serialtruncbho.dll

SerialTrunc

The module serialtruncbho.dll by SerialTrunc has been detected as adware by 15 anti-malware scanners. It is installed within the context of Internet Explore as a BHO (Browser Helper Object) under the name ‘SerialTrunc’. This file is typically installed with the program SerialTrunc by Yontoo Technology, Inc. which is a potentially unwanted software program. It will plug into the web browser and display context-based advertisements by overwriting existing ads or by inserting new ones on various web pages.
Publisher:
SerialTrunc  (signed and verified)

Product:
SerialTrunc

Version:
1.0.0.1

MD5:
6c5faa8c917f772f075cc2529f1ebdbf

SHA-1:
8189eecff1d713d6a9d2058fe88916aa6878bc34

SHA-256:
b4324f19fc68b187c00580125e0de49253ad1f07ff19fa4ba83c76dd50051a98

Scanner detections:
15 / 68

Status:
Adware

Explanation:
Injects advertising in the web browser in various formats.

Analysis date:
2/23/2014 4:02:23 AM UTC  (five months ago)

Scan engine
Detection
Engine version

Agnitum Outpost
PUA.Agent
7.1.1

Antiy Labs AVL
AdWare/Win32.Agent
2.0.3.7

Comodo Security
Application.Win32.Altbrowse.AK
17718

Dr.Web
Adware.Plugin.100
9.0.1.028

ESET NOD32
Win32/BrowseFox (variant)
8.9371

Fortinet FortiGate
Adware/Agent
1/28/2014

IKARUS anti.virus
not-a-virus:AdWare.Win32.Agent
t3scan.2.2.29

Jiangmin
Adware/Agent.jaw
KV140128

Kaspersky
not-a-virus:AdWare.Win32.Agent
14.0.0.4395

Malwarebytes
PUP.Optional.SerialTrunc.A
v2014.02.02.10

NANO AntiVirus
Riskware.Win32.Agent.cqvnby
0.28.0.57473

Reason Heuristics
PUP.BHO.SerialTrunc.O
14.2.22.23

Sophos
Generic PUA IB
4.97

Trend Micro House Call
TROJ_GEN.F47V0120
7.2.28

Vba32 AntiVirus
AdWare.Agent
3.12.24.3

File size:
243.8 KB (249,632 bytes)

Product version:
1.0.0.1

Copyright:
(c) SerialTrunc. All rights reserved.

Original file name:
SerialTruncIEClient.dll

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\Program Files\serialtrunc\serialtruncbho.dll

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
1/2/2014 4:00:00 PM

Valid to:
1/3/2015 3:59:59 PM

Subject:
CN=SerialTrunc, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=SerialTrunc, L=San Diego, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
167D55FA84ED98E4D7F5933FEC5E95BA

File PE Metadata
Compilation timestamp:
1/7/2014 11:25:13 AM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
3072:S7+AGDPFQEo75yrehClBDyf1e0EEnT+eTCIaIycgUPvngL92:S7+j27mebJZTduILRHgL92

Entry address:
0x12844

Entry point:
55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, 41, 8D, 00, 00, FF, 75, 10, FF, 75, 0C, FF, 75, 08, E8, 07, 00, 00, 00, 83, C4, 0C, 5D, C2, 0C, 00, 6A, 0C, 68, 80, 2D, 03, 10, E8, BD, 01, 00, 00, 33, C0, 40, 8B, 75, 0C, 85, F6, 75, 0C, 39, 35, 44, 68, 03, 10, 0F, 84, E4, 00, 00, 00, 83, 65, FC, 00, 83, FE, 01, 74, 05, 83, FE, 02, 75, 35, 8B, 0D, DC, A1, 02, 10, 85, C9, 74, 0C, FF, 75, 10, 56, FF, 75, 08, FF, D1, 89, 45, E4, 85, C0, 0F, 84, B1, 00, 00, 00, FF, 75, 10, 56, FF, 75, 08, E8, 11, FE, FF, FF, 89, 45, E4...
 
[+]

Entropy:
6.3690

Developed / compiled with:
Microsoft Visual C++

Code size:
159 KB (162,816 bytes)

Internet Explorer BHO
Display name:
SerialTrunc

CLSID:
{e76b4f24-4a2f-4e65-ad36-e2aa934e547c}


The file serialtruncbho.dll has been discovered within the following programs.

