findright.ffupdate.dll

FindRight

FFUpdate is the Mozilla Firefox plugin manager for the FindRight branded Yontoo adware browser platform. The component is designed to install and keep Firefox connected to the adware updater. The module findright.ffupdate.dll by FindRight has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
FindRight  (signed and verified)

Version:
1.0.5795.34514

MD5:
31d2a907a619339cdf31cf1d492d930f

SHA-1:
40dad5f1538cbd05add1a32deaef1344cd818586

SHA-256:
9727339b525c6587212068c3621527fe67d9d77fe812202637372a2f65a04801

Scanner detections:
1 / 68

Status:
Adware

Explanation:
Part of the Yontoo distributed ad-supported web browser plugin for Firefox.

Analysis date:
6/2/2024 9:06:15 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Adware.Yontoo (M)
17.3.10.13

File size:
549.2 KB (562,416 bytes)

Product version:
1.0.5795.34514

Original file name:
2015111403.dll

File type:
Dynamic link library (Win32 DLL)

Language:
Language Neutral

Common path:
C:\Program Files\findright\bin\plugins\findright.ffupdate.dll

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
11/13/2014 7:00:00 AM

Valid to:
12/14/2015 6:59:59 AM

Subject:
CN=FindRight, O=FindRight, L=San Diego, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
15DDD28685B56AF9DAC61ECC7CB24C06

File PE Metadata
Compilation timestamp:
11/14/2015 10:10:32 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
11.0

.NET CLR dependent:
Yes

Entry address:
0x89226

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
7.4979

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
541 KB (553,984 bytes)

Remove findright.ffupdate.dll - Powered by Reason Core Security