install.rdf

Settings Manager

This is an Install Manifest file for the Settings Manager Firefox extension and provides metadata identifying the extension. It is installed within the Mozilla Firefox web browser as part of an addin/plugin.
Remove install.rdf - Powered by Reason Core Security
MD5:
587153f2db9339858f629c80924351b7

SHA-1:
9d4b95132ad9cc3263fa93579f4ed89230e680ad

SHA-256:
3d29cc37b8a2af54d752db0cf4bcd7edd842d09e83b1e92cce7c1c2cbace2e01

Scanner detections:
1 / 68

Status:
Potentially unwanted

Explanation:
While the manifest file itself is not malware, it is linked to an unwanted Firefox extension.

Analysis date:
12/10/2016 11:27:07 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Mozilla.Extension.K
14.9.18.4

Remove install.rdf - Powered by Reason Core Security
File size:
1.2 KB (1,244 bytes)

File type:
Resource Description Framework (RDF)

Common path:
C:\users\{user}\appdata\roaming\mozilla\firefox\profiles\{user}.default\extensions\{9856b993-9680-9ae0-4a23-93268d062131}\install.rdf

Mozilla Extension
Name:
Settings Manager

Description:
“Settings Manager for Firefox”

Home page:
http://www.default-search.net?sid=492&aid=203&itype=a&ver=12791&tm=372&src=hmp


<RDF xmlns="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:em="http://www.mozilla.org/2004/em-rdf#">
  <Description about="urn:mozilla:install-manifest">
    <em:id>{9856B993-9680-9AE0-4A23-93268D062131}</em:id>
    <em:unpack>true</em:unpack>
    <em:name>Settings Manager</em:name>
    <em:version>5.0.0.12791</em:version>
    <em:description>Settings Manager for Firefox</em:description>
    <em:homepageURL>http://www.default-search.net?sid=492&amp;aid=203&amp;itype=a&amp;ver=12791&amp;tm=372&amp;src=hmp</em:homepageURL>
    <em:targetApplication>
      <Description>
        <em:id>{ec8030f7-c20a-464f-9b0e-13a3a9e97384}</em:id>
        <!-- firefox -->
        <em:minVersion>4.0</em:minVersion>
        <em:maxVersion>29.*</em:maxVersion>
      </Description>
    </em:targetApplication>
    <em:updateURL>http://ffupdate.cdn.aztecbe.com/update.rdf?id={9856B993-9680-9AE0-4A23-93268D062131}&amp;p=aztecbe.com&amp;sysid=492&amp;appid=203&amp;v=a12791-372&amp;t=4</em:updateURL>
    <em:updateKey>
MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC5l5uUNAxoDP0gcVCfKweH63YtjLUzHBordUGwacNqgWd4E8JNxYiBXjBU8sxTI/MNVXIg7UyTzhwQIdkhWX9POuwOTmFA9BQMvLZst+XUxfuH6x1t8EGLfwasp+m4Pq1adTYxVlQsSEvURxztS5y7lVpppRBFEzC46IsVTAGUUwIDAQAB
</em:updateKey>
  </Description>
</RDF>
Remove install.rdf - Powered by Reason Core Security