setup.exe

Secure PC Cleaner

TUNEUP PRO SOFTWARE SERVICES LLP

The application setup.exe by TUNEUP PRO SOFTWARE SERVICES LLP has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. This is a self-extracting archive and installer and has been known to bundle potentially unwanted software. The file has been seen being downloaded from securepccleaner.com and multiple other hosts.
Publisher:
www.securepccleaner.com/   (signed by TUNEUP PRO SOFTWARE SERVICES LLP)

Product:
Secure PC Cleaner

Version:
Secure PC Cleaner

MD5:
f217f571dc9b11ed71917e95c0d1c386

SHA-1:
936cff072f0d117795d6288338a40b23b360dce3

SHA-256:
7e3a88a341f380821f18923ceaeeb3a2eb7e4c735273cdcc291d0a937223b8f4

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
11/14/2018 4:02:13 AM UTC  (a few moments ago)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Systweak.TUNEUPPR.Installer.Meta (L)
16.6.9.22

File size:
3.9 MB (4,104,312 bytes)

Product version:
4.5

Copyright:
© www.securepccleaner.com/

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\setup.exe

Digital Signature
Authority:
Symantec Corporation

Valid from:
9/4/2015 2:00:00 AM

Valid to:
11/3/2016 12:59:59 AM

Subject:
CN=TUNEUP PRO SOFTWARE SERVICES LLP, O=TUNEUP PRO SOFTWARE SERVICES LLP, L=Jaipur, S=Rajasthan, C=IN

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
290888C1194BAEAEF184C8164AA04912

File PE Metadata
Compilation timestamp:
7/16/2015 3:24:20 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
98304:T3/eLqFM45LAeR7j8RCBMZpq+CT31vl0v/cdOXfNL:zeaM6LAsBBM7v6CvUgX9

Entry address:
0x113BC

Entry point:
55, 8B, EC, 83, C4, A4, 53, 56, 57, 33, C0, 89, 45, C4, 89, 45, C0, 89, 45, A4, 89, 45, D0, 89, 45, C8, 89, 45, CC, 89, 45, D4, 89, 45, D8, 89, 45, EC, B8, 34, 00, 41, 00, E8, E8, 51, FF, FF, 33, C0, 55, 68, 9E, 1A, 41, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, 5A, 1A, 41, 00, 64, FF, 32, 64, 89, 22, A1, 48, 5B, 41, 00, E8, 1E, D8, FF, FF, E8, 6D, D3, FF, FF, 80, 3D, DC, 2A, 41, 00, 00, 74, 0C, E8, 33, D9, FF, FF, 33, C0, E8, 80, 32, FF, FF, 8D, 55, EC, 33, C0, E8, E2, A3, FF, FF, 8B, 55, EC, B8, 54, 86...
 
[+]

Entropy:
7.9881

Developed / compiled with:
Microsoft Visual C++

Code size:
63.5 KB (65,024 bytes)

The file setup.exe has been seen being distributed by the following 50 URLs.

http://securepccleaner.com/getip_build_lp.asp?utm_source=1074&utm_campaign=1074&utm_pubid=158077&clickid=v1_7969077_262137_3o1_BB9D73F0656082120869236995_-1_4320667_15l7d_533_BB9D73F0656082119931937759_m_19_2330271001315351088_908807___0_t_4qbt_19&tag=908807&ad_id=4320667

http://securepccleaner.com/getip_build_lp.asp?utm_source=1043&utm_campaign=1043&utm_pubid=1__3&uniqueid=NDUjMjEzMyMyMjYjM3w3MTY5fEZSfDN8MXx8fGt5dnJ0czdzOHpnM3w

http://securepccleaner.com/getip_build_lp.asp?utm_source=1056&utm_campaign=1056&subid=70678102&context=adkm_790e7c8a-44b6-4895-a65e-edcc88938227

http://securepccleaner.com/getip_build_lp.asp?utm_source=1072&utm_campaign=1072&utm_pubid=224&clickid=APSIEzmH0wgAA_9yNXkznESZ_UhaQLDGi33qnUH0c9ezBQAAAAAJAAE&campid=689808

http://securepccleaner.com/getip_build_lp.asp?utm_source=1072&utm_campaign=1072&utm_pubid=7445&clickid=AKiDqi6I0wgAA_-G_aqLAwhDHNpjRrEw6U_ARTMExznZAAAAAAADAAE&campid=697457

