Little Registry Cleaner.exe

Little Registry Cleaner

Nicholas Hamnett

The application Little Registry Cleaner.exe by Nicholas Hamnett has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
Little Apps  (signed by Nicholas Hamnett)

Product:
Little Registry Cleaner

Version:
1.6.0

MD5:
879ffb61c447df407e98f89b3398832d

SHA-1:
27fc374bb295b09ef5d4cdd09be085db12c5eb20

SHA-256:
3aa88bb8ff1ae9fb3e37649d2dfe6ed72ca5a9ba3c43ac9c365d4ef92044241c

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
11/24/2024 2:43:50 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Optional.NicholasHamnett.X
14.10.1.11

File size:
1.7 MB (1,801,616 bytes)

Product version:
1.6.0

Copyright:
Copyright © Little Apps 2008

Original file name:
Little Registry Cleaner.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\little registry cleaner.exe

Digital Signature
Authority:
StartCom Ltd.

Valid from:
4/24/2012 2:41:05 AM

Valid to:
4/26/2014 3:51:05 AM

Subject:
E=nick@little-apps.org, CN=Nicholas Hamnett, L=Calgary, S=Alberta, C=CA, Description=1SALusP98pZrQP0b

Issuer:
CN=StartCom Class 2 Primary Intermediate Object CA, OU=Secure Digital Certificate Signing, O=StartCom Ltd., C=IL

Serial number:
05F0

File PE Metadata
Compilation timestamp:
6/28/2013 3:34:51 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
12288:WZt6mJ5ggq3mJ5ggOaBapsmJ5ggpOf4GX1aRuprFIq03apShv+n6dmJ5ggZ:Ct6C2Z3C2daBa+C2fgGF9Xpf6dC2u

Entry address:
0x17009E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
1.4 MB (1,499,648 bytes)

Remove Little Registry Cleaner.exe - Powered by Reason Core Security