ProxySettings.dll

ProxySettings

Veristaff.com Inc

The module ProxySettings.dll by Veristaff.com Inc has been detected as adware by 2 anti-malware scanners. Additionally, the file is typically installed by a number of programs including LPT System Updater Service by Linkury Ltd. and SafeFinder Smartbar by Linkury Ltd., both potentially unwanted software.
Publisher:
Veristaff.com Inc  (signed and verified)

Product:
ProxySettings

Version:
1.0.0.0

MD5:
07a1714ec4dc10ab4e27fe86be3bba71

SHA-1:
c5849bd5a1a0b2240d5d6dd30018e67d824893e2

SHA-256:
9abb91ae92611079b84e60254ea18b66cb65c11fb16e335bf9b15acff4a11f32

Scanner detections:
2 / 68

Status:
Adware

Analysis date:
4/25/2024 8:39:25 AM UTC  (today)

Scan engine
Detection
Engine version

AVG
Veristaff
2015.0.3400

Reason Heuristics
PUP.Veristaff.N
14.7.28.9

File size:
24.8 KB (25,384 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © 2014

Original file name:
ProxySettings.dll

File type:
Dynamic link library (Win32 DLL)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\lpt\proxysettings.dll

Digital Signature
Authority:
DigiCert Inc

Valid from:
7/8/2014 8:00:00 PM

Valid to:
7/14/2015 8:00:00 AM

Subject:
CN=Veristaff.com Inc, O=Veristaff.com Inc, L=Wilmington, S=Delaware, C=US

Issuer:
CN=DigiCert Assured ID Code Signing CA-1, OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
0B0EA10F13BB9EB2057BECB9A30F59D4

File PE Metadata
Compilation timestamp:
7/21/2014 7:53:59 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
6.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
384:KMG4W7mQe6KBW65/uPiGzCjZQC3fh2o+tit21nYPLx8I1M0Q8W:soO7Xc2ouio148mM0QF

Entry address:
0x619E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 60, 00, 00, 0C, 00, 00, 00, A0, 31, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.2737

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
16.5 KB (16,896 bytes)

The file ProxySettings.dll has been discovered within the following programs.

LPT System Updater Service  by Linkury Ltd.
This is a potentially unwanted web browser extension this is distributed and installed by PINWID LTD, ReSoft LTD., MY POP SHOP LTD and Linkury. It will display advertisements including banners and popups in the user's web browser.
81% remove it
SafeFinder Smartbar  by Linkury Ltd.
SafeFinder displays advertising in the user's Internet browser by running as an extension and/or add-on. Ads are delivered in the form of search-related ads, banner and video ads, and text-links (roll-overs) as well as some popup ads.
www.linkury.com/faq/s/faq.aspx?company=SafeFinder
67% remove it
 
Powered by Should I Remove It?

Remove ProxySettings.dll - Powered by Reason Core Security