OptProCrash.dll_old

PC Utilities Software Limited

Part of the Optimizer Pro / Driver 'PC optimizer' product lines marketed by Adsology and distributed through various bundled software (PPI and commission) channels. The file OptProCrash.dll_old by PC Utilities Software Limited has been detected as a potentially unwanted program by 17 anti-malware scanners. Also know as BrowserDefender, this bundled service will prevent various web browser toolbars and extensions from running as well as block changes to the search page and provider.
Publisher:
PC Utilities Software Limited  (signed and verified)

MD5:
c1a023d20d0b3987b3aebc1867596f6a

SHA-1:
27b7d7f74d9da8af1d155d84830dd809092b0881

SHA-256:
e2f3ca6000e1fcb98bc8a88ab5590e0b1819b6399cf99e798af2da29412e1432

Scanner detections:
17 / 68

Status:
Potentially unwanted

Explanation:
Installed with the Optimizer Pro software which is bundled by 3rd-party monetization programs.

Analysis date:
4/26/2024 2:23:39 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Adware.Bprotector.5
778

Agnitum Outpost
Riskware.Agent
7.1.1

Avira AntiVirus
TR/BProtector.Gen2
7.11.193.76

avast!
Win32:BProtect-J [Trj]
2014.9-141219

AVG
Generic_r
2015.0.3256

Bitdefender
Gen:Variant.Adware.Bprotector.5
1.0.20.1765

Comodo Security
Application.Win32.BProtect.COLC
20300

ESET NOD32
Win32/SProtector (variant)
8.10840

Fortinet FortiGate
Riskware/SProtector
12/19/2014

F-Secure
Gen:Variant.Adware.Bprotector.5
11.2014-19-12_6

G Data
Gen:Variant.Adware.Bprotector
14.12.24

K7 AntiVirus
Trojan
13.186.14254

McAfee
Artemis!C1A023D20D0B
5600.6912

MicroWorld eScan
Gen:Variant.Adware.Bprotector.5
15.0.0.1059

Reason Heuristics
PUP.PCUtilities.P
14.12.19.3

Sophos
BProtector
4.98

VIPRE Antivirus
Trojan.Win32.Generic
35514

File size:
3.9 MB (4,057,416 bytes)

Common path:
C:\Program Files\optimizer pro\optprocrash.dll_old

Digital Signature
Authority:
GoDaddy.com, Inc.

Valid from:
4/5/2013 8:29:35 PM

Valid to:
4/3/2015 4:23:14 PM

Subject:
CN=PC Utilities Software Limited, O=PC Utilities Software Limited, L=London, S=UK, C=GB

Issuer:
SERIALNUMBER=07969287, CN=Go Daddy Secure Certification Authority, OU=http://certificates.godaddy.com/repository, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US

Serial number:
2B239BABC97410

File PE Metadata
Compilation timestamp:
1/28/2014 3:55:29 PM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
49152:J+5mK239MXcZ6GftOC5FnE4Yvb5vcqKbKR48sb/WcCvxp3tjOLy15G3CjK+pi0vK:cp239MXiOEnFUblc1KRC/WDxplOmkt

Entry address:
0xDF403

Entry point:
55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, BB, D9, 00, 00, FF, 75, 10, FF, 75, 0C, FF, 75, 08, E8, 07, 00, 00, 00, 83, C4, 0C, 5D, C2, 0C, 00, 6A, 0C, 68, 90, D5, 24, 10, E8, 7E, 47, 00, 00, 33, C0, 40, 8B, 75, 0C, 85, F6, 75, 0C, 39, 35, 98, 3D, 29, 10, 0F, 84, E4, 00, 00, 00, 83, 65, FC, 00, 83, FE, 01, 74, 05, 83, FE, 02, 75, 35, 8B, 0D, 50, AC, 23, 10, 85, C9, 74, 0C, FF, 75, 10, 56, FF, 75, 08, FF, D1, 89, 45, E4, 85, C0, 0F, 84, B1, 00, 00, 00, FF, 75, 10, 56, FF, 75, 08, E8, 11, FE, FF, FF, 89, 45, E4...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
2.2 MB (2,326,016 bytes)

Remove OptProCrash.dll_old - Powered by Reason Core Security