thefreehd-sport tv v10-buttonutil.dll

Arod Group (BrightCircle Investments Limited)

This adware is a web browser extension that will inject advertising in the browser in the form of unwanted banners and text-links which may link to malware sites and install unwanted software. The module thefreehd-sport tv v10-buttonutil.dll by Arod Group (BrightCircle Investments Limited) has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat. The ButtonUtil module (32-bit version) uses the Crossrider web extension monetization toolkit and will perform a number of helper integration activities on the user's web browser's as well as the Window's Shell in order to install the addon. It is distributed as part of the Brightcircle group of browser-extensions.
Publisher:

MD5:
55672afd620c9ff52db5b7a266fd35f0

SHA-1:
81295bee7a2fc82dc39b53f9651587938a77ab28

SHA-256:
f08e58289236bda5069a0f08352d3ff94d6d926332d97ef225d13a1be71e8551

Scanner detections:
1 / 68

Status:
Adware

Explanation:
Part of the Crossrider toolbar platform. Distributed through the Brightcircle investments brand.

Note:
Crossrider is the owner of a platform that enables the creation of cross-browser extensions by developers but is not the owner of this detected application. The owner/publisher of this file is Arod Group (BrightCircle Investments Limited).

Analysis date:
12/24/2024 5:12:10 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Adware.Crossrider (M)
17.2.8.13

File size:
344 KB (352,216 bytes)

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\Program Files\thefreehd-sport tv v10\thefreehd-sport tv v10-buttonutil.dll

Digital Signature
Authority:
COMODO CA Limited

Valid from:
11/17/2014 1:00:00 AM

Valid to:
11/18/2015 12:59:59 AM

Subject:
CN=Arod Group (BrightCircle Investments Limited), O=Arod Group (BrightCircle Investments Limited), STREET=Athinodorou 3, STREET=Dasoupoli Strovolos, L=Nicosia, S=Cyprus, PostalCode=2025, C=CY

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
2E8AFF90B80D6850112E322E12C15E12

File PE Metadata
Compilation timestamp:
11/20/2014 10:44:41 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

Entry address:
0x1E7B3

Entry point:
55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, 51, 98, 00, 00, FF, 75, 10, FF, 75, 0C, FF, 75, 08, E8, 07, 00, 00, 00, 83, C4, 0C, 5D, C2, 0C, 00, 6A, 0C, 68, 20, 3A, 04, 10, E8, CE, 36, 00, 00, 33, C0, 40, 8B, 75, 0C, 85, F6, 75, 0C, 39, 35, 08, B1, 04, 10, 0F, 84, E4, 00, 00, 00, 83, 65, FC, 00, 83, FE, 01, 74, 05, 83, FE, 02, 75, 35, 8B, 0D, 20, CE, 03, 10, 85, C9, 74, 0C, FF, 75, 10, 56, FF, 75, 08, FF, D1, 89, 45, E4, 85, C0, 0F, 84, B1, 00, 00, 00, FF, 75, 10, 56, FF, 75, 08, E8, 11, FE, FF, FF, 89, 45, E4...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
217 KB (222,208 bytes)

Remove thefreehd-sport tv v10-buttonutil.dll - Powered by Reason Core Security