Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

5, 7, 0, 1026 22.73%
5, 7, 0, 1018 4.55%
5, 7, 0, 1016 13.64%
5, 6, 0, 1040 13.64%
5, 6, 0, 1040 18.18%
5, 6, 0, 1040 4.55%
5, 6, 0, 1040 4.55%
5, 6, 0, 1032 18.18%

Relationships


PE structurePE file structure

Show functions
Import table
comctl32.dll
ImageList_Create, ImageList_ReplaceIcon, PropertySheetA, CreatePropertySheetPageA, InitCommonControlsEx
gdi32.dll
SelectClipRgn, GetClipRgn, CreateRectRgn, PaintRgn, CombineRgn, PathToRegion, WidenPath, DeleteObject, StrokeAndFillPath, CreatePen, SelectObject, CreateSolidBrush, GetObjectA, CreateFontW, GetDeviceCaps, FillPath, GetTextExtentPoint32W, CreateRectRgnIndirect, SetBkColor, SetTextColor, GetTextColor, GetTextExtentPoint32A, SetBkMode, StrokePath, BitBlt, GetStockObject, CreateCompatibleBitmap, CreateCompatibleDC, GetDIBits, CreateDIBSection, CreateFontIndirectW, GetObjectW, SetBrushOrgEx, CreatePatternBrush, StretchBlt, ExtCreateRegion, CreateICA, ExcludeClipRect, CreateFontIndirectA, SetWindowOrgEx, SetViewportOrgEx, ModifyWorldTransform, SetBitmapBits, GetBitmapBits, ExtTextOutA, CreateFontA, SetGraphicsMode, BeginPath, Rectangle, EndPath, MoveToEx, DeleteDC, LineTo, AngleArc
iphlpapi.dll
GetAdaptersInfo
kernel32.dll
DllMain
msimg32.dll
GradientFill, TransparentBlt, AlphaBlend
netapi32.dll
NetApiBufferFree, NetUseEnum
ole32.dll
StgCreateDocfile, StgCreateStorageEx, StgIsStorageFile, OleUninitialize, CoInitializeEx, CoInitializeSecurity, CoSetProxyBlanket, CoTaskMemFree, StgOpenStorage, StgOpenStorageEx, OleInitialize, CoCreateGuid, StringFromGUID2, CoInitialize, CoCreateInstance, CoUninitialize
psapi.dll
GetProcessMemoryInfo
rpcrt4.dll
RpcStringFreeA, UuidToStringA, UuidCreate, UuidFromStringA
secur32.dll
GetUserNameExW
shell32.dll
Shell_NotifyIconA, ShellExecuteA, SHGetSpecialFolderLocation, SHBrowseForFolderA, ShellExecuteW, SHGetFileInfoW, SHGetSpecialFolderPathW, ShellExecuteExA, SHChangeNotify, SHGetSpecialFolderPathA, SHGetMalloc, SHGetPathFromIDListA
shlwapi.dll
PathGetArgsA, PathRemoveArgsA, PathUnquoteSpacesA, StrStrIA, PathRemoveBlanksA, StrCpyW, PathFindFileNameA, PathAppendA, SHCopyKeyW, SHCopyKeyA, SHDeleteValueW, SHDeleteValueA, SHDeleteKeyW, SHDeleteKeyA, SHSetValueW, SHSetValueA, SHGetValueW, SHGetValueA, PathIsDirectoryW, PathIsDirectoryA, PathFileExistsW, PathFileExistsA, PathRemoveFileSpecA, PathAddBackslashA, PathAddBackslashW, PathQuoteSpacesW, PathAppendW, PathFindFileNameW, PathFindNextComponentW, PathRemoveFileSpecW, PathFindNextComponentA, PathGetDriveNumberA, PathRemoveBackslashA, PathCompactPathW, StrChrA, PathStripToRootA, PathIsNetworkPathA, PathFindExtensionA, StrStrA, UrlUnescapeA, StrCmpNA, PathIsFileSpecA, PathAddExtensionA, PathRemoveExtensionA, PathSetDlgItemPathA, StrCmpNIA, PathQuoteSpacesA
user32.dll
DllMain
version.dll
VerQueryValueA, GetFileVersionInfoW, GetFileVersionInfoA, GetFileVersionInfoSizeW, GetFileVersionInfoSizeA
winhttp.dll
WinHttpOpen, WinHttpGetProxyForUrl, WinHttpCloseHandle, WinHttpConnect, WinHttpReadData, WinHttpGetIEProxyConfigForCurrentUser, WinHttpQueryDataAvailable, WinHttpQueryHeaders, WinHttpReceiveResponse, WinHttpSendRequest, WinHttpAddRequestHeaders, WinHttpSetOption, WinHttpOpenRequest
wininet.dll
InternetCrackUrlA, InternetCloseHandle, InternetOpenA, DeleteUrlCacheEntry, FindCloseUrlCache, FindNextUrlCacheEntryA, FindFirstUrlCacheEntryA, InternetConnectA, InternetReadFile, HttpSendRequestA, HttpOpenRequestA, InternetQueryDataAvailable, HttpQueryInfoA, InternetGetCookieA, InternetOpenUrlA
winmm.dll
timeGetTime, PlaySoundA
ws2_32.dll
WSCInstallProvider

