SuperSocket.ClientEngine.Protocol.dll

SuperSocket ClientEngine

Naruto Source

This adware is a web browser extension that will inject advertising in the browser in the form of unwanted banners and text-links which may link to malware sites and install unwanted software. The module SuperSocket.ClientEngine.Protocol.dll, “SuperSocket.ClientEngine.Protocol for .NET 2.0” by Naruto Source has been detected as adware by 11 anti-malware scanners. This file is typically installed with the program Internet Speed Checker by Sailor Project which is a potentially unwanted software program. It is distributed as part of the Brightcircle group of browser-extensions.
Publisher:
SuperSocket  (signed by Naruto Source)

Product:
SuperSocket ClientEngine

Description:
SuperSocket.ClientEngine.Protocol for .NET 2.0

Version:
0.3.0.0

MD5:
1d49bd386ed95cd7ee521c59420bf341

SHA-1:
139f934681cb445e8ff7ea9e522c75024e361bc8

SHA-256:
2243c52c9fe1f0f852f3d1f5a6cb909851ab485c0c65be8813b6d3588a54c761

Scanner detections:
11 / 68

Status:
Adware

Analysis date:
4/25/2024 12:21:41 AM UTC  (today)

Scan engine
Detection
Engine version

Avira AntiVirus
Adware/CrossRider.pq
7.11.169.160

AVG
Generic
2015.0.3364

IKARUS anti.virus
PUA.Plush
t3scan.1.7.5.0

Kaspersky
not-a-virus:AdWare.NSIS.Adwapper
15.0.0.494

McAfee
Artemis!DB8C9C95B214
5600.7020

nProtect
Trojan/W32.Agent.19816
14.08.27.01

Panda Antivirus
Trj/Chgt.D
14.09.01.10

Qihoo 360 Security
Win32/Virus.Adware.970
1.0.0.1015

Reason Heuristics
PUP.NarutoSource.FF
14.9.1.22

Sophos
Generic PUA JA
4.98

Vba32 AntiVirus
Trojan.GoogUpdate
3.12.26.3

File size:
19.4 KB (19,816 bytes)

Product version:
0.3.0.0

Copyright:
Copyright © clientengine.codeplex.com 2012

Original file name:
SuperSocket.ClientEngine.Protocol.dll

File type:
Dynamic link library (Win32 DLL)

Language:
Language Neutral

Common path:
C:\Program Files\internet speed checker\supersocket.clientengine.protocol.dll

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
7/27/2014 8:00:00 PM

Valid to:
7/28/2015 7:59:59 PM

Subject:
CN=Naruto Source, O=Naruto Source, STREET=Athinodorou 3, STREET=Dasoupoli Strovolos, L=Nicosia, S=Cyprus, PostalCode=2025, C=CY

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
1CE82906A7F364268F66771839675655

File PE Metadata
Compilation timestamp:
4/11/2014 10:22:22 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
384:s0K1XmogLQQkmW8GdaO6cWmgLq055Ll8d:4Xm/n6dkmgLq0yd

Entry address:
0x51CE

Entry point:
FF, 25, 00, 20, 00, 10, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 01, 00, 10, 00, 00, 00, 18, 00, 00, 80, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 01, 00, 01, 00, 00, 00, 30, 00, 00, 80, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 00, 00, 48, 00, 00, 00, 58, 60, 00, 00, 44, 04...
 
[+]

Entropy:
5.9552

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
12.5 KB (12,800 bytes)

The file SuperSocket.ClientEngine.Protocol.dll has been discovered within the following program.

Internet Speed Checker  by Sailor Project
Internet Speed Checker is an adware web browser application that displays banner ads as well as contextual link ads that are injected in the web page.
62% remove it
 
Powered by Should I Remove It?

Remove SuperSocket.ClientEngine.Protocol.dll - Powered by Reason Core Security