optimizerpro.exe

Optimizer Pro v3.2

PC Utilities Software Limited

Part of the Optimizer Pro / Driver 'PC optimizer' product lines marketed by Adsology and distributed through various bundled software (PPI and commission) channels. The application optimizerpro.exe, “Optimizer Pro – Clean up your PC” by PC Utilities Software Limited has been detected as a potentially unwanted program by 38 anti-malware scanners. This is a setup program which is used to install the application. Also know as BrowserDefender, this bundled service will prevent various web browser toolbars and extensions from running as well as block changes to the search page and provider.
Publisher:
PCUtilities Software Limited  (signed by PC Utilities Software Limited)

Product:
Optimizer Pro v3.2

Description:
Optimizer Pro – Clean up your PC

Version:
3.3.1.7

MD5:
19d460af1bd6eafefa80bf5e4027e9ac

SHA-1:
1b5423341a19e3a70c40edb3a6ec390c3f4ead07

SHA-256:
da75c911aab17266fe29e130e245858cb130fa2cbfcd33617b33ee5115167846

Scanner detections:
38 / 68

Status:
Potentially unwanted

Explanation:
Installed with the Optimizer Pro software which is bundled by 3rd-party monetization programs.

Analysis date:
11/2/2024 3:19:45 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Trojan.Generic.12849989
385

Agnitum Outpost
Trojan.Inject
7.1.1

AhnLab V3 Security
PUP/Win32.OptimizerPro
2015.04.16

Avira AntiVirus
TR/Bprotector.1969704
7.11.217.14

avast!
PUP-gen [PUP]
2014.9-160116

AVG
Win32/DH{gRKBE4EOICIlABM1gQw}
2017.0.2863

Baidu Antivirus
PUA.Win32.Rezimitpo
4.0.3.16116

Bitdefender
Gen:Variant.Zusy.133230
1.0.20.80

Bkav FE
W32.HfsAdware
1.3.0.6379

Clam AntiVirus
Win.Trojan.Inject-10791
0.98/21511

Comodo Security
Application.Win32.OptimizerPro.FY
21267

Dr.Web
Threat.Undefined
9.0.1.016

Emsisoft Anti-Malware
Gen:Variant.Zusy.133230
8.16.01.16.03

ESET NOD32
Win32/Adware.SpeedingUpMyPC.AB application
10.7.0.302.0

Fortinet FortiGate
W32/Inject.UMUB!tr
1/16/2016

F-Prot
W32/OptimizerPro.H.gen
v6.4.7.1.166

F-Secure
Trojan.Generic.12850669
11.2016-16-01_7

G Data
Win32.Application.OptimizerPro
16.1.25

IKARUS anti.virus
PUA.SpeedingUpMyPC
t3scan.1.8.6.0

K7 AntiVirus
Riskware
13.1915124

Kaspersky
Trojan.Win32.Inject
14.0.0.809

Malwarebytes
PUP.Optional.OptimizerPR0
v2016.01.16.03

McAfee
Artemis!83104CC0EBA4
5600.6519

MicroWorld eScan
Trojan.Generic.12850669
17.0.0.48

NANO AntiVirus
Trojan.Win32.Inject.dprbqo
0.30.16.1110

nProtect
Trojan.GenericKD.2203974
15.03.27.01

Panda Antivirus
Trj/Genetic.gen
16.01.16.03

Qihoo 360 Security
Win32/Trojan.Multi.daf
1.0.0.1015

Quick Heal
PUA.OptimizerPro.A9
1.16.14.00

Reason Heuristics
PUP.PC Utilities.PCUtilities (M)
16.1.16.3

Rising Antivirus
PE:Trojan.Win32.SpeedingUpMyPC.a!1075357520
23.00.65.16114

Sophos
Mal/Generic-S
4.98

Trend Micro House Call
TROJ_GEN.R08NC0OC615
7.2.16

Trend Micro
TROJ_GEN.F0C2C00D315
10.465.16

Vba32 AntiVirus
Trojan.Inject
3.12.26.3

VIPRE Antivirus
Threat.4150696
37788

ViRobot
Trojan.Win32.S.Agent.7346640.A[h]
2014.3.20.0

Zillya! Antivirus
Trojan.Inject.Win32.159090
2.0.0.2088

File size:
7 MB (7,346,640 bytes)

Product version:
3.3.1.7

Copyright:
PCUtilities Software Limited

Original file name:
OptimizerPR0

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\ProgramData\{2017e662-7252-0de9-2017-7e6627259989}\optimizerpro.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
11/21/2014 12:00:00 AM

Valid to:
11/21/2015 11:59:59 PM

Subject:
CN=PC Utilities Software Limited, O=PC Utilities Software Limited, STREET=78 York Street, L=London, PostalCode=W1H 1DP, C=GB

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00F10854548D47F74C920D7091D9057D6E

File PE Metadata
Compilation timestamp:
3/4/2015 1:39:40 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
196608:20ZoF2s4hOn80p14Zu5rFRrErO34UrUPT4ARHvW0cEa:20ZA2C8U4Zud934g2PwEa

Entry address:
0xA193

Entry point:
E8, 97, 76, 00, 00, E9, 89, FE, FF, FF, 8B, FF, 55, 8B, EC, 8B, 45, 08, 85, C0, 74, 12, 83, E8, 08, 81, 38, DD, DD, 00, 00, 75, 07, 50, E8, 28, ED, FF, FF, 59, 5D, C3, 8B, FF, 55, 8B, EC, 83, EC, 10, A1, F0, 36, 43, 00, 33, C5, 89, 45, FC, 8B, 55, 18, 53, 33, DB, 56, 57, 3B, D3, 7E, 1F, 8B, 45, 14, 8B, CA, 49, 38, 18, 74, 08, 40, 3B, CB, 75, F6, 83, C9, FF, 8B, C2, 2B, C1, 48, 3B, C2, 7D, 01, 40, 89, 45, 18, 89, 5D, F8, 39, 5D, 24, 75, 0B, 8B, 45, 08, 8B, 00, 8B, 40, 04, 89, 45, 24, 8B, 35, 40, A1, 42, 00...
 
[+]

Code size:
163 KB (166,912 bytes)

The file optimizerpro.exe has been seen being distributed by the following URL.

Remove optimizerpro.exe - Powered by Reason Core Security