http://securepccleaner.com/getip_build_lp.asp?utm_source=1074&utm_campaign=1074&utm_pubid=157767&clickid=v1_7969087_260127_3o1_616135E3CE1480561584515241_-1_4311317_15l81_536_616135E3CE1480551523347325_m_19_7385893914487714946_907297___0_70_4q27_19&tag=907297&ad_id=4311317

http://securepccleaner.com/getip_build_lp.asp?utm_source=1074&utm_campaign=1074&utm_pubid=143508&clickid=v1_7969087_207588_3o1_3AE63B25BE63931501913434513_-1_4311157_15l81_533_3AE63B25BE63931492007237326_m_19_1676434263496036717_901587___0_6k_4c4k_19&tag=901587&ad_id=4311157

http://securepccleaner.com/getip_build_lp.asp?utm_source=1074&utm_campaign=1074&utm_pubid=136328&clickid=v1_7969087_247457_3o1_63DAD57D6E2689552803945152_-1_4319907_15l81_536_63DAD57D6E26895511436732700_m_19_5235674638898284954_795568___2_6k_4548_19&tag=795568&ad_id=4319907

http://securepccleaner.com/getip_build_lp.asp?utm_source=1074&utm_campaign=1074&utm_pubid=143218&clickid=v1_7969087_206798_3o1_554B3042A56177122103145250_-1_4311347_15l81_535_554B3042A56177111161905380_m_19_-3135644206943549672_853367___2_23_4bri_19&tag=853367&ad_id=4311347

http://securepccleaner.com/getip_build_lp.asp?utm_source=1074&utm_campaign=1074&utm_pubid=125578&clickid=v1_7969087_190438_3o1_4FF8CBCE7158096542063618199_-1_4311317_15l81_533_4FF8CBCE71580965393128948_m_19_7271413443131242911_906177___2_5f_3qka_19&tag=906177&ad_id=4311317

http://securepccleaner.com/getip_build_lp.asp?utm_source=1029sp&utm_campaign=1029sp&utm_pubid=805726656&utm_subid=270198

http://securepccleaner.com/getip_build_lp.asp?utm_source=1074&utm_campaign=1074&utm_pubid=158077&clickid=v1_7968187_262137_3o1_E97BBEE5A245909171080406042_-1_4301127_15efp_536_E97BBEE5A24590916766391747_m_19_3106904236917717803_908797___2_29_4qbt_19_&tag=908797&ad_id=4301127

http://securepccleaner.com/getip_build_lp.asp?utm_source=1074&utm_campaign=1074&utm_pubid=140228&clickid=v1_7969087_199988_3pc_3C58A31FE15913804414367038_-1_4311247_15l81_533_3C58A31FE159138031041895593_m_19_4107295710361709028_813638___0_58_48u4_19&tag=813638&ad_id=4311247

http://securepccleaner.com/getip_build_lp.asp?utm_source=1074&utm_campaign=1074&utm_pubid=157767&clickid=v1_7968497_260127_3o1_E97BBEE5A21035932259386014_-1_4304667_15iov_536_E97BBEE5A210359311442805070_m_19_-1240915686906669219_907297___-1_68_4q27_19_&tag=907297&ad_id=4304667

http://securepccleaner.com/getip_build_lp.asp?utm_source=1072&utm_campaign=1072&utm_pubid=6825&clickid=AIgUrLyH0wgAA_9yWIbqThOKKMbaR5uRGXvctLWdNjH0BQAAAAACAAE&campid=631329

http://securepccleaner.com/getip_build_lp.asp?utm_source=1074&utm_campaign=1074&utm_pubid=143508&clickid=v1_7969087_207588_3o1_D7792BD39B27833421911997823_-1_4319897_15l81_533_D7792BD39B27833411411458597_m_19_-4282701814829228217_901587___0_6k_4c4k_19&tag=901587&ad_id=4319897

http://securepccleaner.com/getip_build_lp.asp?utm_source=1074&utm_campaign=1074&utm_pubid=143508&clickid=v1_7969087_207588_3o1_D9BD14579D395366484697977_-1_4311287_15l81_533_D9BD14579D3953651047935524_m_19_7539577626220278365_901587___2_6k_4c4k_19_&tag=901587&ad_id=4311287

