uposetup.exe

Ultimate PC Optimizer

EuroTrade Ltd

The application uposetup.exe, “This installer database contains the logic and data required to install Ultimate PC Optimizer.” by EuroTrade has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. This is a self-extracting archive and installer and has been known to bundle potentially unwanted software. The file has been seen being downloaded from en.softonic.com and multiple other hosts.
Publisher:
ATSH Ltd  (signed by EuroTrade Ltd)

Product:
Ultimate PC Optimizer

Description:
This installer database contains the logic and data required to install Ultimate PC Optimizer.

Version:
2.5.9

MD5:
9d420965d933a98f87c9389e650e26bf

SHA-1:
74855ce20a4ac76d97ad697d49eaf92526d33df5

SHA-256:
f94b89be8f827bcb9355dc5a1456e5e3e7e4af8921a3b69aefe286d3f57fe816

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
11/7/2024 5:35:40 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.EuroTrade.RegClean.Optional.Installer.Meta (L)
15.8.26.16

File size:
5.9 MB (6,205,664 bytes)

Product version:
2.5.9

Copyright:
Copyright (C) 2014 ATSH Ltd

Original file name:
UltimatePCOptimizerSetup.exe

File type:
Executable application (Win32 EXE)

Language:
engleski (SAD)

Common path:
C:\users\{user}\downloads\uposetup.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
11/3/2014 1:00:00 AM

Valid to:
11/4/2015 12:59:59 AM

Subject:
CN=EuroTrade Ltd, O=EuroTrade Ltd, STREET=Izik Shtern 1, L=Tel Aviv, S=Hamerkaz, PostalCode=62153, C=IL

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
009B1A22ADB93727A6986684C4D58CF9BC

File PE Metadata
Compilation timestamp:
10/7/2014 5:05:58 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
98304:bG7cl1155MF19KB5T46bKtKIOv9iRgoBIIJ4l+ed50812BbgxywcU7VnDGEz7lYf:+uQQ5TTI49iaNHpSmcURDpE

Entry address:
0xC87EC

Entry point:
E8, 4A, CC, 00, 00, E9, 79, FE, FF, FF, 8B, FF, 55, 8B, EC, 51, 53, 56, 8B, F0, 33, DB, 3B, F3, 75, 1E, E8, 5D, 4D, 00, 00, 6A, 16, 5E, 53, 53, 53, 53, 53, 89, 30, E8, C5, D5, FF, FF, 83, C4, 14, 8B, C6, E9, C2, 00, 00, 00, 57, 39, 5D, 0C, 77, 1E, E8, 39, 4D, 00, 00, 6A, 16, 5E, 53, 53, 53, 53, 53, 89, 30, E8, A1, D5, FF, FF, 83, C4, 14, 8B, C6, E9, 9D, 00, 00, 00, 33, C0, 39, 5D, 14, 66, 89, 06, 0F, 95, C0, 40, 39, 45, 0C, 77, 09, E8, 0A, 4D, 00, 00, 6A, 22, EB, CF, 8B, 45, 10, 83, C0, FE, 83, F8, 22, 77...
 
[+]

Code size:
1021.5 KB (1,046,016 bytes)

The file uposetup.exe has been seen being distributed by the following 36 URLs.

http://en.softonic.com/sads/tracker.php?ev=c&co=PL&sid=499252dd75dd3426c923a5dd743069f7&upv=130b213ac5689571c463f4a889bda969&z=results&sk=0&abt=&eid=&params=F39B2A32BFC101987B1458170C278E031176ABDE618A400FC6FF30446D94EAB656293DEC983AB1FBAFB9AFD5E191CE38617D8261DC0CC0911A480D06364798F0F2139276BBE5CE866555FACFA64653AB18AD618E5B932399958530B4EE1EE830C94B941043BD9ECD7D5B03DA02D76C8C2BB40B7594BE4645FBD8FA62CE4D18DC6AB4BE0ADF8A137836E99942F9457A6F01E5333F0F25109CE46E892F74A5E3ADDB17D41CC2808F80EFF469674E7B3A76&h=B5EEB0248C8655B6092EFEB2FEA003620D1F80CEA854885E6DD3090DB3AD9530&directdownload=1&f=69687367&d=http://cdn.atsh.co/files/.../uposetup.exe

