cleanmaster_12_0.exe

Clean Master For PC

Beijing Kingsoft Security software Co.,Ltd

This is a setup and installation application. The file has been seen being downloaded from www.softwaresharetoday.com and multiple other hosts.
Publisher:
Kingsoft Corporation  (signed by Beijing Kingsoft Security software Co.,Ltd)

Product:
Clean Master For PC

Description:
Clean Master Install

Version:
2014,09,28,56

MD5:
43bb282f8c5d2cc2be64b117c98e5f59

SHA-1:
410818710f2a000b52841af978bb958744a8747e

SHA-256:
74db1b32d7a7c0b33bbde75504d4f81489f77e2016ff436616e241eb97b30400

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/16/2024 12:34:01 AM UTC  (today)

File size:
4.7 MB (4,934,008 bytes)

Product version:
9,1,196334,56

Copyright:
Copyright (C) 1998-2014 Kingsoft Corporation

Original file name:
kpacket.exe

File type:
Executable application (Win32 EXE)

Language:
Turkish (Turkey)

Common path:
C:\users\{user}\downloads\cleanmaster_12_0.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
12/26/2011 2:00:00 AM

Valid to:
12/26/2014 1:59:59 AM

Subject:
CN="Beijing Kingsoft Security software Co.,Ltd", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Beijing Kingsoft Security software Co.,Ltd", L=beijing, S=beijing, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
07BC3A51B589E5AF43291DF84EA4C571

File PE Metadata
OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
98304:a6sZ6qswQf/2YlLvVERb2eH6oFjI5N2+4GVWa1OxiDXu6EyZ/KRJu:ajty2Yd8yg/a5N2+4yRhe6D/Aw

Entry address:
0xE4B30

Entry point:
60, BE, 00, 20, 48, 00, 8D, BE, 00, F0, F7, FF, 57, EB, 0B, 90, 8A, 06, 46, 88, 07, 47, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 72, ED, B8, 01, 00, 00, 00, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C0, 01, DB, 73, 0B, 75, 28, 8B, 1E, 83, EE, FC, 11, DB, 72, 1F, 48, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C0, EB, D4, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C9, EB, 52, 31, C9, 83, E8, 03, 72, 11, C1, E0, 08, 8A, 06, 46, 83, F0, FF, 74, 75, D1, F8, 89, C5, EB, 0B, 01, DB, 75, 07, 8B...
 
[+]

Packer / compiler:
UPX v0.89.6 - v1.02 / v1.05 -v1.24

Code size:
396 KB (405,504 bytes)

The file cleanmaster_12_0.exe has been seen being distributed by the following 33 URLs.

http://www.softwaresharetoday.com/wkTfPpTNmVp292LKSEhLdvKsBgzIyLbv9e2OKYC0tAWul4h 7l8GxiJevWJjNa94PozgoIJjW0KcgDDdFBDp7lEeWKR1xd22SAgjPLi7vetrncSsNWrICK3jvqlgLVpH_HDq4glZE_9_aX85wB5PHKktfuQp3DobvkvVvX5ps6w6PMmwd28IcnweHNHRi Gzpss3tSYnB1Kpk659UxuDKZNedzs8g==-G1oAAGRwXmtruhmhkADBBpxogDDgtg06oA0bY cJ4mjW9jzXSUi_qJvnpRyLkqf4UeAZwsB6 a4Fqt7KOE6tW4LVIVHve39HdewS_lRPHlBpFCswRGBESgI=

http://www.factoryapppresent.com/N4iVQDL_92p0_F4HKC8x4vS0TGHVQ cEJWvzSbMzEhvV51LOKprHL2WXmbJp2RULVHLQs8LM56sEyR3m8HkkymQBHmGmX v6kTRrLVmSvcpd2iPrLn7Eo3GguUIqnvtPTtSYaaGyrSUQ4YfohHtj89i2hZtBGVh7hZc8XusHtjPZyRUQeVxLD1Mj9nyhTGjWPcass69L-G1oAAGRgnq2tCcz0b9iAA5eWeVtwQBsch883JtKX1hj7Qst5Xv0eqFYGHwpygqzBnp3Bu4OG_yC_3qLbLsHvsyQTlSN7wlaf8qnuKjCIKMGgGMZiFAU=

https://r.srvtrck.com/v1/redirect?url=http://gsf-cf.softonic.com/410/818/.../cleanmaster_12_0.exe

