Freeze.DesktopManager.BrowserHelper.dll

Freeze.com Browser Helper

Freeze.com, LLC

Part of an InstallX (InstallIQ) installation, a PUP that may bundle additional adware on the computer. The module Freeze.DesktopManager.BrowserHelper.dll, “Freeze Browser Helper” by Freeze.com has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat. This file is typically installed with the program YourScreen by Freeze.com which is a potentially unwanted software program.
Publisher:
Freeze.Com  (signed by Freeze.com, LLC)

Product:
Freeze.com Browser Helper

Description:
Freeze Browser Helper

Version:
1.0.0.1

MD5:
125448db7e96f63f14edd3a346b65839

SHA-1:
5ed8d7058d0849bced08a4d7548a2def447374be

Scanner detections:
1 / 68

Status:
Adware

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
11/15/2024 5:51:56 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.InstallX (M)
16.8.17.16

File size:
61.6 KB (63,088 bytes)

Product version:
1.0.0.1

Copyright:
(c) Freeze.com. All rights reserved.

Original file name:
Freeze.DesktopManager.BrowserHelper.dll

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\Program Files\yourscreen\freeze.desktopmanager.browserhelper.dll

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
11/13/2005 7:00:00 PM

Valid to:
1/7/2007 6:59:59 PM

Subject:
CN="Freeze.com, LLC", OU=Downloads, OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Freeze.com, LLC", L=Waite Park, S=Minnesota, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
760FD90A1A5D07296CE99BD3D412D3DC

File PE Metadata
Compilation timestamp:
6/22/2006 3:53:45 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
768:RFsqOg2MViiFD1nWDzWHi8cgM1qhM9jqEoHOWdQpec6pCvIR0pz6O/L3Lbf:RmP6Vi68DSCbV1q2RqlOW7ivIapmO/7f

Entry address:
0x6156

Entry point:
83, 7C, 24, 08, 01, 75, 05, E8, E4, 02, 00, 00, FF, 74, 24, 04, 8B, 4C, 24, 10, 8B, 54, 24, 0C, E8, CD, FE, FF, FF, 59, C2, 0C, 00, CC, 68, 9B, 5B, 00, 10, 64, FF, 35, 00, 00, 00, 00, 8B, 44, 24, 10, 89, 6C, 24, 10, 8D, 6C, 24, 10, 2B, E0, 53, 56, 57, A1, C8, AB, 00, 10, 31, 45, FC, 33, C5, 50, 89, 65, E8, FF, 75, F8, 8B, 45, FC, C7, 45, FC, FE, FF, FF, FF, 89, 45, F8, 8D, 45, F0, 64, A3, 00, 00, 00, 00, C3, 8B, 4D, F0, 64, 89, 0D, 00, 00, 00, 00, 59, 5F, 5F, 5E, 5B, 8B, E5, 5D, 51, C3, 55, 8B, EC, 81, EC...
 
[+]

Entropy:
5.8791

Code size:
24 KB (24,576 bytes)

The file Freeze.DesktopManager.BrowserHelper.dll has been discovered within the following program.

YourScreen  by Freeze.com
This Freeze screensaver is installed with the software bundler called InstallIQ, an install manager that will make recommendations for additional advertising supported or other 3rd party software that may include toolbars, browser add-ons, and other types of potentially unwanted programs.
www.freeze.com
76% remove it
 
Powered by Should I Remove It?

Remove Freeze.DesktopManager.BrowserHelper.dll - Powered by Reason Core Security