rcpopsup.exe

Max Registry Cleaner

Max Secure Software India Pvt. Ltd.

The application rcpopsup.exe by Max Secure Software India Pvt has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
Max Secure Software  (signed by Max Secure Software India Pvt. Ltd.)

Product:
Max Registry Cleaner

Description:
Tray popup exe

Version:
1, 0, 0, 16

MD5:
2a2b1d46f9ea06628124861c1eebb7ca

SHA-1:
1ef6b57552c7256c9bbe188c9f058e19207052ea

SHA-256:
99e96a5af46194f20b0c17ee774703da55cca242d90c4ef6bbb0f385ee662267

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
5/3/2024 9:49:30 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.MaxSecure.Optional.Meta (L)
16.2.1.11

File size:
1.5 MB (1,606,016 bytes)

Product version:
1, 0, 0, 16

Copyright:
Copyright © 2005 - 2009 Max Secure Software

Original file name:
MaxRCPopUp.exe

File type:
Executable application (Win64 EXE)

Language:
English (United States)

Common path:
C:\Program Files\max registry cleaner\rcpopsup.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
7/3/2008 6:39:02 AM

Valid to:
7/3/2009 6:39:02 AM

Subject:
E=tech@maxpcsecure.com, CN=Max Secure Software India Pvt. Ltd., O=Max Secure Software India Pvt. Ltd., C=IN

Issuer:
CN=GlobalSign ObjectSign CA, OU=ObjectSign CA, O=GlobalSign nv-sa, C=BE

Serial number:
0100000000011AE8B8038D

File PE Metadata
Compilation timestamp:
5/18/2009 8:01:06 AM

OS version:
4.0

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
24576:d+ojTtUO+yrF/FI5mSrvBQhRNShtEbW1bWyy:Qo1UO+yrd8re3KAyy

Entry address:
0x3A100

Entry point:
48, 83, EC, 28, E8, E7, 67, 00, 00, 48, 83, C4, 28, E9, 0E, FD, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 48, 83, EC, 38, 4D, 85, C9, 48, 89, 5C, 24, 48, 48, 89, 74, 24, 50, 48, 89, 7C, 24, 58, 49, 8B, D9, 49, 8B, F0, 48, 8B, FA, 74, 56, 48, 85, C9, 75, 3C, E8, 65, 36, 00, 00, 45, 33, C9, 45, 33, C0, 33, D2, 33, C9, 48, C7, 44, 24, 20, 00, 00, 00, 00, C7, 00, 16, 00, 00, 00, E8, 07, 69, 00, 00, B8, 16, 00, 00, 00, 48, 8B, 7C, 24, 58, 48, 8B, 74, 24, 50, 48, 8B, 5C, 24, 48, 48, 83, C4...
 
[+]

Entropy:
6.1120

Code size:
985 KB (1,008,640 bytes)

Remove rcpopsup.exe - Powered by Reason Core Security