Lop

Description: Adware
Risk Level: High
Date of First Occurence: Monday, April 21, 2008
Software Developer: (unknown)
Brief Info: Lop adds its own toolbar and search button to Internet Explorer.
Removal: This threat can be removed using "Spyware Terminator"

ELIMINAR SPYWARE »

Geographical Distribution of Threat "Lop"

Threat Info

View All

Detected Items

  1. Detected Files: %ALLUSERS_APPDATA%\Bind army eggs joy\Grim user.exe MD5: 155C45B80964D75C519D9266C3E07095 Size:765952 %ALLUSERS_APPDATA%\city about store file\slow delete.exe MD5: 0D66209B94C848FFBBA970050CFE6C5C Size:749568 %ALLUSERS_APPDATA%\city about store file\Remote glue.exe MD5: CFDA89445FB37BA312EE12D8D9DEA15F Size:798720 %ALLUSERS_APPDATA%\Bind army eggs joy\DASH MOVE.exe MD5: 63D9885968A0B743403AD6940017DC04 Size:741376 %ALLUSERS_APPDATA%\Bind army eggs joy\Win Bat.exe MD5: 56779B09CC99C820DB20B9CC455D3A86 Size:765952 %SystemDiskRoot%\TIGEN001.EXE MD5: 6A9A3025899A06F9CA7D599108B7E37A Size:45056 %ALLUSERS_APPDATA%\city about store file\Skip Warn.exe MD5: 07E4E07B5FB52EE935F9B02B6AC2B6BF Size:2945024 %PROGRAMFILES%\Get-Torrent\TorrentManager.dll MD5: B11BAB8BE54FA8AF4309C8A58CA6C763 Size:77824 MD5: 32D97886327EC6582E58F2A1CDEFB8CE Size:225280 %PROGRAMFILES%\Get-Torrent\SkinCrafterDll.dll MD5: 5502215E7FFA1D1D91D1444AC5FB640E Size:417792 MD5: A58E04E672E05DB3B717561B2E486DDC Size:495616 %PROGRAMFILES%\Get-Torrent\unins000.exe MD5: B022413A764971D41F4836942ACCB5DA Size:685545 MD5: B6F240EA4EBC8BA04296E3F36BCB533C Size:685402 MD5: 2C7F66C22A8F8B3644A0C6C5ACFC860E Size:691689 MD5: B3232C5D7EB87259E92A4218FC1EAB5C Size:685546 %PROGRAMFILES%\Get-Torrent\Get-Torrent.exe MD5: 201D1BE632396975850DDAA0D4594D82 Size:810496 MD5: 4C83D78516765924D4C7B0E3601F714E Size:805376 MD5: D1DAEEDFB565A42EECE5B9EDE9502C0F Size:2165760 MD5: 11D7E82357E48C2BD58150C666472710 Size:813568 MD5: 7C4B69C134764B587C50670978F10704 Size:2165760 %SYSDIR%\dwdsregt.exe MD5: 16E1D6257A8A0241066E11DD6BB3133F Size:45080 MD5: C7FF98A1A8D01604C5B15B1C8664FF3D Size:45089 MD5: 1A6449E0401148ACA89B8D28AF729B67 Size:49179 MD5: 877B505F966D5771983EBCC575F0BC23 Size:45071 MD5: 54017434CBD5624D897EB033AB7B4ACC Size:45066 MD5: E5D42CEE68F642AB86865A189CFA12C3 Size:45087 MD5: 465BDC60D931F2486F17E05B6D9926B9 Size:45065 %ALLUSERS_APPDATA%\city about store file\Nurb poll.exe MD5: 7F526922147BBFFC14473E1362F3FF70 Size:5591552 MD5: B1EA41CE9993C5F4C53BDDCCB1F0BD51 Size:5447680 MD5: CC8F499CAA3AC0C613FD36BA2D11802A Size:5340672 MD5: 69D53E9FF6E4D59D3F4E2F3E143F80DC Size:5340672 MD5: 975BB4B4E04BD757B1B6CF9201585135 Size:5217792 MD5: A256ADB4D5A29782C18F81E3B6B1EC18 Size:5274624 MD5: EB327DB08BD47D84AFB5F36FF5E259E5 Size:5111808 MD5: F0C6FFA967BF12ECE0127CF6F8128D86 Size:5069824 MD5: 7E2F79E4F59B4B4ECA7CAF0B80065279 Size:4696576 MD5: 14D9C34F41AF67B3402DFD4F55AF3A51 Size:4024320 %SYSDIR%\DWDSREGT.EXE MD5: FA738C0ECCDC179AC679DCA28964D578 Size:45065 MD5: 842544E53A61953C7EDA53B43FB46189 Size:49174 MD5: EED9AE38B0EF3C2D37CF331B4B7B5392 Size:49189 MD5: B1AAC61407367DE3C22F63D858F68186 Size:45068 MD5: 9FB8A5C3B54960DAE1A408F2CBE162AA Size:45072 MD5: 40237B6C47D5E46B38313FD482F8AF74 Size:45082 MD5: A889CBAF55036020465B9BFC0D1122E8 Size:49158 MD5: 2428BA3CD2941DAF23299EE7AD5BEF99 Size:49165 %ALLUSERS_APPDATA%\Bind army eggs joy\Wave bird.exe MD5: 0042B8853305AD4AF9A1105EA051DE45 Size:1032192 %ALLUSERS_APPDATA%\Bind army eggs joy\third extra.exe MD5: 39F36D82B96435CE9F6525B3C7D50D25 Size:782336 %ALLUSERS_APPDATA%\city about store file\cash up.exe MD5: A69A212C1AB7CB78B8181AEF0FED3377 Size:729088 %ALLUSERS_APPDATA%\city about store file\Amok Plus.exe MD5: F87A5D135F27D9A4D396F3ED754A31CD Size:708608 %ALLUSERS_APPDATA%\Bind army eggs joy\Atom Test.exe MD5: 6745C058ECFE402DB1793311332851F2 Size:2435584 MD5: 3C89CAD3EDB7EFC7AC1B373FBDBCB915 Size:2423808 MD5: BD5A613F2CB8B4B1C1645F1C2716C19A Size:2413056 %ALLUSERS_APPDATA%\city about store file\Bat Fork.exe MD5: 1897EA85717D5F7A9F4C5E6B74D65329 Size:729088 %ALLUSERS_APPDATA%\Bind army eggs joy\Mags Setup.exe MD5: D8A2707FD15DD05E1A8D5E9CF4F0E306 Size:704512 %ALLUSERS_APPDATA%\Bind army eggs joy\Blue close.exe MD5: 19B082191DAD671500AAF8DF6653A6BC Size:753664 %ALLUSERS_APPDATA%\city about store file\start real.exe MD5: 8902CBC04B58CFEF96B07F6A51B0DE41 Size:1683456 %ALLUSERS_APPDATA%\city about store file\32 01.exe MD5: 3217BCCF5FCB5FF0CB18B39E4F7B99D7 Size:8196608 %ALLUSERS_APPDATA%\Bind army eggs joy\stop team.exe MD5: ED137608975B26F517279067F2F22147 Size:5327872 %ALLUSERS_APPDATA%\Bind army eggs joy\Debug Mix.exe MD5: 2DCCFEE7236985C117A3FFF9A59F4E99 Size:3496448 MD5: 7BB3E2713DF6E54850186E45F5B4808B Size:3395072 %SYSDIR%\cxdxregt.exe MD5: 16BD43710469359AD9BC89A25AE86EC0 Size:45056 %ALLUSERS_APPDATA%\Bind army eggs joy\Tray Pile.exe MD5: ABAFE193B912548FB21FCFD016FC8319 Size:3031552 %ALLUSERS_APPDATA%\city about store file\once copy.exe MD5: C618EF4C514FCCD7D82C9D70A1C9ADFC Size:9652736 %ALLUSERS_APPDATA%\Bind army eggs joy\nurb load.exe MD5: 9DA47F6121BD6B1F2397E623F56A59AB Size:1043968 %ALLUSERS_APPDATA%\Bind army eggs joy\OKAY NOUN.exe MD5: 22AF0F4F846C3BD3ADF8176AFACDF8DC Size:2507776 %ALLUSERS_APPDATA%\Bind army eggs joy\Keep Axis.exe MD5: 93F3A0B915785B4F159EA75F12E13C1E Size:3758592 %ALLUSERS_APPDATA%\city about store file\Road copy.exe MD5: AABA534C9FBE4D972B25BFB05BBDCC8C Size:2514944 %ALLUSERS_APPDATA%\Bind army eggs joy\long inside.exe MD5: 56EB04DF269E6A7F0E821DE988771D5C Size:1206784 %ALLUSERS_APPDATA%\Bind army eggs joy\Thunk Glue.exe MD5: 9F427B877B8AD3B45FE744EC3435A95D Size:3073536 %ALLUSERS_APPDATA%\city about store file\noun does.exe MD5: 465CE4FB576CAF89C7754BAB5C05DF7B Size:1218048 %ALLUSERS_APPDATA%\Bind army eggs joy\Mess Mode.exe MD5: 8797479732363B579ED5BF8820F57DDF Size:2147840 %ALLUSERS_APPDATA%\city about store file\Lite Media.exe MD5: 7F2FFBE04527F92BF20CB4D163E4D37C Size:6487552 MD5: 2F6BDC1A5FDC3E1778B31760D1A15435 Size:5640192 MD5: A40DABB2423A5A73F82A6C701490917C Size:4765184 %ALLUSERS_APPDATA%\Bind army eggs joy\Trans part.exe MD5: FE0AAD68EC6D7DAB15780BE8D22DDD1B Size:555520 %ALLUSERS_APPDATA%\city about store file\BURN LOGO.exe MD5: 6D3578B9CABC31CABB9AA95F760884A3 Size:4066304 %ALLUSERS_APPDATA%\city about store file\Army Road.exe MD5: AA366339FB0C91792C11356862BEC7A7 Size:960000 %ALLUSERS_APPDATA%\city about store file\roam intra.exe MD5: 0B735FC7F772E9D73F027C0A2B6891B6 Size:3684864 %ALLUSERS_APPDATA%\Bind army eggs joy\byte close.exe MD5: 9932093171284B41DF00170FB240DE02 Size:581632 %ALLUSERS_APPDATA%\city about store file\win does.exe MD5: 43842A186D90A206021A6954C4A0FB41 Size:957440 %ALLUSERS_APPDATA%\Bind army eggs joy\Frag Help.exe MD5: 831805FFE01988BB6B01E9F2A47750A5 Size:963072 MD5: EB6763EB5E2862CE5E95138295FAE7F5 Size:949760 %ALLUSERS_APPDATA%\Bind army eggs joy\admin wipe.exe MD5: 5DE41992BCF17621610DC959F48A0972 Size:714240 %ALLUSERS_APPDATA%\Bind army eggs joy\Flaw else.exe MD5: DBBB92503F508B5CD93624AC720DCC33 Size:697856 %ALLUSERS_APPDATA%\Bind army eggs joy\store dart.exe MD5: 69A6AAE59D0692102055BFCD31E4B944 Size:4358656 MD5: 8385A314E89B650CB6374644B399F026 Size:3224064 MD5: 79E9E8ABEC8E2EA0487FB2C984EA6181 Size:701440 %ALLUSERS_APPDATA%\Bind army eggs joy\readme ref.exe MD5: 89D081243F6CAA96F382DD05F9DC6ABE