betarez.ffupdate.dll

Beta Rez

FFUpdate is the Mozilla Firefox plugin manager for the Beta Rez branded Yontoo adware browser platform. The component is designed to install and keep Firefox connected to the adware updater. The module betarez.ffupdate.dll by Beta Rez has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
Beta Rez  (signed and verified)

Version:
1.0.5584.25416

MD5:
bc49a97682f0112a92dcca5ef22b8c67

SHA-1:
f71f07fd44a5a9028182b37ad0bc1a63d2be5ae5

SHA-256:
8231e65282a0e8f891ffb283bb873d35dcfd4c48afd97e68c074d59c49140f9d

Scanner detections:
1 / 68

Status:
Adware

Explanation:
Part of the Yontoo distributed ad-supported web browser plugin for Firefox.

Analysis date:
4/6/2026 1:08:16 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Adware.Yontoo (M)
17.2.25.3

File size:
593.2 KB (607,472 bytes)

Product version:
1.0.5584.25416

Original file name:
BetaRez.FFUpdate2015041622.dll

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\Program Files\beta rez\bin\plugins\betarez.ffupdate.dll

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
3/11/2015 3:00:00 AM

Valid to:
4/10/2016 2:59:59 AM

Subject:
CN=Beta Rez, O=Beta Rez, L=Santa Monica, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
1EFCFAF7CDCBA99CF6B0644BA639545E

File PE Metadata
Compilation timestamp:
4/17/2015 1:07:17 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
6.0

.NET CLR dependent:
Yes

Entry address:
0x942DE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
7.4683

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
585 KB (599,040 bytes)

Remove betarez.ffupdate.dll - Powered by Reason Core Security