SpeedyPC.exe

SpeedyPC Pro

SpeedyPC Software

This is a part of the SpeedyPC Pro software from ParetoLogic Inc (sometimes bundled through 3rd-party installers). The application SpeedyPC.exe by SpeedyPC Software has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. It runs as a scheduled task under the Windows Task Scheduler. This file is typically installed with the program SpeedyPC Pro by SpeedyPC Software which is a potentially unwanted software program.
Publisher:
SpeedyPC Software  (signed and verified)

Product:
SpeedyPC Pro

Description:
SpeedyPC

Version:
3.2.14.0

MD5:
8ea9fd2aad05a6cd18c7c82831f879b8

SHA-1:
7b7358c4739e0be82f3c49f6d59bb3638d233a58

SHA-256:
811c407c457e68b44c0bc41fce596c7737020286cb035a39d880941f233410e2

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
11/27/2024 4:20:15 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Optional.Task.I
14.11.21.14

File size:
4.7 MB (4,876,928 bytes)

Product version:
3.2.14.2

Copyright:
Copyright (C) 2014 SpeedyPC Software.

Original file name:
SpeedyPC.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\speedypc software\speedypc\speedypc.exe

Digital Signature
Authority:
GlobalSign nv-sa

Subject:
E=itgroup@paretologic.com, CN=SpeedyPC Software, O=SpeedyPC Software, L=Victoria, S=British Columbia, C=CA

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
11213320B67151B12383D81306118BB25BA1

File PE Metadata
Compilation timestamp:
11/18/2014 8:22:46 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
98304:nUMazYoXsD/Z5sT1cqlpYt7KhMOxVr62vh+ZcSmfQk6JbvpIPkSviOtqk:nUMo3esTPYCJAFmyVCPkSviO7

Entry address:
0x2764D6

Entry point:
E8, 6D, D5, 00, 00, E9, 89, FE, FF, FF, 3B, 0D, F0, 75, 82, 00, 75, 02, F3, C3, E9, F4, D5, 00, 00, 8B, FF, 55, 8B, EC, 56, 8B, 75, 14, 85, F6, 75, 04, 33, C0, EB, 61, 83, 7D, 08, 00, 75, 13, E8, CA, 54, 00, 00, 6A, 16, 5E, 89, 30, E8, 5E, D8, 00, 00, 8B, C6, EB, 48, 83, 7D, 10, 00, 74, 16, 39, 75, 0C, 72, 11, 56, FF, 75, 10, FF, 75, 08, E8, D0, 64, 00, 00, 83, C4, 0C, EB, C7, FF, 75, 0C, 6A, 00, FF, 75, 08, E8, 3E, 64, 00, 00, 83, C4, 0C, 83, 7D, 10, 00, 74, BB, 39, 75, 0C, 73, 0E, E8, 80, 54, 00, 00, 6A...
 
[+]

Code size:
3.3 MB (3,501,056 bytes)

Scheduled Task
Task name:
SpeedyPC Pro_sch_228A5A0A-71AB-11E4-83D5-C4544401115D

Trigger:
Weekly (Runs weekly on Saturdays at 01:14)


The file SpeedyPC.exe has been discovered within the following program.

SpeedyPC Pro  by SpeedyPC Software
SpeedyPC Pro is registry cleaner utility whose purported purpose is to remove redundant items from the Windows registry. SpeedyPC Pro automates the process of looking for invalid entries, missing file references or broken links within the registry and resolving or removing them.
www.speedypc.com
81% remove it
 
Powered by Should I Remove It?

Remove SpeedyPC.exe - Powered by Reason Core Security