http://en.softonic.com/sads/tracker.php?ev=c&co=RO&sid=d93fe680fe7ba634d7ca88365acd302b&upv=558ddbc8c12966b894514dbf408a78e4&z=results&sk=0&abt=&eid=&params=F39B2A32BFC101987B1458170C278E031176ABDE618A400FC6FF30446D94EAB656293DEC983AB1FBAFB9AFD5E191CE38617D8261DC0CC0911A480D06364798F09A73DD40BE267191C557D98FCD31BFE3AA9E684056C7C97C400885380476954A21147E1724E0DBCABA460811FFDA7B4BDE926F9B0605138D615E61D7CBA3F3B19E1C8AE2DB5D4042714FCFD21F022797F1FC979F6BCC898483A00B23A331EB9A61DC1F448748106AB6F977B54B7469E9&h=EFC69A1E1C457A128713643F3036CA2A37B57356261BCB2BE125CF7E1D7C6625&directdownload=1&f=69687367&d=http://cdn.atsh.co/files/.../uposetup.exe

http://en.softonic.com/sads/tracker.php?ev=c&co=MK&sid=e2154c1850647cc20bfd92d6dcb2b874&upv=1ee01e796f5bb34b6a67df9b0ea63007&z=results&sk=0&abt=&eid=&params=F39B2A32BFC101987B1458170C278E031176ABDE618A400FC6FF30446D94EAB656293DEC983AB1FBAFB9AFD5E191CE38617D8261DC0CC0911A480D06364798F0F2139276BBE5CE866555FACFA64653ABCDBFFDC258D060B6F54530ED66924A1A3A70AE7AB157C1D4E65DE4E2EF6F4493335DA5F91AF6DDFAFCD8C31C98D10C2912EB688998048A9DEC19F7FC614FE4B220E1569226D1C1B9D45B6E6F06CF2A5550F2CF2CE64245C987512A69D2818E1C&h=0A525E974002FFAF641E2E767EC26EDE25FD54191BFDD0983072A0A9B7088E88&directdownload=1&f=69687367&d=http://cdn.atsh.co/files/.../uposetup.exe

http://en.softonic.com/sads/tracker.php?ev=c&co=IL&sid=99b7f75a127b65341a0a8475002e8e74&upv=950b05d5d2f95e09843116c92215d592&z=results&sk=0&abt=&eid=&params=F39B2A32BFC101987B1458170C278E031176ABDE618A400FC6FF30446D94EAB656293DEC983AB1FBAFB9AFD5E191CE389A456294A963295D8800DB49BDE245B34F68A2186DFCFC2D1F8796ED2049644E271F57E536C1E662515CECDFF4080749187417CF18A429DEA88FA9F5C1A555A479163EBA31EBB5D5E0EA15D4A965D5386512FE410BFD1D01B0651B97E88BEE5E5CAA411456C0E690DDE8E538B3B3322FACC5DF3FAC0D2B17D6AAB6D81A1C9713&h=2EED3D80DD2108802B3932DE3EFA44631104BD335DC9D980A5002CC7B5A0A2B2&directdownload=1&f=69687367&d=http://cdn.atsh.co/files/.../uposetup.exe

http://en.softonic.com/sads/tracker.php?ev=c&co=BG&sid=fc6216e6fb3516ee0966970af7373551&upv=e26d20b961e3c979b081ec6c28d04543&z=results&sk=0&abt=&eid=&params=F39B2A32BFC101987B1458170C278E031176ABDE618A400FC6FF30446D94EAB656293DEC983AB1FBAFB9AFD5E191CE38617D8261DC0CC0911A480D06364798F0F2139276BBE5CE866555FACFA64653AB6F6E0852887E4A5B02BBE0CC073AC5DCCE78761FE1590F59C0328699D30A451B6081F91F6407AD1634064E9B2B80732ACE866A80B023892BEC7926240D17D8890019F99685A841F7F448EAF6703541177D50AEF0432738DDB544EA95C7763BAC&h=9943995E9FEB6A57C8B6AE6BBD482E8AA799CC764CF60972CA5B3DF9FC48F8F5&directdownload=1&f=69687367&d=http://cdn.atsh.co/files/.../uposetup.exe

