Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

1.91.0.0 80.00%
1.91.0.0 20.00%
(Note, Lexmark International publishes each variation of this file with the same version, but the hashes are unique.)

Relationships

Parent process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
SetSecurityDescriptorDacl, ControlService, DeleteService, StartServiceCtrlDispatcherA, CreateServiceA, QueryServiceStatus, RegisterServiceCtrlHandlerA, OpenSCManagerA, OpenServiceA, CloseServiceHandle, StartServiceA, SetServiceStatus, RegOpenKeyExA, RegQueryValueExA, RegCloseKey, InitializeSecurityDescriptor
kernel32.dll
GetPrivateProfileIntA, GetModuleFileNameA, SetLastError, Sleep, GetTickCount, WaitForSingleObject, SetWaitableTimer, CreateWaitableTimerA, CreateProcessA, FindFirstFileA, DeleteFileA, GetPrivateProfileStringA, WritePrivateProfileStringA, SetCurrentDirectoryA, CreateNamedPipeA, DisconnectNamedPipe, FlushFileBuffers, CreateThread, CompareStringW, CompareStringA, SetEndOfFile, WriteConsoleW, GetConsoleOutputCP, WriteConsoleA, GetLocaleInfoW, GetTimeZoneInformation, SetStdHandle, SetFilePointer, GlobalFree, GlobalAlloc, FreeLibrary, GetSystemTime, CreateFileA, GetLastError, GetFileSize, CloseHandle, ReadFile, WriteFile, ExpandEnvironmentStringsA, GetVersionExA, GetSystemDirectoryA, LoadLibraryA, lstrcpynA, GetProcAddress, HeapFree, HeapAlloc, GetCommandLineA, GetProcessHeap, GetStartupInfoA, GetCPInfo, InterlockedIncrement, InterlockedDecrement, GetACP, GetOEMCP, IsValidCodePage, GetModuleHandleA, TlsGetValue, TlsAlloc, TlsSetValue, TlsFree, GetCurrentThreadId, GetCurrentThread, TerminateProcess, GetCurrentProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsDebuggerPresent, HeapDestroy, HeapCreate, VirtualFree, DeleteCriticalSection, LeaveCriticalSection, FatalAppExitA, EnterCriticalSection, VirtualAlloc, HeapReAlloc, ExitProcess, GetStdHandle, SetHandleCount, GetFileType, RtlUnwind, HeapSize, RaiseException, FreeEnvironmentStringsA, GetEnvironmentStrings, FreeEnvironmentStringsW, WideCharToMultiByte, GetEnvironmentStringsW, QueryPerformanceCounter, GetCurrentProcessId, GetSystemTimeAsFileTime, LCMapStringA, MultiByteToWideChar, LCMapStringW, GetStringTypeA, GetStringTypeW, GetTimeFormatA, GetDateFormatA, GetUserDefaultLCID, GetLocaleInfoA, EnumSystemLocalesA, IsValidLocale, InitializeCriticalSection, SetConsoleCtrlHandler, InterlockedExchange, GetConsoleCP, GetConsoleMode, SetEnvironmentVariableA
user32.dll
PostMessageA, RegisterWindowMessageA, wsprintfA
wininet.dll
InternetOpenA, InternetOpenUrlA, InternetCloseHandle, InternetGetConnectedState

dleaserv.exe

By Lexmark International (Signed)

Remove dleaserv.exe
Version:   1.91.0.0
MD5:   1017d70abe5483f40c10b7774397d120
SHA1:   37069db0852ef0c252fc5d6972d35bf091920671
SHA256:   a3f49af1adbf9b3d82208be0bb699b07f1c0cc4be2286835fba944e2cbd1feb6

Overview

dleaserv.exe runs as a service under the name dleaCATSCustConnectService with extensive SYSTEM privileges (full administrator access). The assembly utilizes the .NET run-time framework (which is required to be installed on the PC). The file is digitally signed by Lexmark International which was issued by the Thawte Consulting (Pty) Ltd. certificate authority (CA).

DetailsDetails

File name:dleaserv.exe
Description:Service Executable
Typical file path:C:\Windows\System32\spool\drivers\x64\3\\dleaserv.exe
Original name:serv.exe
File version:1.91.0.0
Size:44.16 KB (45,224 bytes)
Certificate
Issued to:Lexmark International
Authority (CA):Thawte Consulting (Pty) Ltd.
Effective date:Monday, June 22, 2009
Expiration date:Wednesday, August 3, 2011
Digital DNA
File packed:No
Code language:Microsoft Visual C# / Basic .NET
.NET CLR:Yes
.NET NGENed:No
More details

BehaviorsBehaviors

Service
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
  • 'dleaCATSCustConnectService'

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00000470%
0.028634%
Kernel CPU:0.00000313%
0.013761%
User CPU:0.00000157%
0.014873%
Kernel CPU time:62 ms/min
100,923,805ms/min
CPU cycles:11,859/sec
17,470,203/sec
Memory
Private memory:1.31 MB
21.59 MB
Private (maximum):936 KB
Private (minimum):936 KB
Non-paged memory:1.31 MB
21.59 MB
Virtual memory:27.97 MB
140.96 MB
Virtual memory (peak):28.97 MB
169.69 MB
Working set:948 KB
18.61 MB
Working set (peak):3.35 MB
37.95 MB
Page faults:1,229/min
2,039/min
I/O
I/O read transfer:0 Bytes/sec
1.02 MB/min
I/O read operations:13/sec
343/min
I/O other transfer:0 Bytes/sec
448.09 KB/min
I/O other operations:1/sec
1,671/min
Resource allocations
Threads:4
12
Handles:47
600

BehaviorsProcess properties

Integrety level:System
Platform:64-bit
Command line:C:\Windows\System32\spool\drivers\x64\3\\dleaserv.exe
Owner:SYSTEM
Windows Service
Service name:dleaCATSCustConnectService
Type:Win32OwnProcess
Parent process:services.exe (Services and Controller app by Microsoft)

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Home Premium 80.00%
Windows 7 Ultimate 20.00%

Distribution by countryDistribution by country

United States installs about 100.00% of dleaserv.exe.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Dell 80.00%
MSI 20.00%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE