SystemCleaner.exe

System Cleaner

Pointstone Software, LLC

The application SystemCleaner.exe, “It is time to give your computer a good cleaning on the inside!” by Pointstone Software has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
Pointstone Software, LLC  (signed and verified)

Product:
System Cleaner

Description:
It is time to give your computer a good cleaning on the inside!

Version:
5.5.4.170

MD5:
2ed55695a7085ca0e5d8b68f1cb3a9a1

SHA-1:
01d0d82cc511ea235eb13d72ca76e81ad69d5c04

SHA-256:
b61a5bfc2ed3fcab73812905ed8637f660ec441c46832ec9db841ba1039dfec5

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
11/27/2024 5:06:57 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Optional.Pointstone
16.6.8.20

File size:
2.7 MB (2,877,144 bytes)

Product version:
5.5.0.0

Copyright:
Copyright © 1997 - 2007 Pointstone Software, LLC

Trademarks:
System Cleaner and Pointstone are either trademarks or registered trademarks of Pointstone Software, LLC

Original file name:
SystemCleaner.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\pointstone\system cleaner 5\systemcleaner.exe

Digital Signature
Authority:
The USERTRUST Network

Valid from:
1/26/2007 6:00:00 AM

Valid to:
1/27/2008 5:59:59 AM

Subject:
CN="Pointstone Software, LLC", O="Pointstone Software, LLC", STREET=220 E. Delaware Avenue, L=Newark, S=Delaware, PostalCode=19711, C=US

Issuer:
CN=UTN-USERFirst-Object, OU=http://www.usertrust.com, O=The USERTRUST Network, L=Salt Lake City, S=UT, C=US

Serial number:
74ABDB326011DE81F887A75A52477F85

File PE Metadata
Compilation timestamp:
6/8/2007 10:09:20 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:5BG+wc5wHMQiIf94tY+0lISGndttZSegU6Z8RosxjanzV8z:5BG+dwHM5If6Y+0GSGndrRgU6ZkosxGE

Entry address:
0x1000

Entry point:
68, 01, 40, 9E, 00, E8, 01, 00, 00, 00, C3, C3, C4, 2A, 37, EF, 44, 52, D7, 59, A8, BE, 8E, F8, 44, 41, EA, 6C, 9D, E2, 5B, CB, 1C, EF, 05, C1, 00, F0, FA, 0A, 74, 3F, AB, 92, 00, 63, BB, 0B, A8, C7, C1, AF, 84, DF, FB, A9, 3C, FE, EA, 97, 9C, 2D, A8, D0, 0A, 1C, E1, 72, 73, 6F, 0D, B0, 80, 9D, A2, 92, 7C, 3E, 95, 97, 26, B3, 3B, C3, FC, 6C, 96, B2, 55, 74, 9E, 81, 31, CC, F1, A9, 94, B9, 69, 60, 37, 5F, 45, 3A, E2, A0, AB, 19, 98, 95, 8F, F6, 24, 88, DA, 2E, 37, 55, 74, C2, D6, 9D, 7D, F4, 64, CF, B2, DC...
 
[+]

Entropy:
7.9851

Packer / compiler:
ASProtect v1.2x (New Strain)

Code size:
3.3 MB (3,455,488 bytes)

Remove SystemCleaner.exe - Powered by Reason Core Security