blob:http://sd-web.softonic.com/e7aec919-36ef-44d9-b39c-9b52e6fa1fb1

http://www.bytesendclear.com/R1xQhsx8rO4_vJz7zfOUAYYC8tN7RyFayiL7lNKxtDQxmhdBNdPo6W_YlVfNnFOfJ2bi2FSTprdNcyNdXGyFf2EpL_JBrW_iuQ6idnoYvNOyDY2i47K3oUURKWMOc6vzxS8J3Xhq94CkV53lfvzZNCzrhqofhQ2o6gm7e7XuuNbYAFNp8 mdMy7L2NLRbFFiuuoE7pXTWIEjtlmWAAI35P Jggmd4BkqDLEbVHGZ iauhGjrzm4cnlqc0MX8zGrZm5l93_Ib3TiSVhUVZgVRkCy9tBv_hzptwcsMExhsnBnuqSkWws6fr5TmBZidfFpVCRjLatCWBXA4 xtg3pGzncoLWII2Uz_QOSOmemxoN4eMeCRlK6LhWKxB5jleuHQ7pZHaTT_hhf8adb33CWHGxk1HoBx1hF 0J0n48me_wsxXzQxqHkc2B4pK6K5 gOvqJPgtCAyE31rYE5cEnPD0c5TjLSHqPM8JdRhJPZEiYDH6MFNlvA_04IoXKeNCqGstLIz_HxxR6Zn3O9SjOLgNwZ7X YfCuY2xye1vc54xZPk1F1N8CAN92blbMQiIifQ8zVyYRIqSHX_KgMQ3GETE0pS9nuW_XQ==-G2cAAGTZXEyHkG8e8jC_KGzAgUOtCyyAw8YY33GUTnljFjXTfaAUd2BBWxbl_qHkcG4pP KuoV9g_zn7NeCV_t_x0x C5tV32AuXjkOY4Tj5jil2hvjLAQ==-E

http://www.bytesendclear.com/kD_9SR8NSvtXSbSgRPVknIx41kyWlsWDtNmhhHFUNJ7pvw3_vmaxcDeCu9kGDHqh 95Xf7aHsU6eZeAfASZlJ8 2HySAqFiuPKdr0KVlggVsvpv VU WeMGtj_ZTVR 2Hb9WvsuoYV97812f4 pWiftcWy_hCo8ycO4Sek3eY5_wVPAOU3E1rxPDhMun6miqtIn0LjCgakhqxW9NEy9BcFVMlWWJFyHko7UwfbKmKEzEBttX67MfP_94FO7h1U mF_GJF_tk4kE34oBbVUvl_QOCStvv PSr9 yPmt0KXlTehIDSurUZfALStKAvApl9b j96GLWKmZckZ sgcv8uASNZC2BZQHjlhNFnLr8ZDLTvf6JOamVgG6UG2CPg1kiJDSeRirxlBAX6YrikDbJnzxE OqktEMubhn7ktxMZQeZxLtd4ysQL6cII2eFtFumBgDLTwaEfMSb1n9aTjAKsjJGECJ5_B7odp1CLcG2JmX8mEYARllsrVBH31kB3etQgHU8j7wTjWpmVYqGv2XKepRNRUEQ6OrXMvTdPrbw 5DyG69VW13YagLAoQ c1HAXdHqMn5Q6UjHguvYA1t3zv1lejLyNKQ==-G2cAAGTZXEyHkG8e8jC_KGzAgUOtCyyAw8YY33GUTnljFjXTfaAUd2BBWxbl_qHkcG4pP KuoV9g_zn7NeCV_t_x0x C5tV32AuXjkOY4Tj5jil2hvjLAQ==-E

http://www.bytesendclear.com/6AkpC8Y5Iv_gSGuCDx_IEi85sVeopnWAZXPI_SCJLTTClVhy 8IjU5nqN5so12NBLvFgkuDuv_SdDx9GTVbTYx6iO4L8TgFwF48fFkhkxZtAwyWVuFLcAEB7_jG8IRO NMd00h4jX_v_9P QwCMgTnDJkz9_o_VSa3bwqRk7hGRi4uOn11RCm0yJBleBFTGCtCitTca8Dj3HtmsUDpjiM 0abqc_ix4kk_8fwmz62L9_UW4b0azke8Ssrbj1HaR3qNjcuLZQph3zaTrNOVahEJ8tVIlQihBZd974kzBQLCF9bLUAIjFzhTWCVtVw76dZHQ5KrtvkyE3SGxYkzbX6 5o9aFuiiY6_y8WwcOnlw7zVfaZNuhfHgOZOffBF8aYHHcR5g6RXpjf6jLklvDdTjK0qDr1EuqALG55CjyecP2cs0KJrfSE4qdalHy7YM4AaE4fr7bjQKbDMWI0Dy4 BWqk1u7yaoN2ibhT7OO1WWZIXSxN7lBNP56slSeEV4svtGudR7TzNE8ZJrNjkQGsOId71in3VYnFJK51a_EaxK3Hh0CFKPOoweE1ac0lStnmOl7rb3CQZFcy4LoiAyAeGRluFe3Mng==-G2cAAGTZXEyHkG8e8jC_KGzAgUOtCyyAw8YY33GUTnljFjXTfaAUd2BBWxbl_qHkcG4pP KuoV9g_zn7NeCV_t_x0x C5tV32AuXjkOY4Tj5jil2hvjLAQ==-E

