vbobho.dll

D

myVBO LLC

The is the installer for the WebPick InstalleRex download manager which bundles applications with offers for additional 3rd party software, mostly unwanted adware, and may be installed without consent. The module vbobho.dll, “FreePriceAlerts.com” by myVBO has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
FreePriceAlerts.com  (signed by myVBO LLC)

Product:
D

Description:
FreePriceAlerts.com

Version:
3.0.0.0

MD5:
962f54e06cf79aaaf8b0d2a2f5dc3143

SHA-1:
27a4ae2133bb82d586791b23e079ab8747bd9ab8

SHA-256:
4f0ec995608d0c7dcee42ed461aa8e25019a64d9143d26f6354ae1d7d8dcb8ef

Scanner detections:
1 / 68

Status:
Adware

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
4/26/2024 12:49:43 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.myVBO.G
14.7.27.14

File size:
815.5 KB (835,088 bytes)

Product version:
3.0.0.0

Copyright:
FreePriceAlerts.com

Original file name:
vbobho.dll

File type:
Dynamic link library (Win64 DLL)

Common path:
C:\Program Files\freepricealerts\win64\vbobho.dll

Digital Signature
Signed by:

Authority:
Thawte, Inc.

Valid from:
5/11/2012 3:00:00 AM

Valid to:
5/12/2013 2:59:59 AM

Subject:
CN=myVBO LLC, OU=FreePriceAlerts, O=myVBO LLC, L=Peterborough, S=New Hampshire, C=US

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
1D23E52C70371EBEA800A8FDB3606CF4

File PE Metadata
Compilation timestamp:
4/23/2013 9:27:28 PM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
12288:X4jQwGn1Q4/pnl94IdVEZqmu+bKF7YtM1ivNJnZKtI58wfp5F81bQVyeY51seYG5:XX95EZRtK5Av5KzbayT1sN8x

Entry address:
0x6F21C

Entry point:
48, 89, 5C, 24, 08, 48, 89, 74, 24, 10, 57, 48, 83, EC, 20, 49, 8B, F8, 8B, DA, 48, 8B, F1, 83, FA, 01, 75, 05, E8, DF, 02, 00, 00, 4C, 8B, C7, 8B, D3, 48, 8B, CE, 48, 8B, 5C, 24, 30, 48, 8B, 74, 24, 38, 48, 83, C4, 20, 5F, E9, 8B, FE, FF, FF, CC, CC, CC, 48, 89, 4C, 24, 08, 48, 81, EC, 88, 00, 00, 00, 48, 8D, 0D, B1, DF, 04, 00, FF, 15, 4B, 6E, 01, 00, 4C, 8B, 1D, 9C, E0, 04, 00, 4C, 89, 5C, 24, 58, 45, 33, C0, 48, 8D, 54, 24, 60, 48, 8B, 4C, 24, 58, E8, 55, 03, 00, 00, 48, 89, 44, 24, 50, 48, 83, 7C, 24...
 
[+]

Entropy:
6.0688

Code size:
527.5 KB (540,160 bytes)

Remove vbobho.dll - Powered by Reason Core Security