buttonutil.dll

Safe Download Limited

The module buttonutil.dll by Safe Download Limited has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat. This file is typically installed with the program PC Speed Up Extension by Speedchecker Limited which is a potentially unwanted software program.
Publisher:
Safe Download Limited  (signed and verified)

MD5:
d31170c7f216c5352ddac0d4b93cc16b

SHA-1:
a100dae9f5bfa864ce73b3adadc3b119ffebe7af

SHA-256:
53dbf923c8e57a40da4bbaa0937f03a8016d563169bf161e3d28b0546bd625e5

Scanner detections:
1 / 68

Status:
Adware

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
4/25/2024 3:14:42 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.SpeedChecker.SafeDownload (M)
16.2.4.2

File size:
234.2 KB (239,856 bytes)

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\Program Files\pc speed up extension\buttonutil.dll

Digital Signature
Authority:
DigiCert Inc

Valid from:
7/2/2012 2:00:00 AM

Valid to:
8/26/2014 2:00:00 PM

Subject:
CN=Safe Download Limited, O=Safe Download Limited, L=Douglas, S=Douglas, C=IM

Issuer:
CN=DigiCert High Assurance Code Signing CA-1, OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
0DD2FC97B3C6597CABD97B29D9383440

File PE Metadata
Compilation timestamp:
10/17/2012 2:35:43 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
6144:70IlkRhsZ59zhZNFEMBx5RcnOvA2ai4pi1tkx2nV6q:QI2RhQ59zhZNdcnOvAXi4piEOV6q

Entry address:
0x1AA72

Entry point:
8B, FF, 55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, EC, 60, 00, 00, FF, 75, 08, 8B, 4D, 10, 8B, 55, 0C, E8, EC, FE, FF, FF, 59, 5D, C2, 0C, 00, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 8B, FF, 55, 8B, EC, 83, EC, 18, 53, 8B, 5D, 0C, 56, 8B, 73, 08, 33, 35, 90, 50, 03, 10, 57, 8B, 06, C6, 45, FF, 00, C7, 45, F4, 01, 00, 00, 00, 8D, 7B, 10, 83, F8, FE, 74, 0D, 8B, 4E, 04, 03, CF, 33, 0C, 38, E8, 48, E3, FF, FF, 8B, 4E, 0C, 8B, 46, 08, 03, CF, 33, 0C, 38, E8, 38, E3, FF, FF, 8B, 45, 08, F6, 40, 04, 66, 0F, 85...
 
[+]

Code size:
169.5 KB (173,568 bytes)

The file buttonutil.dll has been discovered within the following program.

PC Speed Up Extension  by Speedchecker Limited
PC Speed Up Extension is an advertising supported web browser toolbar and extension that is typically bundled with the companies PC Speed Up. This version of the toolbar is a Conduit branded OurToolbar product that is installed during the main products installation.
73% remove it
 
Powered by Should I Remove It?

Remove buttonutil.dll - Powered by Reason Core Security