WiseEnhanceBrowserFilter.exe

WiseEnhance

Installed as part of the Yontoo WiseEnhance branded web browser extension, the BrowserFilter component is responsible for injecting advertising in the browser based on the context of the HTML being rendered. Ads are injected in the browser in the form of inline text, coupons, multi-site searching and additional offers. The application WiseEnhanceBrowserFilter.exe by WiseEnhance has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat. This file is typically installed with the program WiseEnhance by Yontoo Technology, Inc. which is a potentially unwanted software program.
Publisher:
WiseEnhance  (signed and verified)

Version:
0.0.0.0

MD5:
fe877abb09f054f6407418e8a2b87c86

SHA-1:
b396f01447e3cb3fbd0bbd0454da6f0fb2d55078

SHA-256:
2f73c5265b29c7ced3dce150e4a3098a1037e0af38eea45ca53bbfbfd43a3f47

Scanner detections:
1 / 68

Status:
Adware

Explanation:
Part of the Yontoo ad injection web browser add-on.

Analysis date:
4/19/2024 7:19:58 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Adware.Yontoo.WiseEnhance (M)
16.2.15.9

File size:
41.3 KB (42,272 bytes)

Product version:
0.0.0.0

Original file name:
WiseEnhanceBrowserFilter.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\Program Files\wiseenhance\wiseenhancebrowserfilter.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
1/9/2014 2:00:00 AM

Valid to:
1/10/2015 1:59:59 AM

Subject:
CN=WiseEnhance, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=WiseEnhance, L=San Diego, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
31A5491EFDDBA1099808F5647A45617E

File PE Metadata
Compilation timestamp:
4/30/2014 6:53:32 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
768:9JjCXFl1jIWrOPDEZ4yKWrvPwCnVYN/p7nuq:fGXPyWyP4Z4VWbPwCnI/p7nv

Entry address:
0xA012

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
32.5 KB (33,280 bytes)

The file WiseEnhanceBrowserFilter.exe has been discovered within the following program.

WiseEnhance  by Yontoo Technology, Inc.
WiseEnhance is an adware application that is distributed by Yontoo, a division of Sambreel Holdings based in Carlsbad, CA. It is a rebrand of the various other web browser extensions that Yontoo delivers all with similar names. The program is included as part of a download bundle.
wiseenhance.com/support
82% remove it
 
Powered by Should I Remove It?

Remove WiseEnhanceBrowserFilter.exe - Powered by Reason Core Security