linmsl.exe

linmsl

ReSoft LTD.

The application linmsl.exe by ReSoft has been detected as adware by 6 anti-malware scanners. Additionally, the file is typically installed by a number of programs including LPT System Updater Service by Linkury Ltd. and Snap.Do Engine by ReSoft Ltd., both potentially unwanted software.
Publisher:
ReSoft LTD.  (signed and verified)

Product:
linmsl

Version:
1.0.0.0

MD5:
e7d142969dea9df9349c732ae2f02a9e

SHA-1:
48f88afe5e0fd0914ad2a13321207fbbd9add620

SHA-256:
4fb460c40cdf9dcc48cb7a94c06e41ac286075d97dd9c2d2abcd3c1954af379e

Scanner detections:
6 / 68

Status:
Adware

Analysis date:
8/8/2014 5:19:01 AM UTC  (25 days ago)

Scan engine
Detection
Engine version

Avira AntiVir
TR/Trash.Gen
7.11.143.202

Dr.Web
Trojan.Damaged.1
9.0.1.0220

IKARUS anti.virus
PUA.Linkury
t3scan.1.6.1.0

Reason Heuristics
PUP.ReSoft.G
14.8.8.1

SUPERAntiSpyware
Trojan.Agent/Gen-Nullo[Short]
10435

VIPRE Antivirus
Adware.Linkury
26354

File size:
28 KB (28,704 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © 2013

Original file name:
linmsl.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\user\appdata\local\lpt\linmsl.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
7/31/2013 6:00:00 PM

Valid to:
8/1/2015 5:59:59 PM

Subject:
CN=ReSoft LTD., O=ReSoft LTD., STREET=4th Hanevi'im, L=Tel Aviv, S=Israel, PostalCode=64356, C=IL

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
51FA31336CEC649121E9A908289950D2

File PE Metadata
Compilation timestamp:
3/4/2014 6:26:15 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
6.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
384:rxvPYG7bo9XTcENNkJs3rJmSihQ/BH43mjQqInGvTA0ca3Pzdt4IOSU7w7MFnhCB:SG7boHLE7uJ43mjHInW4IOn7wQFMEIjh

Entry address:
0x6932

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.6124

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
18.5 KB (18,944 bytes)

The file linmsl.exe has been discovered within the following programs.

LPT System Updater Service  by Linkury Ltd.
This is a potentially unwanted web browser extension this is distributed and installed by PINWID LTD, ReSoft LTD., MY POP SHOP LTD and Linkury. It will display advertisements including banners and popups in the user's web browser.
81% remove it
Snap.Do  by ReSoft Ltd.
Snap.Do is a web browser addin/toolbar (depending on the browser it is installed within) that plugs into all the major web browsers including Internet Explorer, Chrome and Firefox. Snap.
snap.do
85% remove it
Snap.Do Engine  by ReSoft Ltd.
Snap.
83% remove it
 
Powered by Should I Remove It?

There are numerous known variations of linmsl.exe.

6 / 68      (Adware)
linmsl.exe  1.0.0.0  (1be2adf138af86531a6c065880c0c0cc047223ce)

6 / 68      (Adware)
linmsl.exe  1.0.0.0  (b127d54f921775b011f34c23e315d38ffee323da)

6 / 68      (Adware)
linmsl.exe  1.0.0.0  (56240f52b255d0fa52a20b1d53b786d149cacf8c)

6 / 68      (Adware)
linmsl.exe  1.0.0.0  (efac63e3e3eda05a7cd325423fd31333a82cb6c0)

6 / 68      (Adware)
linmsl.exe  1.0.0.0  (c932037c52771c2f369498062eabc9bcfa069a90)

6 / 68      (Adware)
linmsl.exe  1.0.0.0  (ea1c088d86ebb5083726b3795e1bc2734c3d20d9)

