CloseAll.exe

SpywareDetector

Max Secure Software

The application CloseAll.exe, “CloseAll Application” by Max Secure Software has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
Max Secure Software  (signed and verified)

Product:
SpywareDetector

Description:
CloseAll Application

Version:
3, 0, 1, 3

MD5:
a0f90040eb0334db5a5b75e53e69a11c

SHA-1:
6595d394f0618ae3f5ce47976b6a59b4b76bdcd7

SHA-256:
5a6dc42002a987c91c415a155300a8dd78cbe9e3f36d31dd28aa34ccfb8196e3

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
7/7/2025 9:26:52 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.MaxSecure.Optional.Meta (L)
16.2.22.21

File size:
503.3 KB (515,336 bytes)

Product version:
3, 0, 1, 3

Copyright:
(c)Max Secure Software. All rights reserved.

Original file name:
CloseAll.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\spywaredetector\closeall.exe

Digital Signature
Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
1/25/2008 8:38:31 AM

Valid to:
1/9/2009 8:34:12 AM

Subject:
CN=Max Secure Software, OU=Max Secure Software, O=Max Secure Software, L=Pune, S=MH, C=IN

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
47B878B835A406D31B4C2E17C1097FD7

File PE Metadata
Compilation timestamp:
5/2/2008 1:50:46 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
8.0

CTPH (ssdeep):
6144:DY/S8SY6JNcLpi20FfbgCU+X7exHYSBANmsuUsqU:DunLa5ECUi7er1

Entry address:
0x16D82

Entry point:
E8, FC, B5, 00, 00, E9, 41, FE, FF, FF, 6A, 0C, 68, 68, 63, 47, 00, E8, 40, 10, 00, 00, 83, 65, E4, 00, 8B, 75, 08, 3B, 35, 4C, 10, 48, 00, 77, 22, 6A, 04, E8, C4, 74, 00, 00, 59, 83, 65, FC, 00, 56, E8, 7A, BE, 00, 00, 59, 89, 45, E4, C7, 45, FC, FE, FF, FF, FF, E8, 09, 00, 00, 00, 8B, 45, E4, E8, 4C, 10, 00, 00, C3, 6A, 04, E8, C1, 73, 00, 00, 59, C3, 55, 8B, 6C, 24, 08, 83, FD, E0, 0F, 87, 9F, 00, 00, 00, 53, 8B, 1D, D4, 80, 46, 00, 56, 57, 33, F6, 39, 35, 1C, 0F, 48, 00, 8B, FD, 75, 18, E8, CA, AB, 00...
 
[+]

Entropy:
6.1620

Code size:
412 KB (421,888 bytes)

Remove CloseAll.exe - Powered by Reason Core Security