spmschedule.exe

PC Speed Maximizer Schedule

Emme

The application spmschedule.exe by Emme has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
Avanquest Software  (signed by Emme)

Product:
PC Speed Maximizer Schedule

Version:
4.1.0.0

MD5:
9552bf5fccc1f3cbacf3bde36209c687

SHA-1:
e30449eebee7eed648fa5e86530fcd438d5ecad1

SHA-256:
2042bdcb06b29f7c157d230879739e457774e5817e7f37622c18657a321b164a

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
12/26/2024 5:18:16 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.PCSpeedOptimizer.Optional.Meta (L)
16.5.29.9

File size:
1.4 MB (1,463,136 bytes)

Product version:
4.1.0.0

Copyright:
Avanquest Software

Trademarks:
Avanquest Software

Original file name:
SPMSchedule

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\pc speed maximizer\spmschedule.exe

Digital Signature
Signed by:

Authority:
GoDaddy.com, Inc.

Valid from:
10/13/2014 4:23:01 PM

Valid to:
10/13/2015 4:23:01 PM

Subject:
CN=Emme, O=Emme, L=La Garenne Colombes, C=FR

Issuer:
CN=Go Daddy Secure Certificate Authority - G2, OU=http://certs.godaddy.com/repository/, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US

Serial number:
27726B06AA5124

File PE Metadata
Compilation timestamp:
6/20/1992 12:22:17 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
12288:hSRvDw78s3+YnE+53C8B7pYmHgfKbDtGwjONl1AyYGRMsYKydGbuo6qo/TJvE+Bt:0NrTYnj7B7L4g0wjKtRLYA4lMUTh

Entry address:
0xB6640

Entry point:
55, 8B, EC, 83, C4, F0, B8, 80, 61, 4B, 00, E8, B4, 01, F5, FF, 68, BC, 66, 4B, 00, 6A, 00, 68, 01, 00, 1F, 00, E8, 7F, 06, F5, FF, 85, C0, 75, 4F, 68, BC, 66, 4B, 00, 6A, 00, 6A, 00, E8, 25, 04, F5, FF, A1, 28, 8F, 4B, 00, 8B, 00, E8, F1, 88, FB, FF, A1, 28, 8F, 4B, 00, 8B, 00, BA, D0, 66, 4B, 00, E8, D8, 84, FB, FF, 8B, 0D, F4, 90, 4B, 00, A1, 28, 8F, 4B, 00, 8B, 00, 8B, 15, 38, F8, 4A, 00, E8, E0, 88, FB, FF, A1, 28, 8F, 4B, 00, 8B, 00, E8, 54, 89, FB, FF, E8, 77, D9, F4, FF, 00, 00, 00, 53, 50, 4D, 53...
 
[+]

Entropy:
5.5682

Developed / compiled with:
Microsoft Visual C++

Code size:
726 KB (743,424 bytes)

Remove spmschedule.exe - Powered by Reason Core Security