Integrator.exe

System Cleaner

Pointstone Software, LLC

The application Integrator.exe by Pointstone Software has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘System Cleaner Run at Windows Startup’. This file is typically installed with the program System Cleaner 7 by Pointstone Software, LLC. While running, it connects to the Internet address pointstone.com on port 80 using the HTTP protocol.
Publisher:
Pointstone Software, LLC  (signed and verified)

Product:
System Cleaner

Description:
Integrator

Version:
7.5.8.330

MD5:
16ebe85f973ef995b114d4f6b991167a

SHA-1:
a9f5b553b9930aed110ce3209ac08582a4b36426

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
4/19/2024 3:31:15 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Optional.Pointstone.Startup
17.2.1.14

File size:
1.7 MB (1,733,168 bytes)

Copyright:
Copyright © 1997 - 2016 Pointstone Software, LLC. All rights reserved.

Trademarks:
System Cleaner is a registered trademark of Pointstone Software, LLC. (United States Patent and Trademark Office registration number 2926385)

Original file name:
Integrator.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\pointstone\system cleaner 7\integrator.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
11/12/2014 2:00:00 AM

Valid to:
11/13/2019 1:59:59 AM

Subject:
CN="Pointstone Software, LLC", O="Pointstone Software, LLC", L=Newark, S=DE, PostalCode=19713, C=US

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
1E600E539078A378196FBC5627EB6553

File PE Metadata
Compilation timestamp:
2/1/2017 1:38:43 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

Entry address:
0xCF78C

Entry point:
55, 8B, EC, B9, 04, 00, 00, 00, 6A, 00, 6A, 00, 49, 75, F9, 51, 53, B8, FC, 66, 4C, 00, E8, A1, 1B, F3, FF, 8B, 1D, D0, 51, 4D, 00, 33, C0, 55, 68, 1A, F9, 4C, 00, 64, FF, 30, 64, 89, 20, 8D, 45, EC, E8, 35, 3D, F3, FF, 8B, 45, EC, BA, 34, F9, 4C, 00, 8B, 08, FF, 51, 0C, E8, 47, 28, F3, FF, A1, B4, 04, 4D, 00, DD, 18, 9B, E8, 2A, 69, FF, FF, BA, 98, 1E, 43, 00, 33, C0, E8, 22, 40, F3, FF, A1, BC, 5A, 4C, 00, E8, 38, 64, FF, FF, 8D, 45, E8, E8, F8, 3C, F3, FF, 8B, 45, E8, BA, 68, F9, 4C, 00, 8B, 08, FF, 51...
 
[+]

Entropy:
6.9373

Developed / compiled with:
Microsoft Visual C++

Code size:
823 KB (842,752 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
System Cleaner Run at Windows Startup

Command:
C:\Program Files\pointstone\system cleaner 7\integrator.exe


The file Integrator.exe has been discovered within the following program.

System Cleaner 7  by Pointstone Software, LLC
Publisher's description - “Fix your PC's problems, and help prevent them from recurring with System Cleaner's suite of maintenance tools. System Cleaner restores your PC's performance, frees up wasted disk space, prevents registry corruption and protects your online privacy. Your PC is slowing down.”
www.systemcleaner.com
45% remove it
 
Powered by Should I Remove It?

The executing file has been seen to make the following network communications in live environments.

TCP (HTTP):
Connects to pointstone.com  (108.61.26.20:80)

Remove Integrator.exe - Powered by Reason Core Security