Home Malware Programs Potentially Unwanted Programs (PUPs) US System Care

US System Care

Posted: May 11, 2016

Threat Metric

Ranking: 7,455
Threat Level: 1/10
Infected PCs: 7,619
First Seen: May 12, 2016
Last Seen: October 4, 2023
OS(es) Affected: Windows

The US System Care may not be a reliable application that you should install when you encounter performance issues with your PC. The US System Care is a Potentially Unwanted Program (PUP that may create additional problems or trick you into wasting money for nothing. The company that stands behind the US System Care is called Pcvark Software Pvt. Ltd. The developer assures that this tool can repair Registry errors, optimize the automatically starting processes, delete the accumulated junk files and shield you from threats. In reality, the US System Care isn't able to perform any of the mentioned tasks. The US System Care displays fake scan results to make PC users scared about their machines. In all cases, these fabricated scans state that the system is in a terrible condition. You may notice bogus warnings claiming that there are hundreds of urgent software issues that need to be resolved. You also may see alerts about dozens of cyber threats. The purpose of this tactic is simple – the developers of US System Care try to make you purchase the full license of their product. Once you click on the green 'Start Repair' button, you will be transferred towards an online page that asks you to upgrade. The cost of the equally unreliable full version of this PUP is 25 Euro ($30) per year. The authors of the US System Care may suggest you install other suspicious applications to charge you more. You should not consider paying because it would be a waste of money. The US System Care cannot help you in any way. On the contrary, the US System Care may disturb you with various aggressive pop-ups about non-existent errors or parasites. The US System Care may even create problems with your system deliberately. This dubious application may reach your PC if you click on misleading links leading to sites that host it. This bogus system optimization utility also may enter bundled with third-party applications. The manual removal of the US System Care may be a real challenge if you are not an expert, so you should delete the US System Care with a powerful anti-malware solution.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



gpcwsetupunad1.exe File name: gpcwsetupunad1.exe
Size: 4.62 MB (4623896 bytes)
MD5: 9a8db6893add4239f9f21ff68e99aad0
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: May 18, 2016
usscsetupunad1.exe File name: usscsetupunad1.exe
Size: 4.59 MB (4593392 bytes)
MD5: d391fa6163355dd721527d587c7415d6
Detection count: 4
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: May 18, 2016

Registry Modifications

The following newly produced Registry Values are:

File name without pathBuy System Care.lnkSystem Care.lnkSystem-Care.lnkSystem~Care.lnkUninstall System Care.lnkUS System Care.lnkRegexp file mask%WINDIR%\System32\Tasks\System-Care_Logon%WINDIR%\System32\Tasks\US System Care_Logon%WINDIR%\tasks\System-Care_Logon.jobHKEY..\..\..\..{RegistryKeys}SOFTWARE\globalpcworks.comSoftware\globalpcworks.netSOFTWARE\GPCWValidatorServiceSOFTWARE\GPCWValidatorService\GPCWValidatorServiceSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\System-Care_LogonSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\US System Care_LogonSOFTWARE\Microsoft\Windows\CurrentVersion\Run\System Care_logonSOFTWARE\Microsoft\Windows\CurrentVersion\Run\US System Care_logonSOFTWARE\uspcworks.comSOFTWARE\ussc-prSOFTWARE\USSCValidatorServiceSOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run\System Care_logonSYSTEM\ControlSet001\services\eventlog\Application\GPCWValidatorSYSTEM\ControlSet001\services\USSCValidatorSYSTEM\ControlSet002\services\eventlog\Application\GPCWValidatorSYSTEM\ControlSet002\services\USSCValidatorSYSTEM\CurrentControlSet\services\eventlog\Application\GPCWValidatorSYSTEM\CurrentControlSet\Services\EventLog\Application\USSCValidatorSYSTEM\CurrentControlSet\services\USSCValidatorHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}747D6111-5B27-471E-99C4-0EA6960007C2_is1{788E5525-DADA-455B-AE88-84A09CF8F888}_is1

Additional Information

The following directories were created:
%ALLUSERSPROFILE%\Application Data\GPCWValidator%ALLUSERSPROFILE%\Application Data\globalpcworks.com%ALLUSERSPROFILE%\GPCWValidator%ALLUSERSPROFILE%\Microsoft\Windows\Start Menu\Programs\System-Care%ALLUSERSPROFILE%\Microsoft\Windows\Start Menu\Programs\US System Care%ALLUSERSPROFILE%\USSCValidator%ALLUSERSPROFILE%\globalpcworks.com%ALLUSERSPROFILE%\globalpcworks.net%ALLUSERSPROFILE%\uspcworks.com%APPDATA%\globalpcworks.net%PROGRAMFILES%\System-Care%PROGRAMFILES%\System~Care%ProgramFiles%\System Care%ProgramFiles%\US System Care%appdata%\SCAppManager%appdata%\globalpcworks.com

Related Posts

Loading...