driverprosetup.exe

Driver Pro v3.2

PC Utilities Software Limited

Part of the Optimizer Pro / Driver 'PC optimizer' product lines marketed by Adsology and distributed through various bundled software (PPI and commission) channels. The application driverprosetup.exe, “Keep your PC drivers up to date” by PC Utilities Software Limited has been detected as a potentially unwanted program by 17 anti-malware scanners. This is a setup and installation application and has been known to bundle potentially unwanted software. The file has been seen being downloaded from dl.skilledservers.net.
Publisher:
PC Utilities Software Limited  (signed and verified)

Product:
Driver Pro v3.2

Description:
Keep your PC drivers up to date

Version:
3.2.0.2

MD5:
48188942c7f1d594fdb44b9371a96622

SHA-1:
9482f22fc297429269db460327b073be7d5a2613

SHA-256:
dd72be86bd28887120f82e35c137651b24532fcbf08d2eaec623a1ed4d88f7f9

Scanner detections:
17 / 68

Status:
Potentially unwanted

Explanation:
Installed with the Optimizer Pro software which is bundled by 3rd-party monetization programs.

Analysis date:
4/24/2024 1:23:04 AM UTC  (today)

Scan engine
Detection
Engine version

AhnLab V3 Security
PUP/Win32.Optimizer
2014.10.27

Avira AntiVirus
APPL/OptimizPro.RE
7.11.184.224

AVG
Generic
2015.0.3279

Baidu Antivirus
Hacktool.Win32.OptimizerPro
4.0.3.141126

Dr.Web
Trojan.PWS.Tibia.2591
9.0.1.05190

ESET NOD32
Win32/AdWare.SpeedingUpMyPC.Q application
7.0.302.0

Fortinet FortiGate
Riskware/OptimizerPro
11/26/2014

F-Prot
W32/A-f4372f06
v6.4.7.1.166

G Data
Win32.Application.PcUtilitiesDriverPro
14.11.24

IKARUS anti.virus
PUA.SpeedingUpMyPC
t3scan.1.7.8.0

K7 AntiVirus
Adware
13.185.13805

Kaspersky
not-a-virus:RiskTool.Win32.OptimizerPro
15.0.0.543

McAfee
Artemis!E832576FE35A
5600.6935

Panda Antivirus
Trj/Genetic.gen
14.11.26.08

Qihoo 360 Security
Win32/Virus.IM.7fa
1.0.0.1015

Reason Heuristics
PUP.Installer.PCUtilities.O
14.11.26.8

VIPRE Antivirus
Threat.4150696
34232

File size:
3.3 MB (3,455,992 bytes)

Product version:
3.2.0.2

Copyright:
PC Utilities Software Limited

Original file name:
Driver Pro

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\windows\temp\30b0624bf\temp\driverprosetup.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
7/30/2014 3:00:00 AM

Valid to:
7/31/2015 2:59:59 AM

Subject:
CN=PC Utilities Software Limited, OU=IT Department, O=PC Utilities Software Limited, STREET=78 York Street, L=London, S=England, PostalCode=W1H 1DP, C=GB

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00CF20EDFB9E9D56F429A44E79C3465805

File PE Metadata
Compilation timestamp:
10/11/2014 9:48:11 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
98304:G3YobVRxj94j/JpY6A7PFLiWg5RxjUZzs:8YeujnY6aIrYZY

Entry address:
0x6869

Entry point:
E8, 67, 5F, 00, 00, E9, 89, FE, FF, FF, FF, 35, 84, E2, 41, 00, FF, 15, 58, 60, 41, 00, 85, C0, 74, 02, FF, D0, 6A, 19, E8, D9, 53, 00, 00, 6A, 01, 6A, 00, E8, FC, 2E, 00, 00, 83, C4, 0C, E9, C1, 2E, 00, 00, CC, CC, CC, 8B, 4C, 24, 04, F7, C1, 03, 00, 00, 00, 74, 24, 8A, 01, 83, C1, 01, 84, C0, 74, 4E, F7, C1, 03, 00, 00, 00, 75, EF, 05, 00, 00, 00, 00, 8D, A4, 24, 00, 00, 00, 00, 8D, A4, 24, 00, 00, 00, 00, 8B, 01, BA, FF, FE, FE, 7E, 03, D0, 83, F0, FF, 33, C2, 83, C1, 04, A9, 00, 01, 01, 81, 74, E8, 8B...
 
[+]

Entropy:
7.8155  (probably packed)

Code size:
81.5 KB (83,456 bytes)

The file driverprosetup.exe has been seen being distributed by the following URL.

Remove driverprosetup.exe - Powered by Reason Core Security