LinksicleClientIE.dll

Linksicle Client BHO x86

Linksicle

This is part of the InfoAtoms browser extension which will display variopus forms of advertising in the web browser by injecting new ads such as banner, text-links and search results. The module LinksicleClientIE.dll by Linksicle has been detected as adware by 15 anti-malware scanners. It is installed within the context of Internet Explore as a BHO (Browser Helper Object) under the name ‘Linksicle’. This file is typically installed with the program Linksicle by InfoAtoms, Inc. which is a potentially unwanted software program.
Publisher:
Linksicle  (signed and verified)

Product:
Linksicle Client BHO x86

Version:
1.8.2.0

MD5:
0e84a73673d161db48feb402698d8410

SHA-1:
798efd2ea46d7b6f87605f66f33723c177beba66

SHA-256:
9113ba4fdc15c863c8fdb419dce91e22c8bd10021d3871a4d5732fb2f16edb48

Scanner detections:
15 / 68

Status:
Adware

Analysis date:
12/24/2024 11:36:22 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Adware.AdPage.A
1149

Avira AntiVirus
TR/Trash.Gen
7.11.142.34

Bitdefender
Adware.AdPage.A
1.0.20.1730

Dr.Web
Adware.Plugin.101
9.0.1.0327

Emsisoft Anti-Malware
Adware.AdPage
8.13.12.12.07

F-Secure
Adware.AdPage.A
11.2013-12-12_5

G Data
Adware.AdPage
13.12.22

IKARUS anti.virus
AdWare.AdPage
t3scan.2.2.29

Kaspersky
Packed.Win32.Krap
14.0.0.3176

MicroWorld eScan
Adware.AdPage.A
14.0.0.1038

nProtect
Adware.AdPage.A
13.11.27.01

Reason Heuristics
PUP.BHO.Linksicle.R
14.8.7.20

SUPERAntiSpyware
Trojan.Agent/Gen-Nullo[Short]
10330

Trend Micro House Call
TROJ_GEN.F47V1029
7.2.327

VIPRE Antivirus
Linksicle
23774

File size:
142.5 KB (145,960 bytes)

Product version:
1.8.2.0

Copyright:
Copyright (C) 2013

Original file name:
LinksicleClientIE.dll

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\Program Files\linksicle\ie\linksicleclientie.dll

Digital Signature
Signed by:

Authority:
GlobalSign nv-sa

Valid from:
5/15/2013 7:59:47 AM

Valid to:
5/16/2014 7:59:47 AM

Subject:
E=support@linksicle.com, CN=Linksicle, O=Linksicle, C=US

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
11212949C7E0DD2DAE02FDADCB01A5928F0B

File PE Metadata
Compilation timestamp:
10/2/2013 2:14:21 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
3072:GuIJxslaoucPyX9bsgntjtC2oKAXAe+F80gTtsWjRHGnCmX:GuAxoaou8yX9bsgntjttxAD5rZmX

Entry address:
0xDABE

Entry point:
55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, 3A, 43, 00, 00, FF, 75, 10, FF, 75, 0C, FF, 75, 08, E8, 07, 00, 00, 00, 83, C4, 0C, 5D, C2, 0C, 00, 6A, 0C, 68, 10, D8, 01, 10, E8, 43, 03, 00, 00, 33, C0, 40, 8B, 75, 0C, 85, F6, 75, 0C, 39, 35, 88, 0A, 02, 10, 0F, 84, E4, 00, 00, 00, 83, 65, FC, 00, 83, FE, 01, 74, 05, 83, FE, 02, 75, 35, 8B, 0D, 78, 7A, 01, 10, 85, C9, 74, 0C, FF, 75, 10, 56, FF, 75, 08, FF, D1, 89, 45, E4, 85, C0, 0F, 84, B1, 00, 00, 00, FF, 75, 10, 56, FF, 75, 08, E8, 11, FE, FF, FF, 89, 45, E4...
 
[+]

Entropy:
6.3098

Developed / compiled with:
Microsoft Visual C++

Code size:
81.5 KB (83,456 bytes)

Internet Explorer BHO
Display name:
Linksicle

CLSID:
{2AD2D8CA-D24D-40D2-A8FC-46952409BA9A}


The file LinksicleClientIE.dll has been discovered within the following program.

Linksicle  by InfoAtoms, Inc.
Linksicle is an unwanted web browser plugin that injects various forms of advertising such as banners, text-links and popups.
www.linksicle.com
80% remove it
 
Powered by Should I Remove It?

Remove LinksicleClientIE.dll - Powered by Reason Core Security