eseeky4ie.exe

Montiera Technologies LTD

It is part of the Montiera web browser toolbar monetization platform which injects browser search and advertising within the user's web browser. The application eseeky4ie.exe by Montiera Technologies has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. The program is a setup application that uses the NSIS (Nullsoft Scriptable Install System) installer. This file is typically installed with the program eseeky by Montiera Technologies LTD which is a potentially unwanted software program.
Publisher:
eseeky  (signed by Montiera Technologies LTD)

Product:
eseeky

Version:
1.8.22.1

MD5:
280e74141f69bc32b531cd8d578eb118

SHA-1:
6bde583e2c4d2aafb87206956da0c92593b8a33c

SHA-256:
9a6318cbbbadb2e1f023351d1f1cf9ce52ef11796b4b9f7a0b3df692e4e9dd60

Scanner detections:
1 / 68

Status:
Potentially unwanted

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
4/25/2024 8:22:47 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Montiera.MontieraTechnologies.Installer (M)
16.1.30.19

File size:
969.2 KB (992,488 bytes)

Copyright:
eseeky

File type:
Executable application (Win32 EXE)

Installer:
NSIS (Nullsoft Scriptable Install System)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\eseeky\eseeky\application\1.8.22.1\eseeky4ie.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
6/26/2013 7:00:00 AM

Valid to:
6/27/2014 6:59:59 AM

Subject:
CN=Montiera Technologies LTD, O=Montiera Technologies LTD, STREET="18, Amammi st", L=Even Yehuda, S=Hasharon, PostalCode=40500, C=IL

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
3E6A02DA5FCBA17D267CD5B0DBC10A17

File PE Metadata
Compilation timestamp:
12/6/2009 5:50:52 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
24576:1sx1nPxJZHJWEXKHB74RVvKSLUQZicuklTVbNzG:unJ1/6Hl4RV/tZicxVZK

Entry address:
0x30FA

Entry point:
81, EC, 80, 01, 00, 00, 53, 55, 56, 33, DB, 57, 89, 5C, 24, 18, C7, 44, 24, 10, 60, 91, 40, 00, 33, F6, C6, 44, 24, 14, 20, FF, 15, 30, 70, 40, 00, 68, 01, 80, 00, 00, FF, 15, B0, 70, 40, 00, 53, FF, 15, 7C, 72, 40, 00, 6A, 08, A3, 18, EC, 42, 00, E8, F1, 2B, 00, 00, A3, 64, EB, 42, 00, 53, 8D, 44, 24, 34, 68, 60, 01, 00, 00, 50, 53, 68, 98, 8F, 42, 00, FF, 15, 58, 71, 40, 00, 68, 54, 91, 40, 00, 68, 60, E3, 42, 00, E8, A4, 28, 00, 00, FF, 15, AC, 70, 40, 00, BF, 00, 40, 43, 00, 50, 57, E8, 92, 28, 00, 00...
 
[+]

Entropy:
7.9882

Packer / compiler:
Nullsoft install system v2.x

Code size:
23.5 KB (24,064 bytes)

The file eseeky4ie.exe has been discovered within the following program.

eseeky  by Montiera Technologies LTD
As part of the installation process the publisher may offer changes to your Internet Browser settings. These changes if approved by you can be reconfigured by you at any time from the options dialog available on your Internet Browser.
69% remove it
 
Powered by Should I Remove It?

Remove eseeky4ie.exe - Powered by Reason Core Security