Size:6293504 MD5: 37C9AC7FD39E540EAB79EA445264D485 Size:6258176 MD5: 3D6CE24C799F93D046EC8AE18AF9017A Size:5031936 %ALLUSERS_APPDATA%\Bind army eggs joy\Download Soft.exe MD5: BBB58E969A8BBCC5C02FC131B8C03A2F Size:1299968 %ALLUSERS_APPDATA%\Bind army eggs joy\grid bat.exe MD5: 14A4BB44DEC6A5A8793972AF0E07033B Size:732672 %ALLUSERS_APPDATA%\Bind army eggs joy\Bold Grey.exe MD5: 86287099A9A4894030D3E8637F7DA97D Size:3466752 %ALLUSERS_APPDATA%\city about store file\TRANS DEAD.exe MD5: 0EF43AB1E75284A511359974F8F6FCEE Size:5924352 MD5: 99135AE549C8E53AB212081B46FFB379 Size:5854208 MD5: 531D91CFEC347579F6DDC387C980DB16 Size:555520 %ALLUSERS_APPDATA%\city about store file\anti program.exe MD5: 15072FBE7466E5A1BAA302D4C2D5C439 Size:532480 %ALLUSERS_APPDATA%\city about store file\Drive Internet.exe MD5: 9381C37691359CA15527193C23F54018 Size:3151872 %ALLUSERS_APPDATA%\city about store file\sign beep.exe MD5: 9144399546476E97BEB30AFD17DC0592 Size:1073152 %ALLUSERS_APPDATA%\Bind army eggs joy\meal meta.exe MD5: 1A2441CB48C604F33412F28837FB4221 Size:716288 MD5: 7B143CD1FBCC010394EED3112A5B50E5 Size:715776 MD5: CE67268FE692424E6923C1220155292B Size:713728 %ALLUSERS_APPDATA%\city about store file\Tons Book.exe MD5: 01F8EDE8007E2B9C13FB008C1C094DF0 Size:2659328 %ALLUSERS_APPDATA%\city about store file\Hide Amen.exe MD5: 680193E07053CF5FF56352E06722BC66 Size:8491008 MD5: 01FE2ACE110A684650CB362BB52A998D Size:8306176 %ALLUSERS_APPDATA%\Bind army eggs joy\owns htm.exe MD5: E0F235B63FD43999FB3809FEB61A9087 Size:2388992 MD5: A4EFCF7CDC80284FB05D9E703CE4C6A3 Size:1515520 %ALLUSERS_APPDATA%\Bind army eggs joy\tick extra.exe MD5: 394F3288A4064785D24510C18ED6FC3A Size:1792512 %ALLUSERS_APPDATA%\Bind army eggs joy\Bits Bait.exe MD5: 40547AC9C55736FF09DD4DDCCB1A79E7 Size:1542144 %ALLUSERS_APPDATA%\Bind army eggs joy\frag keep.exe MD5: D3FF8E668A42E468F6E8BAC4DDF51710 Size:2135040 %ALLUSERS_APPDATA%\Bind army eggs joy\Hide Grim.exe MD5: 3EDE43E4C5C221AB003087EF960CB52D Size:512512 %ALLUSERS_APPDATA%\Bind army eggs joy\okay glue.exe MD5: 098D3D38BEB4A93D315748130D1FB08D Size:1121792 MD5: 1DCD9B40A0A44E3AD273C1E8F173CDBF Size:1102848 MD5: E6AED3A2CA39717704F8F366336F0B2E Size:1100288 %ALLUSERS_APPDATA%\city about store file\bows math.exe MD5: DC435E0D8D5865E442F6D206C51068F4 Size:2267648 MD5: 3F4668EEFE2D4A143B51A8E50F2C574B Size:2170368 %ALLUSERS_APPDATA%\Bind army eggs joy\Bend dale.exe MD5: 8FF6A2581F472091E453B76264CFC51C Size:5917184 %ALLUSERS_APPDATA%\city about store file\bib regs.exe MD5: CA67F6C01C8A27A9AB7A69CCDF6D9D14 Size:3315200 %ALLUSERS_APPDATA%\city about store file\Drv noun.exe MD5: 619A82AD784E78184FD981320AB9DB93 Size:2490880 %ALLUSERS_APPDATA%\city about store file\jugs chic.exe MD5: 969676DB5D0A8954563067AECA3AC5D5 Size:1175552 %ALLUSERS_APPDATA%\city about store file\slow rdr.exe MD5: AEC8620178A72A1F864AEA93926A5B0C Size:2674688 %ALLUSERS_APPDATA%\city about store file\road settings.exe MD5: 5CEE45D5BC51D6D33CF5629028D4FAAB Size:1789952 %ALLUSERS_APPDATA%\Bind army eggs joy\EXIT HIDE.exe MD5: 179BEBE9F050BF198A4FEF6473A2F1E5 Size:1340416 %ALLUSERS_APPDATA%\Bind army eggs joy\Dog Readme.exe MD5: FF86D08344C4644CC9B960A09042A43E Size:1278464 %ALLUSERS_APPDATA%\city about store file\ROAD FORK.exe MD5: C07A508260074995248975FC6869422E Size:538624 %ALLUSERS_APPDATA%\Bind army eggs joy\bat nurb.exe MD5: 13B6D92844F2A88468BC2D0474C0FCE4 Size:1220096 %ALLUSERS_APPDATA%\city about store file\city win.exe MD5: 98CD897AF1F09AE6528B551EB1488493 Size:3444224 MD5: AF13A5D05A91154899BC8F20A3B89AA7 Size:2535936 %ALLUSERS_APPDATA%\city about store file\hold first.exe MD5: 