SystemOptimizerPro.exe

System Optimizer Pro

1NSTALL (383 MEDIA, INC.)

The application SystemOptimizerPro.exe by 1NSTALL (383 MEDIA, INC.) has been detected as a potentially unwanted program by 9 anti-malware scanners. It runs as a scheduled task under the Windows Task Scheduler triggered to execute each time a user logs in.
Publisher:
1NSTALL (383 MEDIA, INC.)  (signed and verified)

Product:
System Optimizer Pro

Version:
1.0.11.0

MD5:
528f98387fd2b13b77556e7da0aa2323

SHA-1:
b32c45204506b15419174ebac73fc949349fe563

SHA-256:
8720340325da28533478ddabe9ba3ed2cb07e47040214f0094999bba5963d715

Scanner detections:
9 / 68

Status:
Potentially unwanted

Analysis date:
4/18/2024 1:23:31 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Application.Generic.858164
376

Agnitum Outpost
Riskware.Unwanted
7.1.1

Bitdefender
Application.Generic.858164
1.0.20.125

Dr.Web
Program.Unwanted.90
9.0.1.025

F-Secure
Application.Generic.858164
11.2016-25-01_2

G Data
Application.Generic.858164
16.1.24

MicroWorld eScan
Application.Generic.858164
17.0.0.75

Reason Heuristics
PUP.Optional.1NSTALL383MEDIA.Task
16.1.25.8

Trend Micro House Call
Suspicious_GEN.F47V1105
7.2.25

File size:
786.6 KB (805,496 bytes)

Product version:
1.0.11.0

Copyright:
Copyright © System Optimizer Pro2014

Original file name:
SystemOptimizerPro.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\Program Files\system optimizer pro\systemoptimizerpro.exe

Digital Signature
Authority:
Symantec Corporation

Valid from:
7/30/2013 7:00:00 PM

Valid to:
5/24/2015 6:59:59 PM

Subject:
CN="1NSTALL (383 MEDIA, INC.)", O="1NSTALL (383 MEDIA, INC.)", L=Pleasanton, S=California, C=US, SERIALNUMBER=C3341789, OID.2.5.4.15=Private Organization, OID.1.3.6.1.4.1.311.60.2.1.2=California, OID.1.3.6.1.4.1.311.60.2.1.3=US

Issuer:
CN=Symantec Class 3 Extended Validation Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
059C2A47830CA2BB198B8CCF1DFBBA93

File PE Metadata
Compilation timestamp:
7/8/2014 5:39:11 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
24576:Ahmd0jRDhNgSsR9sQeFo9sQeFXJzbDQd:mesRCsRFZbD

Entry address:
0xBC0FE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.1063

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
744.5 KB (762,368 bytes)

Scheduled Task
Task name:
SuperFastPC_AutorunOnStartup

Trigger:
Logon (Runs on logon)

Description:
Launches SuperFastPC after Windows Boot


Remove SystemOptimizerPro.exe - Powered by Reason Core Security