http://en.softonic.com/sads/tracker.php?ev=c&co=ZA&sid=6d5a8c9fb69758ca406f1cb3081b93a8&upv=b836a9bb522a61a3efd46a6d9ec5c872&z=results&sk=0&abt=&eid=&params=F39B2A32BFC101987B1458170C278E031176ABDE618A400FC6FF30446D94EAB656293DEC983AB1FBAFB9AFD5E191CE38617D8261DC0CC0911A480D06364798F0F2139276BBE5CE866555FACFA64653AB30F1772A397B5358E9F4A2C7C309B8D58A6A92EDF0464B4268DF54DD356CC329B65E2C7574D6CCCFF0260BAB4A4559C9A3CDC9474A43159A95F9B8F72DB0C3451CEAC49A1D7D616048F95AB8CB0002ED799D7C9304CFF2FEC689386579BC4D2F&h=FA46404A6853543516E331E8967508FA6C3223EF27B15054ABAB4240E7042256&directdownload=1&f=69687367&d=http://cdn.atsh.co/files/.../uposetup.exe

http://en.softonic.com/sads/tracker.php?ev=c&co=PH&sid=19ff5dcc5a5df0212cf8598ed5e86865&upv=6e94cb69244117df58bdbf8c9f122545&z=results&sk=0&abt=&eid=&params=F39B2A32BFC101987B1458170C278E031176ABDE618A400FC6FF30446D94EAB656293DEC983AB1FBAFB9AFD5E191CE381A03EE10F50EE4831061AB340DFBAF4EA7FBE177FAC695649483D9892FB647C71384A9C8025EF46D0F9A0A54AA7052EF77124E8B711ECB1CB34363841B81AAFC3B7FC2A19662B633CEC7FC51DEE56E75CEB1021BC8C32FBCFE6792AA465177AA7BCCE84B0012A37D1DC841367E80428958D5BCD85613169EDB9E57C043AAB2D3&h=D9F3A0B62C0C5C3ABA3E05B83944026156B7FF0158B3B8C887917495EF478FFC&directdownload=1&f=69687367&d=http://cdn.atsh.co/files/.../uposetup.exe

http://en.softonic.com/sads/tracker.php?ev=c&co=LB&sid=353955993516a69ae834be4cecd33335&upv=bf144bde69187ff719b1487c9f9129de&z=results&sk=0&abt=&eid=&params=F39B2A32BFC101987B1458170C278E031176ABDE618A400FC6FF30446D94EAB656293DEC983AB1FBAFB9AFD5E191CE38617D8261DC0CC0911A480D06364798F0F2139276BBE5CE866555FACFA64653AB7678C3BB70DEE8461EB6A89CB163826CD3A458E2DFC8CBBA99A55C040B1F9773C7032AA97938D74B1375DA10D6CB7C935CEAD8C66E2376528ECAE7F64243327D18BCAC103645AC298F1E1F3AD463DA9924827357133CDBBB209CC2F854387182&h=509AE6E7DAE4DF8D7B398CB4D60B53E3D934E211239998FCBFC52C2F1EC922EE&directdownload=1&f=69687367&d=http://cdn.atsh.co/files/.../uposetup.exe

http://en.softonic.com/sads/tracker.php?ev=c&co=IN&sid=c2434435b8dfbe890179605153fa5ab9&upv=0c2672392d01b905664897bb9a8f3032&z=results&sk=0&abt=&eid=&params=F39B2A32BFC101987B1458170C278E031176ABDE618A400FC6FF30446D94EAB656293DEC983AB1FBAFB9AFD5E191CE385600412F9634F13C748886A6E10CE2937671F2CD1B8BDC4D4AC36181095F9670F93E8F42E9513AE9AAB4007CEA989BD0EFB1800D8E1C82E6B5EE7F8879A6BC8220A2CE52E4832AB49E90A63FCBEABC916B0374F922DDEE337FA00D1ED63C8E9B1F3D649E4E9B4AAB03E059019A8C9BEAD049B9F3DABE07550EA405213F868DEB&h=FAFA0085F14AF0B9341FFCA7CA3B0C2A8560A7D6971626C19E1CB34165F592B3&directdownload=1&f=69687367&d=http://cdn.atsh.co/files/.../uposetup.exe

Latest 30 of 36 download URLs

Remove uposetup.exe - Powered by Reason Core Security