OptProCrash.dll

PC Utilities Software Limited

Part of the Optimizer Pro / Driver 'PC optimizer' product lines marketed by Adsology and distributed through various bundled software (PPI and commission) channels. The module OptProCrash.dll by PC Utilities Software Limited has been detected as a potentially unwanted program by 17 anti-malware scanners. Also know as BrowserDefender, this bundled service will prevent various web browser toolbars and extensions from running as well as block changes to the search page and provider.
Publisher:
PC Utilities Software Limited  (signed and verified)

MD5:
100640496e8852d0a6961e7595fc2159

SHA-1:
bf4a3ef130a31813119597c9f7a1cffff5ca01b6

SHA-256:
476675896ea90eac1961156281c9bd1c9f2bcfda4ba57c69c0fc8bd04fd25255

Scanner detections:
17 / 68

Status:
Potentially unwanted

Explanation:
Installed with the Optimizer Pro software which is bundled by 3rd-party monetization programs.

Analysis date:
4/25/2024 7:27:59 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Adware.Bprotector.5
867

Agnitum Outpost
Riskware.Agent
7.1.1

Avira AntiVirus
TR/BProtector.Gen2
7.11.173.134

avast!
Win32:BProtect-J [Trj]
2014.9-140920

AVG
Adware Generic_r.HG
2014.0.4015

Baidu Antivirus
PUA.Win32.SProtector
4.0.3.14920

Bitdefender
Gen:Variant.Adware.Bprotector.5
1.0.20.1315

Comodo Security
Application.Win32.BProtect.COLC
19572

Emsisoft Anti-Malware
Gen:Variant.Adware.Bprotector
14.09.20

ESET NOD32
Win32/SProtector.E potentially unwanted application
7.0.302.0

F-Secure
Gen:Variant.Adware.Bprotector.5
11.2014-20-09_7

G Data
Gen:Variant.Adware.Bprotector
14.9.24

IKARUS anti.virus
Win32.SuspectCrc
t3scan.1.7.8.0

K7 AntiVirus
Trojan
13.183.13432

MicroWorld eScan
Gen:Variant.Adware.Bprotector.5
15.0.0.789

Reason Heuristics
PUP.PCUtilities.L
14.9.20.19

Sophos
BProtector
4.98

File size:
4 MB (4,184,904 bytes)

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\Program Files\optimizer pro\optprocrash.dll

Digital Signature
Authority:
GoDaddy.com, Inc.

Valid from:
4/5/2013 8:29:35 PM

Valid to:
4/3/2015 4:23:14 PM

Subject:
CN=PC Utilities Software Limited, O=PC Utilities Software Limited, L=London, S=UK, C=GB

Issuer:
SERIALNUMBER=07969287, CN=Go Daddy Secure Certification Authority, OU=http://certificates.godaddy.com/repository, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US

Serial number:
2B239BABC97410

File PE Metadata
Compilation timestamp:
12/23/2013 4:15:10 PM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
98304:PmgZrsBkMyF35AuGvY9kmox9AkrHaPzs8i3:OgZrsGMyN5GSkmyAUH/8i3

Entry address:
0x18DCB2

Entry point:
55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, 8A, D6, 00, 00, FF, 75, 10, FF, 75, 0C, FF, 75, 08, E8, 07, 00, 00, 00, 83, C4, 0C, 5D, C2, 0C, 00, 6A, 0C, 68, C0, 7B, 27, 10, E8, AF, 50, 00, 00, 33, C0, 40, 8B, 75, 0C, 85, F6, 75, 0C, 39, 35, 94, DD, 2B, 10, 0F, 84, E4, 00, 00, 00, 83, 65, FC, 00, 83, FE, 01, 74, 05, 83, FE, 02, 75, 35, 8B, 0D, 50, 5C, 26, 10, 85, C9, 74, 0C, FF, 75, 10, 56, FF, 75, 08, FF, D1, 89, 45, E4, 85, C0, 0F, 84, B1, 00, 00, 00, FF, 75, 10, 56, FF, 75, 08, E8, 11, FE, FF, FF, 89, 45, E4...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
2.4 MB (2,499,072 bytes)

Remove OptProCrash.dll - Powered by Reason Core Security