nss3.dll

Network Security Services

Pass Revelator

nss3.dll is the Network Security Services (NSS), a base library for cryptographic algorithms and secure network protocols used by Mozilla software and is recompiled by Pass Revelator. The module nss3.dll by Pass Revelator has been detected as adware by 5 anti-malware scanners. Note, this is a common distributed file and although it has been detected it might not be a threat is un-coupled from its distribution source.
Publisher:
Netscape Communications Corporation  (signed by Pass Revelator)

Product:
Network Security Services

Description:
NSS Base Library

Version:
3.9

MD5:
0f5492eb5e99f1fa72f5bc543ff888d5

SHA-1:
7b1f07a50ae0e5c0b1d6b14dbbf1cb7f7a0795cd

SHA-256:
9b9ff1c7af2e7379db7d9ef8b5a92eb70e074e1ff79562e918c538dbd039773e

Scanner detections:
5 / 68

Status:
Adware

Explanation:
This is the Network Security Services (NSS), a base library for cryptographic algorithms and secure network protocols used by Mozilla software. While the file itself is not dangerous, it is part of a program that has been detected.

Analysis date:
4/25/2024 3:51:12 PM UTC  (today)

Scan engine
Detection
Engine version

Kaspersky
not-a-virus:Downloader.Win32.Agent
14.0.0.3477

Qihoo 360 Security
Win32/Virus.Downloader.629
1.0.0.1015

Quick Heal
Downloader.Agent.r5 (Not a Virus)
7.14.14.00

Reason Heuristics
Common.PUP.PassRevelator.E
14.8.31.22

Trend Micro House Call
Suspicious_GEN.F47V0625
7.2.212

File size:
344.4 KB (352,664 bytes)

Product version:
3.9

Copyright:
Copyright © 1994-2001 Netscape Communications Corporation

Original file name:
nss3.dll

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
10/16/2013 5:00:00 PM

Valid to:
10/17/2015 4:59:59 PM

Subject:
CN=Pass Revelator, O=Pass Revelator, STREET=12 rue de Bercy, L=PARIS, S=Outside United States, PostalCode=75012, C=FR

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00D37B33CFAC6554AC36A251FA8F91F977

File PE Metadata
Compilation timestamp:
1/8/2004 3:48:41 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
6144:tNIT/CLgGHToFS1/yjK48HqJH4VICVELvJ5KPTW8M0+LcnoWw3bz5B8Hup+K:tNIT/CLgGzogajK4ZhCGB5KrW8T+LJWi

Entry address:
0x3DFCB

Entry point:
55, 8B, EC, 53, 8B, 5D, 08, 56, 8B, 75, 0C, 57, 8B, 7D, 10, 85, F6, 75, 09, 83, 3D, E8, 13, 05, 10, 00, EB, 26, 83, FE, 01, 74, 05, 83, FE, 02, 75, 22, A1, 08, 14, 05, 10, 85, C0, 74, 09, 57, 56, 53, FF, D0, 85, C0, 74, 0C, 57, 56, 53, E8, 15, FF, FF, FF, 85, C0, 75, 04, 33, C0, EB, 4E, 57, 56, 53, E8, 53, 00, 00, 00, 83, FE, 01, 89, 45, 0C, 75, 0C, 85, C0, 75, 37, 57, 50, 53, E8, F1, FE, FF, FF, 85, F6, 74, 05, 83, FE, 03, 75, 26, 57, 56, 53, E8, E0, FE, FF, FF, 85, C0, 75, 03, 21, 45, 0C, 83, 7D, 0C, 00...
 
[+]

Entropy:
6.3691

Developed / compiled with:
Microsoft Visual C++ 6.0

Code size:
248 KB (253,952 bytes)

Remove nss3.dll - Powered by Reason Core Security