pccleaners.exe

PC Cleaners

PC Cleaners Inc.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘PC Cleaners’.
Publisher:
PC Cleaners Inc.  (signed and verified)

Product:
PC Cleaners

Description:
PC Cleaner

Version:
10.11.0.0

MD5:
1d951b0c583b8bcf8554bb412466c34b

SHA-1:
bae04138b5d39d2e55784dc58489090368a9586d

SHA-256:
d2e884eb1cf1837f7875adbc182581afd758d5ad6975f9f19af15810b4468e08

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/23/2024 7:56:46 PM UTC  (today)

File size:
59.1 MB (62,013,680 bytes)

Product version:
10.11.0.0

Copyright:
(c) PC Cleaners Inc. All rights reserved.

Original file name:
PCGUI.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
1/24/2012 5:30:00 AM

Valid to:
1/26/2014 5:29:59 AM

Subject:
CN=PC Cleaners Inc., OU=Digital ID Class 3 - Microsoft Software Validation v2, O=PC Cleaners Inc., L=Newport Beach, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
0D8D6A63396D197575990A769C1CC0C5

File PE Metadata
Compilation timestamp:
1/24/2013 12:43:03 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
196608:4ENYs8xxrdo1ArWNpz4WBE942/Of8DmGb7Gb8:4E8Dy1AKvJv2/Of8DmGb7Gb8

Entry address:
0x9D52C

Entry point:
E8, 66, 7E, 00, 00, E9, 79, FE, FF, FF, 3B, 0D, 40, 98, 52, 00, 75, 02, F3, C3, E9, E8, 7E, 00, 00, 8B, FF, 55, 8B, EC, 56, 8B, 75, 14, 57, 33, FF, 3B, F7, 75, 04, 33, C0, EB, 65, 39, 7D, 08, 75, 1B, E8, 2B, 2C, 00, 00, 6A, 16, 5E, 89, 30, 57, 57, 57, 57, 57, E8, 02, 11, 00, 00, 83, C4, 14, 8B, C6, EB, 45, 39, 7D, 10, 74, 16, 39, 75, 0C, 72, 11, 56, FF, 75, 10, FF, 75, 08, E8, 91, 1D, 00, 00, 83, C4, 0C, EB, C1, FF, 75, 0C, 57, FF, 75, 08, E8, 00, 1C, 00, 00, 83, C4, 0C, 39, 7D, 10, 74, B6, 39, 75, 0C, 73...
 
[+]

Entropy:
3.0550

Code size:
922 KB (944,128 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
PC Cleaners

Command:
"C:\antivirus\pccleaners.exe" \minimize


Scan pccleaners.exe - Powered by Reason Core Security