dt_ie.exe

Search Results, LLC

The application dt_ie.exe by Search Results has been detected as adware by 6 anti-malware scanners.
Publisher:
Search Results, LLC  (signed and verified)

MD5:
d1715da35ea0ac7ee6ad895f2a915a47

SHA-1:
89a4b80d1197d1a64d1d80d462ae0abcfb8cb62f

SHA-256:
a12885bd3f7e55b04088907172b4c8399b1dcdfc6120b6b3d41c637e18aee26f

Scanner detections:
6 / 68

Status:
Adware

Analysis date:
4/26/2024 3:20:02 PM UTC  (today)

Scan engine
Detection
Engine version

Comodo Security
Heur.Suspicious
17137

Dr.Web
Adware.Plugin.48
9.0.1.0320

ESET NOD32
Win32/Toolbar.DefaultTab (variant)
8.8943

Reason Heuristics
PUP.SearchResults.F
14.11.16.10

Trend Micro House Call
TROJ_GEN.F47V0917
7.2.320

VIPRE Antivirus
Trojan.Win32.Generic
34454

File size:
1.5 MB (1,621,088 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\roaming\defaulttab\defaulttab\dt_ie.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
4/24/2012 7:00:00 PM

Valid to:
4/25/2014 6:59:59 PM

Subject:
CN="Search Results, LLC", O="Search Results, LLC", STREET="2751 Hennepin Ave S #252", L=Minneapolis, S=MN, PostalCode=55405, C=US

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00B6815DF3B6D64839E008D65B53EF0170

File PE Metadata
Compilation timestamp:
6/19/1992 5:22:17 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:pYJPozWsAUfClupNuzno6Fh4fKdcUzd1TBDM2GI6Qx:puPewlup+b5GI6

Entry address:
0x17090

Entry point:
55, 8B, EC, 83, C4, E0, 53, 33, C0, 89, 45, E0, 89, 45, E4, 89, 45, E8, 89, 45, EC, B8, F0, 6F, 41, 00, E8, 19, F3, FE, FF, 8B, 1D, B4, 83, 41, 00, 33, C0, 55, 68, C3, 73, 41, 00, 64, FF, 30, 64, 89, 20, BA, D0, 98, 41, 00, B8, 00, 08, 00, 00, E8, A6, 56, FF, FF, C6, 05, D3, 98, 41, 00, 2E, C6, 05, D2, 98, 41, 00, 2C, B8, D8, 73, 41, 00, E8, 8A, 0D, FF, FF, A2, 8C, 98, 41, 00, 33, C0, 89, 03, B8, 9C, 98, 41, 00, BA, EC, 73, 41, 00, E8, 1E, D5, FE, FF, B8, A0, 98, 41, 00, BA, 1C, 74, 41, 00, E8, 0F, D5, FE...
 
[+]

Entropy:
6.4700

Developed / compiled with:
Microsoft Visual C++

Code size:
90 KB (92,160 bytes)

Remove dt_ie.exe - Powered by Reason Core Security