chrome_frame_helper.dll

Google Chrome Frame

Limited Liability Company Ucoz Media

The module chrome_frame_helper.dll, “Chrome Frame renders the Web of the future in the browsers of the past. It's like strapping a rocket engine to a minivan.” by Limited Liability Company Ucoz Media has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
The Chromium Authors  (signed by Limited Liability Company Ucoz Media)

Product:
Google Chrome Frame

Description:
Chrome Frame renders the Web of the future in the browsers of the past. It's like strapping a rocket engine to a minivan.

Version:
22.0.1229.79

MD5:
332914dcc0daadc9bae6e07a9432fdaa

SHA-1:
b474efca911dc47804219934260cac7bc2ac887a

SHA-256:
522656b0e0ab07a28bfb40df1d177daddcd5de826d860b638b7f52f69d4f851d

Scanner detections:
1 / 68

Status:
Adware

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
11/23/2024 4:09:57 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.LimitedLiabilityCompanyUcozMedia
15.3.20.18

File size:
53 KB (54,232 bytes)

Product version:
22.0.1229.79

Copyright:
Copyright (C) 2006-2010 The Chromium Authors. All Rights Reserved.

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\uran\application\22.0.1229.79\chrome_frame_helper.dll

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
3/16/2012 11:17:49 PM

Valid to:
3/17/2014 11:17:49 PM

Subject:
E=alexzander@ucoz.com, CN=Limited Liability Company Ucoz Media, OU=Bagrationovskiy proyezd, O=Limited Liability Company Ucoz Media, L=Moscow, S=Moscow, C=RU

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121B28BB43AF25490AA12229BA614435817

File PE Metadata
Compilation timestamp:
10/2/2012 11:24:40 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
768:5ST4Grp5IpWSG++BiBl4e1oucaIlVzhMvzOpkkE1EDlnUyMN3C3xJN1if:5SpsEzrBBuouIlV11kUULCB34

Entry address:
0x1AEB

Entry point:
8B, FF, 55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, AA, 16, 00, 00, FF, 75, 08, 8B, 4D, 10, 8B, 55, 0C, E8, EC, FE, FF, FF, 59, 5D, C2, 0C, 00, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, 50, CF, 00, 10, 89, 0D, 4C, CF, 00, 10, 89, 15, 48, CF, 00, 10, 89, 1D, 44, CF, 00, 10, 89, 35, 40, CF, 00, 10, 89, 3D, 3C, CF, 00, 10, 66, 8C, 15, 68, CF, 00, 10, 66, 8C, 0D, 5C, CF, 00, 10, 66, 8C, 1D, 38, CF, 00, 10, 66, 8C, 05, 34, CF, 00, 10, 66, 8C, 25, 30, CF, 00, 10, 66, 8C, 2D, 2C, CF, 00, 10, 9C, 8F, 05, 60, CF...
 
[+]

Code size:
25.5 KB (26,112 bytes)

Remove chrome_frame_helper.dll - Powered by Reason Core Security