SuperSocket.ClientEngine.Protocol.dll

SuperSocket ClientEngine

Naruto Source

This adware is a web browser extension that will inject advertising in the browser in the form of unwanted banners and text-links which may link to malware sites and install unwanted software. The module SuperSocket.ClientEngine.Protocol.dll, “SuperSocket.ClientEngine.Protocol for .NET 2.0” by Naruto Source has been detected as adware by 13 anti-malware scanners. This file is typically installed with the program Internet Speed Checker by Sailor Project which is a potentially unwanted software program. It is distributed as part of the Brightcircle group of browser-extensions.
Publisher:
SuperSocket  (signed by Naruto Source)

Product:
SuperSocket ClientEngine

Description:
SuperSocket.ClientEngine.Protocol for .NET 2.0

Version:
0.3.0.0

MD5:
88a7fd9445db11fc9bd0fb5a1086e3b0

SHA-1:
217f1b538a5ba0575ba53237ca03b5ef99311ea0

SHA-256:
0b540db5ad79ca884be1d3a3374a2b36d38ce6fec019b387ec375c4fa07603ad

Scanner detections:
13 / 68

Status:
Adware

Analysis date:
4/19/2024 8:48:13 AM UTC  (today)

Scan engine
Detection
Engine version

Avira AntiVirus
Adware/CrossRider.pq
7.11.169.54

AVG
Generic
2015.0.3342

Baidu Antivirus
Adware.NSIS.Adwapper
4.0.3.14923

IKARUS anti.virus
PUA.Plush
t3scan.1.6.1.0

Kaspersky
not-a-virus:AdWare.NSIS.Adwapper
14.0.0.3207

McAfee
Artemis!B673A4777059
5600.6998

nProtect
Trojan/W32.Agent.19816
14.08.25.01

Panda Antivirus
Trj/Chgt.B
14.09.23.12

Qihoo 360 Security
Win32/Virus.Adware.970
1.0.0.1015

Reason Heuristics
PUP.NarutoSource.FF
14.9.23.12

Sophos
Generic PUA IG
4.98

Trend Micro House Call
Suspicious_GEN.F47V0818
7.2.266

Vba32 AntiVirus
TScope.Trojan.MSIL
3.12.26.3

File size:
19.4 KB (19,816 bytes)

Product version:
0.3.0.0

Copyright:
Copyright © clientengine.codeplex.com 2012

Original file name:
SuperSocket.ClientEngine.Protocol.dll

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\Program Files\internet speed checker\supersocket.clientengine.protocol.dll

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
7/28/2014 2:00:00 AM

Valid to:
7/29/2015 1:59:59 AM

Subject:
CN=Naruto Source, O=Naruto Source, STREET=Athinodorou 3, STREET=Dasoupoli Strovolos, L=Nicosia, S=Cyprus, PostalCode=2025, C=CY

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
1CE82906A7F364268F66771839675655

File PE Metadata
Compilation timestamp:
4/11/2014 4:22:22 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
384:n0K1XmogLQQkmW8GdaO6cWmgLq055Ll8BX:HXm/n6dkmgLq0yBX

Entry address:
0x51CE

Entry point:
FF, 25, 00, 20, 00, 10, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 01, 00, 10, 00, 00, 00, 18, 00, 00, 80, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 01, 00, 01, 00, 00, 00, 30, 00, 00, 80, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 00, 00, 48, 00, 00, 00, 58, 60, 00, 00, 44, 04...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
12.5 KB (12,800 bytes)

The file SuperSocket.ClientEngine.Protocol.dll has been discovered within the following program.

Internet Speed Checker  by Sailor Project
Internet Speed Checker is an adware web browser application that displays banner ads as well as contextual link ads that are injected in the web page.
62% remove it
 
Powered by Should I Remove It?

Remove SuperSocket.ClientEngine.Protocol.dll - Powered by Reason Core Security