6 / 68      (Adware)
linmsl.exe  1.0.0.0  (9e4421fd23b588f2e1896ecb100d48107f474f0c)

6 / 68      (Adware)
linmsl.exe  1.0.0.0  (91f414172753af460b014f3ff97365421b356eaf)

6 / 68      (Adware)
linmsl.exe  1.0.0.0  (45121f3769a0cd78bfcebd84458f50e64ed17630)

6 / 68      (Adware)
linmsl.exe  1.0.0.0  (ed356ff0c508e5536fd810e97c1c3dbd1073139d)

6 / 68      (Adware)
linmsl.exe  1.0.0.0  (f7aef3942ca4ce06cb929ebc6f212bfe1ecd330b)

6 / 68      (Adware)
linmsl.exe  1.0.0.0  (349510b8091afac605b08573c39d16c1167d1015)

6 / 68      (Adware)
linmsl.exe  1.0.0.0  (5bbec2c06cb0f71e0758d23c6b7d2117b657b1db)

6 / 68      (Adware)
linmsl.exe  1.0.0.0  (016a67b7ba91a1c4c3372b45e43f2cfaf29eb8d1)

6 / 68      (Adware)
linmsl.exe  1.0.0.0  (70bbe1c62dc788b9bd8dab828cbd821f045a88fc)

7 / 68      (Adware)
muvic.exe  (d329850fc26f93566b763bb78976fe0ad936d132)

10 / 68    (Adware)
Smartbar.Infrastructure.Core.dll  (ad0b4f20f53713348c038ebc007e8925045be5fe)

6 / 68      (Adware)
Smartbar.Resources.AutomaticUpdates.dll  (3673354d5231b05490922f9b5c4fe6a19496fc49)

7 / 68      (Adware)
Smartbar.Infrastructure.Utilities.dll  (59d7599fbad9b825ab8d1e1cedf5313605f541c9)

2 / 68      (Adware)
Smartbar.Personalization.Settings.PersonalizationSettingsManager.dll  (c5779804ae30100407bbdd4c89cdac3d2039125e)

10 / 68    (Adware)
Smartbar.Resources.HistoryAndStatsWrapper.dll  (79c0e5ce2edc324c58238d281cde3b372fc40925)

6 / 68      (Adware)
Smartbar.Resources.SetBrowsersSettingsAutoUpdater.dll  (55f6b5c7b5e632f317d31ce5aad73e14b2d645d4)

11 / 68    (Adware)
Smartbar.GUI.MainClient.dll  (66c08d84fa4c7466db5e092d615e5dfad5c47cc1)

7 / 68      (Adware)
Smartbar.Personalization.BusinessLogic.dll  (4bf25b7a5569fcc513d335ba68f0ae9106e73b10)

3 / 68      (Adware)
Smartbar.Personalization.Settings.UserSettingsManager.dll  (1a3ed0a8d2af708163a417b9818818274376d107)

6 / 68      (Adware)
Smartbar.Infrastructure.Plugins.Base.dll  (8e55da1d59f8dfba2f0fc6d2e90a94b1b2e36fa3)

2 / 68      (Adware)
Smartbar.Infrastructure.EventManager.dll  (dfca7efec43ba6d7f7d0f9a8e7ddc14ab18d3dac)

8 / 68      (Adware)
Smartbar.GUI.Controls.dll  (0590fd7322377029e1b8335b9c5535ab7653aa87)

6 / 68      (Adware)
Smartbar.Personalization.BusinessEntities.dll  (b25807ab36e395eaf1a0f61f0a67b9a806aeb95b)

6 / 68      (Adware)
Smartbar.Infrastructure.Plugins.ChromeLocalPlugin.dll  (93ff00b16f14829093af16c06451b92d629c3e16)

9 / 68      (Adware)
Smartbar.Resources.SetBrowsersSettings.dll  (fd16f1387d6d7ea38673491aab5260a7dfe91f6d)

Detection Incidence by Country