WindowsToUSBLite.exe

Windows to USB Lite

DKey Software

The application WindowsToUSBLite.exe by DKey Software has been detected as a potentially unwanted program by 10 anti-malware scanners.
Publisher:
Dkey-Software  (signed by DKey Software)

Product:
Windows to USB Lite

Version:
1.3.1.0

MD5:
5d572ebdff89c14aa4b03ba0b1916545

SHA-1:
77abc25f3d02db51fac72743d2c57610b62f6055

SHA-256:
d9cd88cc006d350b5e2ef47f4450c8d9d4e0ebb5524a9330e8312f31d60feedb

Scanner detections:
10 / 68

Status:
Potentially unwanted

Explanation:
Part of the Conduit/ClientConnect toolbar/extension distribution.

Analysis date:
4/26/2024 1:44:58 PM UTC  (today)

Scan engine
Detection
Engine version

AVG
Toolbar.Conduit
2015.0.3391

Dr.Web
Adware.Conduit.82
9.0.1.0217

IKARUS anti.virus
PUA.ClientConnect
t3scan.1.6.1.0

Kaspersky
not-a-virus:WebToolbar.NSIS.Agent
14.0.0.3452

NANO AntiVirus
Riskware.Nsis.Downloader.ddbdbi
0.28.2.61148

Qihoo 360 Security
Win32/Virus.Downloader.966
1.0.0.1015

Quick Heal
Downloader.NSIS.ga (Not a Virus)
8.14.14.00

Trend Micro House Call
TROJ_GEN.F47V0520
7.2.217

Vba32 AntiVirus
Downloader.Agent
3.12.26.3

VIPRE Antivirus
Conduit
31910

File size:
3.9 MB (4,130,192 bytes)

Product version:
1.3.1.0

Original file name:
WindowsToUSBLite.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\windowstousblite.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
3/10/2014 1:00:00 AM

Valid to:
3/11/2015 12:59:59 AM

Subject:
CN=DKey Software, O=DKey Software, STREET="Entuziastov str., 18", L=Podolsk, S=Moscow region, PostalCode=142103, C=RU

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
008BFA03E6FD819296CC22AE859D66CEAD

File PE Metadata
Compilation timestamp:
5/10/2014 4:03:59 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
98304:/eM9SaXOb3I0eRaNXNElYiwOBpIeWRsTpLR:/N9p0ZNXNji1zwRsTpF

Entry address:
0x24F09C

Entry point:
55, 8B, EC, 83, C4, F0, B8, C8, 6D, 64, 00, E8, C4, BA, DB, FF, A1, 0C, A4, 65, 00, 8B, 00, E8, 14, BE, EB, FF, A1, 0C, A4, 65, 00, 8B, 00, B2, 01, E8, 42, DB, EB, FF, A1, 0C, A4, 65, 00, 8B, 00, BA, 0C, F1, 64, 00, E8, 11, B8, EB, FF, 8B, 0D, FC, A5, 65, 00, A1, 0C, A4, 65, 00, 8B, 00, 8B, 15, C0, 22, 64, 00, E8, F5, BD, EB, FF, A1, 0C, A4, 65, 00, 8B, 00, E8, 39, BF, EB, FF, E8, F0, 73, DB, FF, B0, 04, 02, 00, FF, FF, FF, FF, 11, 00, 00, 00, 57, 00, 69, 00, 6E, 00, 64, 00, 6F, 00, 77, 00, 73, 00, 54, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
2.3 MB (2,416,128 bytes)

Remove WindowsToUSBLite.exe - Powered by Reason Core Security