v4dr1rlzaf.exe

Optimizer Pro v3.2

PC Utilities Software Limited

Part of the Optimizer Pro / Driver 'PC optimizer' product lines marketed by Adsology and distributed through various bundled software (PPI and commission) channels. The application v4dr1rlzaf.exe, “Fix PC problems and optimize performance” by PC Utilities Software Limited has been detected as a potentially unwanted program by 14 anti-malware scanners. It is also typically executed from the user's temporary directory.
Publisher:
PC Utilities Software Limited  (signed and verified)

Product:
Optimizer Pro v3.2

Description:
Fix PC problems and optimize performance

Version:
3.2.0.2

MD5:
6713d96e9a3118d4837de95ac1b741b7

SHA-1:
568e64b588df9d8314a2e1763732da73c0f75287

SHA-256:
bf143e4695cda48bdef685e82a4b0750ca849aa4f3638d4fb814c6ab8554a20f

Scanner detections:
14 / 68

Status:
Potentially unwanted

Explanation:
Installed with the Optimizer Pro software which is bundled by 3rd-party monetization programs.

Analysis date:
4/20/2024 2:29:22 AM UTC  (today)

Scan engine
Detection
Engine version

Agnitum Outpost
Riskware.OptimizerPro
7.1.1

AhnLab V3 Security
PUP/Win32.Optimizer
2014.10.26

AVG
Generic
2015.0.3310

Dr.Web
Trojan.PWS.Tibia.2625
9.0.1.05190

ESET NOD32
Win32/AdWare.SpeedingUpMyPC.N application
7.0.302.0

F-Prot
W32/A-fcdc4a04
v6.4.7.1.166

G Data
Win32.Application.OptimizerPro
14.10.24

K7 AntiVirus
Adware
13.185.13805

Kaspersky
not-a-virus:RiskTool.Win32.OptimizerPro
15.0.0.494

NANO AntiVirus
Riskware.Win32.OptimizerPro.dgmsiw
0.28.2.62841

Reason Heuristics
PUP.PCUtilities.K
14.10.25.17

Total Defense
Win32/Tnega.SZHEWKB
37.0.11249

VIPRE Antivirus
Threat.4150696
34232

Zillya! Antivirus
Trojan.Black.Win32.18731
2.0.0.1967

File size:
5.8 MB (6,058,488 bytes)

Product version:
3.2.0.2

Copyright:
PC Utilities Software Limited

Original file name:
Optimizer Pro

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\v4dr1rlzaf.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
7/30/2014 2:00:00 AM

Valid to:
7/31/2015 1:59:59 AM

Subject:
CN=PC Utilities Software Limited, OU=IT Department, O=PC Utilities Software Limited, STREET=78 York Street, L=London, S=England, PostalCode=W1H 1DP, C=GB

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00CF20EDFB9E9D56F429A44E79C3465805

File PE Metadata
Compilation timestamp:
10/11/2014 7:13:42 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
98304:v3k7FnIsqUyiTfFclEwRhiiFTOU4hd/p4Zb/onCdBX4KlI0fv9sMmW6v6j99LRI9:Pk7jdOEwRh7FTx0d/pwDqCdmefvKMhAt

Entry address:
0x6869

Entry point:
E8, 67, 5F, 00, 00, E9, 89, FE, FF, FF, FF, 35, 84, E2, 41, 00, FF, 15, 58, 60, 41, 00, 85, C0, 74, 02, FF, D0, 6A, 19, E8, D9, 53, 00, 00, 6A, 01, 6A, 00, E8, FC, 2E, 00, 00, 83, C4, 0C, E9, C1, 2E, 00, 00, CC, CC, CC, 8B, 4C, 24, 04, F7, C1, 03, 00, 00, 00, 74, 24, 8A, 01, 83, C1, 01, 84, C0, 74, 4E, F7, C1, 03, 00, 00, 00, 75, EF, 05, 00, 00, 00, 00, 8D, A4, 24, 00, 00, 00, 00, 8D, A4, 24, 00, 00, 00, 00, 8B, 01, BA, FF, FE, FE, 7E, 03, D0, 83, F0, FF, 33, C2, 83, C1, 04, A9, 00, 01, 01, 81, 74, E8, 8B...
 
[+]

Code size:
81.5 KB (83,456 bytes)

Remove v4dr1rlzaf.exe - Powered by Reason Core Security