linmsl.exe

linmsl

PINWID LTD

The application linmsl.exe by PINWID has been detected as adware by 2 anti-malware scanners.
Publisher:
PINWID LTD  (signed and verified)

Product:
linmsl

Version:
1.0.0.0

MD5:
da17910c64480ebb9a8c4ade2c4dff3b

SHA-1:
3095ac2d61ad5f1aa9258fbd2b4051692fab8d18

SHA-256:
bf9169fbe2addc72ea7cd9b5e11403fe0f3675ed47922301f054541b599f638b

Scanner detections:
2 / 68

Status:
Adware

Analysis date:
3/14/2014 2:10:12 AM UTC  (four months ago)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.PINWID.G
14.3.13.22

VIPRE Antivirus
Adware.Linkury
26962

File size:
28 KB (28,704 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © 2013

Original file name:
linmsl.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\user\appdata\local\lpt\linmsl.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
2/4/2014 7:00:00 PM

Valid to:
2/5/2015 6:59:59 PM

Subject:
CN=PINWID LTD, O=PINWID LTD, STREET=14 Shenkar Arie, L=HERZLIYA, S=NA, PostalCode=46733, C=IL

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00D9AC9FC9A1B1E8FD63013E3CCE7B0578

File PE Metadata
Compilation timestamp:
2/25/2014 4:52:11 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
6.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
384:KPOff7+DLs6ZZNTD5b/mF5+dw0Y/Cj0DEhTA0ca3PV8odtpbIESU72sMnnhCxYPg:pfKHsEmF5+dw2kq8w9IEn72tnMEl

Entry address:
0x6966

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.6176

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
18.5 KB (18,944 bytes)

There are 5 known versions of linmsl.exe.

4 / 68      (Adware)
linmsl.exe  1.0.0.0  (e8d460c6067b1eee5d84fcf33873e4e435453ba7)

3 / 68      (Adware)
linmsl.exe  1.0.0.0  (f311277cb93c6cca581726af7299bc7d1ac566fe)

3 / 68      (Adware)
linmsl.exe  1.0.0.0  (d90278fdb891d0d4f6be8803006fe8840435dcd1)

3 / 68      (Adware)
linmsl.exe  1.0.0.0  (3c21aaa156314789c0f244663373751ff5e23666)

1 / 68      (Adware)
linmsl.exe  1.0.0.0  (299bed7855ee13e67bc9c2cce20d51f8dbeb177f)

11 / 68    (Adware)
smartbarfirefoxremoteplugin_27.dll  (4daaf48aabce45e5033c7a5172ced0360e6eb2f2)

3 / 68      (Adware)
installer.exe  (2ecfac6c3fc4e13f894d89a3cfa89c57bb1039ce)

3 / 68      (Adware)
srpts.exe  (50c1ec642a5a5258c17db267c6ff3768449106cc)

3 / 68      (Adware)
srpt.dll  (65fcd4cb2f73a97e38c0a7e93fd45328a5e301e9)

2 / 68      (Adware)
Smartbar.Communication.NamedPipe.dll  (778f38ae4a151a337b6a846cd551dce2759cde0c)

2 / 68      (Adware)
Smartbar.Communication.dll  (0c756d33ed8662a26c11c862adfbcfb705a6928b)

3 / 68      (Adware)
srptc.dll  (8ddc81202b07814c5f01d582b8491b17149a12c3)

2 / 68      (Adware)
Smartbar.Common.dll  (53776c68d7f2bb104aa35585dab3d15cf6a0b208)

2 / 68      (Adware)
srptm.exe  (bd4dc01cc4472486b8c6ba87eb9a8eb2a991d708)

3 / 68      (Adware)
srut.dll  (559656c5c50d651482f0697368373652b1828394)

3 / 68      (Adware)
sppsm.dll  (c145eafae7afd3e087a726fdac42520952363021)

3 / 68      (Adware)
spusm.dll  (50afa9026144ed5316773e055f7a056f392b530d)

3 / 68      (Adware)
Smartbar.Resources.HistoryAndStatsWrapper.dll  (bd0f6d1e02f99c56d0a386a4eeffdf18dacb8952)

2 / 68      (Adware)
Smartbar.Personalization.Common.dll  (2254806f1e6bfe4030e5e63b342af4bbaff1a5e1)

2 / 68      (Adware)
Smartbar.Infrastructure.Utilities.dll  (da628bf41c53488a6146dc50aa94a0796a3c624f)

3 / 68      (Adware)
srbs.dll  (aeaa3beebed0f09e9c43a254665f4400dc04019b)

Detection Incidence by Country