speedfixtool-setup.exe

Speed Fix Tool

Fixbliss

The application speedfixtool-setup.exe, “This installer database contains the logic and data required to install Speed Fix Tool.” by Fixbliss has been detected as a potentially unwanted program by 2 anti-malware scanners. This is a self-extracting archive and installer and has been known to bundle potentially unwanted software. The file has been seen being downloaded from RevenueWire's SafeCart distribution platform adformula.speedfixtool.safecart.com and multiple other hosts.
Publisher:
Fixbliss  (signed and verified)

Product:
Speed Fix Tool

Description:
This installer database contains the logic and data required to install Speed Fix Tool.

Version:
2.6.2

MD5:
ddb538f808e6b9047e5654f05fbcf63f

SHA-1:
3b17d4c59a5061c1c9d4bf30c33129d8af8ca4a8

SHA-256:
3e84e123b1fbb93b8baecafa5dd51e547d93811b963a2ece714bcfdef5026ccd

Scanner detections:
2 / 68

Status:
Potentially unwanted

Analysis date:
11/5/2024 6:56:18 PM UTC  (today)

Scan engine
Detection
Engine version

G Data
Win32.Application.SpeedFix
14.10.24

Reason Heuristics
PUP.FixBliss.Optional.Installer.Meta (L)
15.8.26.16

File size:
6 MB (6,254,608 bytes)

Product version:
2.6.2

Copyright:
Copyright (C) 2014 FixBliss

Original file name:
SpeedFixToolSetup.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\speedfixtool-setup.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
11/25/2013 6:00:00 PM

Valid to:
11/26/2014 5:59:59 PM

Subject:
CN=Fixbliss, O=Fixbliss, STREET="K. Donelaičio g. 62, Kauno m", L=Kupiskis, S=Kupiskis, PostalCode=40113, C=LT

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
0081D31A0F55D47E5F29A0AD98D6DC5D0F

File PE Metadata
Compilation timestamp:
10/7/2014 10:05:58 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
98304:vG7cl1155MF19bl5l07ePjYyWietaP+C7juTRuYlNwhe/H7r6k:quQ95l07erTWielWjuHlNwhevx

Entry address:
0xC87EC

Entry point:
E8, 4A, CC, 00, 00, E9, 79, FE, FF, FF, 8B, FF, 55, 8B, EC, 51, 53, 56, 8B, F0, 33, DB, 3B, F3, 75, 1E, E8, 5D, 4D, 00, 00, 6A, 16, 5E, 53, 53, 53, 53, 53, 89, 30, E8, C5, D5, FF, FF, 83, C4, 14, 8B, C6, E9, C2, 00, 00, 00, 57, 39, 5D, 0C, 77, 1E, E8, 39, 4D, 00, 00, 6A, 16, 5E, 53, 53, 53, 53, 53, 89, 30, E8, A1, D5, FF, FF, 83, C4, 14, 8B, C6, E9, 9D, 00, 00, 00, 33, C0, 39, 5D, 14, 66, 89, 06, 0F, 95, C0, 40, 39, 45, 0C, 77, 09, E8, 0A, 4D, 00, 00, 6A, 22, EB, CF, 8B, 45, 10, 83, C0, FE, 83, F8, 22, 77...
 
[+]

Entropy:
7.7684  (probably packed)

Code size:
1021.5 KB (1,046,016 bytes)

The file speedfixtool-setup.exe has been seen being distributed by the following 8 URLs.

Remove speedfixtool-setup.exe - Powered by Reason Core Security