thefreehd-sport tv v10-bho64.dll

TheFreeHD-Sport TV V10

Sailor Project

This potentially unwanted Internet browser extension is built upon and distributed using the free Crossrider platform and will deliver advertisements to the web browser in various formats such as banner, text hyper-links, inline text and transitional ads. The module thefreehd-sport tv v10-bho64.dll, “TheFreeHD-Sport TV V10 BHO” by Sailor Project has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat. This is the 64-bit version of the Browser Helper Object (BHO) for the Crossrider web browser platform for Internet Explorer. Instead of utilizing a traditional IE Toolbar, Crossrider installs a BHO in the browser in order to manage the functionality of tab addon. It is part of the Brightcircle group of web-extensions that inject advertisements in the browser.
Publisher:
tab  (signed by Sailor Project)

Product:
TheFreeHD-Sport TV V10

Description:
TheFreeHD-Sport TV V10 BHO

Version:
1000.1000.1000.1000

MD5:
f01fe42a7cd4a0fdfa7af8f54c383630

SHA-1:
ac926d749d6c55e771857800d4c1a60a43e0e0e1

SHA-256:
fa0aa458d34620b4b0d4518a0edd54f12be392ea04784b3d4233dc82916f69b5

Scanner detections:
1 / 68

Status:
Adware

Explanation:
Part of the Crossrider toolbar platform. It will run as a BHO in Internet Explorer.

Note:
Crossrider is the owner of a platform that enables the creation of cross-browser extensions by developers but is not the owner of this detected application. The owner/publisher of this file is Sailor Project.

Analysis date:
5/25/2020 7:33:06 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Adware.Crossrider (M)
17.3.15.2

File size:
796.9 KB (815,976 bytes)

Product version:
1000.1000.1000.1000

Copyright:
Copyright 2011

Original file name:
TheFreeHD-Sport TV V10.dll

File type:
Dynamic link library (Win64 DLL)

Language:
English (United States)

Common path:
C:\Program Files\thefreehd-sport tv v10\thefreehd-sport tv v10-bho64.dll

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
7/17/2014 7:00:00 PM

Valid to:
7/18/2015 6:59:59 PM

Subject:
CN=Sailor Project, O=Sailor Project, STREET=Athinodorou 3, STREET=Dasoupoli Strovolos, L=Nicosia, S=Cyprus, PostalCode=2025, C=CY

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
47C5F145C734CD3D086C0A102176F0A1

Registration
CLSIDs:
{11111111-1111-1111-1111-110611181153}, {22222222-2222-2222-2222-220622182253}

ProgIDs:
CrossriderApp0061853.BHO.1, CrossriderApp0061853.Sandbox.1

COM registered:
Yes

File PE Metadata
Compilation timestamp:
8/5/2014 5:02:32 PM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
11.0

Entry address:
0x5C428

Entry point:
48, 89, 5C, 24, 08, 48, 89, 74, 24, 10, 57, 48, 83, EC, 20, 49, 8B, F8, 8B, DA, 48, 8B, F1, 83, FA, 01, 75, 05, E8, EB, CB, 00, 00, 4C, 8B, C7, 8B, D3, 48, 8B, CE, 48, 8B, 5C, 24, 30, 48, 8B, 74, 24, 38, 48, 83, C4, 20, 5F, E9, 03, 00, 00, 00, CC, CC, CC, 48, 8B, C4, 48, 89, 58, 20, 4C, 89, 40, 18, 89, 50, 10, 48, 89, 48, 08, 56, 57, 41, 56, 48, 83, EC, 50, 49, 8B, F0, 8B, DA, 4C, 8B, F1, BA, 01, 00, 00, 00, 89, 50, B8, 85, DB, 75, 0F, 39, 1D, 5C, FD, 05, 00, 75, 07, 33, C0, E9, D2, 00, 00, 00, 8D, 43, FF...
 
[+]

Entropy:
6.2411

Code size:
523 KB (535,552 bytes)

Remove thefreehd-sport tv v10-bho64.dll - Powered by Reason Core Security