395AC3FB7AB22B0475348C58143CBFDD Size:495104 %ALLUSERS_APPDATA%\city about store file\roam dash.exe MD5: E87BAC2DC02389C44FB700D4FE768BC1 Size:2272256 MD5: 026DBCF978269ACC6E60864444E5FDE8 Size:531968 %ALLUSERS_APPDATA%\Bind army eggs joy\ISO REGS.exe MD5: 37CA280C6175D8E09D9106797B1EBAAE Size:540672 %ALLUSERS_APPDATA%\Bind army eggs joy\once hold.exe MD5: 06F8FDD45A54DDCE7C9870C8261A88E8 Size:537600 %ALLUSERS_APPDATA%\Bind army eggs joy\grim loud.exe MD5: A666EAD2EA6B4061567CDFF80A1A159E Size:767488 %ALLUSERS_APPDATA%\Bind army eggs joy\Hide Dead.exe MD5: 0CF7BBC28CC59EC6E7622260C3F06108 Size:1226752 %PROGRAMFILES%\Get-Torrent\minime.exe MD5: BB69A67F44DB88F46AEAE354108A625C Size:237568 MD5: 06CFEDEB2F7B11CA76771D0B97B4A67E Size:393216 MD5: 32EC537FB84E6A66D04F5EE8C94DFE42 Size:304128 MD5: F65CED8733D086A9DA33EB434560D78D Size:239104 MD5: DF8BFB9B47BC7A04D760F19E589E6576 Size:241664 %PROGRAMFILES%\Get-Torrent\WakeService.exe MD5: 4023173DE74A1ED1CF8F3C6ABF234F76 Size:135168 %ALLUSERS_APPDATA%\Bind army eggs joy\chic sign.exe MD5: E6F202CE30C1FE1C130D39971481BCF0 Size:1828864 %ALLUSERS_APPDATA%\Bind army eggs joy\bird blue.exe MD5: 7E332D90DB3A7F4651648AF7F7214971 Size:6289408 MD5: 9D61663EB18D5DF31747411CC5B4EBA6 Size:6167552 %ALLUSERS_APPDATA%\city about store file\hide mapi.exe MD5: 5A71F995EE077E77064A84E7FA8CAC61 Size:723968 MD5: 318EF065D1F6F86D2A63FE9DB9E53CB9 Size:643584 %ALLUSERS_APPDATA%\Bind army eggs joy\media comp.exe MD5: 4B9D226E851DDBD9B5411F9B8B59BC44 Size:748032 %ALLUSERS_APPDATA%\Bind army eggs joy\grim beep.exe MD5: 6316B863CDBCD07C1A3F8E4B1F23B46E Size:881664 %ALLUSERS_APPDATA%\Bind army eggs joy\FIVE BONE.exe MD5: 75BB416E9D60A20BAAD59B459FC4D1C2 Size:849408 %ALLUSERS_APPDATA%\city about store file\Curb road.exe MD5: 0B63639DB4AF024127847F70FD585C57 Size:1959424 MD5: 4F86D38CAA842160BCDD6FFE0D734D87 Size:535040 %ALLUSERS_APPDATA%\city about store file\Proc Byte.exe MD5: B2A9A8C29A8798DE900A5DFAA8254901 Size:3944448 %ALLUSERS_APPDATA%\Bind army eggs joy\enc remote.exe MD5: EAE51AF30B2C1DACF9CD80155DA70CCF Size:2442240 MD5: 9A039267F5BACE2A5FF0F1904425F912 Size:2225152 MD5: D3B69CE5828BF3355DA72C5195821D2C Size:2093056 MD5: 97CF1A9408529CEF7CF75AB4FC22580E Size:2033152 %ALLUSERS_APPDATA%\Bind army eggs joy\window else.exe MD5: 6C2F27BF68453C31780BB41D6C59C51B Size:2007040 MD5: A3DB6B802D04413B56ECC0AB0C351220 Size:1995264 %ALLUSERS_APPDATA%\Bind army eggs joy\Stop Size.exe MD5: 53CED31D4EECD7C08D4C2A23C1DCEB44 Size:1489408 %ALLUSERS_APPDATA%\city about store file\ONE META.exe MD5: 8459A84BCC308B7714CF084B0C60705B Size:3526144 %ALLUSERS_APPDATA%\city about store file\Axis Second.exe MD5: 5F7F5A9F4500ECE863A2C9856D1B722F Size:649216 %ALLUSERS_APPDATA%\city about store file\anti mags.exe MD5: DB4CDBB95E19260C946E4657EA3CBA48 Size:622080 %ALLUSERS_APPDATA%\Bind army eggs joy\Tons Ace.exe MD5: 25479236884482DDED2AC07E7D783F1B Size:4326400 %ALLUSERS_APPDATA%\city about store file\Mix jugs.exe MD5: 933388C367C6439BC9986C0AC5F9586A Size:912896 %ALLUSERS_APPDATA%\Bind army eggs joy\VIEW AXIS.exe MD5: E6DCC5308CD1CCE2F8C3AAC46E7E07BA Size:482816 %ALLUSERS_APPDATA%\city about store file\safe surf.exe MD5: B3C8B61382B7E00A099EE7557EA1EDB6 Size:996864 %ALLUSERS_APPDATA%\city about store file\wave acid.exe MD5: CFFBBFE26E70DCD2926562FE9CDBBF8D Size:490496 %ALLUSERS_APPDATA%\city about store file\EACH EXTRA.exe MD5: 05883915B238B848A3CB774E2A75EBF4 Size:664576 %ALLUSERS_APPDATA%\Bind army eggs joy\hold debug.exe MD5: 08C37F950770497219E25AAF28A166B7 Size:2547200 %ALLUSERS_APPDATA%\city about store file\Burn Bike.exe MD5: 0F4BB8787790CE05B49E1E3571FDD904 