http://securepccleaner.com/getip_build_lp.asp?utm_source=1074&utm_campaign=1074&utm_pubid=157767&clickid=v1_7969087_260127_3o1_E33EEAC7E2281030449537366_-1_4311337_15l81_533_E33EEAC7E2281029743568664_m_19_6969601884178727794_907297___2_6k_4q27_19&tag=907297&ad_id=4311337

http://securepccleaner.com/getip_build_lp.asp?utm_source=1043&utm_campaign=1043&utm_pubid=1__3&uniqueid=NDUjMjEzMyMyMjYjM3w3MTY5fEZSfDN8MXx8fGJwMm14aXNpb2JsaHw

http://securepccleaner.com/getip_build_lp.asp?utm_source=1074&utm_campaign=1074&utm_pubid=140228&clickid=v1_7968117_199988_3pc_09026E4596729028447122846_-1_4332127_15tpf_535_09026E4596729027887499385_m_19_4218625725931398245_813638___-1_73_48u4_19&tag=813638&ad_id=4332127

http://securepccleaner.com/getip_build_lp.asp?utm_source=1056&utm_campaign=1056&subid=71630941&context=adkm_fb0ba374-4351-4c61-92b7-468449f8d5d9

http://securepccleaner.com/getip_build_lp.asp?utm_source=1074&utm_campaign=1074&utm_pubid=158077&clickid=v1_7968557_262137_3o1_E91061A93A2741716128139185_-1_4333677_15g0h_535_E91061A93A27417152132282299_m_19_-4474842971694116495_908807___2_48_4qbt_19&tag=908807&ad_id=4333677

http://securepccleaner.com/getip_build_lp.asp?utm_source=1043&utm_campaign=1043&utm_pubid=1__3&uniqueid=NDUjMjEzMyMyMjYjM3w3MTY5fEZSfDN8MXx8fDZvZWFueWdnZG5yZ3w

http://securepccleaner.com/getip_build_lp.asp?utm_source=1074&utm_campaign=1074&utm_pubid=129648&clickid=v1_7968497_207927_3o1_6A42745FDB26598601418817781_-1_4304457_15rjf_536_6A42745FDB2659859517876466_m_19_2517069148173482993_764868___-1_68_3ujg_19&tag=764868&ad_id=4304457

http://securepccleaner.com/getip_build_lp.asp?utm_source=1043&utm_campaign=1043&utm_pubid=1__3&uniqueid=NDUjMjEzMyMyMjYjM3w3MTY5fEZSfDN8MXx8fDk2OWM4NTZ4ZWF6Znw

http://securepccleaner.com/getip_build_lp.asp?utm_source=1074&utm_campaign=1074&utm_pubid=125578&clickid=v1_7969077_190438_3o1_8749767B21918864416828330_-1_4311037_15sa9_533_8749767B21918863622724314_m_19_3783163751202815074_906177___-1_2j_3qka_19&tag=906177&ad_id=4311037

http://securepccleaner.com/getip_build_lp.asp?utm_source=1074&utm_campaign=1074&utm_pubid=129648&clickid=v1_7968497_207927_3pn_E7BA85C2197625252686925_-1_4304447_15rjf_522_E7BA85C219762512141787813_m_19_242336178078104638_764868___-1_68_3ujg_19&tag=764868&ad_id=4304447

http://securepccleaner.com/getip_build_lp.asp?utm_source=1074&utm_campaign=1074&utm_pubid=143508&clickid=v1_7969457_207588_3pn_895E1485392288961011056633_-1_4315957_15nl7_522_895E1485392288951572718038_m_19_-1432381735828654731_901587___0_38_4c4k_19&tag=901587&ad_id=4315957

http://securepccleaner.com/getip_build_lp.asp?utm_source=1074&utm_campaign=1074&utm_pubid=157767&clickid=v1_7969077_260127_3o1_BC9B941A1E5789422210905941_-1_4310997_15l7d_533_BC9B941A1E5789421535968659_m_19_-4539493731522581530_907297___2_30_4q27_19&tag=907297&ad_id=4310997

http://securepccleaner.com/getip_build_lp.asp?utm_source=1074&utm_campaign=1074&utm_pubid=157767&clickid=v1_7969117_260127_3o1_79CFE8E73874520801385160915_-1_4312147_15l8v_533_79CFE8E73874520792128075959_m_19_-3685006911126497780_907297___2_9_4q27_19&tag=907297&ad_id=4312147

Latest 30 of 113 download URLs

Remove setup.exe - Powered by Reason Core Security