Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

9.60.2114 4.35%
9.05.2071 4.35%
9.05.2064 4.35%
9.05.2063 4.35%
9.04.2051 13.04%
9.04.2051 13.04%
9.04.2051 4.35%
9.02.2032 17.39%
9.02.2032 4.35%
8.02.1972 13.04%
8.02.1972 4.35%
6.61.1880 4.35%
5.12.1652 4.35%
4.50.1457 4.35%

Relationships

Parent process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
RegQueryValueExW, SetServiceStatus, RegisterServiceCtrlHandlerExA, StartServiceCtrlDispatcherA, RegCloseKey, RegOpenKeyExW, RegQueryInfoKeyA, RegQueryInfoKeyW, RegCreateKeyExA, RegCreateKeyExW, RegOpenKeyExA, RegSetValueExW, RegSetValueExA, RegQueryValueExA, RegEnumKeyExW, RegEnumKeyExA, LookupAccountNameW, ConvertSidToStringSidW, GetUserNameA
iphlpapi.dll
NotifyRouteChange, NotifyAddrChange, GetIfTable, GetIfEntry, GetAdaptersInfo, GetIpNetTable, SendARP, GetBestRoute, GetIpAddrTable
kernel32.dll
InterlockedDecrement, GetCommandLineW, GetModuleFileNameW, GetModuleHandleW, LocalFree, SetLastError, GetCurrentThread, TerminateProcess, GetSystemDefaultLangID, GetSystemInfo, GetVersionExW, DeviceIoControl, CreateFileW, GetFileAttributesW, FileTimeToSystemTime, FileTimeToLocalFileTime, GetFileTime, DeleteFileW, GetSystemTime, GetWindowsDirectoryW, GetSystemDirectoryW, GetLocalTime, FlushFileBuffers, CreateDirectoryW, ResumeThread, CreateThread, TerminateThread, WaitForMultipleObjects, MultiByteToWideChar, WideCharToMultiByte, ReadFile, GetTickCount, SetFilePointer, GetStdHandle, GetFileSizeEx, GetConsoleScreenBufferInfo, ReadConsoleInputA, GetFileType, WriteConsoleW, QueryPerformanceCounter, GetCurrentProcessId, GetSystemTimeAsFileTime, SetThreadPriority, GetThreadPriority, QueryPerformanceFrequency, InterlockedIncrement, GetStringTypeW, InterlockedExchange, EncodePointer, DecodePointer, RaiseException, RtlUnwind, SetConsoleMode, GetConsoleMode, HeapSetInformation, MoveFileW, HeapFree, LCMapStringW, GetCPInfo, HeapAlloc, IsProcessorFeaturePresent, GetACP, GetOEMCP, IsValidCodePage, TlsAlloc, TlsGetValue, TlsSetValue, TlsFree, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsDebuggerPresent, HeapSize, ExitProcess, InitializeCriticalSectionAndSpinCount, FreeEnvironmentStringsW, GetEnvironmentStringsW, SetHandleCount, GetStartupInfoW, HeapCreate, SetStdHandle, GetConsoleCP, VirtualQuery, HeapReAlloc, Sleep, GetCurrentProcess, GetModuleHandleA, OutputDebugStringW, OutputDebugStringA, SetEndOfFile, GetProcAddress, FreeLibrary, LoadLibraryW, WaitForSingleObject, ResetEvent, SetEvent, CreateEventW, GetCurrentThreadId, GetLastError, CloseHandle, DeleteCriticalSection, InitializeCriticalSection, LeaveCriticalSection, WriteFile, EnterCriticalSection, GetProcessHeap, GetOverlappedResult, ReleaseMutex, LoadLibraryA, CreateFileA, GetUserDefaultLangID, GetModuleFileNameA, DeleteFileA, MoveFileA, GetSystemDirectoryA, GetWindowsDirectoryA, GetVersionExA, GetLocaleInfoA, LocalHandle, LocalLock, LocalAlloc, FormatMessageA, FormatMessageW, GetCommandLineA, FreeEnvironmentStringsA, GetEnvironmentStrings, GetStartupInfoA, VirtualFree, VirtualAlloc, LCMapStringA, GetStringTypeA, GetUserDefaultLCID, WriteConsoleA, GetConsoleOutputCP, GetStringTypeExW, InterlockedCompareExchange, CreateMutexW, GetComputerNameW, MoveFileExW, GetComputerNameA, GetModuleHandleExW, LoadLibraryExW, SetFilePointerEx, SetConsoleCursorPosition
ole32.dll
CoTaskMemFree, CoCreateInstance, CoUninitialize, CoInitialize, CLSIDFromString, CoTaskMemAlloc
rpcrt4.dll
UuidCreate
shell32.dll
SHGetFolderPathW
user32.dll
DestroyIcon, MessageBoxW, MessageBoxA, CharToOemA, LoadStringW, CharToOemBuffA, GetSystemMetrics
winmm.dll
timeBeginPeriod, timeGetDevCaps, timeEndPeriod, timeGetTime
ws2_32.dll
WSASocketA, WSAEventSelect

spd.exe

cFosSpeed Service by cFos Software GmbH (Signed)

