PCScanAndSweep.exe

PCScanAndSweep

Ascentive LLC

The application PCScanAndSweep.exe by Ascentive has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. It runs as a scheduled task under the Windows Task Scheduler triggered to execute each time a user logs in.
Publisher:
Ascentive LLC  (signed and verified)

Product:
PCScanAndSweep

Version:
7.05.0005

MD5:
47df92c1500f073f4660f974c9817055

SHA-1:
f30547613542e462d2d27171dfc4c8e28a9f9880

SHA-256:
6431fc9a48a0b949395992186f1a1ffd95f554bdb1c356c7f870ee7f66b127c4

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
4/23/2024 5:49:00 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Win32.Generic
17.2.13.3

File size:
2.5 MB (2,581,192 bytes)

Product version:
7.05.0005

Original file name:
PCScanAndSweep.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\ascentive\pc scanandsweep\pcscanandsweep.exe

Digital Signature
Signed by:

Authority:
The USERTRUST Network

Valid from:
11/17/2010 9:00:00 AM

Valid to:
11/17/2013 8:59:59 AM

Subject:
CN=Ascentive LLC, O=Ascentive LLC, STREET=201 Spring Garden St, STREET=Suite 400, L=Philadelphia, S=PA, PostalCode=19123, C=US

Issuer:
CN=UTN-USERFirst-Object, OU=http://www.usertrust.com, O=The USERTRUST Network, L=Salt Lake City, S=UT, C=US

Serial number:
0B15142D30AF75A1350E58373FD8BF13

File PE Metadata
Compilation timestamp:
3/19/2013 7:19:55 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

Entry address:
0x13F8

Entry point:
68, 34, 17, 40, 00, E8, F0, FF, FF, FF, 00, 00, 48, 00, 00, 00, 30, 00, 00, 00, 40, 00, 00, 00, 00, 00, 00, 00, B7, 93, C0, 52, FB, 08, 4A, 43, 82, 3F, D1, 0A, 18, 57, 32, 87, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, C3, 8A, 1D, 4B, B6, AC, 50, 43, 53, 63, 61, 6E, 41, 6E, 64, 53, 77, 65, 65, 70, 00, 4B, 00, AE, DD, BB, 78, F3, EA, DD, 00, 00, 00, 00, 90, 00, 00, 00, 00, 00, 00, 00, 02, 00, 00, 00, 01, 00, 00, 00, B8, 78, C7, 6E, 14, D5, 48, 45, 9E, 1A, BA, 6E, A6, 8F, 73, 8A, 01, 00, 00, 00, A0, 00, 00, 00...
 
[+]

Entropy:
6.1311

Developed / compiled with:
Microsoft Visual Basic v5.0

Code size:
2.4 MB (2,523,136 bytes)

Scheduled Task
Task name:
PC ScanAndSweep@Logon

Trigger:
Logon (Runs on logon)


Remove PCScanAndSweep.exe - Powered by Reason Core Security