http://my.downfiles.net/410/818/.../cleanmaster_12_0.exe

http://www.bytesendclear.com/sHXAxuoiQ6mSyaIX8SZuh8aPCJxFhInTW31929fwO5kFBZzNbPSiT9J 8rEBsaQZR12lrKaX5GKqTmgb5pCA U434hn9Uo3lUIL_3C6GsYFcJ8z75P5zD3xz1x2BRZDIVyjnyQkuBNr1zXPIYtXYAEpL2uzuBee7X2D1VK6v_zMUqc0JjWHhxuxX3XQ6QOgLcEZwIQTOfJ_2k_70yKfP9HA gmAvDa9rThmjEI7KXl7GcmI G8uI93epggpTgh8V1rtTvhat12XUvMjdkZdDS_ mP7Ss hWssIiDrLP0b1EPc5YU1U4CxAiJeCIOx_XLDtA76Kaqq9cY7dahIocSvWYrEM3_7k9T3FeTpGd9z2QgdV34YqMhEgXbWMdJ7hOmVNGPPEIGGFaPlcPsCW6b yN4ixaVuQ9GLxl7hBlgiq XyQ74MUpGqj4MSt0_0IRHIduuctcei4pXVro 00kXzUgRPicQa7DBrSCBY2QX5FU8Q2EUqYCGUHCxGYjj77EYOmllgLUNR8m5DsyrdUuXFoCW8PWxD9qRo3dMtK72GzZ2nqvRVSQ1H9rTPCWpGDav_Y4jCVbo1CFa9Dmtv9mRSImZ8cbaXg==-G2cAAGTZXEyHkG8e8jC_KGzAgUOtCyyAw8YY33GUTnljFjXTfaAUd2BBWxbl_qHkcG4pP KuoV9g_zn7NeCV_t_x0x C5tV32AuXjkOY4Tj5jil2hvjLAQ==-E

http://www.citytagcity.com/AbQB33TjFSUmfTy68C12gKB_zoKHIHFm8oNxwyd8W99OgUGBiLC3IpO2thUPZk15HEjOyvdHrSMjOWmYCllonI2PPT4dfodAkpOyoA4jTG94lcuAMyV_D0LhupO1i4dy90ZK9zHtnCGUNSMCiFic8ulXOGWqEmLSIVuxTDi0Hv EFww3wXaXnXBjKLRhZl6FWReLnnVX-G1sAAGRgnq2tSUzQDdiAA5do3rZBB7RhY w8QYKadft8XieBfqHd XyZj4liZfCjwGcQFli0M3idoOW7yI nWFndpcV3c9SiT_X99y 26e5VYBFRgiYximIYAg==

http://www.bytesendclear.com/t9ejMy_R9EXjwp9 7myAhiBAaE3NK4IAHHCjnR1F3j2oLGkP9ymsrKsWi0p3o7vY3zLYPjInOb50rZs8bGRayGmF0qQp0O6htrrttC1_NtVrsmNpVxkF7K4QKeEkHJFeoqvxOQUaH3eGK_XVeEfOG_l34kC7ok0W9386ZtA8PCgGK8W Vr50 aSSYTXbJ3Lt7XtWVRHvxxDO0v597OKWCYd1ccteIND H7uz9hI0tcthxRAbTG6B03OyBZdWEZaNVWHanX8Bf4jmwmY4b Gdoq0kIoVKFsbaBGyFNEpButVt7kYnCQ9acFHFVx6DtBBTZQKTLzKkV4_Zsy3uRm5QXMQCVDtWwetJZGDByrDL__YQNsycmRSeVWDVlve7iZcnLmY4KbIxvloO0Q9I_ZbiZTzBq3DGZsOEuenHlSZ7Cmv7rRavaDSKpP_d0WS4CxyGY9zO2l9QoltfMK45s770ftWN8kn HS7dMMpmFMyUlkmLTtXXStdDu26IejbUWT61BKZcCOGnunjFAWJpLEi8aWQUZDpY8hWFebgXg0TgVJh1gqYZf7FdlWQR4hrajZuZMjY59z674KJK1lX0sO59fHUXYwe0iw==-G2cAAGTZXEyHkG8e8jC_KGzAgUOtCyyAw8YY33GUTnljFjXTfaAUd2BBWxbl_qHkcG4pP KuoV9g_zn7NeCV_t_x0x C5tV32AuXjkOY4Tj5jil2hvjLAQ==-E

blob:http://sd-web.softonic.com/0c6bb542-b2b5-4367-8836-11f02890ec9e

blob:http://sd-web.softonic.com/5f5a98af-8d60-45c2-8434-a2103c88f926

blob:http://sd-web.softonic.com/9998c982-72d9-4a77-8a7c-c246c6606e38

blob:http://sd-web.softonic.com/ac043a85-0247-4ff6-942e-61ca109076a3

Latest 30 of 33 download URLs

Scan cleanmaster_12_0.exe - Powered by Reason Core Security