SUPERAntiSpyware.exe

SUPERAntiSpyware by SUPERAntiSpyware.com (Signed)

Remove SUPERAntiSpyware.exe
Version:   5, 6, 0, 1040
MD5:   ed11235b2537f034fef12e4f11231e55
SHA1:   c538326ef50cd213b00a27592fdcb2ef2efc772c

Overview

superantispyware.exe executes as a process with the local user's privileges. It is set to be run when the PC boots and the user logs into Windows (added to the Run registry key for the current user). It is installed with a couple of know programs including SUPERAntiSpyware published by SUPERAntiSpyware.com, SUPERAntiSpyware Free Edition from SUPERAntiSpyware.com and SUPERAntiSpyware Free Edition by SUPERAntiSpyware.com. The file is digitally signed by SUPERAntiSpyware.com which was issued by the GoDaddy.com certificate authority (CA).

DetailsDetails

File name:superantispyware.exe
Publisher:SUPERAntiSpyware
Product name:SUPERAntiSpyware
Description:SUPERAntiSpyware Application
Typical file path:C:\Program Files\superantispyware\superantispyware.exe
File version:5, 6, 0, 1040
Size:5.44 MB (5,707,544 bytes)
Build date:10/2/2013 8:54 PM
Certificate
Issued to:SUPERAntiSpyware.com
Authority (CA):GoDaddy.com
Effective date:Monday, May 6, 2013
Expiration date:Wednesday, May 6, 2015
Digital DNA
PE subsystem:Windows GUI
File packed:No
.NET CLR:No
More details

ResourcesPrograms

The following programs will install this file
SUPERAntiSpyware.com
25% remove
SUPERAntiSpyware is a software application distributed as shareware which can detect and remove spyware, adware, trojan horses, rogue security software, computer worms, rootkits, parasites and other potentially harmful software applications. Although it can detect malware, SUPERAntiSpyware is not designed to replace antivirus software. The product is available as freeware for personal use with limited functions, such as no automatic upd...
SUPERAntiSpyware.com
24% remove
SUPERAntiSpyware is a software application distributed as shareware which can detect and remove spyware, adware, trojan horses, rogue security software, computer worms, rootkits, parasites and other potentially harmful software applications. Although it can detect malware, SUPERAntiSpyware is not designed to replace antivirus software. The product is available as freeware for personal use with limited functions, such as no automatic upd...

BehaviorsBehaviors

Startup files (user) run
Runs under the registry key 'HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run'
  • 'SUPERAntiSpyware' → C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
Network connections
  • [TCP] 216.35.15.157:80
  • [UDP] listens on port 64840

  • ResourcesResource utilization

    (Note: statistics below are averages based on a minimum sample size of 200 unique participants)
    Averages
     
    CPU
    Total CPU:0.00575366%
    0.028634%
    Kernel CPU:0.00303743%
    0.013761%
    User CPU:0.00271622%
    0.014873%
    Kernel CPU time:2,005,392,855 ms/min
    100,923,805ms/min
    Memory
    Private memory:252.89 MB
    21.59 MB
    Private (maximum):236.95 MB
    Private (minimum):1.32 MB
    Non-paged memory:252.89 MB
    21.59 MB
    Virtual memory:649.28 MB
    140.96 MB
    Virtual memory (peak):947.34 MB
    169.69 MB
    Working set:1.31 MB
    18.61 MB
    Working set (peak):260.71 MB
    37.95 MB
    Resource allocations
    Threads:25
    12
    Handles:847
    600
    GUI GDI count:152
    103
    GUI GDI peak:335
    142
    GUI USER count:82
    49
    GUI USER peak:294
    71

    BehaviorsProcess properties

    Integrety level:Medium
    Platform:32-bit
    Command line:"C:\Program Files\superantispyware\superantispyware.exe"
    Owner:User

    Windows OS versionsDistribution by Windows OS

    OS versiondistribution
    Microsoft Windows XP 27.27%
    Windows 8.1 18.18%
    Windows 7 Ultimate 18.18%
    Windows 7 Home Premium 18.18%
    Windows 8 9.09%
    Windows 8.1 Pro with Media Center 4.55%
    Windows Vista Home Premium 4.55%

    Distribution by countryDistribution by country

    United States installs about 77.27% of SUPERAntiSpyware.

    OEM distributionDistribution by PC manufacturer

    PC Manufacturerdistribution
    ASUS 27.59%
    Sony 20.69%
    Acer 17.24%
    Lenovo 13.79%
    American Megatrends 10.34%
    Dell 6.90%
    GIGABYTE 3.45%
    Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

    Download it for FREE