Size:1696256 %ALLUSERS_APPDATA%\city about store file\mapi dale.exe MD5: 9BE4A6DE2A1E92BD35F901C806CDBDA4 Size:1518592 %ALLUSERS_APPDATA%\Bind army eggs joy\Plan Dog.exe MD5: 6219C75CA724EABD0BB2EEBF8B9E7435 Size:3665408 %ALLUSERS_APPDATA%\Bind army eggs joy\Mix bat.exe MD5: 3D81BBCBB08CA4EA368FDF9E59221EFE Size:2352640 %ALLUSERS_APPDATA%\city about store file\vc chin.exe MD5: 6F32E6101A36C46EEB64E537551631C4 Size:1229312 %ALLUSERS_APPDATA%\Bind army eggs joy\chin locks.exe MD5: EE3481B680D779DF663AB5D7746E10F1 Size:752128 %ALLUSERS_APPDATA%\city about store file\jugs flap.exe MD5: E21F1CC4FD4E2A9E09B9EB51C0BA623F Size:2312704 %ALLUSERS_APPDATA%\Bind army eggs joy\Flap meow.exe MD5: 3286C13C93ED81EA7DBABE3171AF17BB Size:1778688 %ALLUSERS_APPDATA%\city about store file\info joy.exe MD5: 377438DBAFD6A8ED83ECAE864657FA4E Size:1167872 %ALLUSERS_APPDATA%\Bind army eggs joy\Seek Two.exe MD5: 11E76EFE050648A08B5F7B588E39CC27 Size:1750016 %ALLUSERS_APPDATA%\Bind army eggs joy\Aim soft.exe MD5: A17AC6F01162DD03F99689FE9F2700AE Size:1502720 MD5: 658338C5A5F7DFAE52BE44F15B7ABA5D Size:1477632 MD5: 19533A64D17B0C7042ACB248AACCCAF0 Size:1423360 MD5: 43DF96FFA812EBB0D3416830620C8B7A Size:1414656 MD5: 3CC258B9BAB40ED19C58D4B4C473D9D5 Size:1421824 MD5: 93DCCF3292964E9A32AFE34582D5B3AB Size:1401344 MD5: 29BCD55AFB87BEEB0A0E153EF22264C6 Size:1412096 MD5: 152FB80C0A3522344E2DA86333555E5E Size:1364992 MD5: 164E8E10A585FDCB3F3DE603C0A7BDB6 Size:1348096 MD5: EAB44254905D7ED44E8E349BE069759B Size:1264128 MD5: 204B20B76ECD20710A2273345E44007D Size:1256960 MD5: E2F38C91D196C264E67CDFA201E0CB0A Size:1206784 and more.... %APPDATA%\tofareraci\systvmrs.exe MD5: C0D0976AF00C26AF6917F42F8EC2FE57 Size:4608 %ALLUSERS_APPDATA%\Bind army eggs joy\Proxy Third.exe MD5: 379F926CC2DB66BF085E3D81F3A2C9EB Size:4049920 %ALLUSERS_APPDATA%\city about store file\License face.exe MD5: 0BB7C541D2763119A99ED86BF8320DB3 Size:1427968 %ALLUSERS_APPDATA%\city about store file\exit dale.exe MD5: F36F040A3F036926DBA318B6962536BE Size:2393600 %ALLUSERS_APPDATA%\city about store file\dash 32.exe MD5: F6FB290357BE721C3A1969F7317C3C1B Size:970752 %ALLUSERS_APPDATA%\city about store file\Idle program.exe MD5: 30EFD93574C816B73501135F3F7869AF Size:610816 %ALLUSERS_APPDATA%\Bind army eggs joy\Proc Lies.exe MD5: E2EFBCC511975AE950E878335B8361EC Size:5434368 %ALLUSERS_APPDATA%\city about store file\Deaf Bike.exe MD5: 87FA17CCF791655AFD06071BBA94CCD1 Size:1304576 %ALLUSERS_APPDATA%\city about store file\Build wipe.exe MD5: D3C2290980AC463CD6F861BBFA69010C Size:2409984 %ALLUSERS_APPDATA%\city about store file\option less.exe MD5: D43602020A07E4A89756EBF5C8B58395 Size:3860992 %ALLUSERS_APPDATA%\Bind army eggs joy\Second Proxy.exe MD5: 088F6FB82778E7D6F94040BFD4E6B4DF Size:1875456 MD5: 44BA0B6B73E2E29DACA05BDD59C0D9A9 Size:1652736 %ALLUSERS_APPDATA%\Bind army eggs joy\file bleh.exe MD5: 2F7ADA557DD8654FCFFF015849786CF1 Size:3746304 MD5: 9F38EE389F9C9114BA1D98D915288CF0 Size:2049024 %ALLUSERS_APPDATA%\Bind army eggs joy\start real.exe MD5: B735B534E54E7C0AAF2CBA7FCD28934A Size:3529728 %ALLUSERS_APPDATA%\Bind army eggs joy\About Trans.exe MD5: B270BF3DCEB5BB2091C42692C17EA2EC Size:604160 %ALLUSERS_APPDATA%\Bind army eggs joy\Up ref.exe MD5: 1D4A7A8804C13243239C8A1E21545CB3 Size:2972672 %ALLUSERS_APPDATA%\Bind army eggs joy\play shim.exe MD5: C3AEE88CDF9C10FF2CB588D8866B1E4B Size:860672 %ALLUSERS_APPDATA%\city about store file\army hole.exe MD5: 691B989931A17BA280935160C0068CAA Size:3606016 %ALLUSERS_APPDATA%\city about store file\SETTINGS COMP.exe MD5: 1D68977D91B713E3DB7C0A175F2BF126 Size:3074560 %ALLUSERS_APPDATA%\city