RegistryTool

RegistryTool

Known Malware

by PC Utility, Inc.

What is RegistryTool?

RegistryTool is software application developed by PC Utility, Inc.. It is most commonly found on computers running Windows 7 with nearly 47.22% of installations running this operating system. RegistryTool's installer is typically 36.00 MB in size and installs around 2 files. The most common release is 2.8.4125 with 83.33% of all installations currently using this version.

RegistryTool is most popular in the United States with 79.63% of installations residing in this country.

RegistryTool adds 1 scheduled task to the Windows Task Scheduler launching the program at randomly scheduled times.

About RegistryTool?

This software is designed as a registry cleaner, specifically intended to improve PC performance by identifying and addressing invalid registry settings.

Multiple virus scanners have detected malware in RegistryTool.

RegistryTool.exe (MD5: 20b62cd188af48e9d5dc6ba3b99f62a4) has been flagged by 5 scanners:
Scanner Software Result
Avira AntiVir Adware/ErrorRepair.A.37
avast! Win32:RegTool-B [PUP]
Comodo Security Heur.Suspicious
Dr.Web Trojan.Fraudster.194
Kaspersky Trojan-FakeAV.Win32.RegTool

Software Behaviors

Scheduled tasks:
  • RegistryTool.exe is scheduled as a task named 'RegistryTool Scan' (runs daily at 12:00).

Startup Entries

Startup tasks:
  • RegistryTool.exe is automatically launched at startup through a scheduled task named RegistryTool Startup.
Registry entries:
  • RegistryTool.exe is loaded in the current user (HKCU) registry as an auto-starting executable named 'RegistryTool' and executes as C:\Program Files\RegistryTool\RegistryTool.exe -boot.

Software Details

URL:
Support:
Installation path:
C:\ProgramG Files\RegistryTool\
Uninstaller:
MsiExec.exe /X{3666A405-2B6F-4DDB-ADC8-D316538A885A}
Size:
36.00 MB
Language:
English

RegistryTool Executable Details

Primary executable:
RegistryTool.exe
Name:
RegistryTool
Path:
C:\ProgramG Files\RegistryTool\RegistryTool.exe
MD5:
20b62cd188af48e9d5dc6ba3b99f62a4
SHA-1:
SHA-256:
Files installed by RegistryTool
File Type Filename MD5
DLL
ba2fe90dadc80ac121a9d53a95a2fc4e
EXE
20b62cd188af48e9d5dc6ba3b99f62a4