PCBooster.EXE

PC Booster

inKline Global, Inc.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘PC Booster’.
Publisher:
inKline Software Labs  (signed by inKline Global, Inc.)

Product:
PC Booster

Version:
7, 0, 0, 1

MD5:
98013487f5a43b77662b3e628fc5f141

SHA-1:
a4f7a3f2269fb084d90ec3c2879dee94bbd1226e

SHA-256:
939e7204b24442f9437e0074bc899d2b7fa9e1f6a8f82240be78dc4b2a29c70a

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 7:01:41 PM UTC  (today)

File size:
14.6 MB (15,265,424 bytes)

Product version:
7, 0, 0, 1

Copyright:
Copyright inKline Global, Inc. (C) 2006

Original file name:
PCBooster.EXE

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\inkline global\pc booster\pcbooster.exe

Digital Signature
Authority:
The USERTRUST Network

Valid from:
11/20/2008 7:00:00 PM

Valid to:
11/21/2011 6:59:59 PM

Subject:
CN="inKline Global, Inc.", O="inKline Global, Inc.", STREET=P.O. Box 5479, L=Reno, S=NV, PostalCode=89513, C=US

Issuer:
CN=UTN-USERFirst-Object, OU=http://www.usertrust.com, O=The USERTRUST Network, L=Salt Lake City, S=UT, C=US

Serial number:
7947172A61F595F30A48AEA7688A7FA8

File PE Metadata
Compilation timestamp:
2/5/2010 4:51:44 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
7.10

CTPH (ssdeep):
196608:/nDsomNYki+vZnZUoaTXwU62qNg8fdD/tzz:e+kJvZnZqAU62qxVDlzz

Entry address:
0xC1523

Entry point:
6A, 60, 68, E0, 69, 60, 00, E8, 49, 1F, 00, 00, BF, 94, 00, 00, 00, 8B, C7, E8, 05, F2, FF, FF, 89, 65, E8, 8B, F4, 89, 3E, 56, FF, 15, 14, 03, 5F, 00, 8B, 4E, 10, 89, 0D, 9C, 43, 66, 00, 8B, 46, 04, A3, A8, 43, 66, 00, 8B, 56, 08, 89, 15, AC, 43, 66, 00, 8B, 76, 0C, 81, E6, FF, 7F, 00, 00, 89, 35, A0, 43, 66, 00, 83, F9, 02, 74, 0C, 81, CE, 00, 80, 00, 00, 89, 35, A0, 43, 66, 00, C1, E0, 08, 03, C2, A3, A4, 43, 66, 00, 33, F6, 56, 8B, 3D, 64, 04, 5F, 00, FF, D7, 66, 81, 38, 4D, 5A, 75, 1F, 8B, 48, 3C, 03...
 
[+]

Entropy:
4.8129

Developed / compiled with:
Microsoft Visual C++ v7.0

Code size:
1.9 MB (2,027,520 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
PC Booster

Command:
C:\Program Files\inkline global\pc booster\pcbooster.exe


Scan PCBooster.EXE - Powered by Reason Core Security