mpcoguard.exe

Max PC Optimizer Performance Monitor

Ask4expert Technologies Private Limited

The application mpcoguard.exe, “Performance Monitor” by Ask4expert Technologies Private Limited has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
Ask4Expert Technologies  (signed by Ask4expert Technologies Private Limited)

Product:
Max PC Optimizer Performance Monitor

Description:
Performance Monitor

Version:
3.2.0.0

MD5:
fea76ffc566fe14abe7c5e93d2ea2208

SHA-1:
f5e565c8719a3aeb345b823c14fe79686410c55c

SHA-256:
44085089e1505451bfad16ebc025f760c4710653a38aec054749a65deb7dcac0

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
12/1/2024 1:47:54 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Optional.Pointstone
16.6.17.23

File size:
776 KB (794,632 bytes)

Product version:
3.2.0.0

Copyright:
Ask4Expert Technologies

Trademarks:
Ask4Expert Technologies

Original file name:
MPCOGuard

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\windows\mpcoguard.exe

Digital Signature
Authority:
GoDaddy.com, Inc.

Valid from:
12/27/2012 8:06:09 PM

Valid to:
12/27/2013 8:06:09 PM

Subject:
CN=Ask4expert Technologies Private Limited, O=Ask4expert Technologies Private Limited, L=Delhi, S=Delhi, C=IN

Issuer:
SERIALNUMBER=07969287, CN=Go Daddy Secure Certification Authority, OU=http://certificates.godaddy.com/repository, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US

Serial number:
0428066853CA3F

File PE Metadata
Compilation timestamp:
6/19/1992 7:22:17 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
12288:GZvZby8wvtarVnDJ9KRK0ErahkWJBx41BvBV8ymVfpI:G9dgvOVnDLKPEeqWXxwJCymVxI

Entry address:
0x5762C

Entry point:
55, 8B, EC, 83, C4, F0, B8, 1C, 74, 45, 00, E8, 64, E7, FA, FF, 68, C0, 76, 45, 00, 6A, 00, 68, 01, 00, 1F, 00, E8, 0B, EB, FA, FF, 85, C0, 75, 67, 68, C0, 76, 45, 00, 6A, 00, 6A, 00, E8, 51, E9, FA, FF, A1, 8C, 90, 45, 00, 8B, 00, E8, 01, 97, FF, FF, A1, 8C, 90, 45, 00, 8B, 00, BA, D4, 76, 45, 00, E8, E8, 92, FF, FF, 8B, 0D, 7C, 91, 45, 00, A1, 8C, 90, 45, 00, 8B, 00, 8B, 15, 2C, 6B, 45, 00, E8, F0, 96, FF, FF, 8B, 0D, B4, 91, 45, 00, A1, 8C, 90, 45, 00, 8B, 00, 8B, 15, 10, 57, 45, 00, E8, D8, 96, FF, FF...
 
[+]

Entropy:
5.3911

Developed / compiled with:
Microsoft Visual C++

Code size:
346 KB (354,304 bytes)

Remove mpcoguard.exe - Powered by Reason Core Security