optimizerpro.exe

Optimizer Pro v3.2

PC Utilities Software Limited

Part of the Optimizer Pro / Driver 'PC optimizer' product lines marketed by Adsology and distributed through various bundled software (PPI and commission) channels. The application optimizerpro.exe, “Fix PC problems and optimize performance” by PC Utilities Software Limited has been detected as a potentially unwanted program by 31 anti-malware scanners. It is also typically executed from the user's temporary directory.
Publisher:
PC Utilities Software Limited  (signed and verified)

Product:
Optimizer Pro v3.2

Description:
Fix PC problems and optimize performance

Version:
3.2.0.3

MD5:
456d098978e9c0c5f1c908758b8d4938

SHA-1:
2393ec503bb8afad43ab89bacec131c4c96c1ade

SHA-256:
bd6d135e062905871945f7767b5b3e0ef4f3db363d0cd86d92e98dab1f8521e7

Scanner detections:
31 / 68

Status:
Potentially unwanted

Explanation:
Installed with the Optimizer Pro software which is bundled by 3rd-party monetization programs.

Analysis date:
4/24/2024 2:13:42 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Application.Agent.GN
775

Agnitum Outpost
Riskware.Unwanted
7.1.1

AhnLab V3 Security
PUP/Win32.Optimizer
2014.11.06

Avira AntiVirus
APPL/OptimizPro.RE
7.11.194.192

avast!
Win32:MultiPlug-OP [PUP]
2014.9-141222

AVG
Generic
2015.0.3253

Baidu Antivirus
Hacktool.Win32.OptimizerPro
4.0.3.141222

Bitdefender
Application.Agent.GN
1.0.20.1780

Clam AntiVirus
Win.Trojan.Optimizerpro-23
0.98/21411

Comodo Security
ApplicUnwnt
20002

Dr.Web
Trojan.PWS.Tibia.2625
9.0.1.0356

Emsisoft Anti-Malware
Gen:Variant.Strictor.66909
8.14.12.22.05

ESET NOD32
Win32/AdWare.SpeedingUpMyPC (variant)
8.10864

Fortinet FortiGate
Riskware/OptimizerPro
12/22/2014

F-Prot
W32/A-fcdc4a04
v6.4.7.1.166

F-Secure
Application.Agent.GN
11.2014-22-12_2

G Data
Application.Agent.GN
14.12.24

K7 AntiVirus
Adware
13.186.14309

Kaspersky
not-a-virus:RiskTool.Win32.OptimizerPro
14.0.0.2759

McAfee
Artemis!456D098978E9
5600.6909

MicroWorld eScan
Application.Agent.GN
15.0.0.1068

NANO AntiVirus
Riskware.Win32.OptimizerPro.djigxw
0.28.6.63850

Panda Antivirus
Trj/CI.A
14.12.22.05

Qihoo 360 Security
Win32/Application.77e
1.0.0.1015

Reason Heuristics
PUP.PCUtilities.M
14.12.22.5

Rising Antivirus
PE:Trojan.Win32.Generic.17876B26!394750758
23.00.65.141220

Total Defense
Win32/Tnega.SZHEWKB
37.0.11325

Trend Micro House Call
TROJ_GEN.R02KC0OK314
7.2.356

Trend Micro
TROJ_GEN.R02KC0OK314
10.465.22

VIPRE Antivirus
Trojan.Win32.Generic
35648

Zillya! Antivirus
Trojan.Black.Win32.18731
2.0.0.2004

File size:
7.6 MB (8,011,256 bytes)

Product version:
3.2.0.3

Copyright:
PC Utilities Software Limited

Original file name:
Optimizer Pro

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\exe\adsology-optimizer-pro-1.0-de-de\optimizerpro.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
7/30/2014 2:00:00 AM

Valid to:
7/31/2015 1:59:59 AM

Subject:
CN=PC Utilities Software Limited, OU=IT Department, O=PC Utilities Software Limited, STREET=78 York Street, L=London, S=England, PostalCode=W1H 1DP, C=GB

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00CF20EDFB9E9D56F429A44E79C3465805

File PE Metadata
Compilation timestamp:
12/3/2014 2:44:16 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
196608:/g4TmyK7RwuCDbI91nSkRBaculQ3SyxE6uF5iGjUCp8NdGd:/HTZLulzjaXlQpu/jz

Entry address:
0x6869

Entry point:
E8, 67, 5F, 00, 00, E9, 89, FE, FF, FF, FF, 35, 84, E2, 41, 00, FF, 15, 58, 60, 41, 00, 85, C0, 74, 02, FF, D0, 6A, 19, E8, D9, 53, 00, 00, 6A, 01, 6A, 00, E8, FC, 2E, 00, 00, 83, C4, 0C, E9, C1, 2E, 00, 00, CC, CC, CC, 8B, 4C, 24, 04, F7, C1, 03, 00, 00, 00, 74, 24, 8A, 01, 83, C1, 01, 84, C0, 74, 4E, F7, C1, 03, 00, 00, 00, 75, EF, 05, 00, 00, 00, 00, 8D, A4, 24, 00, 00, 00, 00, 8D, A4, 24, 00, 00, 00, 00, 8B, 01, BA, FF, FE, FE, 7E, 03, D0, 83, F0, FF, 33, C2, 83, C1, 04, A9, 00, 01, 01, 81, 74, E8, 8B...
 
[+]

Entropy:
7.9886  (probably packed)

Code size:
81.5 KB (83,456 bytes)

Remove optimizerpro.exe - Powered by Reason Core Security