Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

1.91.0.0 80.00%
1.91.0.0 20.00%
(Note, Lexmark International publishes each variation of this file with the same version, but the hashes are unique.)

Relationships

Parent process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
SetSecurityDescriptorDacl, ControlService, DeleteService, StartServiceCtrlDispatcherA, CreateServiceA, QueryServiceStatus, RegisterServiceCtrlHandlerA, OpenSCManagerA, OpenServiceA, CloseServiceHandle, StartServiceA, SetServiceStatus, RegOpenKeyExA, RegQueryValueExA, RegCloseKey, InitializeSecurityDescriptor
kernel32.dll
GetPrivateProfileIntA, GetModuleFileNameA, SetLastError, Sleep, GetTickCount, WaitForSingleObject, SetWaitableTimer, CreateWaitableTimerA, CreateProcessA, FindFirstFileA, DeleteFileA, GetPrivateProfileStringA, WritePrivateProfileStringA, SetCurrentDirectoryA, CreateNamedPipeA, DisconnectNamedPipe, FlushFileBuffers, CreateThread, CompareStringW, CompareStringA, SetEndOfFile, WriteConsoleW, GetConsoleOutputCP, WriteConsoleA, GetLocaleInfoW, GetTimeZoneInformation, SetStdHandle, SetFilePointer, GlobalFree, GlobalAlloc, FreeLibrary, GetSystemTime, CreateFileA, GetLastError, GetFileSize, CloseHandle, ReadFile, WriteFile, ExpandEnvironmentStringsA, GetVersionExA, GetSystemDirectoryA, LoadLibraryA, lstrcpynA, GetProcAddress, HeapFree, HeapAlloc, GetCommandLineA, GetProcessHeap, GetStartupInfoA, GetCPInfo, InterlockedIncrement, InterlockedDecrement, GetACP, GetOEMCP, IsValidCodePage, GetModuleHandleA, TlsGetValue, TlsAlloc, TlsSetValue, TlsFree, GetCurrentThreadId, GetCurrentThread, TerminateProcess, GetCurrentProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsDebuggerPresent, HeapDestroy, HeapCreate, VirtualFree, DeleteCriticalSection, LeaveCriticalSection, FatalAppExitA, EnterCriticalSection, VirtualAlloc, HeapReAlloc, ExitProcess, GetStdHandle, SetHandleCount, GetFileType, RtlUnwind, HeapSize, RaiseException, FreeEnvironmentStringsA, GetEnvironmentStrings, FreeEnvironmentStringsW, WideCharToMultiByte, GetEnvironmentStringsW, QueryPerformanceCounter, GetCurrentProcessId, GetSystemTimeAsFileTime, LCMapStringA, MultiByteToWideChar, LCMapStringW, GetStringTypeA, GetStringTypeW, GetTimeFormatA, GetDateFormatA, GetUserDefaultLCID, GetLocaleInfoA, EnumSystemLocalesA, IsValidLocale, InitializeCriticalSection, SetConsoleCtrlHandler, InterlockedExchange, GetConsoleCP, GetConsoleMode, SetEnvironmentVariableA
user32.dll
PostMessageA, RegisterWindowMessageA, wsprintfA
wininet.dll
InternetOpenA, InternetOpenUrlA, InternetCloseHandle, InternetGetConnectedState

dleaserv.exe

By Lexmark International (Signed)

Remove dleaserv.exe
Version:   1.91.0.0
MD5:   0c5a4d127b888863b19908e2f7c49ecb
SHA1:   0b4d900d34ae16d83f952e3042393451ec038220

Overview

dleaserv.exe runs as a service under the name dleaCATSCustConnectService with extensive SYSTEM privileges (full administrator access). The assembly utilizes the .NET run-time framework (which is required to be installed on the PC). The file is digitally signed by Lexmark International which was issued by the Thawte Consulting (Pty) Ltd. certificate authority (CA).

DetailsDetails

File name:dleaserv.exe
Description:Service Executable
Typical file path:C:\Windows\System32\spool\drivers\x64\3\\dleaserv.exe
Original name:serv.exe
File version:1.91.0.0
Size:188.66 KB (193,192 bytes)
Build date:4/1/2010 6:27 AM
Certificate
Issued to:Lexmark International
Authority (CA):Thawte Consulting (Pty) Ltd.
Effective date:Monday, June 22, 2009
Expiration date:Wednesday, August 3, 2011
Digital DNA
File packed:No
Code language:Microsoft Visual C# / Basic .NET
.NET CLR:Yes
.NET NGENed:No
More details

BehaviorsBehaviors

Service
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
  • 'dleaCATSCustConnectService'

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00000407%
0.028634%
Kernel CPU:0.00000407%
0.013761%
Kernel CPU time:16 ms/min
100,923,805ms/min
CPU cycles:25,063/sec
17,470,203/sec
Memory
Private memory:652 KB
21.59 MB
Private (maximum):2.23 MB
Private (minimum):192 KB
Non-paged memory:652 KB
21.59 MB
Virtual memory:20.59 MB
140.96 MB
Virtual memory (peak):21.59 MB
169.69 MB
Working set:432 KB
18.61 MB
Working set (peak):2.5 MB
37.95 MB
Page faults:887/min
2,039/min
I/O
I/O read transfer:0 Bytes/sec
1.02 MB/min
I/O read operations:30/sec
343/min
I/O other transfer:0 Bytes/sec
448.09 KB/min
I/O other operations:1/sec
1,671/min
Resource allocations
Threads:4
12
Handles:38
600

BehaviorsProcess properties

Integrety level:System
Platform:32-bit
Command line:C:\Windows\System32\spool\drivers\w32x86\3\\dleaserv.exe
Owner:SYSTEM
Windows Service
Service name:dleaCATSCustConnectService
Type:Win32OwnProcess
Parent process:services.exe (Services and Controller app by Microsoft)

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Home Premium 80.00%
Windows 7 Ultimate 20.00%

Distribution by countryDistribution by country

United States installs about 100.00% of dleaserv.exe.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Dell 80.00%
MSI 20.00%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE