MegaBrowse.FFUpdate.dll

Megabrowse

FFUpdate is the Mozilla Firefox plugin manager for the Megabrowse branded Yontoo adware browser platform. The component is designed to install and keep Firefox connected to the adware updater. The module MegaBrowse.FFUpdate.dll by Megabrowse has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
Megabrowse  (signed and verified)

Version:
1.0.5409.18945

MD5:
5f748b301223bba6f8dd9e89445087ae

SHA-1:
7cb4a1dd33a45bb8bd2fe24e658f33fd4c47c616

SHA-256:
8f97d2ab1ff71d2a435c0b210ec7f634257470f93d9415d76fc542d86470f054

Scanner detections:
1 / 68

Status:
Adware

Explanation:
Part of the Yontoo distributed ad-supported web browser plugin for Firefox.

Analysis date:
11/23/2024 6:53:34 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Adware.Yontoo (M)
17.3.5.7

File size:
545.9 KB (559,016 bytes)

Product version:
1.0.5409.18945

Original file name:
MegaBrowse.FFUpdate.dll

File type:
Dynamic link library (Win32 DLL)

Language:
Language Neutral

Common path:
C:\Program Files\mega browse\bin\plugins\megabrowse.ffupdate.dll

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
5/6/2014 9:00:00 PM

Valid to:
5/7/2015 8:59:59 PM

Subject:
CN=Megabrowse, O=Megabrowse, STREET=10620 Treena Street Suite 230, L=San Diego, S=Ca, PostalCode=92131, C=US

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
0CD194221ED016F035BD7BACA4027DC3

File PE Metadata
Compilation timestamp:
10/23/2014 4:31:33 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
6.0

.NET CLR dependent:
Yes

Entry address:
0x88622

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 02, 00, 00, 00, 6F, 00, 00, 00, 64, 86, 08, 00, 64, 68, 08, 00, 52, 53, 44, 53, 7D, 57, CF, 81, 96, 11, 92, 42, 91, 9C, E0, B4, 8A, 1A, 6C, 5A, 01, 00, 00, 00, 44, 3A, 5C, 55, 74, 69, 6C, 69, 74, 69, 65, 73, 5C, 74, 75, 67, 6F, 34, 70, 68, 75, 2E, 78, 70, 31, 5C, 44, 65, 73, 6B, 74, 6F, 70, 5C, 44, 65, 73, 6B...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
538 KB (550,912 bytes)

Remove MegaBrowse.FFUpdate.dll - Powered by Reason Core Security