SerialTrunc  by Yontoo Technology, Inc.
This adware program injects advertisements with its affiliate ad providers in order to serve a number of ad types including banner, inline text links and popups.
serialtrunc.com/support
79% remove it
 
Powered by Should I Remove It?

There are numerous known versions of serialtruncbho.dll by SerialTrunc.

29 / 68    (Adware)
serialtruncbho.dll  1.0.0.3  (9a72437bf0d49ede809338cb1ced67d516ec51da)

27 / 68    (Adware)
serialtruncbho.dll  1.0.0.3  (723cc649563338db51f48ab65685fbb078562fe4)

27 / 68    (Adware)
serialtruncbho.dll  1.0.0.3  (d8c3a84be12901608fe341d440f35e71da32b017)

24 / 68    (Adware)
serialtruncbho.dll  1.0.0.3  (e12a15b6d63ded9c15740ab8db82528e7b761216)

24 / 68    (Adware)
serialtruncbho.dll  1.0.0.3  (4c1ded6399e3f63cbf94e4f299b13b1d92a45cbc)

21 / 68    (Adware)
serialtruncbho.dll  1.0.0.3  (732db06e781585f423764c34ed09e1706968f44f)

21 / 68    (Adware)
serialtruncbho.dll  1.0.0.3  (5abad2e2fdb79e9a3577e2e0b4c6300fc49093e6)

20 / 68    (Adware)
serialtruncbho.dll  1.0.0.3  (89b058634fd0c41aea1e8efc79c4c37e9fb4287c)

20 / 68    (Adware)
serialtruncbho.dll  1.0.0.3  (9c959e1aa0b68028165d36908b8ec9d81e60be62)

20 / 68    (Adware)
serialtruncbho.dll  1.0.0.3  (a857c456e7ecd60049a0530c8135272d81c94522)

21 / 68    (Adware)
serialtruncbho.dll  1.0.0.3  (d31b20479dc4b30d2eab0b25d5f723216965bec3)

21 / 68    (Adware)
serialtruncbho.dll  1.0.0.3  (e9cdad7a78a48f445fa3408e2329411579788c88)

17 / 68    (Adware)
serialtruncbho.dll  1.0.0.3  (638fee8f0c251eb8a424d72b55e4fc4b32a18ea4)

10 / 68    (Adware)
serialtruncbho.dll  1.0.0.3  (3d5f3091a8e1e95d9fb449d32a76fd47f632990a)

11 / 68    (Adware)
serialtruncbho.dll  1.0.0.3  (7dbf05b616d8712fca10c1738cc011c7269186c1)

4 / 68      (Adware)
toolbar64585786.exe  (3ba7315f81d0026ec9506e8b9d34596762acf6db)

13 / 68    (Adware)
setup.exe  (6e4b1a511b2852a398411bf7f44b1c8252098a84)

9 / 68      (Adware)
updateserialtrunc.exe  (825ad124b88d0cc0d2655c9c8ee6050b85caa58b)

1 / 68      (Adware)
serialtrunc.16.dll  (8e7f8825f0dd964a8274a906810b56f90a025e90)

1 / 68      (Adware)
SerialTrunc.FFUpdate.dll  (6be52a2b775b193b9c8fa6ef4adf76f7d342b168)

2 / 68      (Adware)
SerialTrunc.GCUpdate.dll  (4d8230d5cf05dba39ad65285dbdcb5479b5c2c41)

1 / 68      (Adware)
SerialTrunc.IEUpdate.dll  (8902dcb53540f03a8f0baaa13b239b3dbc4ddc5b)

8 / 68      (Adware)
utilserialtrunc.exe  (64ef25be586173b07ae9fad800c2a38c37feaf2b)

1 / 68      (Adware)
SerialTruncBrowserFilter.exe  (5b8d22e71fd3fa20ad9553a3d1666c02f5766695)

5 / 68      (Adware)
serialtrunc.browserfilter.helper.dll  (0c5b42fca424480f4ba468c8d044b61f2f176d6d)

1 / 68      (Adware)
SerialTrunc.BrowserFilter.dll  (079d50dcb5c62a7364d649c6e26f97fd383d959f)

1 / 68      (Adware)
SerialTrunc.BrowserFilterG.dll  (050d8c5b56c646ca8afc1078bb7644c26075a03e)

1 / 68      (Adware)
SerialTrunc.FirstRun.exe  (7b7eefa347d34c4d58c3f93e9f643278d1946a16)

Detection Incidence by Country