EasyCleaner

EasyCleaner

by ToniArts

What is EasyCleaner?

EasyCleaner is software application developed by ToniArts. It is most commonly found on computers running Windows 7 with nearly 49.18% of installations running this operating system. EasyCleaner's installer is typically 3.00 MB in size and installs around 94 files.

EasyCleaner is most popular in the United States with 40.03% of installations residing in this country.

EasyCleaner adds 6 scheduled tasks to the Windows Task Scheduler launching the program at randomly scheduled times. When using a computer that is connected to the internet, EasyCleaner is known to create 6 firewall exceptions to allow inbound and outbound connectivity.

Software Behaviors

Services:
  • CSUService.exe runs as a service named 'COMODO System Utilities Service' (CSUService).
  • SASCore.exe runs as a service named 'SAS Core Service' (!SASCORE) "SUPERAntiSpyware Core Service".
Firewall:
  • SUPERAntiSpyware.exe is added as a firewall exception for 'C:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE'.
  • CCleaner.exe is added as a firewall exception for 'C:\Program Files\CCleaner\CCleaner.exe'.
  • EasyClea.exe is added as a firewall exception for 'C:\Program Files\ToniArts\EasyCleaner\EasyClea.exe'.
  • Cleanup.exe is added as a firewall exception for 'C:\Program Files\CleanUp!\Cleanup.exe'.
  • Uninstall.exe is added as a firewall exception for 'C:\Program Files\SUPERAntiSpyware\Uninstall.exe'.
  • SSUpdate.exe is added as a firewall exception for 'C:\Program Files\SUPERAntiSpyware\SSUPDATE.EXE'.
Scheduled tasks:
  • SASTask.exe is scheduled as a task named 'SUPERAntiSpyware Scheduled Task 5d7bbf9a-0cdb-4471-90f3-3a46b43e14ef' (runs weekly on Thursdays at 2:00 AM).
  • EasyClea.exe is scheduled as a task with the class '{8631BD98-5159-4BB0-B86B-C6BAE0DD1DC5}' (runs on registration).
  • Cleanup.exe is scheduled as a task with the class '{DABD7013-88A3-4EA3-BE2D-EEBF60B86276}' (runs on registration).
  • CCleaner.exe is scheduled as a task with the class '{F727C1EB-3B16-4383-88E8-A898FBFA5CD6}' (runs on registration).
  • firefox.exe is scheduled as a task with the class '{4306369D-C6EE-416E-BFE2-1EC237E870EF}' (runs on registration).
  • RUNSAS.EXE is scheduled as a task with the class '{FC6B67CA-A3B6-45E9-AAC1-C83E59576CD3}' (runs on registration).

Startup Entries

Registry entries:
  • CCleaner.exe is loaded in the current user (HKCU) registry as an auto-starting executable named 'CCleaner Monitoring' and executes as "C:\Program Files\CCleaner\CCleaner.exe" /MONITOR.
  • WinPatrolEx.exe is loaded in the current user (HKCU) registry as an auto-starting executable named 'WinPatrol Explorer' and executes as C:\Program Files\BillP Studios\WinPatrol\WinPatrolEx.exe.
  • WinPatrol.exe is loaded in the current user (HKCU) registry as an auto-starting executable named 'WinPatrol [FREE Edition]' and executes as C:\Program Files\WinPatrol\WinPatrol.exe.
  • SUPERAntiSpyware.exe is loaded in the current user (HKCU) registry as an auto-starting executable named 'SUPERAntiSpyware' and executes as C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe.
Registry entries (User):
  • Cleanup.exe is loaded once in the current user (HKCU) registry as a startup file name 'CleanUp!' which loads as C:\Program Files\CleanUp!\Cleanup.exe /WindowsRestart.

Software Details

URL:
https://personal.inet.fi/business/toniarts
Support:
Installation path:
C:\Program Files\ToniArts\EasyCleaner
Uninstaller:
RunDll32 C:\Program Files2\COMMON~1\INSTAL~1\Professional\RunTime\10\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Info
Size:
3.00 MB
Language:
English

EasyCleaner Executable Details

Primary executable:
EasyClea.exe
Name:
EasyCleaner
Path:
C:\Program Files\ToniArts\EasyCleaner\EasyClea.exe
MD5:
60a00d46783dc8867a11654c5e528bbe
SHA-1:
SHA-256:
Files installed by EasyCleaner
File Type Filename MD5
EXE
ab91a7350a5fddcdf0a7b0c60e8e4e71
EXE
ba376c627ebaac190156d40655de5fce
EXE
02bfb88910077b93735301cfd938fb1a
DLL
5d0d3a6179d140e0e1a95e7ac4da6cb6
DLL
5cad5792bb209694db6e36baa2ca83ea
EXE
44f3246c08d26ea6ba77e91066bfa6de
EXE
5ab8231ec31cb8c49a39313d2f322381
DLL
dc8966cbd4c9ee3912c25933dfde740b
DLL
8005750ec63eb5292884ad6183ae2e77
DLL
c6aa10109d7be3395e3a312c5453da2c