dlsetup.exe

Keep-My-Search LTD

The application dlsetup.exe by Keep-My-Search has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat. This is the uninstaller utility registered in the Windows Control Panel for the program dlclient by dlclient.
Publisher:
Keep-My-Search LTD  (signed and verified)

Version:
1.3.0.0

MD5:
2c280cba523285ff1f05372c0b733f45

SHA-1:
a98929be6efe194ffa45af8483ce4801543186ca

SHA-256:
e0b73d51fbd9ee40e8c4396b729696b844628bf670d4614a8ee60f015712978b

Scanner detections:
1 / 68

Status:
Adware

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
5/9/2024 7:18:29 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Montiera (M)
17.1.20.14

File size:
6.8 MB (7,166,720 bytes)

Copyright:
All rights reserved.

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\dlclient\dlclient\1.4.0.0\dlsetup.exe

Digital Signature
Authority:
DigiCert Inc

Valid from:
9/8/2014 8:00:00 AM

Valid to:
11/12/2015 8:00:00 PM

Subject:
CN=Keep-My-Search LTD, O=Keep-My-Search LTD, L=Tel Aviv, C=IL

Issuer:
CN=DigiCert Assured ID Code Signing CA-1, OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
087407E453FFF7E46DB51873975E63CB

File PE Metadata
Compilation timestamp:
8/10/2015 10:21:10 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

Entry address:
0x37C3A

Entry point:
E8, 63, 84, 00, 00, E9, 89, FE, FF, FF, B8, E7, 0B, 44, 00, A3, 30, 54, 46, 00, C7, 05, 34, 54, 46, 00, DD, 02, 44, 00, C7, 05, 38, 54, 46, 00, 91, 02, 44, 00, C7, 05, 3C, 54, 46, 00, CA, 02, 44, 00, C7, 05, 40, 54, 46, 00, 33, 02, 44, 00, A3, 44, 54, 46, 00, C7, 05, 48, 54, 46, 00, 5F, 0B, 44, 00, C7, 05, 4C, 54, 46, 00, 4F, 02, 44, 00, C7, 05, 50, 54, 46, 00, B1, 01, 44, 00, C7, 05, 54, 54, 46, 00, 3D, 01, 44, 00, C3, 8B, FF, 55, 8B, EC, E8, 96, FF, FF, FF, 83, 7D, 08, 00, 74, 05, E8, 51, 8F, 00, 00, DB...
 
[+]

Entropy:
0.6547

Code size:
314 KB (321,536 bytes)

Program Uninstaller
Program name:
dlclient

Display publisher:
dlclient

Uninstall string:
"C:\Program Files (x86)\dlclient\dlclient\1.4.0.0\dlsetup.exe" /uninstl


Remove dlsetup.exe - Powered by Reason Core Security