big city lights.exe

Clean Disk Security

LLC IT Management

The application big city lights.exe, “Clean Free Space of Drives (security)” by LLC IT Management has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
Kevin Solway  (signed by LLC IT Management)

Product:
Clean Disk Security

Description:
Clean Free Space of Drives (security)

Version:
7.8.3.1

MD5:
feaf9b7bfbe004b4d7d9c81fb2e05872

SHA-1:
bc81b54ac12b984dd7e6a9d2d4cb5a983323cf22

SHA-256:
ce5155e00168dc3c5e98f9a98018d4bc25d5bbd988fe1c4f1f230f1705def5b2

Scanner detections:
1 / 68

Status:
Adware

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
4/24/2024 2:16:20 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.ITManagement (M)
16.2.13.9

File size:
288.9 KB (295,816 bytes)

Product version:
7.50

Copyright:
Copyright © Kevin Solway 1998-2004

Trademarks:
Clean Disk Security TM Kevin Solway 1999

Original file name:
Clndsk.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\big city lights.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
6/2/2014 3:00:00 AM

Valid to:
6/3/2015 2:59:59 AM

Subject:
CN=LLC IT Management, O=LLC IT Management, STREET=Bagritskogo 51/2, L=Moscow, S=Moscovskaya oblast, PostalCode=121471, C=RU

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
2E9D66F88B13880A37872C17A2E17029

File PE Metadata
Compilation timestamp:
6/20/1992 1:22:17 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
6144:z4mMFz8uWAFwzYKyiY5MIpE5bpHmZ1LoQElWDzT0nytE4nxet+LGOWK:2yDl6Z5VAFm1Lko5RT

Entry address:
0x1000

Entry point:
E9, F3, F3, 03, 00, 21, F2, 21, 3D, CF, 10, 44, 00, 8B, 1D, BB, 10, 44, 00, 89, 54, 24, F0, C3, C3, 8D, 40, 00, FF, 25, 24, 10, 44, 00, B8, 18, 10, 40, 00, C3, 21, F2, 21, 3D, CF, 10, 44, 00, 8B, 1D, BB, 10, 44, 00, 89, 54, 24, F0, E8, 69, 03, 00, 00, 89, 35, 3E, 10, 44, 00, C6, 05, D7, 10, 44, 00, 53, 03, 15, 4F, 10, 44, 00, 01, 3D, 6B, 10, 44, 00, C7, 05, 65, 10, 44, 00, A5, 7C, 01, 00, FE, 05, 27, 10, 44, 00, 89, 15, EF, 10, 44, 00, 89, 3D, 06, 11, 44, 00, 89, 15, DB, 10, 44, 00, C3, 90, FF, 25, 34, 41...
 
[+]

Packer / compiler:
Xtreme-Protector v1.05

Code size:
253.5 KB (259,584 bytes)

Remove big city lights.exe - Powered by Reason Core Security