PDA

View Full Version : Fixed: False positive for PC Performance Optimizer



IntelGuy
2008-07-15, 21:39
Windows Vista IE 7

Spybot 1.6

Performance Optimizer: [SBI $127CC847] Uninstall settings (Registry key, nothing done)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MySecurityCenter PC Performance Optimizer_is1



Company:
Product: Performance Optimizer
Threat: Malware


Description
Performance Optimizer claims to be a registry tool to fix errors. While scanning the computer it will find hundreds of errors that are false positives and wants the user to purchase a licence to fix them.


Checks[1].080714_1006.log:


14.07.2008 10:06:02 - ##### check started #####
14.07.2008 10:06:02 - ### Version: 1.6.0
14.07.2008 10:06:02 - ### Date: 7/14/2008 10:06:02 AM
14.07.2008 10:06:03 - ##### checking bots #####
14.07.2008 10:07:15 - found: Performance Optimizer Uninstall settings
14.07.2008 10:08:12 - found: HitsLink Tracking cookie (Firefox: default)

Checks[1].080714_1008.log:


--- Report generated: 2008-07-14 10:08 ---

Hint of the Day: Click the bar at the right of this to see more information! ()


Performance Optimizer: [SBI $127CC847] Uninstall settings (Registry key, nothing done)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MySecurityCenter PC Performance Optimizer_is1


--- Spybot - Search & Destroy version: 1.6.0 (build: 20080707) ---

2008-07-07 blindman.exe (1.0.0.8)
2008-07-07 SDFiles.exe (1.6.0.4)
2008-07-07 SDMain.exe (1.0.0.6)
2008-07-07 SDUpdate.exe (1.6.0.8)
2008-07-07 SDWinSec.exe (1.0.0.12)
2008-07-07 SpybotSD.exe (1.6.0.30)
2008-07-07 TeaTimer.exe (1.6.0.20)
2008-07-13 unins000.exe (51.49.0.0)
2008-07-07 Update.exe (1.6.0.7)
2008-07-07 advcheck.dll (1.6.1.12)
2007-04-02 aports.dll (2.1.0.0)
2008-06-14 DelZip179.dll (1.79.11.1)
2008-07-07 SDHelper.dll (1.6.0.12)
2008-06-19 sqlite3.dll
2008-07-07 Tools.dll (2.1.5.7)
2008-06-17 Includes\Adware.sbi (*)
2008-07-07 Includes\AdwareC.sbi (*)
2008-06-03 Includes\Cookies.sbi (*)
2008-06-03 Includes\Dialer.sbi (*)
2008-07-07 Includes\DialerC.sbi (*)
2008-06-03 Includes\HeavyDuty.sbi (*)
2008-07-08 Includes\Hijackers.sbi (*)
2008-07-08 Includes\HijackersC.sbi (*)
2008-06-25 Includes\Keyloggers.sbi (*)
2008-07-08 Includes\KeyloggersC.sbi (*)
2004-11-29 Includes\LSP.sbi (*)
2008-07-02 Includes\Malware.sbi (*)
2008-07-08 Includes\MalwareC.sbi (*)
2008-06-17 Includes\PUPS.sbi (*)
2008-07-01 Includes\PUPSC.sbi (*)
2007-11-07 Includes\Revision.sbi (*)
2008-06-10 Includes\Security.sbi (*)
2008-07-08 Includes\SecurityC.sbi (*)
2008-06-03 Includes\Spybots.sbi (*)
2008-06-03 Includes\SpybotsC.sbi (*)
2008-06-17 Includes\Spyware.sbi (*)
2008-07-08 Includes\SpywareC.sbi (*)
2008-06-03 Includes\Tracks.uti
2008-06-24 Includes\Trojans.sbi (*)
2008-07-08 Includes\TrojansC.sbi (*)
2008-03-04 Plugins\Chai.dll
2008-03-05 Plugins\Fennel.dll
2008-02-26 Plugins\Mate.dll
2007-12-24 Plugins\TCPIPAddress.dll

I am part of the beta testing for the MySecurityCenter PC Performance Optimizer and as far as I know this product is not even being marketed yet. Beta testing just finished a week or so ago. One of our beta testers made the above discovery after updating to Spybot S&D 1.6.

This product is based on PC Pitstop's Optimize 2.0 and is authorized for license to and resale by MySecurityCenter. I can be contacted for more information at pcpitstop.com.

Thank you for your assistance.

Yodama
2008-07-16, 07:28
Thank you for reporting this false positive.
The actual detection searches for Sellmosofts Performance Optimizer.
With the next update the detection rules will be narrowed for Sellmosofts Performance Optimizer.