed by:

Authority:
thawte, Inc.

Valid from:
10/13/2016 5:00:00 PM

Valid to:
10/13/2017 4:59:59 PM

Subject:
CN=Mengmeng Wang, OU=Individual Developer, O=No Organization Affiliation, L=Beijing, S=Beijing, C=CN

Issuer:
CN=thawte SHA256 Code Signing CA, O="thawte, Inc.", C=US

Serial number:
57FCDAB4B0C6202BC89A0DDD4A742960

File PE Metadata
Compilation timestamp:
3/15/2017 7:58:51 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
14.0

Entry address:
0x10B2

Entry point:
CC, 33, C0, C2, 0C, 00, 55, 8B, EC, 83, EC, 20, A1, C4, A0, 01, 10, 33, C5, 89, 45, FC, 53, 56, 8B, 75, 08, 57, 33, FF, 57, 6A, 01, 8B, DF, 57, 89, 5D, E0, E8, 89, 1B, 00, 00, 68, 68, A9, 01, 10, 68, C8, 00, 00, 00, E8, 46, 19, 00, 00, 59, 59, 85, C0, 74, 26, 6A, 07, 5A, 57, 56, 57, 52, 57, 33, C9, 89, 55, F8, 57, 66, 89, 4D, E4, 8D, 4D, E4, 57, 51, 8B, C8, 89, 7D, F4, E8, FC, 08, 00, 00, 8B, F0, 43, EB, 02, 8B, F7, F6, C3, 01, 74, 0B, 57, 6A, 01, 8D, 4D, E4, E8, 38, FF, FF, FF, 85, F6, 74, 07, C6, 86, BD...
 
[+]

Entropy:
6.5531

Code size:
70.5 KB (72,192 bytes)

Remove breakpadinjector.dll - Powered by Reason Core Security