Remove spd.exe
Version:   9.04.2051
MD5:   3b746a0f0b5cb78458e5ab4aec101799
SHA1:   93f06da23abb307795e260cdbe25020beccdcb99
SHA256:   8321245eeb9df22039cb41bdd7c76eda09bcc1b1737315b50e1f92b302a70ea2

Overview

spd.exe runs as a service under the name cFosSpeedS (cFosSpeedS) with extensive SYSTEM privileges (full administrator access). The file is digitally signed by cFos Software GmbH which was issued by the GlobalSign nv-sa certificate authority (CA).

DetailsDetails

File name:spd.exe
Publisher:cFos Software GmbH
Product name:cFosSpeed Service
Typical file path:C:\Program Files\cfosspeed\spd.exe
File version:9.04.2051
Size:427.84 KB (438,112 bytes)
Build date:4/19/2013 6:43 PM
Certificate
Issued to:cFos Software GmbH
Authority (CA):GlobalSign nv-sa
Digital DNA
PE subsystem:Windows Console
File packed:No
.NET CLR:No
More details

BehaviorsBehaviors

Services
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
  • cFosSpeedS
  • 'cFosSpeedS' (cFosSpeed System Service)
Network connections
  • [UDP] listens on port 54663
  • [UDP] listens on port 1041

  • ResourcesResource utilization

    (Note: statistics below are averages based on a minimum sample size of 200 unique participants)
    Averages
     
    CPU
    Total CPU:0.01235307%
    0.028634%
    Kernel CPU:0.00783262%
    0.013761%
    User CPU:0.00452045%
    0.014873%
    Kernel CPU time:258 ms/min
    100,923,805ms/min
    Context switches:4/sec
    284/sec
    Memory
    Private memory:5.16 MB
    21.59 MB
    Private (maximum):7.19 MB
    Private (minimum):5.43 MB
    Non-paged memory:5.16 MB
    21.59 MB
    Virtual memory:58.16 MB
    140.96 MB
    Virtual memory (peak):59.22 MB
    169.69 MB
    Working set:6.44 MB
    18.61 MB
    Working set (peak):7.33 MB
    37.95 MB
    Page faults:21,058/min
    2,039/min
    I/O
    I/O read transfer:12.3 KB/sec
    1.02 MB/min
    I/O read operations:3/sec
    343/min
    I/O write transfer:17 Bytes/sec
    274.99 KB/min
    I/O write operations:1/sec
    227/min
    I/O other transfer:9.39 KB/sec
    448.09 KB/min
    I/O other operations:73/sec
    1,671/min
    Resource allocations
    Threads:8
    12
    Handles:174
    600
    GUI GDI count:4
    103
    GUI USER count:2
    49

    BehaviorsProcess properties

    Integrety level:System
    Platform:32-bit
    Command line:"C:\Program Files\cfosspeed\spd.exe" -service
    Owner:SYSTEM
    Windows Service
    Service name:cFosSpeedS
    Display name:cFosSpeedS
    Description:“Performs latency measurement and privileged operations for cFosSpeed”
    Type:Win32OwnProcess
    Parent process:services.exe (Services and Controller app by Microsoft)

    ResourcesThreads

    Averages
     
    speedsrv.dll (cFosSpeed Install & Service DLL by cFos Software GmbH)
    Total CPU:0.00877449%
    0.272967%
    Kernel CPU:0.00576321%
    0.107585%
    User CPU:0.00301128%
    0.165382%
    CPU cycles:1,581,072/sec
    5,741,424/sec
    Context switches:2/sec
    79/sec
    Memory:812 KB
    1.16 MB
    spd.exe (main module)
    Total CPU:0.00237018%
    Kernel CPU:0.00237018%
    User CPU:0.00000000%
    CPU cycles:33,087/sec
    Memory:444 KB

    Common loaded modules

    These are modules that are typiclaly loaded within the context of this process.

    Windows OS versionsDistribution by Windows OS

    OS versiondistribution
    Windows 7 Ultimate 56.52%
    Microsoft Windows XP 13.04%
    Windows 8 Single Language 8.70%
    Windows 8 Pro with Media Center 8.70%
    Windows Vista Ultimate 4.35%
    Windows 7 Home Premium 4.35%
    Windows 7 Professional 4.35%

    Distribution by countryDistribution by country

    Egypt installs about 17.39% of cFosSpeed Service.

    OEM distributionDistribution by PC manufacturer

    PC Manufacturerdistribution
    Toshiba 38.10%
    ASUS 19.05%
    Hewlett-Packard 19.05%
    Dell 9.52%
    American Megatrends 9.52%
    Acer 4.76%
    Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

    Download it for FREE