dxwebsetup.exe

LLC ITC

The application dxwebsetup.exe by LLC ITC has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat. This is a setup and installation application and has been known to bundle potentially unwanted software.
Publisher:
LLC ITC  (signed and verified)

MD5:
650acf84ca8de560e78fedda611bea49

SHA-1:
19e844d8f91f37656fd41eae6113535333fc27ac

SHA-256:
52eae598d1cfbdb7cf885d4737a444596354879ec2b99fae679f3424d467611f

Scanner detections:
1 / 68

Status:
Adware

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
5/28/2024 1:39:45 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP (M)
17.3.4.14

File size:
459.9 KB (470,888 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\dxwebsetup.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
6/26/2014 5:00:00 AM

Valid to:
6/27/2015 4:59:59 AM

Subject:
CN=LLC ITC, O=LLC ITC, STREET=Vvedenskogo 11/3, L=Moscow, S=Moscow oblast, PostalCode=117342, C=RU

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00F4DBD55156EE0DAFED4BAB130328504E

File PE Metadata
Compilation timestamp:
7/20/2014 12:11:57 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.17

Entry address:
0x4BB9

Entry point:
C1, E3, 08, 8B, 2D, EA, C9, 41, 00, 81, CA, 22, 94, F1, B4, 19, FB, C1, DD, 03, 0F, BA, F5, 00, 90, 21, C3, C1, D3, 10, 87, EE, 90, 29, F0, 81, C3, 5F, F0, FA, 04, C1, CD, 14, C1, F9, 11, 39, 7C, 24, FC, 90, 11, F6, 3B, 54, 24, 0C, 21, D0, D1, E0, C1, E6, 19, F9, 21, D7, C1, C8, 0D, 96, F9, 4B, 39, 44, 24, F0, F7, D6, 43, 0F, BA, FD, 15, C1, C2, 0B, C1, E7, 09, 90, C1, E1, 0A, 4D, 2B, 44, 24, F8, F5, 11, D3, 45, F9, F7, 05, 43, ED, 42, 00, F7, 58, 66, 5E, C1, CA, 1F, F9, 0F, BA, E0, 1A, C1, CF, 06, C1, D3...
 
[+]

Code size:
380.5 KB (389,632 bytes)

Remove dxwebsetup.exe - Powered by Reason Core Security