tdataprotocol.dll

Blabbers Communications Ltd

Part of Blabbers, a potentially unwanted browser application that may hijack or interfere with the browser's standard web searching behaviors in order to display ads. The module tdataprotocol.dll by Blabbers Communications has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
Blabbers Communications Ltd  (signed and verified)

MD5:
7862b12a5cdd7031e2a31e2c9fbae485

SHA-1:
936eadfa7c93093e479da9c1de1bf214de292774

SHA-256:
7145f5e98b6e205b32e643744361f9cfa1d253cbec5280b30d875ea834403619

Scanner detections:
1 / 68

Status:
Adware

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
11/8/2024 7:49:02 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Blabbers (M)
16.9.4.1

File size:
154.8 KB (158,512 bytes)

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\Program Files\ginyasbrowsercompanion\tdataprotocol.dll

Digital Signature
Authority:
The USERTRUST Network

Valid from:
2/10/2011 1:00:00 AM

Valid to:
2/11/2012 12:59:59 AM

Subject:
CN=Blabbers Communications Ltd, O=Blabbers Communications Ltd, STREET=Arad 3, L=Tel Aviv, S=Israel, PostalCode=43034, C=IL

Issuer:
CN=UTN-USERFirst-Object, OU=http://www.usertrust.com, O=The USERTRUST Network, L=Salt Lake City, S=UT, C=US

Serial number:
00D561643A7697D633BCB565E2E1EF7365

File PE Metadata
Compilation timestamp:
11/30/2009 12:02:51 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
3072:vkhNU8rGWOflx3tHFaVIrZt8tHtQzPOXg:8fkxVJZEH6P

Entry address:
0xC06C

Entry point:
8B, 1C, 01, 85, DB, 75, 4B, FF, 75, D0, 57, FF, 15, 04, D0, 07, 69, 8B, D8, 85, DB, 75, 3B, FF, 15, 48, D0, 07, 69, 89, 45, DC, A1, 98, 3A, 08, 69, 85, C0, 74, 0A, 8D, 4D, BC, 51, 6A, 04, FF, D0, 8B, D8, 85, DB, 75, 1B, 8D, 45, BC, 89, 45, 08, 8D, 45, 08, 50, 6A, 01, 53, 68, 7F, 00, 6D, C0, FF, 15, EC, D1, 07, 69, 8B, 5D, D8, 8B, 45, 0C, 89, 18, A1, 9C, 3A, 08, 69, 85, C0, 74, 12, 83, 65, DC, 00, 8D, 4D, BC, 51, 6A, 05, 89, 7D, D4, 89, 5D, D8, FF, D0, 8B, C3, 5F, 5E, 5B, C9, C2, 08, 00, CC, CC, CC, CC, CC...
 
[+]

Code size:
105 KB (107,520 bytes)

Remove tdataprotocol.dll - Powered by Reason Core Security