RegUse.exe

RegUse

Honlyn (Macao Commercial Offshore) Limited

The application RegUse.exe by Honlyn (Macao Commercial Offshore) Limited has been detected as a potentially unwanted program by 3 anti-malware scanners. It runs as a scheduled task under the Windows Task Scheduler named RegUse. This file is typically installed with the program RegUse by Honlyn Limited.
Remove RegUse.exe - Powered by Reason Core Security
Publisher:

Product:
RegUse

Version:
1, 0, 5, 3

MD5:
ecc71ce5b7c7e75776efb59bde5c68a5

SHA-1:
ab70a5e92199c45138a1c358cf5be7368a68eb3d

SHA-256:
958528e0c6671c9e995b3bc9bda6a94af65737913f6de4271a13899e4ea5102f

Scanner detections:
3 / 68

Status:
Potentially unwanted

Analysis date:
1/24/2017 12:08:55 AM UTC  (today)

Scan engine
Detection
Engine version

Comodo Security
UnclassifiedMalware
18347

ESET NOD32
Win32/Adware.RegRevive (variant)
8.9857

Reason Heuristics
PUP.Optional.Task.G
14.6.12.9

Remove RegUse.exe - Powered by Reason Core Security
File size:
805.7 KB (825,008 bytes)

Product version:
1, 0, 5, 3

Copyright:
Honlyn (Macao Commercial Offshore) Limited

Original file name:
RegUse.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\reguse\reguse.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
8/22/2012 2:00:00 AM

Valid to:
8/22/2015 1:59:59 AM

Subject:
CN=Honlyn (Macao Commercial Offshore) Limited, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Honlyn (Macao Commercial Offshore) Limited, L=Macau, S=Macau, C=MO

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
1A2B9E67ACE7E5B318FED4F1ACAE76BB

File PE Metadata
Compilation timestamp:
1/9/2013 11:44:13 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
12288:Ke3d3ezjpzDIbY+6hVibGkvuZpuiobpLm4IrgDoSFqn6vUu+:Ke3d3ezjpzDIU+6h5kSpD4LK8+6vg

Entry address:
0x9378E

Entry point:
E8, 60, 08, 00, 00, E9, 37, FD, FF, FF, FF, 25, 50, 03, 4A, 00, 3B, 0D, 4C, 95, 4C, 00, 75, 02, F3, C3, E9, DC, 08, 00, 00, 8B, FF, 55, 8B, EC, F6, 45, 08, 02, 57, 8B, F9, 74, 25, 56, 68, 80, 42, 49, 00, 8D, 77, FC, FF, 36, 6A, 0C, 57, E8, E2, 03, 00, 00, F6, 45, 08, 01, 74, 07, 56, E8, 12, F5, FF, FF, 59, 8B, C6, 5E, EB, 14, E8, 9B, 0A, 00, 00, F6, 45, 08, 01, 74, 07, 57, E8, FB, F4, FF, FF, 59, 8B, C7, 5F, 5D, C2, 04, 00, CC, CC, CC, CC, CC, CC, CC, 57, 56, 53, 33, FF, 8B, 44, 24, 14, 0B, C0, 7D, 14, 47...
 
[+]

Code size:
633 KB (648,192 bytes)

Scheduled Task
Task name:
RegUse

Trigger:
Weekly (Runs weekly on Thursdays at 21:30)

Action:
reguse.exe -shed


The file RegUse.exe has been discovered within the following program.

RegUse  by Honlyn Limited
Publisher's description - “Make it Quick. Make it Easy. Scan The Registry, Correct The Errors, and Pump Up The System Speed. Registry faults cause your computer to run slower. Registry faults generate Windows error messages.Energize screen displays. Stop wading through Windows popup error messages.”
reguse.com
35% remove it
 
Powered by Should I Remove It?

Remove RegUse.exe - Powered by Reason Core Security