clocx160.exe

The program is a setup application that uses the Nullsoft Scriptable Install System installer. The file has been seen being downloaded from www.currentupdateconcepts.com and multiple other hosts.
MD5:
a8aadae0bab6b7248a9bebc88e40c2aa

SHA-1:
93b7adf2138b2aef39a934fcd3d3a9f0a3962954

SHA-256:
b5ba1ce268b50555bd87aeab0efa3c59d84972e0ad94641c803e19d3a1a24daa

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/5/2024 9:52:26 AM UTC  (today)

File size:
19.9 MB (20,899,165 bytes)

File type:
Executable application (Win32 EXE)

Installer:
Nullsoft Scriptable Install System

Common path:
C:\users\{user}\downloads\clocx160.exe

File PE Metadata
Compilation timestamp:
12/5/2009 11:50:41 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
393216:uTniDjm/DVBPMjErSj2dIwyPk/UsbXmIXrs2KHWPjMUL8CMt:umHmRBfAK/zz1bsFHWPjMUACy

Entry address:
0x30CB

Entry point:
81, EC, 80, 01, 00, 00, 53, 55, 56, 33, DB, 57, 89, 5C, 24, 18, C7, 44, 24, 10, 60, 91, 40, 00, 33, F6, C6, 44, 24, 14, 20, FF, 15, 30, 70, 40, 00, 68, 01, 80, 00, 00, FF, 15, B0, 70, 40, 00, 53, FF, 15, 7C, 72, 40, 00, 6A, 08, A3, 38, 3F, 42, 00, E8, F1, 2B, 00, 00, A3, 84, 3E, 42, 00, 53, 8D, 44, 24, 34, 68, 60, 01, 00, 00, 50, 53, 68, 30, F4, 41, 00, FF, 15, 58, 71, 40, 00, 68, 54, 91, 40, 00, 68, 80, 36, 42, 00, E8, A4, 28, 00, 00, FF, 15, AC, 70, 40, 00, BF, 00, 90, 42, 00, 50, 57, E8, 92, 28, 00, 00...
 
[+]

Code size:
22.5 KB (23,040 bytes)

The file clocx160.exe has been discovered within the following program.

360Amigo is registry optimizer. 360Amigo System Speedup bundles a branded version of the Conduit Toolbar, designed to deliver search based advertising and results. During installation the user is presented in some cases with the option to install the toolbar (on by default).
www.360amigo.com
53% remove it
 
Powered by Should I Remove It?

The file clocx160.exe has been seen being distributed by the following 6 URLs.

http://www.currentupdateconcepts.com/N2nt08PQClDO9wJ5G_XvIIJDyeaEG8p9txeHq7vFT2xVks3BihGFFMfVHslFmHVS2lZJW1A6buh1xIC6YAUWR_xm7 MGl7Y6aXTd8kiOy it2J_Y4uNXy10MsK0i2fq7kIWrMouWNgC_eLss0jW8ru4_1tUOmNU1UilP0Ks2AECkUSiCRuHzcRkIkaWEWiWMWPAdSFur-GzYAAMQNDq1eBllkkPynwCEHDl8UlycaOOTgIm1B2fXGvY2iDXqLKZXEXND0bG6yArIA

http://s2.download.net.pl/ClocX-2209-3490-2375.exe

Scan clocx160.exe - Powered by Reason Core Security