SpeedyPC.exe

SpeedyPC Pro

SpeedyPC Software (ParetoLogic Inc.)

The application SpeedyPC.exe by SpeedyPC Software (ParetoLogic) has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. It runs as a scheduled task under the Windows Task Scheduler. This file is typically installed with the program SpeedyPC Pro by SpeedyPC Software which is a potentially unwanted software program.
Publisher:
SpeedyPC Software, Inc.  (signed by SpeedyPC Software (ParetoLogic Inc.))

Product:
SpeedyPC Pro

Description:
SpeedyPC

Version:
3.1.4.0

MD5:
48b209981956e8a08adc2d8e0158daab

SHA-1:
fdcf32be7b363804dacb973a7563b4196f003c98

SHA-256:
b92cdb83810da8cdd0d55dfc3643e27057b9300236fa8b313d59e492d1f8a8df

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
11/27/2024 6:10:59 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Optional.SpeedyPCSoftwareParetoLogic.I
14.8.2.12

File size:
4.4 MB (4,618,616 bytes)

Product version:
3.1.4.3

Copyright:
Copyright (C) 2012 SpeedyPC Software Inc.

Original file name:
SpeedyPC.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\speedypc software\speedypc\speedypc.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
9/25/2011 7:00:00 PM

Valid to:
9/25/2012 6:59:59 PM

Subject:
CN=SpeedyPC Software (ParetoLogic Inc.), OU=Digital ID Class 3 - Microsoft Software Validation v2, OU=ICT, O=SpeedyPC Software (ParetoLogic Inc.), L=Victoria, S=British Columbia, C=CA

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
263D81E73DB3B97C46C271D31F2444A7

File PE Metadata
Compilation timestamp:
8/9/2012 3:43:40 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
98304:T5Dn5bzdLJCSUTKZrKytVv7tJ2/uWIODP8acUU5x1YWIdrN9T:VDJZL3UGZvRO16XYWIdhp

Entry address:
0x26BE94

Entry point:
E8, 5F, B2, 00, 00, E9, 89, FE, FF, FF, 3B, 0D, 70, BE, 7E, 00, 75, 02, F3, C3, E9, E6, B2, 00, 00, 8B, FF, 55, 8B, EC, 56, 8B, 75, 14, 85, F6, 75, 04, 33, C0, EB, 61, 83, 7D, 08, 00, 75, 13, E8, 2B, 5D, 00, 00, 6A, 16, 5E, 89, 30, E8, 50, B5, 00, 00, 8B, C6, EB, 48, 83, 7D, 10, 00, 74, 16, 39, 75, 0C, 72, 11, 56, FF, 75, 10, FF, 75, 08, E8, 12, 97, 00, 00, 83, C4, 0C, EB, C7, FF, 75, 0C, 6A, 00, FF, 75, 08, E8, B0, 60, 00, 00, 83, C4, 0C, 83, 7D, 10, 00, 74, BB, 39, 75, 0C, 73, 0E, E8, E1, 5C, 00, 00, 6A...
 
[+]

Entropy:
6.6387

Code size:
3.2 MB (3,312,128 bytes)

Scheduled Task
Task name:
SpeedyPC Pro

Trigger:
Weekly (Runs weekly on Tuesdays at 2:19 AM)

Action:
speedypc.exe -scan

Description:
SpeedyPC Pro


The file SpeedyPC.exe has been discovered within the following program.

SpeedyPC Pro  by SpeedyPC Software
SpeedyPC Pro is registry cleaner utility whose purported purpose is to remove redundant items from the Windows registry. SpeedyPC Pro automates the process of looking for invalid entries, missing file references or broken links within the registry and resolving or removing them.
www.speedypc.com
81% remove it
 
Powered by Should I Remove It?

Remove SpeedyPC.exe - Powered by Reason Core Security