cleanschedule.exe

The executable cleanschedule.exe has been detected as malware by 8 anti-virus scanners.
MD5:
fa3c804c934b66490c646542705a977c

SHA-1:
d7e1fcb569893c8fd9e65c4d6d0138d846b3dd69

SHA-256:
418454c122a0d7f2c44103eecf3ed06b43444b982cbb821ec628c4dec564d6ab

Scanner detections:
8 / 68

Status:
Malware

Analysis date:
4/26/2024 3:40:05 PM UTC  (today)

Scan engine
Detection
Engine version

avast!
Win32:Kukacka
160201-0

AVG
Win32/Sality
2015.0.4489

Dr.Web
Win32.Sector.30
9.0.1.05190

ESET NOD32
Win32/Sality.NBA virus
7.0.302.0

McAfee
Trojan.Artemis!21078EC95C28
18.0.204.0

Microsoft Security Essentials
Threat.Undefined
1.213.5087.0

Norman
Win32.Sality.3
03.12.2014 13:20:04

VIPRE Antivirus
Threat.4721115
46244

File size:
181.4 KB (185,800 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\winrepair pro\cleanschedule.exe

File PE Metadata
Compilation timestamp:
9/14/2015 12:00:17 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
3072:6Lwm8lRqQ4uQQ4ujEGJRe7dWLwcfFPf3N/ryvmd:6Lwm5neEGLOdo1x6md

Entry address:
0x11C0

Entry point:
60, C7, C7, F9, 2C, 11, 68, 46, 1B, FF, C7, C7, B0, CD, 11, B5, 38, F5, B5, E9, 0F, AF, D5, 81, F9, BB, 19, 22, 0D, 42, 81, FD, B8, 0F, 00, 00, 77, 06, 3A, EA, 8B, C2, 1A, EA, 72, 02, 84, F4, 8D, 28, 74, 0B, 32, C4, 81, CF, B8, 1B, 73, 5A, 80, C1, AF, C7, C0, 54, B6, BA, 75, 0F, B6, D3, 33, DB, 8D, 15, 4B, A2, 56, 9F, 1C, 05, 8D, 5D, 00, BF, FE, 0A, 62, 32, 81, F9, 64, 6C, 00, 00, 76, 08, 30, D4, 80, EC, F8, C6, C6, 1E, 33, F3, C6, C6, 24, 8A, C2, 4F, EB, 03, 0F, BE, D5, 56, EB, 03, 86, C8, F2, FF, C7, FF...
 
[+]

Entropy:
6.4411

Code size:
24.5 KB (25,088 bytes)

Remove cleanschedule.exe - Powered by Reason Core Security