about store file\Kind New.exe MD5: 01BA23E91A86DD45440E5347471180FA Size:1978368 %ALLUSERS_APPDATA%\city about store file\okay curb.exe MD5: 41C9AF5FBC3BCE949C398FB8C3F5A927 Size:3218432 %ALLUSERS_APPDATA%\city about store file\Exit intra.exe MD5: C478AD1A753976FC3989BAE0E26EC67F Size:1823232 %ALLUSERS_APPDATA%\Bind army eggs joy\Blue Regs.exe MD5: 2822DE0309850C65028123413FAAA2A4 Size:2959360 %ALLUSERS_APPDATA%\Bind army eggs joy\Gpl Internet.exe MD5: CC1C1E8BCA651941F26D66159402B230 Size:3815424 %ALLUSERS_APPDATA%\city about store file\Two else.exe MD5: 03CF639CD4C75D777E715D8D131E7D94 Size:691200 %ALLUSERS_APPDATA%\city about store file\Surf First.exe MD5: 82BF07D33208B5E8330B2A8B167582F1 Size:3993600 %ALLUSERS_APPDATA%\Bind army eggs joy\Cake cast.exe MD5: F21BDA3B62A592A2226DD3C57604C733 Size:717824 %ALLUSERS_APPDATA%\Bind army eggs joy\THAT KNOB.exe MD5: 0C86118915B7A7634816C59FEF95ECFE Size:3487232 %ALLUSERS_APPDATA%\Bind army eggs joy\Mix okay.exe MD5: 7AC817E63F2DA7BC84DF59080BD83343 Size:2714112 %ALLUSERS_APPDATA%\Bind army eggs joy\Army Bias.exe MD5: B5ECF10ACB9CCB1FAECF962768FF481D Size:4638208 %ALLUSERS_APPDATA%\Bind army eggs joy\Knob Less.exe MD5: D7E8AB57B802D5143EB76FF990F63952 Size:1474560 %ALLUSERS_APPDATA%\city about store file\slow film.exe MD5: A3273930AF5CC5A0EF1A6922CFC0E06A Size:2726912 %ALLUSERS_APPDATA%\city about store file\Beep Test.exe MD5: 2AF305073DD4E9DAB3260EA09FAFA581 Size:1436672 %ALLUSERS_APPDATA%\Bind army eggs joy\Thunk math.exe MD5: 6A7C8DA814C7EB6BCF2227E1BEE61195 Size:576000 %ALLUSERS_APPDATA%\city about store file\Way Joy.exe MD5: 84F4701146FDD5BCF38C313883FE8027 Size:815104 %ALLUSERS_APPDATA%\city about store file\1 2.exe MD5: 6723E43DF01AB4C2AD6EADBA120E6FFA Size:2597888 %ALLUSERS_APPDATA%\Bind army eggs joy\platform spam.exe MD5: 599BAB8E6709CAC58D6A652D8886C689 Size:2274816 %ALLUSERS_APPDATA%\city about store file\drv bits.exe MD5: 953EDB65F5D335AE9564193DBDD3C216 Size:2054656 %ALLUSERS_APPDATA%\city about store file\Vga flap.exe MD5: 4F7151AC62C8CE6EB5424F91FFF02F23 Size:608256 %ALLUSERS_APPDATA%\city about store file\thunk spam.exe MD5: 48307744779EF32A0027520493C6BEDA Size:2516480 MD5: 3E30AF1794168B0BB28273C66C57FF27 Size:2510848 %ALLUSERS_APPDATA%\Bind army eggs joy\Ping Once.exe MD5: 0B4689958986D7652C11DF15E9D49A95 Size:3584000 %ALLUSERS_APPDATA%\city about store file\bird heck.exe MD5: 1C871A1825DEBAF86D7E0FA8B0FF88DB Size:745472 %ALLUSERS_APPDATA%\city about store file\save jugs.exe MD5: 97ED89D9432D3AEA25F210DA123BA8FF Size:3044864 %ALLUSERS_APPDATA%\city about store file\setup mode.exe MD5: FAF30D1ADC2F4DB89A5EE3B014AA19AF Size:3584000 MD5: C5DD450DFBD983C3FCC07F83E1993A6F Size:3517952 %ALLUSERS_APPDATA%\Bind army eggs joy\Bleh view.exe MD5: 4742A18E9DE6C05A14742FC4E9AF9FCB Size:2306048 %ALLUSERS_APPDATA%\Bind army eggs joy\cdrom view.exe MD5: 0925194F0819630E7ACEB7BE6EAB8019 Size:1047552 %ALLUSERS_APPDATA%\Bind army eggs joy\Aim joy.exe MD5: 7CD5D38DE8B22B7EC94F3EA78DBFA109 Size:2530304 MD5: A18AEE428F566F955731FCEF1D3B9BC5 Size:2159104 MD5: 749AF0060D79C1783B7DE10BF0509A39 Size:1784320 %ALLUSERS_APPDATA%\Bind army eggs joy\meow bait.exe MD5: B496FCD39EF213D7A1270F37748F9AF4 Size:1246208 %ALLUSERS_APPDATA%\Bind army eggs joy\dumb option.exe MD5: D9ECB210840F23384B8071B5CE2F510A Size:1123328 %ALLUSERS_APPDATA%\city about store file\Meta Bat.exe MD5: 47C12EF73B4642CDD67A55E8C3D94473 Size:2703872 %ALLUSERS_APPDATA%\city about store file\Safe Settings.exe MD5: 2B8EB94FABE367B758C28BD0F56F4F3E Size:2480128 MD5: C6A91784AEE6830D6C243CD86B6627FB Size:2463744 %ALLUSERS_APPDATA%\city about store file\Ford