asc-setup.exe

Advanced SystemCare 7

IObit Information Technology

This is a setup and installation application. This is installed with Advanced SystemCare 7. The file has been seen being downloaded from downloadme.co and multiple other hosts.
Publisher:
IObit   (signed by IObit Information Technology)

Product:
Advanced SystemCare 7

Version:
7.1.0.387

MD5:
c2076ed640f73a451a962268f237555b

SHA-1:
8b2ab94df6ae2daacaeeb58e7c9269f728d38af4

SHA-256:
b4ac74f9fe7a489fac68760fc727c0a5c1a5ad120390f9666f209433166ca4d9

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/24/2024 12:41:47 PM UTC  (today)

File size:
33.7 MB (35,338,968 bytes)

Product version:
7.1.0

Copyright:
Copyright© 2005-2013

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\temporary internet files\content.ie5\{random}\asc-setup.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
1/15/2013 1:00:00 AM

Valid to:
2/15/2016 12:59:59 AM

Subject:
CN=IObit Information Technology, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=IObit Information Technology, L=Chengdu, S=Sichuan, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
11CADAF29DA4C3CB113BF1877B120103

File PE Metadata
Compilation timestamp:
10/13/2013 10:19:32 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
786432:12BG0Uz83QwbaWVmyOlqt3dPOMs8mWZEe6yLD77oa7VNOCdahvFp0nHVct45C+:12v+bwGpS9d2L8mWZE5yX77o4YCcdbeT

Entry address:
0x113BC

Entry point:
55, 8B, EC, 83, C4, A4, 53, 56, 57, 33, C0, 89, 45, C4, 89, 45, C0, 89, 45, A4, 89, 45, D0, 89, 45, C8, 89, 45, CC, 89, 45, D4, 89, 45, D8, 89, 45, EC, B8, 2C, 00, 41, 00, E8, E8, 51, FF, FF, 33, C0, 55, 68, 9E, 1A, 41, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, 5A, 1A, 41, 00, 64, FF, 32, 64, 89, 22, A1, 48, 5B, 41, 00, E8, 16, D8, FF, FF, E8, 65, D3, FF, FF, 80, 3D, DC, 2A, 41, 00, 00, 74, 0C, E8, 2B, D9, FF, FF, 33, C0, E8, 80, 32, FF, FF, 8D, 55, EC, 33, C0, E8, E2, A3, FF, FF, 8B, 55, EC, B8, 50, 86...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
63.5 KB (65,024 bytes)

The file asc-setup.exe has been discovered within the following programs.

360Amigo is registry optimizer. 360Amigo System Speedup bundles a branded version of the Conduit Toolbar, designed to deliver search based advertising and results. During installation the user is presented in some cases with the option to install the toolbar (on by default).
www.360amigo.com
53% remove it
Publisher's description - “Advanced SystemCare 7 provides automated and all-in-one PC care service with Malware Removal, Registry Fix, Privacy Protection, Performance Tune-up, and System Cleaning capabilities.”
www.iobit.com/advancedsystemcarepro.php
27% remove it
iTunes  by Apple Inc.
Apple's iTunes is a proprietary media player computer program, used for playing and organizing digital music and video files on desktop computers. It can also manage contents on iPod, iPhone and iPad.
www.apple.com/itunes
9% remove it
LAME is a library that allows some programs to encode MP3 files. LAME is free, but in some countries you may need to pay a license fee in order to legally encode MP3 files.
9% remove it
SketchUp 8  by Trimble Navigation Limited
Publisher's description - “Redecorate your living room. Invent a new piece of furniture. Model your city for Google Earth. There's no limit to what you can create with SketchUp.”
www.sketchup.com/intl/en/product/gsu.html
9% remove it
 
Powered by Should I Remove It?

The file asc-setup.exe has been seen being distributed by the following 11 URLs.

Scan asc-setup.exe - Powered by Reason Core Security