superoptimizersetup.exe

Super Optimizer v3.2

Super PC Tools Limited

The application superoptimizersetup.exe, “Fix PC problems and optimize performance” by Super PC Tools Limited has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. This is a setup and installation application and has been known to bundle potentially unwanted software. It is also typically executed from the user's temporary directory. The file has been seen being downloaded from dl.superpcdownload.net.
Publisher:
Super PC Tools Ltd  (signed by Super PC Tools Limited)

Product:
Super Optimizer v3.2

Description:
Fix PC problems and optimize performance

Version:
3.2.0.0

MD5:
217591cdf8ba85967b72bcdc0127ce22

SHA-1:
00c2dd2c27cc03a135c104b99d9d9947f3efefe8

SHA-256:
71dc1a3277e8bb73406d7780f9c045b6338ea84a07f0898707855105f010f7aa

Scanner detections:
1 / 68

Status:
Potentially unwanted

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
11/27/2024 12:44:59 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.PC Utilities (M)
16.11.30.13

File size:
6.5 MB (6,825,696 bytes)

Product version:
3.2.0.0

Copyright:
Super PC Tools Ltd

Original file name:
Super Optimizer

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\superoptimizersetup.exe

Digital Signature
Authority:
Thawte, Inc.

Valid from:
12/23/2014 1:00:00 AM

Valid to:
12/24/2015 12:59:59 AM

Subject:
CN=Super PC Tools Limited, O=Super PC Tools Limited, L=London, S=London, C=GB

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
6E81F167CAF5D0F8538E2206F9B448FF

File PE Metadata
Compilation timestamp:
6/23/2015 5:25:03 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
196608:Ikp2KcED6FQePuoCUOhOaDC0a94UVIM1/SK7RSJVIj:IkplcED6FQePzbY9WfyUVjKKFKVIj

Entry address:
0x14A97

Entry point:
E8, 56, 7D, 00, 00, E9, 89, FE, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 8B, 4C, 24, 04, F7, C1, 03, 00, 00, 00, 74, 24, 8A, 01, 83, C1, 01, 84, C0, 74, 4E, F7, C1, 03, 00, 00, 00, 75, EF, 05, 00, 00, 00, 00, 8D, A4, 24, 00, 00, 00, 00, 8D, A4, 24, 00, 00, 00, 00, 8B, 01, BA, FF, FE, FE, 7E, 03, D0, 83, F0, FF, 33, C2, 83, C1, 04, A9, 00, 01, 01, 81, 74, E8, 8B, 41, FC, 84, C0, 74, 32, 84, E4, 74, 24, A9, 00, 00, FF, 00, 74, 13, A9, 00, 00, 00, FF, 74, 02, EB, CD, 8D, 41, FF, 8B...
 
[+]

Code size:
150 KB (153,600 bytes)

The file superoptimizersetup.exe has been seen being distributed by the following URL.

http://dl.superpcdownload.net/.../SuperOptimizer.exe

Remove superoptimizersetup.exe - Powered by Reason Core Security