meal.exe MD5: E7EB6E4D01AF4EF8145327044DE069A5 Size:1819136 %ALLUSERS_APPDATA%\Bind army eggs joy\part remote.exe MD5: ED5BDC30194E611B98CC69F5E4483E2D Size:2520576 MD5: 66A86D26704ACFC721BE33E17A294245 Size:2320896 %ALLUSERS_APPDATA%\Bind army eggs joy\Hold hole.exe MD5: 3089641861929152A56C08A1C0994EE4 Size:3350016 MD5: 06CA987D6F869E190D4B62349541D57F Size:3269632 %ALLUSERS_APPDATA%\Bind army eggs joy\Part army.exe MD5: 532A9B3AA56EE40AA05A00B32D013B4B Size:1158144 %ALLUSERS_APPDATA%\city about store file\Gram seek.exe MD5: C406F7D37046AA5D6832EF568B7590BF Size:3244544 MD5: A6F923B46AA4C6374D303D69AC19D586 Size:3064320 MD5: B22BC3EC75E0FE1460457EA3DA024CBF Size:2376192 %ALLUSERS_APPDATA%\city about store file\Delete mess.exe MD5: B34C03870D722185CC34BC03663EC1DE Size:778752 %APPDATA%\MailDriveLog\SKIPPLUSFORD.exe MD5: EBAB1F823B1AF2013229D3CADCB0A19A Size:411136 %ALLUSERS_APPDATA%\Bind army eggs joy\axis bold.exe MD5: 46B823C300792EEC8EBBCFFFBC869548 Size:1328640 %ALLUSERS_APPDATA%\Bind army eggs joy\Idol road.exe MD5: 63C25D2851B04D3ED0F8E31D5712EF65 Size:876544 %ALLUSERS_APPDATA%\Bind army eggs joy\build global.exe MD5: BDAEE707848B46018363D58D6FFFBD87 Size:1221120 %ALLUSERS_APPDATA%\Bind army eggs joy\Bags Math.exe MD5: 49CD2ED0A120ACAE2E9E0476CCBC37BA Size:2963968 %ALLUSERS_APPDATA%\city about store file\the upload.exe MD5: 0C3D3A60DC25A5547600DED371B4F4E2 Size:3000832 %ALLUSERS_APPDATA%\city about store file\Bin Software.exe MD5: 6DD041F3B014D55BCC46459A4799E82B Size:1446912 %ALLUSERS_APPDATA%\city about store file\wipe anti.exe MD5: 32C51DE5D7AA6609D803D2D41E2BAFC0 Size:650752 %ALLUSERS_APPDATA%\Bind army eggs joy\grim htm.exe MD5: E037BAC40D793B375E4FF16D620AFB50 Size:1433600 %ALLUSERS_APPDATA%\city about store file\Funk slow.exe MD5: 71CC9E9D224F8D10661AA745A0D0835A Size:1034240 %ALLUSERS_APPDATA%\Bind army eggs joy\Window trust.exe MD5: 3B583A265123E9E72B9A86318B26E0AF Size:607744 %ALLUSERS_APPDATA%\city about store file\Multi mail.exe MD5: 47696F6494A1EE8CB33DB5452502A42F Size:2510848 %ALLUSERS_APPDATA%\city about store file\extra atom.exe MD5: 2DB0DFB3D4431C29BBFF07D157259BD7 Size:1998336 %ALLUSERS_APPDATA%\city about store file\bleh that.exe MD5: F653B77E826437F568D4F6EF083F7773 Size:1994752 %ALLUSERS_APPDATA%\city about store file\SAVE ITCH.exe MD5: 67910BF630B1E9C46F27E9CD61E80B7E Size:884736 %ALLUSERS_APPDATA%\city about store file\FACE NEW.exe MD5: 5B78E06356EFB33520D7EBD698392731 Size:1947648 %ALLUSERS_APPDATA%\Bind army eggs joy\acid debug.exe MD5: FFB007A1BEE970AE71F879974AB42F6C Size:1542656 %ALLUSERS_APPDATA%\city about store file\four eggs.exe MD5: FB3FFDFFF9117BA4CB3BF331335892FE Size:4257280 %ALLUSERS_APPDATA%\city about store file\boob pure.exe MD5: 4FF8116FBEC1470218041A52B3EEC36F Size:2288640
  2. Detected Files with variable Filenames: MD5: CBEAFE4ECE63BA5C2DEAA602BD2FEB3C Size: 586240 %TEMP%\bisA.exe %TEMP%\bis62.exe %TEMP%\bis49.exe %TEMP%\bis3E.exe

Detecting items list:

  1. Files by Name %APPDATA%\signglueball\grim kind.exe %APPDATA%\Anteooze\BYTE BARB GRID.EXE %APPDATA%\TeamLoudFord\POLL EGGS.EXE %ALLUSERS_APPDATA%\BEEPINSIDEPILEOKAY\REGS BARB.EXE %sysdir%\RRDSREGM.EXE %ALLUSERS_APPDATA%\MODEMAPIDATEDENT\BOWS MIX.EXE %sysdir%\DWDSREGT.EXE %APPDATA%\FlagCashLink\RealThis.exe %APPDATA%\LIST REGS BONE JUMP\VIEW NOUN.EXE %USERPROFILE%\Datos de programa\Dog Dent Move\BARB BALM LIST.EXE %APPDATA%\Move Rdr\BOWS MFCD.EXE %APPDATA%\Time bat settings\FaceAce.exe %APPDATA%\Knob Dart Bits\Warn first proxy.exe %APPDATA%\FREE GREAT FORK OPEN\CITYDOWNLOAD.EXE %APPDATA%\Gridweb\GramFour.exe %APPDATA%\BOLT CHIC THAT README\GLUE GRIM.EXE %APPDATA%\surfbattype\Gram flaw.exe %APPDATA%\SLOW WAVE KEEP GREY\litepoll.exe %APPDATA%\option 16\UPLOAD FLAG.EXE %APPDATA%\AMENFILEWAVEVIEW\liteacid.exe %APPDATA%\Comp frag grim\skip log.exe %APPDATA%\TOFARERACI\SYSTVMRS.EXE %APPDATA%\9BD729C.EXE %sysdir%\9BD729C.EXE %APPDATA%\C7828C4D.EXE %APPDATA%\shimcurbidolheck\third default.exe %APPDATA%\SHIMCURBIDOLHECK\LOUDSTUPID.EXE %APPDATA%\Pure Drive Readme\MOREMANAGERTIME.EXE %APPDATA%\D56A7972.EXE %sysdir%\D56A7972.EXE %systemdiskroot%\TIGEN001.EXE %sysdir%\cxdxregt.exe %sysdir%\keksysi6.exe %sysdir%\kwinmrag.exe %sysdir%\kwinnsap.exe %sysdir%\mwinssag.exe %sysdir%\nwinnpex.exe %sysdir%\qdxregwq.exe %sysdir%\rldsregk.exe %sysdir%\rldsregp.exe %sysdir%\rmdsregr.exe %sysdir%\rrdsregj.exe %sysdir%\rrdsregp.exe %systemdiskroot%\Documents and Settings\Owner\Application Data\thisdead\akxsvpiu.exe %ALLUSERS_APPDATA%\Bind army eggs joy\Close ante.exe %ALLUSERS_APPDATA%\amok curb type bind\CLOSE SCR README.exe %systemdiskroot%\Documents and Settings\Owner\Application Data\thisdead\Date Active Ref.exe %systemdiskroot%\Documents and Settings\Owner\Application Data\thisdead\Date Deaf Sixth.exe %systemdiskroot%\Documents and Settings\Owner\Application Data\thisdead\DvdCashStore.exe %ALLUSERS_APPDATA%\Bind army eggs joy\enc part.exe %ALLUSERS_APPDATA%\amok curb type bind\grid file ante.exe %systemdiskroot%\Documents and Settings\Owner\Application Data\thisdead\kowmbtiw.exe %ALLUSERS_APPDATA%\Bind army eggs joy\loud data.exe %ALLUSERS_APPDATA%\amok curb type bind\Mfcd dead site.exe %PROGRAMFILES%\Get-Torrent\minime.exe %APPDATA%\thisdead\mqwdiyva.exe %APPDATA%\thisdead\ofwvwdfr.exe %ALLUSERS_APPDATA%\Bind army eggs joy\Open Store.exe %ALLUSERS_APPDATA%\amok curb type bind\pile team vga.exe %ALLUSERS_APPDATA%\amok curb type bind\plus media debug.exe %APPDATA%\thisdead\xvdmkwbu.exe %ALLUSERS_APPDATA%\city about store file\two curb.exe %PROGRAMFILES%\Get-Torrent\Get-Torrent.exe %START_PROGRAMSALL%\Get-Torrent\Get-Torrent.lnk %START_PROGRAMSALL%\Get-Torrent\Uninstall Get-Torrent.lnk %APPDATA%\Get-Torrent\Data\downloads.dat %APPDATA%\Get-Torrent\Data\metadata.dat
  2. Files by MD5 MD5: 5DBF24A75F520CB77DAA2B19256B0207 Size: 15525 MD5: C296BC6EFDBEF211E11A0A6045FE7FC9 Size: 364810 MD5: 32CE51DCFBACA419131510FDD6314CC5 Size: 202230
  3. Files by Directories %APPDATA%\teamloudford %APPDATA%\onceroadhelp %APPDATA%\MODEMAPIDATEDENT %APPDATA%\loudvgampegbows %APPDATA%\helpclosetestcdrom %systemdiskroot%\Documents and Settings\Owner\Application Data\thisdead %ALLUSERS_APPDATA%\Bind army eggs joy %ALLUSERS_APPDATA%\amok curb type bind %ALLUSERS_APPDATA%\city about store file %PROGRAMFILES%\Get-Torrent %START_PROGRAMSALL%\Get-Torrent %APPDATA%\Get-Torrent
  4. Files by CLSID or Name CLSID=4252639F-8C42-41D3-9EF6-6A190506C2AD CLSID=78C095DE-7EF9-CF9F-FA6E-30A720DA6DFE CLSID=4B7A2A27-7023-0229-8352-2D7C4103CF81
  5. Registry Keys HKLM\SOFTWARE\Classes\Get-Torrent HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Get-Torrent_is1 HKCR\Get-Torrent HKLM\SOFTWARE\Classes\TorrentManager.WebManager HKLM\SOFTWARE\Classes\TorrentManager.WebManager.1 HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Longhelpone HKCU\Software\Owns Dash Debugprogram\CASH BEND DOWNLOAD HKCU\Software\WakeNet\Get-Torrent
  6. Registry Values HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run ValueName=Store file readme bash Value=%ALLUSERS_APPDATA%city about store file\two curb.exe HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List ValueName=C Value=%PROGRAMFILES%\Get-Torrent\Get-Torrent.exe:?:Enabled:Torrent P2P application

« Go to Software Database