adwcleaner.exe

AdwCleaner from Xplode is a free application designed to search for and remove adware such as browser toolbars and other potentially unwanted programs and specifically targets software that is bundled with free programs that you download from the web. This is a setup program which is used to install the application. The file has been seen being downloaded from download.bleepingcomputer.com and multiple other hosts.
Version:
3.0.0.1

MD5:
f7af924d0d951ff8f7b05ad2e4ff50d3

SHA-1:
6b4e08fcfe4fab0d6f80b1fffb0bed8eca79eacd

SHA-256:
70d809851209b8e44e768d9abfeae4775956933b747e0a5b9792921b2e2a088d

Scanner detections:
2 / 68

Status:
Clean  (2 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
4/26/2024 9:25:58 AM UTC  (today)

Scan engine
Detection
Engine version

F-Prot
W32/Undefined.Threat
v6.4.7.1.166

Rising Antivirus
AU3SCRIPT:Dropper.Insrun!1.9E21
23.00.65.131214

File size:
971.3 KB (994,642 bytes)

File type:
Executable application (Win32 EXE)

Language:
French (France)

Common path:
C:\users\{user}\downloads\adwcleaner.exe

File PE Metadata
Compilation timestamp:
1/29/2012 4:32:28 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
24576:XthEVaPqLQwoovVd5jVVPbxh4VJasItAws7GkyIs6/zVOFV:bEVUcQwoqrDcVJbq36O

Entry address:
0xB5E60

Entry point:
60, BE, 00, 40, 47, 00, 8D, BE, 00, D0, F8, FF, 57, EB, 0B, 90, 8A, 06, 46, 88, 07, 47, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 72, ED, B8, 01, 00, 00, 00, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C0, 01, DB, 73, 0B, 75, 28, 8B, 1E, 83, EE, FC, 11, DB, 72, 1F, 48, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C0, EB, D4, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C9, EB, 52, 31, C9, 83, E8, 03, 72, 11, C1, E0, 08, 8A, 06, 46, 83, F0, FF, 74, 75, D1, F8, 89, C5, EB, 0B, 01, DB, 75, 07, 8B...
 
[+]

Entropy:
7.9837

Packer / compiler:
UPX v0.89.6 - v1.02 / v1.05 -v1.24

Code size:
268 KB (274,432 bytes)

The file adwcleaner.exe has been discovered within the following programs.

AION Free-To-Play  by Gameforge 4D GmbH
Aion is a massively multiplayer online role-playing game.
www.Gameforge.com
10% remove it
League of Legends  by Riot Games
League of Legends (LoL) is a multiplayer online battle arena video game developed and published by Riot Games for Microsoft Windows. Players are formed into 2 even teams of Champions, 3v3 or 5v5. League of Legends is a session-based game.
www.RiotGames.com
12% remove it
 
Powered by Should I Remove It?

The file adwcleaner.exe has been seen being distributed by the following 25 URLs.

http://download.bleepingcomputer.com/dl/edbc769c7ae40da3af84e973bf41c29a/522244a0/windows/security/security-utilities/a/.../AdwCleaner.exe

Scan adwcleaner.exe - Powered by Reason Core Security