pcsaschedule.exe

PC Speed Accelerator Schedule

Softitube Labs Ltd

The executable pcsaschedule.exe has been detected as malware by 1 anti-virus scanner.
Publisher:
Softitube Ltd  (signed by Softitube Labs Ltd)

Product:
PC Speed Accelerator Schedule

Version:
3.2.0.0

MD5:
108b7d598d0f98b1f4576cfa05fdd9eb

SHA-1:
7fb52a683ba742af7d6c26e3f71f57987d666c54

SHA-256:
6fe45fa102ec471a0389dbd3ef1cb2181d92a8f9a66c7dbc6e0e66929ce0b0e3

Scanner detections:
1 / 68

Status:
Malware

Analysis date:
4/19/2024 9:20:04 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Threat.Win.Reputation.IMP
17.1.22.10

File size:
474.9 KB (486,288 bytes)

Product version:
3.2.0.0

Copyright:
2014 (c) Softitube Ltd

Trademarks:
Softitube Ltd

Original file name:
PCSASchedule

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\pc speed accelerator\pcsaschedule.exe

Digital Signature
Authority:
Thawte, Inc.

Valid from:
3/5/2014 1:00:00 AM

Valid to:
3/6/2015 12:59:59 AM

Subject:
CN=Softitube Labs Ltd, O=Softitube Labs Ltd, L=Ramat Gan, S=ISRAEL, C=IL

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
1AB356719D81F0C67BFCEBCC7E0B4028

File PE Metadata
Compilation timestamp:
6/20/1992 12:22:17 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

Entry address:
0x50544

Entry point:
55, 8B, EC, 83, C4, F0, 53, B8, 8C, 03, 45, 00, E8, 13, 5D, FB, FF, 68, 00, 06, 45, 00, 6A, 00, 68, 01, 00, 1F, 00, E8, BA, 60, FB, FF, 85, C0, 0F, 85, 89, 00, 00, 00, 68, 00, 06, 45, 00, 6A, 00, 6A, 00, E8, 04, 5F, FB, FF, B9, 18, 06, 45, 00, BA, 2C, 06, 45, 00, B8, 01, 00, 00, 80, E8, 6C, FC, FF, FF, 84, C0, 74, 63, BA, 2C, 06, 45, 00, B9, 54, 06, 45, 00, B8, 01, 00, 00, 80, E8, 54, FC, FF, FF, 8B, D8, BA, 2C, 06, 45, 00, B9, 64, 06, 45, 00, B8, 01, 00, 00, 80, E8, EA, FC, FF, FF, 85, C0, 75, 05, 80, FB...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
318 KB (325,632 bytes)

Remove pcsaschedule.exe - Powered by Reason Core Security