WindowsToUSBLite.exe

Windows to USB Lite

DKey Software

The application WindowsToUSBLite.exe by DKey Software has been detected as a potentially unwanted program by 12 anti-malware scanners.
Publisher:
Dkey-Software  (signed by DKey Software)

Product:
Windows to USB Lite

Version:
1.3.2.0

MD5:
3550ae1424772ffab2c07bc97761faf7

SHA-1:
fb626db940e04d66cdce252379588948f152037e

SHA-256:
2a962edca12ea82e561c46b67683efd5ef7e650425fc61c34a4791ab8be1af8b

Scanner detections:
12 / 68

Status:
Potentially unwanted

Explanation:
Part of the Conduit/ClientConnect toolbar/extension distribution.

Analysis date:
4/26/2024 1:38:28 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Application.SearchProtect.Z
221

AVG
Generic
2017.0.2699

Baidu Antivirus
Adware.Win32.Toolbar
4.0.3.16627

Dr.Web
Adware.Conduit.101
9.0.1.0179

F-Secure
Application.SearchProtect.Z
11.2016-27-06_2

Kaspersky
not-a-virus:WebToolbar.Win32.Agent
14.0.0.-8

MicroWorld eScan
Application.SearchProtect.Z
17.0.0.537

NANO AntiVirus
Trojan.Win32.Conduit.deinwc
0.30.0.64448

Reason Heuristics
PUP.Conduit (M)
16.6.27.14

Total Defense
Win32/Tnega.eOXHYfD
37.0.11364

VIPRE Antivirus
Conduit
36316

Zillya! Antivirus
Adware.Agent.Win32.24621
2.0.0.2024

File size:
4.5 MB (4,705,680 bytes)

Product version:
1.3.2.0

Original file name:
WindowsToUSBLite.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
3/10/2014 7:00:00 AM

Valid to:
3/11/2015 6:59:59 AM

Subject:
CN=DKey Software, O=DKey Software, STREET="Entuziastov str., 18", L=Podolsk, S=Moscow region, PostalCode=142103, C=RU

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
008BFA03E6FD819296CC22AE859D66CEAD

File PE Metadata
Compilation timestamp:
6/24/2014 3:13:56 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
98304:WPLti05h+wK0KgIjRa/h4SnxnlYiwOBpIeWRsTpL6:8Lz5zIFIQi1zwRsTp2

Entry address:
0x2B97BC

Entry point:
55, 8B, EC, 83, C4, F0, B8, 7C, F5, 6A, 00, E8, C0, 14, D5, FF, A1, D8, 65, 6C, 00, 8B, 00, E8, 78, 2A, E5, FF, A1, D8, 65, 6C, 00, 8B, 00, B2, 01, E8, A6, 47, E5, FF, A1, D8, 65, 6C, 00, 8B, 00, BA, 2C, 98, 6B, 00, E8, 75, 24, E5, FF, 8B, 0D, A8, 68, 6C, 00, A1, D8, 65, 6C, 00, 8B, 00, 8B, 15, 74, AA, 6A, 00, E8, 59, 2A, E5, FF, A1, D8, 65, 6C, 00, 8B, 00, E8, 9D, 2B, E5, FF, E8, D0, CC, D4, FF, B0, 04, 02, 00, FF, FF, FF, FF, 11, 00, 00, 00, 57, 00, 69, 00, 6E, 00, 64, 00, 6F, 00, 77, 00, 73, 00, 54, 00...
 
[+]

Entropy:
6.6197

Developed / compiled with:
Microsoft Visual C++

Code size:
2.7 MB (2,852,864 bytes)

Remove WindowsToUSBLite.exe - Powered by Reason Core Security