superoptimizersetup.exe

Super Optimizer v3.2

Super PC Tools Limited

The application superoptimizersetup.exe, “Fix PC problems and optimize performance” by Super PC Tools Limited has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. This is a self-extracting archive and installer and has been known to bundle potentially unwanted software. It is also typically executed from the user's temporary directory. The file has been seen being downloaded from dl.superpcdownload.net.
Publisher:
Super PC Tools Ltd  (signed by Super PC Tools Limited)

Product:
Super Optimizer v3.2

Description:
Fix PC problems and optimize performance

Version:
3.2.0.0

MD5:
822c37106df9c23c9a8c2177d430e847

SHA-1:
144b8a95de68c8c2fd3e5780f18696cacc226232

SHA-256:
21b0649800df39f27909305b966d17184590385bf7ef6532021c01a1be1023d0

Scanner detections:
1 / 68

Status:
Potentially unwanted

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
5/17/2024 1:26:47 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.PC Utilities.SuperPCT.Installer (M)
16.5.7.1

File size:
5.9 MB (6,166,640 bytes)

Product version:
3.2.0.0

Copyright:
Super PC Tools Ltd

Original file name:
Super Optimizer

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\superoptimizersetup.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
12/17/2014 1:00:00 AM

Valid to:
12/18/2015 12:59:59 AM

Subject:
CN=Super PC Tools Limited, OU=IT Department, O=Super PC Tools Limited, STREET="89 New Bond Street, 5th Floor", L=London, S=England W1S 1DA, PostalCode=W1S 1DA, C=GB

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00BB6EC488D02F4A9CB509ED84C4BAFE65

File PE Metadata
Compilation timestamp:
4/27/2015 12:00:07 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
98304:vrB7t/L63dO6ZQpIx+sGd9qzvGN3VgfH7wE4rtgUUaB4/jLBa0eAcqdOEjg+J/Lo:DZt/LqdFyax+93ibwE4rtPUaB2j7eAB+

Entry address:
0x14186

Entry point:
E8, 57, 7D, 00, 00, E9, 89, FE, FF, FF, 8B, FF, 55, 8B, EC, 83, EC, 20, 8B, 45, 08, 56, 57, 6A, 08, 59, BE, 30, 65, 42, 00, 8D, 7D, E0, F3, A5, 89, 45, F8, 8B, 45, 0C, 5F, 89, 45, FC, 5E, 85, C0, 74, 0C, F6, 00, 08, 74, 07, C7, 45, F4, 00, 40, 99, 01, 8D, 45, F4, 50, FF, 75, F0, FF, 75, E4, FF, 75, E0, FF, 15, 20, 61, 42, 00, C9, C2, 08, 00, CC, CC, CC, CC, 8B, 4C, 24, 04, F7, C1, 03, 00, 00, 00, 74, 24, 8A, 01, 83, C1, 01, 84, C0, 74, 4E, F7, C1, 03, 00, 00, 00, 75, EF, 05, 00, 00, 00, 00, 8D, A4, 24, 00...
 
[+]

Code size:
147.5 KB (151,040 bytes)

The file superoptimizersetup.exe has been seen being distributed by the following URL.

Remove superoptimizersetup.exe - Powered by Reason Core Security