registrycleaner.exe

Security Stronghold LLC

The application registrycleaner.exe by Security Stronghold has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
Security Stronghold LLC  (signed and verified)

Version:
1.0.0.0

MD5:
8aa0d83f4816b9aa813c340a0056669b

SHA-1:
83883288c3335fbfbb992ea7096b4a946e06282f

SHA-256:
21c5694bcfd15868369ab18819c00d7e8fb3d60ee71928b0bb2e174fdfb42942

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
4/16/2024 11:50:45 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Win32.Generic.SecurityStronghold.Meta
15.5.17.18

File size:
3.5 MB (3,684,304 bytes)

Product version:
1.0.0.0

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\stronghold registry cleaner\registrycleaner.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
10/14/2013 9:55:31 AM

Valid to:
12/11/2014 2:49:56 AM

Subject:
E=manager@securitystronghold.com, CN=Security Stronghold LLC, O=Security Stronghold LLC, L=Astrakhan, C=RU

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121ACD1A0DCFFA94069288588DCC5FFCF18

File PE Metadata
Compilation timestamp:
5/6/2014 5:13:26 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:BYEXlyDRT7BKSXWP/Pm2H7Bz/W/2Fu84uYemO7CTTjDwm9ddxI4OL:mE8QZW/6u84uKO7YKL

Entry address:
0x2A553C

Entry point:
55, 8B, EC, 83, C4, F0, 53, B8, 94, 78, 69, 00, E8, 5B, 61, D6, FF, 8B, 1D, F0, 48, 6C, 00, E8, 80, 1C, FF, FF, 8B, 03, E8, 8D, 96, EA, FF, 8B, 03, BA, C4, 55, 6A, 00, E8, 79, 90, EA, FF, 8B, 0D, 48, 40, 6C, 00, 8B, 03, 8B, 15, 64, 0A, 69, 00, E8, 86, 96, EA, FF, 8B, 0D, D0, 4F, 6C, 00, 8B, 03, 8B, 15, F8, 02, 69, 00, E8, 73, 96, EA, FF, 8B, 0D, 10, 50, 6C, 00, 8B, 03, 8B, 15, F8, 23, 68, 00, E8, 60, 96, EA, FF, 8B, 03, E8, BD, 97, EA, FF, E8, C8, 22, FF, FF, 5B, E8, C2, 1E, D6, FF, 00, 00, B0, 04, 02, 00...
 
[+]

Entropy:
6.5772

Developed / compiled with:
Microsoft Visual C++

Code size:
2.6 MB (2,766,848 bytes)

Remove registrycleaner.exe - Powered by Reason Core Security