superoptimizersetup.exe

Super Optimizer v3.2

Super PC Tools Limited

The application superoptimizersetup.exe, “Fix PC problems and optimize performance” by Super PC Tools Limited has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. This is a self-extracting archive and installer and has been known to bundle potentially unwanted software. It is also typically executed from the user's temporary directory. The file has been seen being downloaded from dl.superpcdownload.net.
Publisher:
Super PC Tools Ltd  (signed by Super PC Tools Limited)

Product:
Super Optimizer v3.2

Description:
Fix PC problems and optimize performance

Version:
3.2.0.0

MD5:
a102ff706d1338b19dc61f7a54f11fde

SHA-1:
dd4607195ec13e0bb5a7e240d1b1b396bc95e8c2

SHA-256:
0ba156c2bbd5bc01f99deb7d2f245e46f55a574a212ad2c7e73139f87274f2ee

Scanner detections:
1 / 68

Status:
Potentially unwanted

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
5/17/2024 5:52:39 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.PC Utilities.SuperPCT.Installer (M)
16.4.19.9

File size:
5.6 MB (5,838,864 bytes)

Product version:
3.2.0.0

Copyright:
Super PC Tools Ltd

Original file name:
Super Optimizer

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\superoptimizersetup.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
10/2/2014 2:00:00 AM

Valid to:
10/3/2015 1:59:59 AM

Subject:
CN=Super PC Tools Limited, OU=IT Department, O=Super PC Tools Limited, STREET="89 New Bond Street, 5th Floor", STREET="London, W1S 1DA", L=London, S=England, PostalCode=W1S 1DA, C=GB

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00CA73A5DDD6C71D2B28C506871B30F3D2

File PE Metadata
Compilation timestamp:
2/9/2015 10:54:53 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
98304:Xi9DQLAyAf5XBa7GVZaiSEPHmq4E1D1EqnDd7Y1AsblnmuvOEz2sT6NxAa:A0LyEePSFq4K1EcDQhbwkDuXP

Entry address:
0x1289E

Entry point:
E8, BB, 79, 00, 00, E9, 89, FE, FF, FF, 8B, FF, 55, 8B, EC, 83, EC, 20, 8B, 45, 08, 56, 57, 6A, 08, 59, BE, 00, 45, 42, 00, 8D, 7D, E0, F3, A5, 89, 45, F8, 8B, 45, 0C, 5F, 89, 45, FC, 5E, 85, C0, 74, 0C, F6, 00, 08, 74, 07, C7, 45, F4, 00, 40, 99, 01, 8D, 45, F4, 50, FF, 75, F0, FF, 75, E4, FF, 75, E0, FF, 15, F4, 40, 42, 00, C9, C2, 08, 00, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 8B, 4C, 24, 04, F7, C1, 03, 00, 00, 00, 74, 24, 8A, 01, 83, C1, 01, 84, C0, 74, 4E, F7, C1, 03, 00, 00, 00, 75, EF, 05...
 
[+]

Code size:
140 KB (143,360 bytes)

The file superoptimizersetup.exe has been seen being distributed by the following URL.

Remove superoptimizersetup.exe - Powered by Reason Core Security