Paretologic Inc.

Publisher Information

Paretologic Inc. is a software publisher located in Victoria, British Columbia in Canada*. The company is a primary distributor of potentially unwanted software. Paretologic developes a number of security and PC optimization programs including XoftSpy, RegCure Pro, FileCure and others. The compnay uses the RevenueWire affiliate distribution program to distribute its products. Additionaly Paretologic also owns and operates additional companies including SpeedyPC Software and SparkTrust Systems. Note, some of the products distributed such as RegCure which is promoted as a PC optimization tool may display deceptive claims about registry entries or other items that need to be fixed in order to entice the user to purchase the product (this applies to some versions). Thre are 5 additional code signing certificates issued to this publisher.
Authority:
GlobalSign nv-sa

Valid from:
2/25/2013 4:53:32 PM

Valid to:
2/26/2015 4:53:32 PM

Subject:
CN=Paretologic Inc., OU=Paretologic Inc., O=Paretologic Inc., L=Victoria, S=British Columbia, C=CA

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121f9945d68b6dfdd557292b63c5a3015e1

Status:
Inconclusive detections from multiple engines

Scan engine
Details
Detections

Dr.Web
riskware program Program.Unwanted.689
72.00%

Reason Heuristics
PUP.ParetoLogic.Optional.Installer.Meta (L)
32.00%

Trend Micro House Call
Suspicious_GEN.F47V1119, Suspicious_GEN.F47V0109, Suspicious_GEN.F47V1122
28.00%

Zillya! Antivirus
Adware.Agent.Win32.80823, Adware.Agent.Win32.80311, Downloader.Upatre.Win32.55735
16.00%

ESET NOD32
Detection.Undefined
16.00%

McAfee
Artemis!B48DDB0C02C5
12.00%

McAfee Web Gateway
Artemis
12.00%

Trend Micro
TROJ_GEN.F0C2C00EF15
8.00%

Avira AntiVirus
ADWARE/Adware.Gen, TR/Crypt.XPACK.Gen
8.00%

VIPRE Antivirus
Trojan.Win32.Generic, Threat.4150696
8.00%

0 / 68
DriverCure.exe (DriverCure by ParetoLogic)  (4a0a30ea2a40b3b540fddc4b720e6fb6)

5 / 68      (PUP)
RegCurePro.exe (ParetoLogic RegCure Pro by ParetoLogic)  (dbafa258ea28a8f9a3449a1e242e7ad5)

1 / 68      (inconclusive)
3163020ed6394822d34a1749f0bc2ad2bacc2496 (by ParetoLogic)  (ad1aec31d76db4a77e32222ecd9cfd34)

3 / 68      (PUP)
paretologic pc health advisor.exe (by ParetoLogic)  (66a0a5d144699cc17cda09884172a1c0)

3 / 68      (PUP)

0 / 68
pcha.exe  (d3d31b38bca31a2c50feaad398c4b4f3)

2 / 68      (inconclusive)
paretologic filecure.exe (FileCure by ParetoLogic)  (ad50d727bb38514d4ccda0e73a44be63)

1 / 68      (inconclusive)
reghookspecialist.pxt  (c8ac03d10ff3b822d8e78f07d982e0c2)

4 / 68      (PUP)
regcureprosetup.exe (by ParetoLogic)  (38a9918c13410da3210d6e77ff4361f5)

0 / 68
uninstaller.exe (by ParetoLogic)  (41195b4d8a1ec297b3ed549475008acb)

0 / 68
paretologic pc health advisor.exe  (f6128f811653dd6434da7955e069d56f)

0 / 68
pareto_update3.exe (Update Application)  (3a8d6bc41262606d43da2e7230c94d92)

0 / 68
uninstall.exe (Update Drivers by ParetoLogic)  (6f7d2fdb428f333d238aabc4265418c9)

0 / 68
UUS3.dll (Product Update)  (fa57c7e9b8b42c3e8acb74eaac5e47b4)

1 / 68
updatedrivers setup.exe (by ParetoLogic)  (50f5f2c937a75306af36414713070c89)

0 / 68
pareto_update3.exe (Update Application)  (ada017667099c911003e301dc3658612)

2 / 68      (PUP)
update.exe (ParetoLogic Internet Security by ParetoLogic)  (c501f2abd5f4a690152bf2354a4783ab)

3 / 68      (PUP)
regcureprosetup_f6b0e3f_.exe (by ParetoLogic)  (1eaa8a1991546ad1740668e4ae708a36)

3 / 68      (inconclusive)
pcha.exe (PC Health Advisor by ParetoLogic)  (74217502c8bf03c138575e5c0b8d9071)

2 / 68      (inconclusive)
utility.pxt  (a7e8a9880489b1705ca02c6a6665dc9f)

0 / 68
reghookspecialist.pxt  (aa45e4de93d4b0043529a1565bbe3c1d)

0 / 68
commonspecialist.pxt  (422b4c486ac7ab61366d00c9bcbe675c)

0 / 68
commonloggingextension.pxt  (07c4885d82ece2f9f56193855c654787)

3 / 68
uninstall.exe (RegCure Pro by ParetoLogic)  (b95b5af2cb270dc7fae31e53398c35e0)

0 / 68
uninstall.exe (RegCure Pro by ParetoLogic)  (059920e6b07d909651a07b46d838aafc)

3 / 68      (PUP)
regcureprosetup.exe  (67a3457aa5d373b2452a581be77662d0)

3 / 68
uninstall.exe (RegCure Pro by ParetoLogic)  (f35f39214dd2fd9cdb07bd3c392cbbcd)

0 / 68
UUS3.dll (Product Update)  (81978c9264d586fdd1cdeef6d87c5b5a)

1 / 68      (PUP)
regcureprosetup_f72d6d3_.exe (by ParetoLogic)  (cf783596c7a3e9579e4896e66379f102)

5 / 68      (PUP)
RegCurePro.exe (ParetoLogic RegCure Pro by ParetoLogic)  (e876b3f7ebc5ec4742dc63fadd949b37)

 
Latest 30 of 689 files

Top-level domains owned by Paretologic Inc..

The certificates below are also signed by Paretologic Inc..

2D7970ACEDE16A89733A7817FB81EA1A  (Feb 23, 2011 to Feb 23, 2013)

1DA7E1979D3A07E67282D6F97138B4B3  (Feb 28, 2008 to Feb 28, 2011)

180EBCE010D7261ADC1BBA3849B71D66  (Jan 31, 2007 to Feb 26, 2008)

1E03D7D9595C4D5131EB26B2CF24D80D  (Jan 05, 2006 to Jan 29, 2007)

4E7E2FA78B6245A1D043A2ED87A6D1DE  (Jan 20, 2005 to Jan 21, 2006)

The following publishers (by Authenticode signature organization name) are related.

* Note, the details and description above are based on the code signing digital signature issued to Paretologic Inc. by GlobalSign nv-sa on February 25, 2013 with the serial number '1121f9945d68b6dfdd557292b63c5a3015e1'.