rlxh.dll

Relevant-Knowledge

TMRG, Inc.

The component is part of the TMRG platform which will track various behaviors of web browsing habits including tracking sites and domains visited as well as ads clicked. The module rlxh.dll by TMRG has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
TMRG, Inc.  (signed by TMRG, Inc.)

Product:
Relevant-Knowledge

Version:
1, 3, 331, 2

MD5:
4a45263363ae31fbe431cf6973bbba8b

SHA-1:
ad7dc9e81de266ef44f829fade3b7bb9e79692da

SHA-256:
be77193992c929780cfa4b02926bc2ca5a8d2560d3fb7ad88d66b05a941a0ade

Scanner detections:
1 / 68

Status:
Adware

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
11/22/2024 11:27:36 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.TMRG (M)
17.1.17.4

File size:
157 KB (160,784 bytes)

Product version:
1, 3, 331, 2

Copyright:
Copyright (C) 2011

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\Program Files\relevantknowledge\components\rlxh.dll

Digital Signature
Signed by:

Authority:
Thawte, Inc.

Valid from:
7/21/2011 7:00:00 AM

Valid to:
1/12/2013 6:59:59 AM

Subject:
CN="TMRG, Inc.", O="TMRG, Inc.", L=Reston, S=Virginia, C=US

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
3E610C00C4D725B9689279CC88EEA594

File PE Metadata
Compilation timestamp:
9/29/2011 10:10:00 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

Entry address:
0xCA64

Entry point:
83, 7C, 24, 08, 01, 75, 05, E8, D1, 4F, 00, 00, FF, 74, 24, 04, 8B, 4C, 24, 10, 8B, 54, 24, 0C, E8, ED, FE, FF, FF, 59, C2, 0C, 00, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 8B, 4C, 24, 04, F7, C1, 03, 00, 00, 00, 74, 24, 8A, 01, 83, C1, 01, 84, C0, 74, 4E, F7, C1, 03, 00, 00, 00, 75, EF, 05, 00, 00, 00, 00, 8D, A4, 24, 00, 00, 00, 00, 8D, A4, 24, 00, 00, 00, 00, 8B, 01, BA, FF, FE, FE, 7E, 03, D0, 83, F0, FF, 33, C2, 83, C1, 04, A9, 00, 01, 01, 81, 74, E8, 8B, 41, FC, 84, C0, 74, 32, 84, E4, 74, 24, A9...
 
[+]

Code size:
100 KB (102,400 bytes)

Remove rlxh.dll - Powered by Reason Core Security