trustedadssvc.exe

PrivDog Browser Extension

Adtrustmedia, LLC

The application trustedadssvc.exe by Adtrustmedia has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
AdTrustMedia  (signed by Adtrustmedia, LLC)

Product:
PrivDog Browser Extension

Description:
PrivDog Service

Version:
1.9.0.14

MD5:
f7b293e5f78de103e6936569454706dc

SHA-1:
1162604516a5db1d3c30b828091eac5b024ee9ef

SHA-256:
7d759ce9d5044c2b52af80d60fa653cfefc7502fb3808a717b877274b4abcebb

Scanner detections:
1 / 68

Status:
Potentially unwanted

Explanation:
Displays advertising 'Trusted Advertisements' in the user's web browser in pages that normally would not show ads. Ads from AdTrustMedia are indicated by "AT-M Ad" displayed on the bottom right of the advertisement.

Analysis date:
4/23/2024 5:18:27 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Adtrustmedia.N
14.12.31.7

File size:
727.2 KB (744,616 bytes)

Product version:
1.9.0.14

Copyright:
Copyright © AdTrustMedia 2012-2013. All rights reserved.

Original file name:
trustedadssvc.exe

File type:
Executable application (Win64 EXE)

Language:
English (United States)

Common path:
C:\Program Files\adtrustmedia\privdog\1.9.0.21\trustedadssvc.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
11/14/2013 12:00:00 AM

Valid to:
11/14/2014 11:59:59 PM

Subject:
CN="Adtrustmedia, LLC", O="Adtrustmedia, LLC", STREET="41 Watchung Plaza #330", L=Montclair, S=New Jersey, PostalCode=07042, C=US

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
4969CFD545F605E70D3F1290BB4893DB

File PE Metadata
Compilation timestamp:
1/3/2014 3:54:42 PM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
12288:MpZl+ae0L4nG/yyySB+YdkKyfheuT/X1Ov9VOmiW:MZl+x8/krT/F2cBW

Entry address:
0x61B14

Entry point:
48, 83, EC, 28, E8, E7, 04, 00, 00, 48, 83, C4, 28, E9, 26, FD, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 66, 66, 0F, 1F, 84, 00, 00, 00, 00, 00, 48, 3B, 0D, D9, F4, 02, 00, 75, 11, 48, C1, C1, 10, 66, F7, C1, FF, FF, 75, 02, F3, C3, 48, C1, C9, 10, E9, 59, 05, 00, 00, CC, FF, 25, 1A, A9, 00, 00, CC, CC, 48, 89, 5C, 24, 10, 44, 89, 44, 24, 18, 48, 89, 4C, 24, 08, 56, 57, 41, 54, 48, 83, EC, 40, 49, 8B, F1, 41, 8B, F8, 4C, 8B, E2, 48, 8B, D9, FF, CF, 89, 7C, 24, 70, 78, 0F, 49...
 
[+]

Entropy:
5.9455

Code size:
424.5 KB (434,688 bytes)

Remove trustedadssvc.exe - Powered by Reason Core Security