ProxySettings.dll

ProxySettings

Veristaff.com Inc

The module ProxySettings.dll by Veristaff.com Inc has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat. Additionally, the file is typically installed by a number of programs including LPT System Updater Service by Linkury Ltd. and ShowPass Smartbar by ReSoft Ltd., both potentially unwanted software.
Publisher:
Veristaff.com Inc  (signed and verified)

Product:
ProxySettings

Version:
1.0.0.0

MD5:
974ae1b796bfa42619274ef48a4b7f49

SHA-1:
ec934cdd47c67e8c04b861f22aea410db4732158

SHA-256:
ce9f1b9da2e1b54ef1b9ca4320a686e7968d6961ecc3ba19539162a37876db31

Scanner detections:
1 / 68

Status:
Adware

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
4/19/2024 3:43:15 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Veristaff.N
14.7.28.8

File size:
24.8 KB (25,384 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © 2014

Original file name:
ProxySettings.dll

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\users\{user}\appdata\local\lpt\proxysettings.dll

Digital Signature
Authority:
DigiCert Inc

Valid from:
7/8/2014 9:00:00 PM

Valid to:
7/14/2015 9:00:00 AM

Subject:
CN=Veristaff.com Inc, O=Veristaff.com Inc, L=Wilmington, S=Delaware, C=US

Issuer:
CN=DigiCert Assured ID Code Signing CA-1, OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
0B0EA10F13BB9EB2057BECB9A30F59D4

File PE Metadata
Compilation timestamp:
7/22/2014 4:06:09 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
6.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
384:rO4I7SRv4w96QIpg5QdMiNTPZQCZfhJo+tQt+lnYPLx8I1M0D:6zQe9M86mJouQIl48mM0D

Entry address:
0x619A

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 60, 00, 00, 0C, 00, 00, 00, 9C, 31, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
16.5 KB (16,896 bytes)

The file ProxySettings.dll has been discovered within the following programs.

LPT System Updater Service  by Linkury Ltd.
This is a potentially unwanted web browser extension this is distributed and installed by PINWID LTD, ReSoft LTD., MY POP SHOP LTD and Linkury. It will display advertisements including banners and popups in the user's web browser.
81% remove it
ShowPass Smartbar  by ReSoft Ltd.
ShowPass Smartbar is an adware program (supported by various types of advertising) that is usually bundled by third party installers and download managers.
snap.do
63% remove it
 
Powered by Should I Remove It?

Remove ProxySettings.dll - Powered by Reason Core Security