smschedule.exe

Startup Maximizer Schedule

CS Support Network Limited

The application smschedule.exe by CS Support Network Limited has been detected as a potentially unwanted program by 3 anti-malware scanners. It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘Startup Maximizer’.
Publisher:
Solid Tech  (signed by CS Support Network Limited)

Product:
Startup Maximizer Schedule

Version:
4.1.0.0

MD5:
69728fd9c8e108caf2281367c7755939

SHA-1:
f5b396075eb2e43b6dc2aa07c31e15153b1b6654

SHA-256:
065737e7c7a2813ec5d6d653797e540779aceb0979e25bd2ea084bd737741b21

Scanner detections:
3 / 68

Status:
Potentially unwanted

Analysis date:
11/5/2024 12:57:29 PM UTC  (today)

Scan engine
Detection
Engine version

avast!
Win32:Adware-gen [Adw]
160414-2

Dr.Web
riskware program Program.Unwanted.1353
9.0.1.05190

ESET NOD32
Win32/Adware.SpeedingUpMyPC.AS application
8.0.319.0

File size:
1.3 MB (1,326,776 bytes)

Product version:
4.1.0.0

Copyright:
Solid Tech

Trademarks:
Solid Tech

Original file name:
SMSchedule

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\startup maximizer\smschedule.exe

Digital Signature
Authority:
GoDaddy.com, Inc.

Valid from:
5/20/2015 10:23:39 AM

Valid to:
5/20/2016 10:23:39 AM

Subject:
CN=CS Support Network Limited, O=CS Support Network Limited, L=Sliema, C=MT

Issuer:
CN=Go Daddy Secure Certificate Authority - G2, OU=http://certs.godaddy.com/repository/, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US

Serial number:
2F723F75B6EC005B

File PE Metadata
Compilation timestamp:
6/19/1992 6:22:17 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
12288:x0pGaGVm+NHMru/r2dryE1335DmmPSJyJWnSks75qpajAR44r527cKRJ1/Yuujv+:CYzMru/4r9hmmPSGksopajAn27vdYn+

Entry address:
0x97DC0

Entry point:
55, 8B, EC, B9, 05, 00, 00, 00, 6A, 00, 6A, 00, 49, 75, F9, 51, 53, 56, B8, 90, 79, 49, 00, E8, 4C, E6, F6, FF, 33, C0, 55, 68, 55, 81, 49, 00, 64, FF, 30, 64, 89, 20, 8D, 55, E4, B8, 01, 00, 00, 00, E8, 51, AC, F6, FF, 8B, 45, E4, 8D, 55, E8, E8, E6, 07, F7, FF, 8B, 45, E8, 8D, 55, EC, E8, 8B, 05, F7, FF, 8B, 55, EC, B8, A4, D0, 49, 00, E8, 2A, C3, F6, FF, A1, A4, D0, 49, 00, BA, 6C, 81, 49, 00, E8, D3, C6, F6, FF, 75, 2F, 68, 70, 81, 49, 00, E8, DB, F0, F6, FF, 8B, F0, 68, 7C, 81, 49, 00, 68, 90, 81, 49...
 
[+]

Entropy:
5.2573

Developed / compiled with:
Microsoft Visual C++

Code size:
605 KB (619,520 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Startup Maximizer

Command:
C:\Program Files\startup maximizer\smschedule.exe


Remove smschedule.exe - Powered by Reason Core Security