browser+ apps+-bho64.dll

Browser+ Apps+

Gogo Network Club

This adware is a web browser extension that will inject advertising in the browser in the form of unwanted banners and text-links which may link to malware sites and install unwanted software. The module browser+ apps+-bho64.dll, “Browser+ Apps+ BHO” by Gogo Network Club has been detected as adware by 11 anti-malware scanners. This file is typically installed with the program Browser+ Apps+ by Gogo Network Club which is a potentially unwanted software program. This is the 64-bit version of the Browser Helper Object (BHO) for the Crossrider web browser platform for Internet Explorer. Instead of utilizing a traditional IE Toolbar, Crossrider installs a BHO in the browser in order to manage the functionality of browser addon. It is part of the Brightcircle group of web-extensions that inject advertisements in the browser.
Publisher:
browser  (signed by Gogo Network Club)

Product:
Browser+ Apps+

Description:
Browser+ Apps+ BHO

Version:
1000.1000.1000.1000

MD5:
fb4d67726fe6578a4c7627b3b109220f

SHA-1:
4834c9bc17f05f00e6ef3eb1976b9dc7933308ef

SHA-256:
2a0adb2f2468e5391cf94309b888f7b7333311ac64b95d549cbd57f3a25bf500

Scanner detections:
11 / 68

Status:
Adware

Explanation:
Part of the Crossrider toolbar platform. It will run as a BHO in Internet Explorer.

Note:
Crossrider is the owner of a platform that enables the creation of cross-browser extensions by developers but is not the owner of this detected application. The owner/publisher of this file is Gogo Network Club.

Analysis date:
4/25/2024 5:09:09 PM UTC  (today)

Scan engine
Detection
Engine version

Avira AntiVirus
ADWARE/CrossRider.Gen2
7.11.171.232

avast!
Win32:Crossrider-AK [PUP]
141003-0

AVG
Generic
2015.0.3316

Baidu Antivirus
PUA.Win64.Crossrider
4.0.3.141019

ESET NOD32
Win64/Toolbar.Crossrider.F potentially unwanted application
7.0.302.0

G Data
Win64.Adware.Crossrider
14.10.24

IKARUS anti.virus
PUA.Toolbar.CrossRider
t3scan.1.7.8.0

Malwarebytes
PUP.Optional.BrowserApps.A
v2014.10.19.04

McAfee
Artemis!2586DE44ABB2
5600.6972

Reason Heuristics
PUP.Crossrider.GogoNetworkClub.U
14.10.19.16

VIPRE Antivirus
Crossrider
33242

File size:
727.4 KB (744,864 bytes)

Product version:
1000.1000.1000.1000

Copyright:
Copyright 2011

Original file name:
Browser+ Apps+.dll

File type:
Dynamic link library (Win64 DLL)

Language:
English (United States)

Common path:
C:\Program Files\browser+ apps+\browser+ apps+-bho64.dll

Digital Signature
Authority:
COMODO CA Limited

Valid from:
8/18/2014 7:00:00 PM

Valid to:
8/19/2015 6:59:59 PM

Subject:
CN=Gogo Network Club, O=Gogo Network Club, STREET=Athinodorou 3, STREET=Dasoupoli Strovolos, L=Nicosia, S=Nicosia, PostalCode=2025, C=CY

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
75BF783471861CAD78DE03A20768BF56

Registration
CLSIDs:
{11111111-1111-1111-1111-110611441149}, {22222222-2222-2222-2222-220622442249}

ProgIDs:
CrossriderApp0064449.BHO.1, CrossriderApp0064449.Sandbox.1

COM registered:
Yes

File PE Metadata
Compilation timestamp:
9/9/2014 5:07:01 AM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
12288:WQnrCaLkU2PgdZAmVDQ+hJ3KvlTGPCvWmBK:WgLkU28ZAUvJ3KdTOCVBK

Entry address:
0x525AC

Entry point:
48, 89, 5C, 24, 08, 48, 89, 74, 24, 10, 57, 48, 83, EC, 20, 49, 8B, F8, 8B, DA, 48, 8B, F1, 83, FA, 01, 75, 05, E8, AF, CB, 00, 00, 4C, 8B, C7, 8B, D3, 48, 8B, CE, 48, 8B, 5C, 24, 30, 48, 8B, 74, 24, 38, 48, 83, C4, 20, 5F, E9, 03, 00, 00, 00, CC, CC, CC, 48, 8B, C4, 48, 89, 58, 20, 4C, 89, 40, 18, 89, 50, 10, 48, 89, 48, 08, 56, 57, 41, 56, 48, 83, EC, 50, 49, 8B, F0, 8B, DA, 4C, 8B, F1, BA, 01, 00, 00, 00, 89, 50, B8, 85, DB, 75, 0F, 39, 1D, E8, 93, 05, 00, 75, 07, 33, C0, E9, D2, 00, 00, 00, 8D, 43, FF...
 
[+]

Entropy:
6.2245

Code size:
471.5 KB (482,816 bytes)

The file browser+ apps+-bho64.dll has been discovered within the following program.

Browser+ Apps+  by Gogo Network Club
browser+ apps+ is a potentially unwanted adware program that injects ads into the user's browser. This includes inserting into web pages or displaying ads over parts of existing web page advertisements, banners, coupons or text links that would not otherwise appear.
84% remove it
 
Powered by Should I Remove It?

Remove browser+ apps+-bho64.dll - Powered by Reason Core Security