PCFixTray.exe

PC Fix Speed

Crawler, LLC

The application PCFixTray.exe, “PC Fix Speed Tray” by Crawler has been detected as a potentially unwanted program by 9 anti-malware scanners. It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘PCFixSpeed’. This file is typically installed with the program PC Fix Speed with PC Tech Hotline 1.2.0.42 by Crawler, LLC which is a potentially unwanted software program.
Publisher:
Crawler.com  (signed by Crawler, LLC)

Product:
PC Fix Speed

Description:
PC Fix Speed Tray

Version:
2.2.0.4

MD5:
5176d240aedc66992bd6756ccc250498

SHA-1:
8247f874f6a1def8ac4f6d8924bec29887abebeb

SHA-256:
db3865270bef16f78cb48d9ec87669f02733515f8c0e36c9530dec9069d3cdb1

Scanner detections:
9 / 68

Status:
Potentially unwanted

Analysis date:
5/7/2024 3:01:38 PM UTC  (today)

Scan engine
Detection
Engine version

Baidu Antivirus
Adware.Win32.Crawler
4.0.3.14822

Dr.Web
riskware program Program.Unwanted.45
9.0.1.0234

Emsisoft Anti-Malware
Win32.Mamianune
8.14.08.22.11

McAfee
Artemis!605FDEBBCA19
5600.7030

Reason Heuristics
PUP.Crawler.J
14.8.22.23

Sophos
PC Power Speed
4.98

Trend Micro House Call
TROJ_GEN.F47V0216
7.2.234

Vba32 AntiVirus
BScope.Trojan-Dropper.Injector
3.12.26.0

VIPRE Antivirus
Trojan.Win32.Generic
30956

File size:
1.2 MB (1,299,816 bytes)

Product version:
2.2.0.0

Copyright:
© Crawler.com

Original file name:
PCFixTray.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\pcfixspeed\pcfixtray.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
11/26/2013 4:00:00 PM

Valid to:
1/25/2017 3:59:59 PM

Subject:
CN="Crawler, LLC", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Crawler, LLC", L=Boca Raton, S=Florida, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
48E3A7F6CBA47D0C3FCD17CF81AB3F76

File PE Metadata
Compilation timestamp:
8/1/2014 2:57:09 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:CnDUGia1C7GrEuGOSNY2E/Vz17HaFAGilVIS+:cioC7Gh2ENFHGAbVIS

Entry address:
0x10D1F4

Entry point:
55, 8B, EC, 83, C4, F0, B8, D8, 52, 50, 00, E8, 10, E0, EF, FF, E8, F7, 7E, FF, FF, E8, 7A, 9B, EF, FF, 8B, C0, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.5604

Developed / compiled with:
Microsoft Visual C++

Code size:
1 MB (1,098,752 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
PCFixSpeed

Command:
"C:\Program Files\pcfixspeed\pcfixtray.exe" \startup


The file PCFixTray.exe has been discovered within the following program.

PC Fix Speed is a bundled PC 'optimization' product that is typically distributed as an adware offer. This is a PC optimization program that is supposed to increase the speed of computer by removing invalid entries the computer's registry.
www.PCFixSpeed.com
About 92% of users remove it
 
Powered by Should I Remove It?

Remove PCFixTray.exe - Powered by Reason Core Security