performanceoptimizer.exe

The executable performanceoptimizer.exe has been detected as malware by 24 anti-virus scanners.
MD5:
67fd7880ecbbdbfadc09a5e00f76a5ce

SHA-1:
4bd80e561916b80da62a85d1dd3a607cb11e63fa

SHA-256:
9bea0984f1b0dbe8d58164318cd49d52caf2caa66d8462c8bd176ce76bfefb16

Scanner detections:
24 / 68

Status:
Malware

Analysis date:
4/26/2024 7:52:08 AM UTC  (today)

Scan engine
Detection
Engine version

AhnLab V3 Security
Dropper/Binder.28672.B
2010.05.28

Avira AntiVirus
BDS/Poison.bipy
7.10.14.5

Emsisoft A-Squared
Trojan-Dropper.Win32.Binder!IK
4.5.0.50

Bitdefender
Trojan.Generic.3151704
1.0.20.140

Clam AntiVirus
Trojan.Dropper-22862
0.98/170.3

Comodo Security
Heur.Packed.Unknown
6728

ESET NOD32
Win32/TrojanDropper.MultiDropper (variant)
9.5152

F-Prot
W32/Dropper.AVIB
v6.4.6.0.103

F-Secure
Trojan.Generic.3151704
11.2015-28-01_4

G Data
Trojan.Generic.3151704
15.1.21

IKARUS anti.virus
Trojan-Dropper.Win32.Binder
t3scan.1.1.84.0

Kaspersky
Trojan-Dropper.Win32.Binder
14.0.0.2572

Malwarebytes
Trojan.Backdoor
v2015.01.28.12

McAfee
Generic Dropper!col
5600.6871

Microsoft Security Essentials
TrojanDropper:Win32/Dunik!rts
1.163.1557.0

Norman
W32/Suspicious_Gen2.CQSDQ
11.20150128

nProtect
Trojan/W32.Buzus.28672.DC
10.11.15.01

Panda Antivirus
Application/GameVance
15.01.28.12

Prevx
Medium Risk Malware
3.0

Quick Heal
(Suspicious) - DNAScan
1.15.11.00

Rising Antivirus
Packer.Win32.UnkPacker.b
23.00.65.15126

Sophos
Mal/Generic-A
4.53

SUPERAntiSpyware
Trojan.Agent/Gen-Backdoor
10088

Trend Micro House Call
TROJ_GEN.USE02HO
7.2.28

File size:
28 KB (28,672 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\thinstall\cache\stubs\4bd8e561916b8da62a85d1dd3a607cb11e63fa\performanceoptimizer.exe

File PE Metadata
Compilation timestamp:
12/9/2009 4:11:29 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
192:Rj/SHiv8S/NWITnL2tA9yNzJ0ANdOdSRST5nP1o:R98wWOyO0/OdSRST5P

Entry address:
0x136F

Entry point:
9C, 60, 68, 53, 74, 41, 6C, 68, 54, 68, 49, 6E, E8, 00, 00, 00, 00, 58, BB, 80, 13, 00, 00, 2B, C3, 50, 68, 00, 00, 20, 46, 68, 00, 60, 00, 00, 68, 24, 01, 00, 00, E8, 63, FC, FF, FF, E9, CC, FC, FF, FF, 55, 8B, EC, 83, EC, 10, 53, 56, 57, 8B, 7D, 08, 8B, 47, 3C, 8D, 5C, 38, 78, 8B, 03, 85, C0, 0F, 84, 92, 00, 00, 00, 83, 7B, 04, 28, 0F, 82, 88, 00, 00, 00, 8D, 34, 38, 8B, 4E, 18, 85, C9, 74, 7E, 8B, 56, 20, 3B, D0, 72, 77, 8D, 14, 8A, 8B, 4B, 04, 03, C8, 3B, CA, 72, 6B, 8B, 46, 20, 83, 65, 08, 00, 03, C7...
 
[+]

Code size:
24 KB (24,576 bytes)

Remove performanceoptimizer.exe - Powered by Reason Core Security