pccleaners.exe

PC Cleaners

PC Cleaners Inc.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘PC Cleaners’.
Publisher:
PC Cleaners Inc.  (signed and verified)

Product:
PC Cleaners

Description:
PC Cleaner

Version:
10.0.0.0

MD5:
47b5c1a4124dd59aaa3a816291a9e438

SHA-1:
42a9e4ab0c9e022a2dc89e0404ef5f3352cb0e3a

SHA-256:
fca683e02821fdb684c140d41d1f24aaa1d11155bab293adb267d349cd953438

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 3:37:50 PM UTC  (today)

File size:
47.6 MB (49,877,776 bytes)

Product version:
10.0.0.0

Copyright:
(c) PC Cleaners Inc. All rights reserved.

Original file name:
PCGUI.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\pc cleaners\pccleaners.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
5/9/2011 5:00:00 PM

Valid to:
1/26/2012 3:59:59 PM

Subject:
CN=PC Cleaners Inc., OU=Digital ID Class 3 - Microsoft Software Validation v2, O=PC Cleaners Inc., L=Newport Beach, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
440A97C2F8BE34654CDD9D1ADCF81D64

File PE Metadata
Compilation timestamp:
12/14/2011 2:53:58 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
98304:oQPT9B+gdZct3xxMudo1Ar5iyOvpHpUjCfOLd6lHiWWSvYAy/u8t5jOWmxklT:o4nfZ8xxrdo1ArMNpmLWLgE8t5jOW1

Entry address:
0x7112D

Entry point:
E8, E9, 6E, 00, 00, E9, 79, FE, FF, FF, 3B, 0D, 30, 68, 4D, 00, 75, 02, F3, C3, E9, 6B, 6F, 00, 00, 8B, FF, 55, 8B, EC, 56, 8B, 75, 14, 57, 33, FF, 3B, F7, 75, 04, 33, C0, EB, 65, 39, 7D, 08, 75, 1B, E8, E9, 2B, 00, 00, 6A, 16, 5E, 89, 30, 57, 57, 57, 57, 57, E8, F4, 0E, 00, 00, 83, C4, 14, 8B, C6, EB, 45, 39, 7D, 10, 74, 16, 39, 75, 0C, 72, 11, 56, FF, 75, 10, FF, 75, 08, E8, D0, 1C, 00, 00, 83, C4, 0C, EB, C1, FF, 75, 0C, 57, FF, 75, 08, E8, 3F, 1B, 00, 00, 83, C4, 0C, 39, 7D, 10, 74, B6, 39, 75, 0C, 73...
 
[+]

Entropy:
2.5391

Code size:
655.5 KB (671,232 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
PC Cleaners

Command:
"C:\Program Files\pc cleaners\pccleaners.exe" \minimize


Scan pccleaners.exe - Powered by Reason Core Security