_iu14d2n.tmp

Safe Download Ltd.

The file _iu14d2n.tmp by Safe Download has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat. This file is typically installed with the program Zrychleni Pocitace by Speedchecker Limited which is a potentially unwanted software program. It is also typically executed from the user's temporary directory.
Publisher:
Safe Download Ltd.  (signed and verified)

Description:
Setup/Uninstall

Version:
51.1052.0.0

MD5:
df2b69bf19687ab9064cbc754203be5a

SHA-1:
684d058e41884a3898d3254f01bfe95ca6c1b7ae

SHA-256:
52aa2da23a2349faa3df55ffbb33d92515f1d26273106d8aec59b93e9a5e6a78

Scanner detections:
1 / 68

Status:
Adware

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
12/26/2024 3:41:14 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Installer.SafeDownload
15.5.14.17

File size:
1.1 MB (1,160,112 bytes)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\temp\_iu14d2n.tmp

Digital Signature
Authority:
Entrust, Inc.

Valid from:
6/30/2014 6:45:32 PM

Valid to:
7/1/2015 5:19:01 AM

Subject:
CN=Safe Download Ltd., O=Safe Download Ltd., L=Douglas, C=IM

Issuer:
CN=Entrust Code Signing Certification Authority - L1D, OU="(c) 2009 Entrust, Inc.", OU=www.entrust.net/rpa is incorporated by reference, O="Entrust, Inc.", C=US

Serial number:
4C177DE0

File PE Metadata
Compilation timestamp:
12/20/2011 3:16:51 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:bh+EpSGP3ZEgRhuRKOODzjJBwjOGfcCUWgEf0ZsMCmGJHxyAX:Xa+PjJaEWZAsTvv

Entry address:
0xFAF7C

Entry point:
55, 8B, EC, 83, C4, F0, 53, 56, 57, B8, A4, 94, 4F, 00, E8, AD, DF, F0, FF, 6A, EC, A1, 7C, ED, 4F, 00, 8B, 00, 8B, 98, 70, 01, 00, 00, 53, E8, 40, EE, F0, FF, 25, 7F, FF, FF, FF, 50, 6A, EC, A1, 7C, ED, 4F, 00, 53, E8, 95, F0, F0, FF, 33, C0, 55, 68, F7, AF, 4F, 00, 64, FF, 30, 64, 89, 20, 6A, 01, E8, E8, E7, F0, FF, E8, 17, E2, FF, FF, A1, DC, 90, 4F, 00, 50, 68, 40, 91, 4F, 00, A1, 7C, ED, 4F, 00, 8B, 00, E8, 50, 0E, F8, FF, E8, 6B, E2, FF, FF, 33, C0, 5A, 59, 59, 64, 89, 10, EB, 19, E9, E4, 96, F0, FF...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
999 KB (1,022,976 bytes)

The file _iu14d2n.tmp has been discovered within the following program.

Zrychleni Pocitace  by Speedchecker Limited
Publisher's description - “Using one-click, PC Speed Up will make your network settings, hard disc, memory and CPU optimised and will improve the overall performance. Fast and easy to use PC Speed Up will clean your PC and will make it run faster.”
www.pcspeedup.com
70% remove it
 
Powered by Should I Remove It?

Remove _iu14d2n.tmp - Powered by Reason Core Security