SystemSnapshot.exe

System Cleaner

Pointstone Software, LLC

The application SystemSnapshot.exe by Pointstone Software has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
Pointstone Software, LLC  (signed and verified)

Product:
System Cleaner

Description:
System Snapshot

Version:
6.0.0.1

MD5:
d614af41bae5d60d3889c0881989c171

SHA-1:
a8f6a7406d7a4485c99b5168d6e6a71ce760894d

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
11/27/2024 4:45:12 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Optional.Pointstone
17.2.1.21

File size:
287 KB (293,936 bytes)

Copyright:
Copyright © 1997 - 2016 Pointstone Software, LLC. All rights reserved.

Trademarks:
System Cleaner is a registered trademark of Pointstone Software, LLC. (United States Patent and Trademark Office registration number 2926385)

Original file name:
SystemSnapshot.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\pointstone\system cleaner 7\systemsnapshot.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
11/12/2014 2:00:00 AM

Valid to:
11/13/2019 1:59:59 AM

Subject:
CN="Pointstone Software, LLC", O="Pointstone Software, LLC", L=Newark, S=DE, PostalCode=19713, C=US

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
1E600E539078A378196FBC5627EB6553

File PE Metadata
Compilation timestamp:
2/1/2017 1:39:20 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

Entry address:
0x1E614

Entry point:
55, 8B, EC, 83, C4, F0, B8, E8, C1, 41, 00, E8, B4, 2C, FE, FF, A1, 18, 33, 42, 00, 8B, 00, E8, 9C, 41, FE, FF, A1, 18, 33, 42, 00, 8B, 00, B2, 01, E8, B6, 41, FE, FF, A1, 18, 33, 42, 00, 8B, 00, BA, 84, E6, 41, 00, E8, 6D, 41, FE, FF, 8B, 0D, 84, F2, 41, 00, A1, 18, 33, 42, 00, 8B, 00, 8B, 15, D0, 43, 41, 00, E8, 6D, 41, FE, FF, A1, 18, 33, 42, 00, 8B, 00, E8, 69, 41, FE, FF, E8, 98, 2A, FE, FF, B0, 04, 02, 00, FF, FF, FF, FF, 0F, 00, 00, 00, 53, 00, 79, 00, 73, 00, 74, 00, 65, 00, 6D, 00, 20, 00, 53, 00...
 
[+]

Entropy:
6.4318

Developed / compiled with:
Microsoft Visual C++

Code size:
114.5 KB (117,248 bytes)

Remove SystemSnapshot.exe - Powered by Reason Core Security