zlibwapi.dll

ZLib.DLL

SpeedyPC Software

This is a part of the SpeedyPC Pro software from ParetoLogic Inc (sometimes bundled through 3rd-party installers). The module zlibwapi.dll, “zlib data compression library” by SpeedyPC Software has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. This file is typically installed with the program SpeedyPC by SpeedyPC Software which is a potentially unwanted software program.
Publisher:
SpeedyPC Software  (signed and verified)

Product:
ZLib.DLL

Description:
zlib data compression library

Version:
1.2.1.0

MD5:
649b83a81a58e98d16c2f137c647c766

SHA-1:
795a7a2666a439fdebafd782a867ae45a53feeb7

SHA-256:
3740060224fd4e311c42418239fd57b8cc3f321ab2b37f3d3657484dde2554e5

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
11/5/2024 9:27:05 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Win32.Generic.ParetoLogic.Meta
15.12.20.16

File size:
75.8 KB (77,648 bytes)

Copyright:
(C) 1995-2003 Jean-loup Gailly & Mark Adler

Original file name:
zlib.dll

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\Program Files\speedypc\zlibwapi.dll

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
9/10/2009 8:00:00 PM

Valid to:
9/11/2011 7:59:59 PM

Subject:
CN=SpeedyPC Software, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=SpeedyPC Software, L=Vancouver, S=British Columbia, C=CA

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
68D2742E069E0C168138127B757794F2

File PE Metadata
Compilation timestamp:
11/17/2003 7:37:19 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
7.10

CTPH (ssdeep):
1536:nCEAqaHdheGQ2tu2uOLewPnToIfrIOrIO+oCyVGCP:nPuPQCuoLLfTBfddPCyv

Entry address:
0xCF48

Entry point:
55, 8B, EC, 56, 57, BF, 01, 00, 00, 00, 8B, 75, 0C, 85, F6, 75, 0D, 83, 3D, 4C, 20, 01, 10, 00, 75, 04, 33, C0, EB, 47, 83, FE, 01, 74, 05, 83, FE, 02, 75, 0E, FF, 75, 10, 56, FF, 75, 08, E8, 80, FE, FF, FF, 8B, F8, 85, FF, 74, 0E, FF, 75, 10, 56, FF, 75, 08, E8, 2C, 00, 00, 00, 8B, F8, 85, F6, 74, 05, 83, FE, 03, 75, 12, FF, 75, 10, 56, FF, 75, 08, E8, 57, FE, FF, FF, 85, C0, 75, 02, 33, FF, 8B, C7, 5F, 5E, 5D, C2, 0C, 00, CC, FF, 25, 4C, D0, 00, 10, B8, 01, 00, 00, 00, C2, 0C, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.8225

Developed / compiled with:
Microsoft Visual C++

Code size:
48 KB (49,152 bytes)

The file zlibwapi.dll has been discovered within the following program.

SpeedyPC  by SpeedyPC Software
Publisher's description - “Thanks to SpeedyPC Pro, it is now easy to find out. This innovative software scans your PC in search of ActiveX and Windows registry errors, process performance problems, dangerous malware, privacy files and junk files.”
www.SpeedyPC.com
75% remove it
 
Powered by Should I Remove It?

Remove zlibwapi.dll - Powered by Reason Core Security