SystemCleaner.exe

System Cleaner

Pointstone Software, LLC

The application SystemCleaner.exe, “It is time to give your computer a good cleaning on the inside!” by Pointstone Software has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
Pointstone Software, LLC  (signed and verified)

Product:
System Cleaner

Description:
It is time to give your computer a good cleaning on the inside!

Version:
5.5.5.180

MD5:
959e378275d399facdb8bed98bbbf739

SHA-1:
7dff8b159fdf702e33c68d4a7caee44d12ca2492

SHA-256:
b1d767d7de07e682228d03c06149a19b2db766a9c560f07d5ada91b29d252b09

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
11/5/2024 3:37:05 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Optional.Pointstone
16.10.22.6

File size:
2.6 MB (2,771,928 bytes)

Product version:
5.5.0.0

Copyright:
Copyright © 1997 - 2007 Pointstone Software, LLC

Trademarks:
System Cleaner and Pointstone are either trademarks or registered trademarks of Pointstone Software, LLC

Original file name:
SystemCleaner.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\pointstone\system cleaner 5\systemcleaner.exe

Digital Signature
Authority:
The USERTRUST Network

Valid from:
1/26/2007 8:00:00 AM

Valid to:
1/27/2008 7:59:59 AM

Subject:
CN="Pointstone Software, LLC", O="Pointstone Software, LLC", STREET=220 E. Delaware Avenue, L=Newark, S=Delaware, PostalCode=19711, C=US

Issuer:
CN=UTN-USERFirst-Object, OU=http://www.usertrust.com, O=The USERTRUST Network, L=Salt Lake City, S=UT, C=US

Serial number:
74ABDB326011DE81F887A75A52477F85

File PE Metadata
Compilation timestamp:
9/25/2007 9:03:37 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:z0ju/MmcFMMzdfVH2+4k+Yhl2Pi0WK+Dfwo0aoLQlkNkgCPHbDXXFZVWnSZ79f://2MMzd9b4l3q0Wzh0aoElZPHnH/VGgR

Entry address:
0x1000

Entry point:
68, 01, 60, 9A, 00, E8, 01, 00, 00, 00, C3, C3, 40, 8F, CB, 50, 15, 05, 99, B5, 32, E3, 5E, C3, 5A, 3E, 64, FF, FF, C6, 76, D8, 5C, 86, 70, 12, 25, 87, 93, 5A, 9B, 89, 47, CE, 24, EC, 4F, 43, C9, FE, A3, 72, C8, 2A, 09, D8, 22, E5, 7C, 35, 41, D0, 7C, 61, 7C, 7C, 56, 60, 86, ED, 72, 5B, D9, 5B, A3, 22, CE, E7, 08, B0, AA, 38, 3F, 8C, CF, FA, D4, 73, 68, 52, FD, C4, CC, E6, 81, D9, 63, 48, 14, BF, 4F, 35, 8C, 3A, 82, E9, DE, DB, F1, 24, B4, 00, 9D, 75, E0, 6B, 4A, 28, AC, 83, 7E, 81, 5F, 32, 17, 48, 87, 91...
 
[+]

Entropy:
7.9841

Packer / compiler:
ASProtect v1.2x (New Strain)

Code size:
3.1 MB (3,214,848 bytes)

Remove SystemCleaner.exe - Powered by Reason Core Security