cleanupconsole.exe

One System Care Limited

The application cleanupconsole.exe by One System Care Limited has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
One System Care Limited  (signed and verified)

Version:
4.3.0.0

MD5:
c7e6c321cb00a6278104d3aeb86a6ad9

SHA-1:
fc64d48d4c7fc2440fffac7666c8c795827ee251

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
11/27/2024 5:12:28 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Optional.OneSyste
17.2.24.4

File size:
935 KB (957,406 bytes)

Product version:
4.3.0.0

Copyright:
Copyright (C) 2015, All Rights Reserved

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\onesystemcare\cleanupconsole.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
2/10/2016 12:00:00 AM

Valid to:
2/9/2017 11:59:59 PM

Subject:
CN=One System Care Limited, OU=IT Department, O=One System Care Limited, STREET="5th Floor, 89 New Bond Street", L="London, W1S 1DA", S=England, PostalCode=W1S 1DA, C=GB

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
4131072AE755FF80ABDEE907C54980FC

File PE Metadata
Compilation timestamp:
1/26/2016 10:29:20 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
12.0

Entry address:
0xC6000

Entry point:
90, 90, 68, CF, C2, 32, 00, 5B, 90, 68, 24, 60, 4C, 00, 5E, 68, 98, 05, 00, 00, 5A, 90, 90, FF, 34, 32, 31, 1C, 24, 8F, 04, 32, 83, EA, 03, 4A, 90, 90, 75, EF, 27, BF, 33, 00, CF, C2, 32, 00, CF, C2, 72, 00, 2D, 5A, 36, 00, 1F, 26, 39, 00, 11, 29, 39, 00, CF, 72, 30, 00, CE, C2, 32, 00, 2F, 62, 7A, 00, A1, BE, 78, 00, 4B, BE, 78, 00, 93, A1, 38, 00, A3, BE, 38, 00, 4D, BE, 38, 00, 2F, 52, 3A, 00, A3, BE, 38, 00, 4D, BE, 38, 00, CF, C2, 32, 00, CF, C2, 32, 00, CF, C2, 32, 00, CF, C2, 32, 00, CF, C2, 32, 00...
 
[+]

Code size:
547 KB (560,128 bytes)

Remove cleanupconsole.exe - Powered by Reason Core Security