fixmyregistry.exe

FixMyRegistry

SmartTweak Software Ltd

The application fixmyregistry.exe, “FixMyRegistry Installation ” by SmartTweak Software has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. This is a setup and installation application and has been known to bundle potentially unwanted software.
Publisher:
SmartTweak Software   (signed by SmartTweak Software Ltd)

Product:
FixMyRegistry

Description:
FixMyRegistry Installation

Version:
9.0.0.9

MD5:
ac04a41d55f81a43c019d061ac805a02

SHA-1:
895f4887014719c9ec6eff613f5f818ff99f0900

SHA-256:
d1f722c9d748c552b2071a111670199c969d928cf840592508b67a2da096d756

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
4/25/2024 7:02:37 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Win32.Generic
16.2.12.21

File size:
3.6 MB (3,799,128 bytes)

Product version:
9.0.0.9

Copyright:
All rights reserved

File type:
Executable application (Win32 EXE)

Common path:
C:\ProgramData\{1de888fe-eb0a-4b3c-a71e-cbad041132ad}\fixmyregistry.exe

Digital Signature
Authority:
Thawte, Inc.

Valid from:
5/1/2013 5:00:00 AM

Valid to:
6/1/2015 4:59:59 AM

Subject:
CN=SmartTweak Software Ltd, OU=IT Department, O=SmartTweak Software Ltd, L=Rostov-Na-Donu, S=Rostovskaya obl., C=RU

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
7CE7DC150197DF4751AE4E90AB881CF6

File PE Metadata
Compilation timestamp:
11/27/2012 4:40:10 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
98304:s6ndTqw0Bk9/fI7phI+q1N3w0H2vP4P68NFLL0Z069e75sNTUOJ:sSdTqw0Vjm9HFLLY0gF

Entry address:
0x223A54

Entry point:
55, 8B, EC, B9, 2A, 00, 00, 00, 6A, 00, 6A, 00, 49, 75, F9, 53, 56, 57, B8, C4, ED, 61, 00, E8, D4, 4A, DE, FF, 33, C0, 55, 68, 93, 56, 62, 00, 64, FF, 30, 64, 89, 20, 33, C0, 55, 68, 83, 3B, 62, 00, 64, FF, 30, 64, 89, 20, C7, 05, 34, B8, 63, 00, 94, 00, 00, 00, 68, 34, B8, 63, 00, E8, 6C, 54, DE, FF, E8, C7, 20, FE, FF, 84, C0, 74, 6B, B2, 01, A1, 4C, 16, 43, 00, E8, 03, DD, E0, FF, 8B, D8, BA, 00, 00, 00, 80, 8B, C3, E8, D1, DD, E0, FF, 8D, 55, E4, 33, C0, E8, 77, FA, DD, FF, 8B, 45, E4, 8D, 55, E8, E8...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
2.1 MB (2,246,144 bytes)

Remove fixmyregistry.exe - Powered by Reason Core Security