DOM_Monitor.sys

DOM LLC Watchdog

DOUBLE OPT MEDIA PARTNERS LLC

The file DOM_Monitor.sys by DOUBLE OPT MEDIA PARTNERS has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
DOM LLC  (signed by DOUBLE OPT MEDIA PARTNERS LLC)

Product:
DOM LLC Watchdog

Description:
Watchdog Driver

Version:
2.2.9.10

MD5:
cc4b6cd66deb968d42acc572f15d0246

SHA-1:
5f1f674d9000752edd795c2901b83f63dde70fa0

SHA-256:
447e1f8d0d95e5ae91b131e6364a501484064f5b671f1260426d539892247627

Scanner detections:
1 / 68

Status:
Adware

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
12/25/2024 12:44:36 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.DoubleOpt Media
15.1.26.11

File size:
28.3 KB (29,016 bytes)

Product version:
2.2.9.10

Copyright:
Copyright ® DOM LLC All rights reserved

Original file name:
DOM_Monitor.sys

File type:
Driver (Win32 SYS)

Language:
Language Neutral

Common path:
C:\Program Files\worldwide web research\dom_monitor.sys

Digital Signature
Authority:
DigiCert Inc

Valid from:
10/9/2014 6:00:00 PM

Valid to:
12/12/2017 5:00:00 AM

Subject:
CN=DOUBLE OPT MEDIA PARTNERS LLC, O=DOUBLE OPT MEDIA PARTNERS LLC, L=Wilmington, S=Delaware, C=US

Issuer:
CN=DigiCert High Assurance Code Signing CA-1, OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
0289DEB63998EB06A29C8E7F34C73E75

File PE Metadata
Compilation timestamp:
9/8/2014 8:07:17 PM

OS version:
6.1

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
9.0

CTPH (ssdeep):
768:FrbZ5lVGxXcWn+bSvaOATMnB0KKgr9RI:F3Z5DGxXcwvatIqK13I

Entry address:
0x40A7

Entry point:
8B, FF, 55, 8B, EC, E8, BD, FF, FF, FF, 5D, E9, 4F, FF, FF, FF, CC, E0, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, D2, 45, 00, 00, 80, 3B, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, B8, 41, 00, 00, D2, 41, 00, 00, E4, 41, 00, 00, FC, 41, 00, 00, 0C, 42, 00, 00, 24, 42, 00, 00, 36, 42, 00, 00, 40, 42, 00, 00, 4A, 42, 00, 00, 62, 42, 00, 00, 70, 42, 00, 00, 84, 42, 00, 00, 9C, 42, 00, 00, A6, 42, 00, 00, BA, 42, 00, 00, DA, 42, 00, 00, EE, 42, 00, 00, 06, 43, 00...
 
[+]

Entropy:
6.7777

Code size:
15.3 KB (15,616 bytes)

Remove DOM_Monitor.sys - Powered by Reason Core Security