rss reader-bg.exe

Log-Tech Communications LTD

The application rss reader-bg.exe by Log-Tech Communications has been detected as adware by 17 anti-malware scanners. This file is typically installed with the program Rss Reader. Part of the Corssrider web browser platform, the BG executable is a background process that manage various function of the installed extensions in user's browser including managing installation, updates and remote code downloads.
Publisher:
Rss Reader  (signed by Log-Tech Communications LTD)

Product:
Rss Reader

Description:
Rss Reader exe

Version:
1000.1000.1000.1000

MD5:
9d65b2d57d015625cb21af203e8bcf95

SHA-1:
c027cc72e261a5e83ebfb6c82810a93b1af52459

SHA-256:
57df4df53404321c807629cd2b2931e327548d327c302c779958a40c1f697189

Scanner detections:
17 / 68

Status:
Adware

Explanation:
The software may change the browser's home page and search provider settings as well as display advertisements.

Note:
Crossrider is the owner of a platform that enables the creation of cross-browser extensions by developers but is not the owner of this detected application. The owner/publisher of this file is Log-Tech Communications LTD.

Analysis date:
11/23/2024 11:10:50 AM UTC  (today)

Scan engine
Detection
Engine version

AVG
Generic5
2015.0.3499

Baidu Antivirus
Trojan.Win32.Toolbar
4.0.3.14718

Bkav FE
W32.Clod763.Trojan
1.3.0.4613

Dr.Web
Trojan.Crossrider.6
9.0.1.0109

Emsisoft Anti-Malware
Adware.Generic.637165
8.14.07.18.12

ESET NOD32
Win32/Toolbar.CrossRider (variant)
8.9190

Fortinet FortiGate
Adware/Lyckriks
7/18/2014

F-Secure
Adware.Generic.637165
11.2014-18-07_6

G Data
Adware.Generic.637165
14.7.22

herdProtect (fuzzy)
2014.7.18.12

Malwarebytes
PUP.Optional.Lyrics.A
v2014.07.18.12

McAfee
Artemis!9D65B2D57D01
5600.7155

NANO AntiVirus
Trojan.Win32.Crossrider.cqkbmt
0.28.0.57029

Reason Heuristics
PUP.Crossrider.LogTechCommunications.N
14.5.19.1

Sophos
Generic PUA MA
4.95

Vba32 AntiVirus
AdWare.Lyckriks
3.12.24.3

VIPRE Antivirus
Crossrider
24548

File size:
726.5 KB (743,952 bytes)

Product version:
1000.1000.1000.1000

Copyright:
Copyright 2011

Original file name:
Rss Reader.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\rss reader\rss reader-bg.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
8/1/2013 3:00:00 AM

Valid to:
8/2/2015 2:59:59 AM

Subject:
CN=Log-Tech Communications LTD, OU=my-centrals.com, O=Log-Tech Communications LTD, POBox=50412, STREET=Hamered 29, L=Tel Aviv, S=Ha-Merkaz, PostalCode=50412, C=IL

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
06160AFA468E63FA151CF62BC4D36BEF

File PE Metadata
Compilation timestamp:
8/12/2013 12:44:27 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
12288:W9lZNxUdRL9ElrSOt/y14LtFdWE57idICSZxqP7X/2sHRU5s9/jea6TayS:a8RhArSORy14F57aQqDX/ZCwGTW

Entry address:
0x6FA36

Entry point:
E8, 73, AD, 00, 00, E9, 89, FE, FF, FF, 8B, FF, 55, 8B, EC, 8B, 45, 08, 33, C9, 3B, 04, CD, E8, 2E, 4B, 00, 74, 13, 41, 83, F9, 2D, 72, F1, 8D, 48, ED, 83, F9, 11, 77, 0E, 6A, 0D, 58, 5D, C3, 8B, 04, CD, EC, 2E, 4B, 00, 5D, C3, 05, 44, FF, FF, FF, 6A, 0E, 59, 3B, C8, 1B, C0, 23, C1, 83, C0, 08, 5D, C3, E8, 4F, 0E, 00, 00, 85, C0, 75, 06, B8, 50, 30, 4B, 00, C3, 83, C0, 08, C3, E8, 3C, 0E, 00, 00, 85, C0, 75, 06, B8, 54, 30, 4B, 00, C3, 83, C0, 0C, C3, 8B, FF, 55, 8B, EC, 56, E8, E2, FF, FF, FF, 8B, 4D, 08...
 
[+]

Code size:
578.5 KB (592,384 bytes)

The file rss reader-bg.exe has been discovered within the following program.

Rss Reader  by Rss Reader
About 4% of users remove it
 
Powered by Should I Remove It?

Remove rss reader-bg.exe - Powered by Reason Core Security