superoptimizersetup.exe

Super Optimizer

Super PC Tools Limited

The application superoptimizersetup.exe, “Fix PC problems and optimize performance” by Super PC Tools Limited has been detected as a potentially unwanted program by 26 anti-malware scanners. This is a self-extracting archive and installer and has been known to bundle potentially unwanted software. It is also typically executed from the user's temporary directory. The file has been seen being downloaded from dl.superpcdownload.net.
Publisher:
Super PC Tools Ltd  (signed by Super PC Tools Limited)

Product:
Super Optimizer

Description:
Fix PC problems and optimize performance

Version:
3.2.0.0

MD5:
cb992333253fbaea9981fcf6697ae1c1

SHA-1:
84c378a574a20b4345b732c108bb9b3b87011181

SHA-256:
d916a218e2f3da95ac3047600403b7f8def67a6e13abba3320251c8fa89cd0c9

Scanner detections:
26 / 68

Status:
Potentially unwanted

Analysis date:
4/24/2024 5:08:46 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Strictor.62009
827

Agnitum Outpost
Riskware.Agent
7.1.1

Avira AntiVirus
APPL/SpeedingUpMyPC.T
7.11.182.172

avast!
Win32:Adware-gen [Adw]
2014.9-141031

AVG
Adware Generic5.CKWY
2014.0.4189

Baidu Antivirus
Adware.Win32.SpeedingUpMyPC
4.0.3.141129

Bitdefender
Gen:Variant.Strictor.62009
1.0.20.1520

Clam AntiVirus
Win.Adware.Agent-7758
0.98/19362

Comodo Security
ApplicUnwnt
20077

Dr.Web
riskware program Program.Unwanted.134
9.0.1.05190

Emsisoft Anti-Malware
Gen:Variant.Strictor.62009
8.14.10.31.05

ESET NOD32
Win32/Adware.SpeedingUpMyPC.T application
7.0.302.0

Fortinet FortiGate
Riskware/SpeedingUpMyPC
10/31/2014

F-Secure
Gen:Variant.Strictor.62009
11.2014-31-10_6

G Data
Gen:Variant.Strictor.62009
14.10.24

IKARUS anti.virus
not-a-virus:RiskTool.Agent
t3scan.1.7.5.0

Kaspersky
not-a-virus:RiskTool.Win32.Agent
14.0.0.3019

McAfee
Artemis!861F50D379C0
5600.6961

MicroWorld eScan
Gen:Variant.Strictor.62009
15.0.0.912

NANO AntiVirus
Trojan.Win32.TrojObfusc.czxwjn
0.28.2.61519

Panda Antivirus
Trj/Genetic.gen
14.10.31.05

Reason Heuristics
PUP.Installer.SuperPCToolsLimited.T
14.11.29.21

Rising Antivirus
PE:Trojan.Win32.Generic.17289739!388536121
23.00.65.141029

Trend Micro House Call
Suspicious_GEN.F47V0826
7.2.333

VIPRE Antivirus
Threat.4371328
32186

Zillya! Antivirus
Adware.SpeedingUpMyPC.Win32.3
2.0.0.1994

File size:
5.3 MB (5,576,720 bytes)

Product version:
3.2

Copyright:
Super PC Tools Ltd

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\superoptimizersetup.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
10/1/2014 5:00:00 PM

Valid to:
10/2/2015 4:59:59 PM

Subject:
CN=Super PC Tools Limited, OU=IT Department, O=Super PC Tools Limited, STREET="89 New Bond Street, 5th Floor", STREET="London, W1S 1DA", L=London, S=England, PostalCode=W1S 1DA, C=GB

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00CA73A5DDD6C71D2B28C506871B30F3D2

File PE Metadata
Compilation timestamp:
10/20/2014 2:44:57 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
98304:wwN4gHQn4gHQYd0kmc9jXIeIrw8fbTt5LUu2lEheuAtBAkskqzAtAKad5F:woXWXZlj9k7c8jHLHmEhePHAkviAtFyn

Entry address:
0xA7C58

Entry point:
55, 8B, EC, 83, C4, F0, B8, E0, 1C, 4A, 00, E8, A8, 23, F6, FF, E8, 13, E2, F5, FF, 8D, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
666 KB (681,984 bytes)

The file superoptimizersetup.exe has been seen being distributed by the following URL.

Remove superoptimizersetup.exe - Powered by Reason Core Security