4b16ab6e-47cb-441f-9c15-d0341cd68309.dll

Morgan Enter Mode

This adware is a web browser extension that will inject advertising in the browser in the form of unwanted banners and text-links which may link to malware sites and install unwanted software. The module 4b16ab6e-47cb-441f-9c15-d0341cd68309.dll by Morgan Enter Mode has been detected as adware by 5 anti-malware scanners. This file is typically installed with the program Sense by Object Browser which is a potentially unwanted software program. It is part of the Brightcircle group of web-extensions that inject advertisements in the browser.
Publisher:
Morgan Enter Mode  (signed and verified)

MD5:
871894f1109ce1c6ba6b3f4f4d626717

SHA-1:
5dd58730fea13aa2321ffdb551de9636df542b3a

SHA-256:
869a8c2dd441ef25f8b726496c074044f6c831b13f871cecf1dae36b7bdfb6fc

Scanner detections:
5 / 68

Status:
Adware

Analysis date:
4/25/2024 5:53:44 PM UTC  (today)

Scan engine
Detection
Engine version

AVG
Morgan
2015.0.3311

Baidu Antivirus
Adware.NSIS.Adwapper
4.0.3.141025

IKARUS anti.virus
not-a-virus:AdWare.Adwapper
t3scan.1.7.8.0

Kaspersky
not-a-virus:AdWare.NSIS.Adwapper
14.0.0.3048

McAfee
Artemis!871894F1109C
5600.6967

File size:
161.4 KB (165,280 bytes)

File type:
Dynamic link library (Win64 DLL)

Language:
English (United States)

Common path:
C:\Program Files\sense\4b16ab6e-47cb-441f-9c15-d0341cd68309.dll

Digital Signature
Authority:
COMODO CA Limited

Valid from:
8/28/2014 5:00:00 AM

Valid to:
8/29/2015 4:59:59 AM

Subject:
CN=Morgan Enter Mode, O=Morgan Enter Mode, STREET=Athinodorou 3, STREET=Dasoupoli Strovolos, L=Nicosia, S=Cyprus, PostalCode=2025, C=CY

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00E247EA066029B70533C15792B60ED4D8

File PE Metadata
Compilation timestamp:
10/14/2014 12:38:42 AM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
3072:Kp8/O2h0tk7Lh6yJaTpsd1Kfw2daCkuKdP+u+OXN2Y05BbGra:et4BUTEmxXkuKku52zbGra

Entry address:
0x8C10

Entry point:
48, 89, 5C, 24, 08, 48, 89, 74, 24, 10, 57, 48, 83, EC, 20, 49, 8B, F8, 8B, DA, 48, 8B, F1, 83, FA, 01, 75, 05, E8, 3B, 3E, 00, 00, 4C, 8B, C7, 8B, D3, 48, 8B, CE, 48, 8B, 5C, 24, 30, 48, 8B, 74, 24, 38, 48, 83, C4, 20, 5F, E9, 03, 00, 00, 00, CC, CC, CC, 48, 8B, C4, 48, 89, 58, 20, 4C, 89, 40, 18, 89, 50, 10, 48, 89, 48, 08, 56, 57, 41, 56, 48, 83, EC, 50, 49, 8B, F0, 8B, DA, 4C, 8B, F1, BA, 01, 00, 00, 00, 89, 50, B8, 85, DB, 75, 0F, 39, 1D, 5C, CB, 01, 00, 75, 07, 33, C0, E9, D2, 00, 00, 00, 8D, 43, FF...
 
[+]

Entropy:
6.0453

Code size:
96 KB (98,304 bytes)

The file 4b16ab6e-47cb-441f-9c15-d0341cd68309.dll has been discovered within the following program.

Sense  by Object Browser
Sense is a potentially unwanted web browser extension that will attempt to modify the user's home and search page settings as well as display advertisements in the browser. The software will attach to IE, Chrome and Firefox.
85% remove it
 
Powered by Should I Remove It?

Remove 4b16ab6e-47cb-441f-9c15-d0341cd68309.dll - Powered by Reason Core Security