pc-cleaner-4122.exe

PC Cleaner

PC HelpSoft Labs Inc.

The application pc-cleaner-4122.exe by PC HelpSoft Labs has been detected as a potentially unwanted program by 7 anti-malware scanners. The program is a setup application that uses the Inno Setup installer. The file has been seen being downloaded from www.panvasoft.com.
Publisher:
PC HelpSoft Labs Inc.  (signed and verified)

Product:
PC Cleaner

Version:
4.1

MD5:
e3c5072576d0845bad5d0f63d61fb43c

SHA-1:
6f41a0d550aa5834970ccc0a5c695ac133635835

SHA-256:
8aa6cc952834f04a665a6da2d340a350c096020c897b094fef38aefa82253039

Scanner detections:
7 / 68

Status:
Potentially unwanted

Analysis date:
8/14/2026 11:52:24 PM UTC  (a few moments ago)

Scan engine
Detection
Engine version

Agnitum Outpost
PUA.SpeedingUpMyPC
7.1.1

AVG
Generic
2016.0.2943

Baidu Antivirus
Adware.Win32.SpeedingUpMyPC
4.0.3.151027

Bkav FE
W32.HfsAdware
1.3.0.7237

Dr.Web
Program.Unwanted.719
9.0.1.0300

ESET NOD32
Win32/AdWare.SpeedingUpMyPC (variant)
9.12435

VIPRE Antivirus
Trojan.Win32.Generic
44676

File size:
1.9 MB (1,964,808 bytes)

Product version:
4.1

File type:
Executable application (Win32 EXE)

Installer:
Inno Setup

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\microsoft\windows\temporary internet files\content.ie5\{random}\pc-cleaner-4122.exe

Digital Signature
Authority:
Symantec Corporation

Valid from:
6/26/2015 1:00:00 AM

Valid to:
7/26/2016 12:59:59 AM

Subject:
CN=PC HelpSoft Labs Inc., O=PC HelpSoft Labs Inc., L=Victoria, S=British Columbia, C=CA

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
5BF17138E97AA928FD8A09C5915E975F

File PE Metadata
Compilation timestamp:
6/19/1992 11:22:17 PM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:UaE6Wr3RXEovol5G7zo/2h+H31bO+WCHUHinXBgj:ZpARX3vojGXo+h+lbO+WC0CRgj

Entry address:
0x9C40

Entry point:
55, 8B, EC, 83, C4, C4, 53, 56, 57, 33, C0, 89, 45, F0, 89, 45, DC, E8, 86, 94, FF, FF, E8, 8D, A6, FF, FF, E8, 1C, A9, FF, FF, E8, 53, C9, FF, FF, E8, 9A, C9, FF, FF, E8, C9, F2, FF, FF, E8, 30, F4, FF, FF, 33, C0, 55, 68, FC, A2, 40, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, C5, A2, 40, 00, 64, FF, 32, 64, 89, 22, A1, 14, C0, 40, 00, E8, 96, FE, FF, FF, E8, C9, FA, FF, FF, 8D, 55, F0, 33, C0, E8, 83, CF, FF, FF, 8B, 55, F0, B8, E8, CD, 40, 00, E8, 32, 95, FF, FF, 6A, 02, 6A, 00, 6A, 01, 8B, 0D, E8, CD...
 
[+]

Entropy:
7.9938

Packer / compiler:
Inno Setup v5.x - Installer Maker

Code size:
37 KB (37,888 bytes)

The file pc-cleaner-4122.exe has been seen being distributed by the following URL.

Remove pc-cleaner-4122.exe - Powered by Reason Core Security