LinksicleClientIE.dll

Linksicle Client BHO x86

Linksicle

This is part of the InfoAtoms browser extension which will display variopus forms of advertising in the web browser by injecting new ads such as banner, text-links and search results. The module LinksicleClientIE.dll by Linksicle has been detected as adware by 16 anti-malware scanners. It is installed within the context of Internet Explore as a BHO (Browser Helper Object) under the name ‘Linksicle’. This file is typically installed with the program Linksicle by InfoAtoms, Inc. which is a potentially unwanted software program.
Publisher:
Linksicle  (signed and verified)

Product:
Linksicle Client BHO x86

Version:
1.8.1.0

MD5:
1e4542b2191224a78e91c462d981b3ac

SHA-1:
ebb4ac8cc0946d0841907ca720b01cc8806fd9e9

SHA-256:
ef3a24748d6f16f20ca5b04f896a54a78fdb5ad3834e49ae918c867f31cb3037

Scanner detections:
16 / 68

Status:
Adware

Analysis date:
12/24/2024 12:04:59 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Adware.AdPage.A
541

Bitdefender
Adware.AdPage.A
1.0.20.1120

Comodo Security
ApplicUnwnt
21358

Dr.Web
Adware.Plugin.101
9.0.1.0224

Emsisoft Anti-Malware
Adware.AdPage
8.15.08.12.06

ESET NOD32
Win32/AdWare.Vitruvian (variant)
9.11295

Fortinet FortiGate
Riskware/Vitruvian
8/12/2015

F-Secure
Adware.AdPage.A
11.2015-12-08_4

G Data
Adware.AdPage
15.8.25

K7 AntiVirus
Adware
13.200.15211

Malwarebytes
PUP.Optional.Linksicle.A
v2015.08.12.06

MicroWorld eScan
Adware.AdPage.A
16.0.0.672

NANO AntiVirus
Trojan.Win32.Plugin.csnynj
0.30.0.296

nProtect
Adware.AdPage.A
15.03.09.01

Reason Heuristics
PUP.InfoAtoms.Linksicle (M)
15.8.12.18

VIPRE Antivirus
Linksicle
38286

File size:
142.5 KB (145,960 bytes)

Product version:
1.8.1.0

Copyright:
Copyright (C) 2013

Original file name:
LinksicleClientIE.dll

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\Program Files\linksicle\ie\linksicleclientie.dll

Digital Signature
Signed by:

Authority:
GlobalSign nv-sa

Valid from:
5/15/2013 10:59:47 AM

Valid to:
5/16/2014 10:59:47 AM

Subject:
E=support@linksicle.com, CN=Linksicle, O=Linksicle, C=US

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
11212949C7E0DD2DAE02FDADCB01A5928F0B

Registration
CLSID:
{2AD2D8CA-D24D-40D2-A8FC-46952409BA9A}

COM registered:
Yes

File PE Metadata
Compilation timestamp:
9/11/2013 4:10:18 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
3072:wuIJxslaoucPyX9bsgntjtC2oKAXQe+F8+gTt1WjRHJoCNp:wuAxoaou8yX9bsgntjttxATXMzNp

Entry address:
0xDABE

Entry point:
55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, 3A, 43, 00, 00, FF, 75, 10, FF, 75, 0C, FF, 75, 08, E8, 07, 00, 00, 00, 83, C4, 0C, 5D, C2, 0C, 00, 6A, 0C, 68, 10, D8, 01, 10, E8, 43, 03, 00, 00, 33, C0, 40, 8B, 75, 0C, 85, F6, 75, 0C, 39, 35, 88, 0A, 02, 10, 0F, 84, E4, 00, 00, 00, 83, 65, FC, 00, 83, FE, 01, 74, 05, 83, FE, 02, 75, 35, 8B, 0D, 78, 7A, 01, 10, 85, C9, 74, 0C, FF, 75, 10, 56, FF, 75, 08, FF, D1, 89, 45, E4, 85, C0, 0F, 84, B1, 00, 00, 00, FF, 75, 10, 56, FF, 75, 08, E8, 11, FE, FF, FF, 89, 45, E4...
 
[+]

Entropy:
6.3099

Developed / compiled with:
Microsoft Visual C++

Code size:
81.5 KB (83,456 bytes)

Internet Explorer BHO
Display name:
Linksicle

CLSID:
{2AD2D8CA-D24D-40D2-A8FC-46952409BA9A}


The file LinksicleClientIE.dll has been discovered within the following program.

Linksicle  by InfoAtoms, Inc.
Linksicle is an unwanted web browser plugin that injects various forms of advertising such as banners, text-links and popups.
www.linksicle.com
80% remove it
 
Powered by Should I Remove It?

Remove LinksicleClientIE.dll - Powered by Reason Core Security