AutoUpdate.DLL

SpeedyPC

SpeedyPC Software

This is a part of the SpeedyPC Pro software from ParetoLogic Inc (sometimes bundled through 3rd-party installers). The module AutoUpdate.DLL by SpeedyPC Software has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. This file is typically installed with the program SpeedyPC by SpeedyPC Software which is a potentially unwanted software program.
Publisher:
SpeedyPC Software  (signed and verified)

Product:
SpeedyPC

Description:
AutoUpdate DLL

Version:
1, 1, 0, 1

MD5:
e73f3213a5c034122395f5ae3ed1aee6

SHA-1:
d3abdc1cffe59582a26b1b02258dcf095a1ebabe

SHA-256:
78cd195679931125ef544ee8afda586e378138bc1fa77640bb860c0713c46030

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
11/5/2024 9:48:28 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Win32.Generic.ParetoLogic.Meta
15.9.17.13

File size:
529.3 KB (542,032 bytes)

Product version:
3.0.0.2

Copyright:
Copyright (C) 2009

Original file name:
AutoUpdate.DLL

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\autoupdate.dll

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
9/11/2009 8:00:00 AM

Valid to:
9/12/2011 7:59:59 AM

Subject:
CN=SpeedyPC Software, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=SpeedyPC Software, L=Vancouver, S=British Columbia, C=CA

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
68D2742E069E0C168138127B757794F2

File PE Metadata
Compilation timestamp:
3/2/2010 3:29:47 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
6144:RIsntH8Q3g6C+JhOhxncmnBDUzAX1m6Ep1eUFJMWvXBZUqbqQ0geNQDlFvDFNg4W:RIsntxRCRnpakX1mnFJMdQ/aDaq

Entry address:
0x3179E

Entry point:
83, 7C, 24, 08, 01, 75, 05, E8, BC, 1B, 01, 00, FF, 74, 24, 04, 8B, 4C, 24, 10, 8B, 54, 24, 0C, E8, ED, FE, FF, FF, 59, C2, 0C, 00, 50, 64, FF, 35, 00, 00, 00, 00, 8D, 44, 24, 0C, 2B, 64, 24, 0C, 53, 56, 57, 89, 28, 8B, E8, A1, E4, 64, 07, 10, 33, C5, 50, FF, 75, FC, C7, 45, FC, FF, FF, FF, FF, 8D, 45, F4, 64, A3, 00, 00, 00, 00, C3, 50, 64, FF, 35, 00, 00, 00, 00, 8D, 44, 24, 0C, 2B, 64, 24, 0C, 53, 56, 57, 89, 28, 8B, E8, A1, E4, 64, 07, 10, 33, C5, 50, 89, 65, F0, FF, 75, FC, C7, 45, FC, FF, FF, FF, FF...
 
[+]

Entropy:
6.6072

Code size:
376 KB (385,024 bytes)

The file AutoUpdate.DLL has been discovered within the following program.

SpeedyPC  by SpeedyPC Software
Publisher's description - “Thanks to SpeedyPC Pro, it is now easy to find out. This innovative software scans your PC in search of ActiveX and Windows registry errors, process performance problems, dangerous malware, privacy files and junk files.”
www.SpeedyPC.com
75% remove it
 
Powered by Should I Remove It?

Remove AutoUpdate.DLL - Powered by Reason Core Security