Cleaner.Win.exe

AppCleaner

UpdateStar GmbH

The application Cleaner.Win.exe by UpdateStar GmbH has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
UpdateStar GmbH  (signed and verified)

Product:
AppCleaner

Description:
Cleaner.Win

Version:
1.9.4527.27925

MD5:
35c0b355d6c76d83446b55897aad885e

SHA-1:
d1b6ebed4fd0ec2218c9bd22fdacc7a6e4a81b7e

SHA-256:
939969b58a4da7e29dd776fc5280a3ba43ed7b369773fe6e4345866350efec13

Scanner detections:
1 / 68

Status:
Potentially unwanted

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
4/25/2024 11:38:28 PM UTC  (a few moments ago)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.UpdateStarGmbH.K
14.12.19.14

File size:
1.1 MB (1,152,032 bytes)

Product version:
1.9.4527.27925

Copyright:
Copyright © UpdateStar 2010-2012. All rights reserved.

Trademarks:
UpdateStar

Original file name:
Cleaner.Win.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\Program Files\appcleaner\cleaner.win.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
12/1/2011 1:00:00 AM

Valid to:
12/1/2012 12:59:59 AM

Subject:
CN=UpdateStar GmbH, O=UpdateStar GmbH, STREET=Hauptstrasse 20, L=Berlin, S=Berlin, PostalCode=10827, C=DE

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
4C04D272CAAEF51D5786CA84D80CFB98

File PE Metadata
Compilation timestamp:
5/24/2012 4:30:50 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
12288:txo3XJM2WJeHhO2lXCsiTrmtA/xZqqd5xVZXYv0DzoSHQ:BrkA/xZHxDX+PSHQ

Entry address:
0xBEDBE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 04, 00, 03, 00, 00, 00, 30, 00, 00, 80, 0E, 00, 00, 00, 80, 00, 00, 80, 10, 00, 00, 00, 98, 00, 00, 80, 18, 00, 00, 00, B0, 00, 00, 80, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
755.5 KB (773,632 bytes)

Remove Cleaner.Win.exe - Powered by Reason Core Security