mini_monitor.exe

CleanMem Mini Monitor

PcWinTech.com

It runs as a scheduled task under the Windows Task Scheduler triggered to execute each time a user logs in.
Publisher:
PcWinTech.com

Product:
CleanMem Mini Monitor

Version:
2.4.0.3

MD5:
403e9c2dd95e51a1eda8aed24f0a6947

SHA-1:
a22069bcc961e03dd1cf0935486d4104291e84a9

SHA-256:
eaf99229b0d7a290ca315778c14ac24fb168cb0bc3a5d104d286b93784768545

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
10/16/2018 12:10:55 PM UTC  (today)

Scan engine
Detection
Engine version

Rising Antivirus
PE:Trojan.VBInject!1.6546
23.00.65.131216

File size:
1.4 MB (1,417,216 bytes)

Product version:
2.4.0.3

Copyright:
2008-2013 PcWinTech.com

Trademarks:
2008-2013 PcWinTech.com

Original file name:
mini_monitor.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

File PE Metadata
Compilation timestamp:
9/21/2012 12:27:19 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
24576:9Y+96tjgO7SEyV3wDml1UD+kn8Q3NIUCR/W9qjaxj4Xsj/lLSC5sa:9Y+9vV3wDml1UD+kF3NGyqja3lLT5p

Entry address:
0x9FC8

Entry point:
68, DC, A7, 40, 00, E8, F0, FF, FF, FF, 00, 00, 68, 00, 00, 00, 30, 00, 00, 00, 60, 00, 00, 00, 48, 00, 00, 00, 2A, 99, 91, 72, 8E, E9, 0A, 42, BC, B1, 72, A4, 4D, 5F, D5, 42, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 63, 6C, 61, 72, 65, 73, 43, 6C, 65, 61, 6E, 4D, 65, 6D, 5F, 6D, 69, 6E, 69, 5F, 6D, 6F, 6E, 00, 6F, 64, 75, 6C, 65, 3D, 43, 6C, 65, 61, 6E, 6D, 65, 6D, 20, 4D, 69, 6E, 69, 20, 4D, 6F, 6E, 69, 74, 6F, 72, 00, 61, 73, 00, 0A, 50, 72, 6F, 70, 65, 72, E0, 00, 00, 00, B0, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual Basic v5.0/v6.0

Code size:
1.3 MB (1,392,640 bytes)

2 Scheduled Tasks
Task name:
CleanMem Mini Monitor

Trigger:
Logon (Runs on logon)

Task name:
CleanMem Mini Monitor

Trigger:
Logon (Runs on logon)

Action:
mini_monitor.exe \startup

Description:
CleanMem Mini Monitor


The file mini_monitor.exe has been discovered within the following programs.

CleanMem  by PcWinTech.com
www.pcwintech.com
37% remove it
 
Powered by Should I Remove It?

The executing file has been seen to make the following network communication in live environments.

TCP (HTTP):
Connects to ps91966.dreamhost.com  (205.196.208.221:80)

Scan mini_monitor.exe - Powered by Reason Core Security