optimizerpro.exe

Optimizer Pro v3.2

PC Utilities Software Limited

Part of the Optimizer Pro / Driver 'PC optimizer' product lines marketed by Adsology and distributed through various bundled software (PPI and commission) channels. The application optimizerpro.exe, “Fix PC problems and optimize performance” by PC Utilities Software Limited has been detected as a potentially unwanted program by 34 anti-malware scanners. It is also typically executed from the user's temporary directory.
Publisher:
PC Utilities Software Limited  (signed and verified)

Product:
Optimizer Pro v3.2

Description:
Fix PC problems and optimize performance

Version:
3.2.0.2

MD5:
367422cf92018b8510720346d41faa8c

SHA-1:
1f9ffd7024d3afee4861e41bcb30ef81c783fa04

SHA-256:
9049dfaffb0c9c951b7551d2c11bf4f7a8c79b00afa520502402240e340da00d

Scanner detections:
34 / 68

Status:
Potentially unwanted

Explanation:
Installed with the Optimizer Pro software which is bundled by 3rd-party monetization programs.

Analysis date:
4/19/2024 4:04:34 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Application.Agent.GN
6766314

Agnitum Outpost
Riskware.OptimizerPro
7.1.1

AhnLab V3 Security
PUP/Win32.Optimizer
2014.11.06

Avira AntiVirus
APPL/OptimizPro.RE
7.11.183.254

avast!
Adware-CJK [PUP]
150303-0

AVG
Generic
2016.0.3179

Baidu Antivirus
Hacktool.Win32.OptimizerPro
4.0.3.1536

Bitdefender
Gen:Variant.Strictor.66909
1.0.20.325

Clam AntiVirus
Win.Trojan.Optimizerpro-20
0.98/20153

Comodo Security
ApplicUnwnt
20002

Dr.Web
Trojan.PWS.Tibia.2625
9.0.1.065

Emsisoft Anti-Malware
Application.Agent.GN
9.0.0.4799

ESET NOD32
Win32/AdWare.SpeedingUpMyPC.N application
7.0.302.0

Fortinet FortiGate
Riskware/OptimizerPro
3/6/2015

F-Prot
W32/A-fcdc4a04
v6.4.7.1.166

F-Secure
Riskware.Application.Agent.GN
5.13.68

G Data
Win32.Application.OptimizerPro
15.3.24

herdProtect (fuzzy)
2015.6.12.16

K7 AntiVirus
Adware
13.184.13741

Kaspersky
not-a-virus:RiskTool.Win32.OptimizerPro
14.0.0.2390

McAfee
Artemis!DF8A62FA3C2B
5600.6835

MicroWorld eScan
Gen:Variant.Strictor.66909
16.0.0.195

NANO AntiVirus
Riskware.Win32.OptimizerPro.dgmsiw
0.28.2.62841

Norman
Application.Agent.GN
03.12.2014 13:20:04

Panda Antivirus
Trj/CI.A
15.03.06.01

Qihoo 360 Security
HEUR/QVM41.1.Malware.Gen
1.0.0.1015

Quick Heal
PUA.OptimizerPro.A9
3.15.14.00

Reason Heuristics
PUP.PC Utilities
15.3.6.1

Rising Antivirus
PE:Trojan.Win32.Generic.17876B26!394750758
23.00.65.15304

Total Defense
Win32/Tnega.SZHEWKB
37.0.11244

Trend Micro House Call
TROJ_GEN.R02KC0OK314
7.2.65

Trend Micro
TROJ_GEN.R02KC0OK314
10.465.06

VIPRE Antivirus
Trojan.Win32.Generic
34554

Zillya! Antivirus
Trojan.Black.Win32.18731
2.0.0.1965

File size:
5.8 MB (6,058,488 bytes)

Product version:
3.2.0.2

Copyright:
PC Utilities Software Limited

Original file name:
Optimizer Pro

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\optimizerpro.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
7/29/2014 7:00:00 PM

Valid to:
7/30/2015 6:59:59 PM

Subject:
CN=PC Utilities Software Limited, OU=IT Department, O=PC Utilities Software Limited, STREET=78 York Street, L=London, S=England, PostalCode=W1H 1DP, C=GB

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00CF20EDFB9E9D56F429A44E79C3465805

File PE Metadata
Compilation timestamp:
10/11/2014 12:13:42 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
98304:o3k7FnIsqUyiTfFclEwRhiiFTOU4hd/p4Zb/onCdBX4KlI0fv9sMmW6v6j99LRIN:ik7jdOEwRh7FTx0d/pwDqCdmefvKMhA9

Entry address:
0x6869

Entry point:
E8, 67, 5F, 00, 00, E9, 89, FE, FF, FF, FF, 35, 84, E2, 41, 00, FF, 15, 58, 60, 41, 00, 85, C0, 74, 02, FF, D0, 6A, 19, E8, D9, 53, 00, 00, 6A, 01, 6A, 00, E8, FC, 2E, 00, 00, 83, C4, 0C, E9, C1, 2E, 00, 00, CC, CC, CC, 8B, 4C, 24, 04, F7, C1, 03, 00, 00, 00, 74, 24, 8A, 01, 83, C1, 01, 84, C0, 74, 4E, F7, C1, 03, 00, 00, 00, 75, EF, 05, 00, 00, 00, 00, 8D, A4, 24, 00, 00, 00, 00, 8D, A4, 24, 00, 00, 00, 00, 8B, 01, BA, FF, FE, FE, 7E, 03, D0, 83, F0, FF, 33, C2, 83, C1, 04, A9, 00, 01, 01, 81, 74, E8, 8B...
 
[+]

Entropy:
7.9832  (probably packed)

Code size:
81.5 KB (83,456 bytes)

Remove optimizerpro.exe - Powered by Reason Core Security