HandleUpdate.dll

PGsurfer

SpeedyPC Software

This is a part of the SpeedyPC Pro software from ParetoLogic Inc (sometimes bundled through 3rd-party installers). The module HandleUpdate.dll by SpeedyPC Software has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. This file is typically installed with the program SpeedyPC Pro by SpeedyPC Software which is a potentially unwanted software program.
Publisher:
Paretologic  (signed by SpeedyPC Software)

Product:
PGsurfer

Description:
HandleUpdate.dll

Version:
1.0.0.1

MD5:
4c10f80fc0e6bf4561dc4c2f9dc15e4c

SHA-1:
2cea6e0e220469173928510296a1b6a1b65f8c25

SHA-256:
bf29393c138a865535682c99cca2920e00f15a17bba14ae6ffb915de55535dd6

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
12/26/2024 7:46:19 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Win32.Generic
16.5.29.4

File size:
1.5 MB (1,625,192 bytes)

Product version:
1.0.0.1

Copyright:
ParetoLogic. All rights reserved.

Original file name:
HandleUpdate.dll

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\Program Files\speedypc software\speedypc\handleupdate.dll

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
10/4/2012 2:45:05 PM

Valid to:
10/5/2013 2:45:05 PM

Subject:
E=itgroup@paretologic.com, CN=SpeedyPC Software, OU=Paretologic Inc., O=SpeedyPC Software, L=Victoria, S=British Columbia, C=CA

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121B885D7A3AB531E0BACD5D2AD1CBA6BEA

File PE Metadata
Compilation timestamp:
8/9/2012 12:46:50 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
49152:zcqgaNMrg1bqbgPF7G6yFi9wdHqqz+z+NTwq2OYZJtkaPfMD/mxn:z2a31+bgPF7G6yFi9w1qS+z+NkOYZzkY

Entry address:
0xF5A22

Entry point:
8B, FF, 55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, 2D, 6D, 00, 00, FF, 75, 08, 8B, 4D, 10, 8B, 55, 0C, E8, EC, FE, FF, FF, 59, 5D, C2, 0C, 00, 8B, FF, 55, 8B, EC, 53, 8B, 5D, 08, 83, FB, E0, 77, 6F, 56, 57, 83, 3D, 28, 65, 16, 10, 00, 75, 18, E8, 6C, 6F, 00, 00, 6A, 1E, E8, B6, 6D, 00, 00, 68, FF, 00, 00, 00, E8, B8, 05, 00, 00, 59, 59, 85, DB, 74, 04, 8B, C3, EB, 03, 33, C0, 40, 50, 6A, 00, FF, 35, 28, 65, 16, 10, FF, 15, 1C, 93, 11, 10, 8B, F8, 85, FF, 75, 26, 6A, 0C, 5E, 39, 05, 5C, 6B, 16, 10, 74, 0D, 53...
 
[+]

Entropy:
6.4753

Code size:
1.1 MB (1,145,856 bytes)

The file HandleUpdate.dll has been discovered within the following program.

SpeedyPC Pro  by SpeedyPC Software
SpeedyPC Pro is registry cleaner utility whose purported purpose is to remove redundant items from the Windows registry. SpeedyPC Pro automates the process of looking for invalid entries, missing file references or broken links within the registry and resolving or removing them.
www.speedypc.com
81% remove it
 
Powered by Should I Remove It?

Remove HandleUpdate.dll - Powered by Reason Core Security