RegPowerClean.exe

RegPowerClean

Capital Intellect Inc

The application RegPowerClean.exe by Capital Intellect Inc has been detected as a potentially unwanted program by 5 anti-malware scanners.
Publisher:
Capital Intellect Inc  (signed and verified)

Product:
RegPowerClean

Version:
2015.01.0011

MD5:
1bb6cc559db9c32e6e25f94eb5ec2ab7

SHA-1:
853706eeebffb74bf35de07b4ac303d6dd0178a0

SHA-256:
1ae66f684dd3760046c50d035089ebaf624de67355eb13d0cdabcd878d20200c

Scanner detections:
5 / 68

Status:
Potentially unwanted

Analysis date:
11/28/2024 1:24:38 PM UTC  (today)

Scan engine
Detection
Engine version

avast!
Win32:Malware-gen
2014.9-151125

Bkav FE
W32.HfsAdware
1.3.0.6379

Dr.Web
Program.Unwanted.190
9.0.1.0329

ESET NOD32
Win32/XrayMyPC potentially unwanted (variant)
9.11648

Reason Heuristics
Win32.Generic.CapitalIntellect.Meta
15.11.25.2

File size:
86.4 MB (90,556,128 bytes)

Product version:
2015.01.0011

Copyright:
Copyright (c) 2002-2014 Capital Intellect Inc. All Rights Reserved.

Trademarks:
Copyright (c) 2002-2014 Capital Intellect Inc. All Rights Reserved.

Original file name:
RegPowerClean.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\winferno\registrypowercleaner\regpowerclean.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
6/17/2014 5:00:00 PM

Valid to:
8/16/2017 4:59:59 PM

Subject:
CN=Capital Intellect Inc, O=Capital Intellect Inc, L=Boston, S=Massachusetts, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
40B558C33945329695046A917D13C40A

File PE Metadata
Compilation timestamp:
9/4/2014 4:39:25 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
196608:vFzoknuml/Q01DOphHne1BNTUNcU7eQioMtJuo/hdnv2dntFpnezWZhK9ntzlhrB:xVnuW/Q0BtUtistJaBATi

Entry address:
0x12560

Entry point:
68, B8, 2C, 41, 00, E8, F0, FF, FF, FF, 00, 00, 48, 00, 00, 00, 30, 00, 00, 00, 40, 00, 00, 00, 00, 00, 00, 00, 9C, C6, 00, 16, 25, 97, AB, 4A, 80, 01, BC, 14, 51, 84, FE, 70, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 61, 8F, FC, FF, 67, 93, 52, 65, 67, 50, 6F, 77, 65, 72, 43, 6C, 65, 61, 6E, 00, 59, 67, 00, FF, FE, FE, FE, FF, EC, D3, C0, 00, 00, 00, 90, 00, 00, 00, 00, 00, 00, 00, 02, 00, 00, 00, 2F, 00, 00, 00, 01, 85, 5B, ED, 17, 73, 37, 4A, 8C, 35, 6B, B7, 40, 3D, 96, E1, 01, 00, 00, 00, A0, 00, 00, 00...
 
[+]

Entropy:
5.0301

Developed / compiled with:
Microsoft Visual Basic v5.0

Code size:
1.1 MB (1,183,744 bytes)

Remove RegPowerClean.exe - Powered by Reason Core Security