PCTuneUp.exe

PC Tune-Up

NNJ Corporation

Publisher:
Large Software  (signed by NNJ Corporation)

Product:
PC Tune-Up

Version:
1.1.0.5

MD5:
ab58148e321da56dfede87a9faa0de4f

SHA-1:
2d4666db5e9f6a90b8c3907026c1a2a32ff27936

SHA-256:
b2d59b92ffe235edf0d2de039a47d930d01085f16e4a6c707672cd80ae67fb1c

Scanner detections:
2 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
11/27/2024 4:42:42 AM UTC  (today)

Scan engine
Detection
Engine version

Sophos
PUA 'PC Tune-up'
5.22

Trend Micro House Call
Suspicious_GEN.F47V0622
7.2.8

File size:
2.8 MB (2,957,640 bytes)

Product version:
1.1.0.5

Copyright:
Large Software

Trademarks:
Large Software

Original file name:
PCTuneUp.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\pc tune-up\pctuneup.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
2/10/2011 6:00:00 PM

Valid to:
2/10/2012 5:59:59 PM

Subject:
CN=NNJ Corporation, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=NNJ Corporation, L=San Diego, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
602690E034C128A219C102CF349835E2

File PE Metadata
Compilation timestamp:
6/19/1992 5:22:17 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:YrFkhGeHrSBpwUK2SCvjqSds8mDBqLVgb9OBAApEnYv3e:oehGeGwUK2xu9ymxOCApiYW

Entry address:
0x1000

Entry point:
68, 01, B0, 82, 00, E8, 01, 00, 00, 00, C3, C3, 7B, 5E, 29, 66, 46, EF, 2E, 00, 40, 7A, BA, E1, A1, A7, 14, 66, 15, 1E, CD, 2C, 53, EA, E0, 1D, C9, B1, 83, DF, 78, F4, 77, 54, 0F, 54, C7, FC, 28, F4, 14, 9F, 73, A1, 1A, DF, 1D, AA, 4E, F3, 20, 15, 1D, 23, 13, 3B, 9A, 9C, C6, DD, E2, 93, 5E, B9, DB, 92, D1, 16, AA, C0, E4, 52, 57, 33, 94, 9C, 74, 30, 35, 01, D9, 40, 72, 30, 9B, 1C, FE, 86, E5, EC, 9D, C5, B5, 9C, 49, EA, AC, ED, FE, FB, EE, 08, BA, E9, E7, 0F, 64, 35, 36, 26, 20, AD, D7, F4, 81, BE, F6, C9...
 
[+]

Entropy:
7.2301

Packer / compiler:
ASProtect v1.2x (New Strain)

Code size:
2.1 MB (2,188,288 bytes)

Scan PCTuneUp.exe - Powered by Reason Core Security