greenerweb.browserfilter.helper.dll

Greener Web

Part of the Yontoo adware component, a web browser plugin that injects unwanted ads in the browser. The module greenerweb.browserfilter.helper.dll by Greener Web has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat. This file is typically installed with the program Greener Web by Yontoo Technology, Inc. which is a potentially unwanted software program.
Publisher:
Greener Web  (signed and verified)

MD5:
4532ae80eeed5651e6040a8808dc910e

SHA-1:
85a8be9a42255d22bea6db9dc66a1116657ab8a9

SHA-256:
b74a444e0cbc39cf23f2447bbd492d4e5560e145e6bd684726f90d65dfa121f4

Scanner detections:
1 / 68

Status:
Adware

Explanation:
Belongs to the Sambreel/Yontoo progam that inserts various forms of advertising in the user's web browser, installed with minimal or no user consent.

Analysis date:
11/23/2024 9:44:24 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Adware.Yontoo (M)
16.7.30.0

File size:
388.8 KB (398,112 bytes)

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\Program Files\greener web\greenerweb.browserfilter.helper.dll

Digital Signature
Signed by:

Authority:
DigiCert Inc

Valid from:
6/5/2014 2:00:00 AM

Valid to:
6/10/2015 2:00:00 PM

Subject:
CN=Greener Web, O=Greener Web, L=Santa Monica, S=California, C=US

Issuer:
CN=DigiCert Assured ID Code Signing CA-1, OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
07CF8E3C70EA58D06FE678225FF74862

File PE Metadata
Compilation timestamp:
6/9/2014 2:54:05 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
3072:+RLdBzWsg2wx/LuLK0qc2t1SsRb28G+fjxpzwZ/Nep54m2dHYlTO4Asi7T25lDO:aLdHsLejCJ128GexpM1e4+9OcCT2vO

Entry address:
0x1A2DA

Entry point:
8B, FF, 55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, F5, 61, 00, 00, FF, 75, 08, 8B, 4D, 10, 8B, 55, 0C, E8, EC, FE, FF, FF, 59, 5D, C2, 0C, 00, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, 40, D4, 05, 10, 89, 0D, 3C, D4, 05, 10, 89, 15, 38, D4, 05, 10, 89, 1D, 34, D4, 05, 10, 89, 35, 30, D4, 05, 10, 89, 3D, 2C, D4, 05, 10, 66, 8C, 15, 58, D4, 05, 10, 66, 8C, 0D, 4C, D4, 05, 10, 66, 8C, 1D, 28, D4, 05, 10, 66, 8C, 05, 24, D4, 05, 10, 66, 8C, 25, 20, D4, 05, 10, 66, 8C, 2D, 1C, D4, 05, 10, 9C, 8F, 05, 50, D4...
 
[+]

Entropy:
4.9060

Code size:
174 KB (178,176 bytes)

The file greenerweb.browserfilter.helper.dll has been discovered within the following program.

Greener Web  by Yontoo Technology, Inc.
This adware software (a branded version of the morphing Yontoo adware browser addon) injects itself into the user's web browser (IE, Chrome and Firefox) and will display out-of context advertising on web sites that are not associated with Yontoo or its affiliate partners.
greenerweb.info/support
80% remove it
 
Powered by Should I Remove It?

Remove greenerweb.browserfilter.helper.dll - Powered by Reason Core Security