SmarterPower.IEUpdate.dll

SmarterPower

This is the Internet Explorer add-on for the Yontoo SmarterPower branded web browser plugin (injects banner, text-link and popup ads). The component is responisble for registering the Browser Helper Object into IE and keeping it registered. The module SmarterPower.IEUpdate.dll by SmarterPower has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
SmarterPower  (signed and verified)

Version:
1.0.5411.28126

MD5:
506288d9757590366714b47fc5d0366c

SHA-1:
bdaace95be5ac9eda26abe8b4eb2ebafcd9f6de8

SHA-256:
fa6144fc434f749a434d6136ba30422a31bb86cf78a67be3d0a07ecc1b5eb4d1

Scanner detections:
1 / 68

Status:
Adware

Explanation:
Part of the Yontoo distributed ad-supported web browser add-on for Internet Explorer.

Analysis date:
12/23/2024 11:52:52 PM UTC  (a few moments ago)

Scan engine
Detection
Engine version

Reason Heuristics
Adware.Yontoo (M)
17.3.9.17

File size:
655.2 KB (670,968 bytes)

Product version:
1.0.5411.28126

Original file name:
SmarterPower.IEUpdate.dll

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\Program Files\smarterpower\bin\plugins\smarterpower.ieupdate.dll

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
8/5/2014 2:00:00 AM

Valid to:
8/6/2015 1:59:59 AM

Subject:
CN=SmarterPower, O=SmarterPower, L=Santa Monica, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
38D7C83A73CB4E3AC85648608E3170D8

File PE Metadata
Compilation timestamp:
10/26/2014 1:37:36 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
6.0

.NET CLR dependent:
Yes

Entry address:
0xA39B2

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 02, 00, 00, 00, 71, 00, 00, 00, F4, 39, 0A, 00, F4, 1B, 0A, 00, 52, 53, 44, 53, 2E, E5, CF, D9, A4, 85, 9E, 4F, A7, 6E, 3B, 2C, 08, 4C, 02, D0, 01, 00, 00, 00, 44, 3A, 5C, 55, 74, 69, 6C, 69, 74, 69, 65, 73, 5C, 32, 6D, 71, 31, 35, 78, 30, 67, 2E, 66, 79, 74, 5C, 44, 65, 73, 6B, 74, 6F, 70, 5C, 44, 65, 73, 6B...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
647 KB (662,528 bytes)

Remove SmarterPower.IEUpdate.dll - Powered by Reason Core Security