Should I block it?
Yes, 98% block recommendation.
Possible reasons:
Multiple malware detections
Performance resource utilization
Additional versions
(Note, Yontoo LLC publishes each variation of this file with the same version, but the hashes are unique.)
Relationships
PE file structure
|
Show functions |
Import table
mscoree.dll
DllMain
Desktop.OS.Plugin.dll
Desktop.OS.Plugin by Yontoo LLC (Signed)
| Version: | 1.1.0.0 |
| MD5: | 9c43086db4e99f3e8a60459a11eff29a |
| SHA1: | 16e9d8c8d2b652db4f58e8a2739ad8b0fdb51887 |
| SHA256: | 2402c8b0b50cd0a1989d26c484adaf2fc61960b52c5bd2a7f50988d0b24f3d6c |
Warning 6 antivirus scanners has detected malware.
Overview
desktop.os.plugin.dll is malware that is loaded as dynamic link library that runs in the context of a process. The assembly utilizes the .NET run-time framework (which is required to be installed on the PC). The file is digitally signed by Yontoo LLC which was issued by the VeriSign certificate authority (CA).
Details
| File name: | desktop.os.plugin.dll |
| Product name: | Desktop.OS.Plugin |
| Typical file path: | C:\users\user\desktop.os.plugin.dll |
| File version: | 1.1.0.0 |
| Size: | 13.28 KB (13,600 bytes) |
| Build date: | 6/7/2013 6:15 AM |
| Certificate |
| Issued to: | Yontoo LLC |
| Authority (CA): | VeriSign |
| Effective date: | Wednesday, October 24, 2012 |
| Expiration date: | Tuesday, December 24, 2013 |
| Digital DNA |
| PE subsystem: | Windows Console |
| File packed: | No |
| Code language: | Microsoft Visual C# / Basic .NET |
| .NET CLR: | Yes |
| .NET NGENed: | No |
More details
Malware detections
Based on 40+ industry antivirus scanners, 6 of them detected the following malware.
| Antivirus engine | Engine version | Detection |
| McAfee |
5.400.1158 |
Artemis!9C43086DB4E9 |
| McAfee Gateway Anti-Malware |
v2013-dat |
Artemis!9C43086DB4E9 |
| PC Tools |
9.0.0.2 |
SecurityRisk.Yontoo!rem |
| Symantec |
20131.1.0.101 |
Yontoo |
| Trend Micro HouseCall |
9.700.0.1001 |
TROJ_GEN.F47V0610 |
| VIPRE Antivirus |
19210 |
Yontoo (v) |
Distribution by Windows OS
| OS version | distribution |
| Windows 7 Ultimate |
40.00% |
|
| Windows 7 Home Premium |
20.00% |
|
| Windows 7 Professional |
20.00% |
|
| Microsoft Windows XP |
20.00% |
|
Distribution by country
Canada installs about 20.00% of Desktop.OS.Plugin.
Distribution by PC manufacturer
| PC Manufacturer | distribution |
| Samsung |
33.33% |
|
| Hewlett-Packard |
33.33% |
|
| Acer |
33.33% |
|