runwizards.exe

Speed-Bit LTD

The application runwizards.exe by Speed-Bit has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
Speed-Bit LTD  (signed and verified)

MD5:
5bc056200d6523b5e060cbb5338934c2

SHA-1:
0fe18b98b389a52868a9419fcd9e4eac24c832aa

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
12/24/2024 4:40:27 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.SpeedBit (M)
17.3.12.16

File size:
301.5 KB (308,704 bytes)

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Documents and Settings\{user}\Local settings\temp\runwizards.exe

Digital Signature
Signed by:

Authority:
Thawte, Inc.

Valid from:
7/26/2012 2:00:00 PM

Valid to:
9/4/2014 1:59:00 PM

Subject:
CN=Speed-Bit LTD, OU=SECURE APPLICATION DEVELOPMENT, O=Speed-Bit LTD, L=Haifa, S=Israel, C=IL

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
699AEB21842CD56CA7A7FC71BB394361

File PE Metadata
Compilation timestamp:
4/8/1999 10:24:47 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

Entry address:
0x22000

Entry point:
90, BB, 65, 20, 04, 00, 90, 90, 68, 26, 20, 42, 00, 5E, 68, 98, 05, 00, 00, 5A, 90, FF, 34, 32, 31, 1C, 24, 8F, 04, 32, 90, 90, 83, EA, 03, 4A, 90, 75, EE, 90, 90, 90, 8D, 5D, 05, 00, 65, 20, 04, 00, 65, 20, 44, 00, 65, 30, 04, 00, FD, DE, 05, 00, 85, 25, 06, 00, 65, 90, 06, 00, 64, 20, 04, 00, 65, 00, 44, 00, 2F, 01, 44, 00, B1, 00, 44, 00, E5, 26, 04, 00, 2D, 01, 04, 00, B7, 00, 04, 00, 65, 26, 04, 00, 2D, 01, 04, 00, B7, 00, 04, 00, 65, 20, 04, 00, 65, 20, 04, 00, 65, 20, 04, 00, 65, 20, 04, 00, 49, 00...
 
[+]

Code size:
512 Bytes (512 bytes)

Remove runwizards.exe - Powered by Reason Core Security