optimizerpro.exe

Optimizer Pro v3.2

PC Utilities Software Limited

Part of the Optimizer Pro / Driver 'PC optimizer' product lines marketed by Adsology and distributed through various bundled software (PPI and commission) channels. The application optimizerpro.exe, “Fix PC problems and optimize performance” by PC Utilities Software Limited has been detected as a potentially unwanted program by 26 anti-malware scanners. It is also typically executed from the user's temporary directory.
Publisher:
PC Utilities Software Limited  (signed and verified)

Product:
Optimizer Pro v3.2

Description:
Fix PC problems and optimize performance

Version:
3.2.0.2

MD5:
4217ef9321de7db631b5d121def30e2a

SHA-1:
dfb1cb155dc1b8914931206070d9af31830ebcff

SHA-256:
29c76d81ad860080951654b0bd06c70198000f1981102812155e48669d8c8fbd

Scanner detections:
26 / 68

Status:
Potentially unwanted

Explanation:
Installed with the Optimizer Pro software which is bundled by 3rd-party monetization programs.

Analysis date:
4/18/2024 12:09:51 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Strictor.66909
827

Agnitum Outpost
Riskware.OptimizerPro
7.1.1

AhnLab V3 Security
PUP/Win32.Optimizer
2014.10.19

avast!
Adware-gen [Adw]
2014.9-141031

AVG
Generic
2015.0.3305

Bitdefender
Gen:Variant.Strictor.66909
1.0.20.1520

Clam AntiVirus
Win.Trojan.Optimizerpro-18
0.98/21411

Dr.Web
Trojan.PWS.Tibia.2625
9.0.1.0304

Emsisoft Anti-Malware
Gen:Variant.Strictor.66909
8.14.10.31.07

ESET NOD32
Win32/AdWare.SpeedingUpMyPC (variant)
8.10582

Fortinet FortiGate
Riskware/OptimizerPro
10/31/2014

F-Prot
W32/A-fcdc4a04
v6.4.7.1.166

F-Secure
Gen:Variant.Strictor.66909
11.2014-31-10_6

G Data
Win32.Application.OptimizerPro
14.10.24

K7 AntiVirus
Adware
13.184.13727

Kaspersky
not-a-virus:RiskTool.Win32.OptimizerPro
14.0.0.3018

McAfee
Artemis!8500F1D0FD1C
5600.6961

MicroWorld eScan
Gen:Variant.Strictor.66909
15.0.0.912

NANO AntiVirus
Riskware.Win32.OptimizerPro.dgmsiw
0.28.2.62671

Panda Antivirus
Trj/CI.A
14.10.31.07

Qihoo 360 Security
HEUR/QVM41.1.Malware.Gen
1.0.0.1015

Reason Heuristics
PUP.PCUtilities.M
14.10.31.7

Rising Antivirus
PE:Trojan.Win32.Generic.17876B26!394750758
23.00.65.141029

Total Defense
Win32/Tnega.SZHEWKB
37.0.11234

VIPRE Antivirus
Trojan.Win32.Generic
34032

Zillya! Antivirus
Trojan.Black.Win32.18731
2.0.0.1959

File size:
5.7 MB (5,969,912 bytes)

Product version:
3.2.0.2

Copyright:
PC Utilities Software Limited

Original file name:
Optimizer Pro

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\optimizerpro.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
7/29/2014 7:00:00 PM

Valid to:
7/30/2015 6:59:59 PM

Subject:
CN=PC Utilities Software Limited, OU=IT Department, O=PC Utilities Software Limited, STREET=78 York Street, L=London, S=England, PostalCode=W1H 1DP, C=GB

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00CF20EDFB9E9D56F429A44E79C3465805

File PE Metadata
Compilation timestamp:
10/28/2014 4:08:11 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
98304:O3ytkzoZL1RetHAKkUT1V8+AQDYrK/mMrJCi+yWTEfniHRPk29LLpCQLBQvqcd1q:UyCzIL7e9AVR+AQv1/+yWAfn4RpNCQL3

Entry address:
0x6869

Entry point:
E8, 67, 5F, 00, 00, E9, 89, FE, FF, FF, FF, 35, 84, E2, 41, 00, FF, 15, 58, 60, 41, 00, 85, C0, 74, 02, FF, D0, 6A, 19, E8, D9, 53, 00, 00, 6A, 01, 6A, 00, E8, FC, 2E, 00, 00, 83, C4, 0C, E9, C1, 2E, 00, 00, CC, CC, CC, 8B, 4C, 24, 04, F7, C1, 03, 00, 00, 00, 74, 24, 8A, 01, 83, C1, 01, 84, C0, 74, 4E, F7, C1, 03, 00, 00, 00, 75, EF, 05, 00, 00, 00, 00, 8D, A4, 24, 00, 00, 00, 00, 8D, A4, 24, 00, 00, 00, 00, 8B, 01, BA, FF, FE, FE, 7E, 03, D0, 83, F0, FF, 33, C2, 83, C1, 04, A9, 00, 01, 01, 81, 74, E8, 8B...
 
[+]

Entropy:
7.9830  (probably packed)

Code size:
81.5 KB (83,456 bytes)

Remove optimizerpro.exe - Powered by Reason Core Security