zlibwapi.dll

ZLib.DLL

SpeedyPC Software

This is a part of the SpeedyPC Pro software from ParetoLogic Inc (sometimes bundled through 3rd-party installers). The module zlibwapi.dll, “zlib data compression library” by SpeedyPC Software has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. This file is typically installed with the program SpeedyPC by SpeedyPC Software which is a potentially unwanted software program.
Publisher:
SpeedyPC Software  (signed and verified)

Product:
ZLib.DLL

Description:
zlib data compression library

Version:
1.2.1.0

MD5:
391d4912551689df1bf942e7341efd37

SHA-1:
2ee5cc2a48625cb80f7b451a77ccd8c09ab42113

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
11/5/2024 9:40:05 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Optional.SpeedyPCSoftware.I
14.11.9.17

File size:
75.8 KB (77,648 bytes)

Copyright:
(C) 1995-2003 Jean-loup Gailly & Mark Adler

Original file name:
zlib.dll

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\Program Files\speedypc\zlibwapi.dll

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
9/11/2009 2:00:00 AM

Valid to:
9/12/2011 1:59:59 AM

Subject:
CN=SpeedyPC Software, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=SpeedyPC Software, L=Vancouver, S=British Columbia, C=CA

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
68D2742E069E0C168138127B757794F2

File PE Metadata
Compilation timestamp:
11/18/2003 1:37:19 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
7.10

CTPH (ssdeep):
1536:mCEAqaHdheGQ2tu2uOLewPnToIfrIOrIO+oCyVGCP:mPuPQCuoLLfTBfddPCyv

Entry address:
0xCF48

Entry point:
55, 8B, EC, 56, 57, BF, 01, 00, 00, 00, 8B, 75, 0C, 85, F6, 75, 0D, 83, 3D, 4C, 20, 01, 10, 00, 75, 04, 33, C0, EB, 47, 83, FE, 01, 74, 05, 83, FE, 02, 75, 0E, FF, 75, 10, 56, FF, 75, 08, E8, 80, FE, FF, FF, 8B, F8, 85, FF, 74, 0E, FF, 75, 10, 56, FF, 75, 08, E8, 2C, 00, 00, 00, 8B, F8, 85, F6, 74, 05, 83, FE, 03, 75, 12, FF, 75, 10, 56, FF, 75, 08, E8, 57, FE, FF, FF, 85, C0, 75, 02, 33, FF, 8B, C7, 5F, 5E, 5D, C2, 0C, 00, CC, FF, 25, 4C, D0, 00, 10, B8, 01, 00, 00, 00, C2, 0C, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.8227

Developed / compiled with:
Microsoft Visual C++

Code size:
48 KB (49,152 bytes)

The file zlibwapi.dll has been discovered within the following program.

SpeedyPC  by SpeedyPC Software
Publisher's description - “Thanks to SpeedyPC Pro, it is now easy to find out. This innovative software scans your PC in search of ActiveX and Windows registry errors, process performance problems, dangerous malware, privacy files and junk files.”
www.SpeedyPC.com
75% remove it
 
Powered by Should I Remove It?

Remove zlibwapi.dll - Powered by Reason Core Security