SystemCleaner.exe

System Cleaner

Pointstone Software, LLC

The application SystemCleaner.exe, “It is time to give your computer a good cleaning on the inside!” by Pointstone Software has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
Pointstone Software, LLC  (signed and verified)

Product:
System Cleaner

Description:
It is time to give your computer a good cleaning on the inside!

Version:
5.6.0.202

MD5:
d553ced6dfdb88d042f64377ee73677a

SHA-1:
fa70f86d0d7fa3a37b5081996ac46e1b87318327

SHA-256:
94a38205529148e6c6556bc90bb681a75c1976621b9d6f60c4bbc6c3d459e71d

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
4/25/2024 1:00:54 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Optional.Pointstone
16.10.1.11

File size:
2.9 MB (3,048,664 bytes)

Product version:
5.6.0.0

Copyright:
Copyright © 1997 - 2008 Pointstone Software, LLC

Trademarks:
System Cleaner and Pointstone are either trademarks or registered trademarks of Pointstone Software, LLC

Original file name:
SystemCleaner.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\systemcleaner.exe

Digital Signature
Authority:
The USERTRUST Network

Valid from:
3/5/2008 1:00:00 AM

Valid to:
3/6/2010 12:59:59 AM

Subject:
CN="Pointstone Software, LLC", O="Pointstone Software, LLC", STREET=220 E. Delaware Avenue, L=Newark, S=Delaware, PostalCode=19711, C=US

Issuer:
CN=UTN-USERFirst-Object, OU=http://www.usertrust.com, O=The USERTRUST Network, L=Salt Lake City, S=UT, C=US

Serial number:
0A38CECD27D24D5BABCE0D05DC3CDAF9

File PE Metadata
Compilation timestamp:
6/25/2008 6:46:00 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:85bgMeRJ96c2hs6rRHYbeR9Q7aqeA5/ct6IwbLGPCQL5r+x0oCtFpBiGwg:UcRSc+FrRHolzWtHwbL+CQg03FpYGwg

Entry address:
0x1000

Entry point:
68, 01, F0, A2, 00, E8, 01, 00, 00, 00, C3, C3, FD, 03, 22, 20, E0, 8A, 63, 95, B0, EE, BB, 06, A0, 5C, 2C, 51, 53, E6, B7, BA, 43, 2C, 50, 37, 7A, DC, C5, FD, 30, 59, 1F, 52, F7, 2C, 6A, AC, B6, C8, 9F, 28, 32, 66, F1, C4, 3B, 15, 6B, 8C, 64, 94, 87, 8E, 9C, C9, F0, CE, 5D, 9B, 0F, 88, 53, CB, DC, 24, D8, 99, CE, 5E, BF, B6, 97, 9B, 7F, 9E, F9, ED, 88, 82, 41, 9D, AE, D9, D3, 3E, C9, 26, EE, B4, 0E, AE, 63, 88, 73, 7E, 91, 8D, A2, 08, 39, 86, 34, C6, E6, BF, 60, 34, C8, 89, F5, DB, 6D, 73, 63, E4, FE, E7...
 
[+]

Entropy:
7.9858

Packer / compiler:
ASProtect v1.2x (New Strain)

Code size:
3.5 MB (3,680,768 bytes)

Remove SystemCleaner.exe - Powered by Reason Core Security