PC Performer

Kategorie: Adware und PUAs Schutz verfügbar seit:10 Feb 2012 02:09:29 (GMT)
Typ: Unspecified PUA Zuletzt aktualisiert:01 Jul 2012 20:57:37 (GMT)

Download Kostenloses Virus Removal Tool downloaden – Finden Sie Bedrohungen, die Ihre Virenschutzsoftware übersehen hat

Examples of PC Performer include:

Example 1

File Information

Size
7.4M
SHA-1
83385c7518d52688d2aad94dc50e18b097b319d4
MD5
fcc40b95e7ac2cb6e5a4d5337cf86dbd
CRC-32
7c114cfb
File type
Windows executable
First seen
2012-02-08

Example 2

File Information

Size
3.4M
SHA-1
a75f9c795833f6bf3e9727a50d8058ed7d041049
MD5
d273713f5fd180b527bc1369a4d2d353
CRC-32
78dd427e
File type
Windows executable
First seen
2011-11-25

Runtime Analysis

Dropped Files
  • C:\WINDOWS\Tasks\PC Performer_DEFAULT.job
    Size
    268
    SHA-1
    a12534b10373c0bed05b4331fbe5e9f39c2fc8ee
    MD5
    109c8ebbb7829c36f95bd3f88e103c46
    CRC-32
    e3a21aec
    File type
    application/data
    First seen
    2012-02-09
  • C:\Program Files\PC Performer\Dutch_rcp.ini
    Size
    88K
    SHA-1
    569ef15a91a891fa2dd610a4d1bdf41a7b3eee4a
    MD5
    ea35fc23264c00bfecbb355531aaa9f4
    CRC-32
    f682b676
    File type
    application/octet-stream
    First seen
    2012-02-08
  • C:\Program Files\PC Performer\unins000.msg
  • C:\Program Files\PC Performer\xmllite.dll
  • C:\Documents and Settings\All Users\Start Menu\Programs\PC Performer\Uninstall PC Performer.lnk
    Size
    722
    SHA-1
    658df4ab10c33fc2bc54afdf0aec3690cfa03101
    MD5
    c2dcd3e0d7dc8bb28f581c33102ea3ae
    CRC-32
    65adc044
    File type
    application/octet-stream
    First seen
    2012-02-09
  • C:\Program Files\PC Performer\eng_rcp.ini
    Size
    80K
    SHA-1
    0dc4702c2e63cba1442695b3cb3f1b208a18506d
    MD5
    7346c3c5fde764b3d0f0d37059457b27
    CRC-32
    b910a655
    File type
    application/octet-stream
    First seen
    2012-02-08
  • C:\Program Files\PC Performer\Danish_rcp.ini
    Size
    85K
    SHA-1
    1ebc866c60866325300082da26e3697e4cfa5380
    MD5
    46e9e31d88c62d6992e121d2ab0f154d
    CRC-32
    79d459fc
    File type
    application/octet-stream
    First seen
    2012-02-08
  • C:\Program Files\PC Performer\Swedish_rcp.ini
    Size
    80K
    SHA-1
    e553ff55f82138263a678df60ce0b011f752040c
    MD5
    cdcbc5dfbc8767efdcd4f655452af110
    CRC-32
    a31f6214
    File type
    application/octet-stream
    First seen
    2012-02-08
  • C:\Program Files\PC Performer\install_left_image.bmp
    Size
    153K
    SHA-1
    293db556ee3571882558ecd2e6da55775ed3d8d1
    MD5
    352dedafeb99bbb248229fec01e73777
    CRC-32
    9a509860
    File type
    Device-independent bitmap (DIB) file
    First seen
    2012-02-08
  • C:\WINDOWS\Tasks\PC Performer_UPDATES.job
    Size
    276
    SHA-1
    f96a61cd961d783f45b8a8be5b316602a0a94fdf
    MD5
    aed5af7b7f56f3a14ddcdb5a62b79a3b
    CRC-32
    c3373d2b
    File type
    application/data
    First seen
    2012-02-09
  • c:\Documents and Settings\test user\Application Data\PerformerSoft\PC Performer\eng_rcp.dat
    Size
    39K
    SHA-1
    a54b62db1bc47fd990b4a581578bddb5b3b88660
    MD5
    73de6dd46efff6eeb2fff6cf93a4328c
    CRC-32
    14b71c27
    File type
    application/octet-stream
    First seen
    2012-02-09
  • C:\Program Files\PC Performer\polish_rcp_pl.ini
    Size
    85K
    SHA-1
    0aec8ccee60fe0bd07fc7bbb3908a9cb16ecffbe
    MD5
    9434593d7b5330842b93d5c7635cf7af
    CRC-32
    ff82be0c
    File type
    application/octet-stream
    First seen
    2012-02-08
  • C:\Program Files\PC Performer\unins000.exe
    Size
    1.2M
    SHA-1
    e4e6430afbb8e7f43210eef60f6a3dd934b848b9
    MD5
    0c75bf679268dbdb44a079ceda85421a
    CRC-32
    548f05f5
    File type
    application/x-ms-dos-executable
    First seen
    2012-02-08
  • C:\Program Files\PC Performer\unins000.dat
    Size
    37K
    SHA-1
    0cd8f58a905a87243a4a4c51bc3ce707d9298583
    MD5
    dabfe5ca924b40bb56dedff87b4ec1aa
    CRC-32
    0d1dbde4
    File type
    application/octet-stream
    First seen
    2012-02-09
  • c:\Documents and Settings\test user\Local Settings\Temp\is-NAC81.tmp\sample.tmp
    Size
    1.2M
    SHA-1
    e4e6430afbb8e7f43210eef60f6a3dd934b848b9
    MD5
    0c75bf679268dbdb44a079ceda85421a
    CRC-32
    548f05f5
    File type
    application/x-ms-dos-executable
    First seen
    2012-02-08
  • C:\Program Files\PC Performer\Italian_rcp.ini
    Size
    91K
    SHA-1
    1fcde9183f6123b9012bf2aceb9a8041d1f0791a
    MD5
    856017c9659674bc789b116214c72cce
    CRC-32
    493f4cad
    File type
    application/octet-stream
    First seen
    2012-02-08
  • C:\Documents and Settings\All Users\Start Menu\Programs\PC Performer\Register PC Performer.lnk
    Size
    763
    SHA-1
    5378c62c72e15d5dc02ab67dcefcbf19c9631ee8
    MD5
    0be8510725b94803663e82ad87bd9159
    CRC-32
    87467af7
    File type
    application/octet-stream
    First seen
    2012-02-09
  • C:\Program Files\PC Performer\portugese_rcp_pt.ini
    Size
    88K
    SHA-1
    8fe3e848443a86e099941bae063ccbf19dc884dd
    MD5
    37bb0b58b04946b58ba0061b02db7e32
    CRC-32
    f3704cdf
    File type
    application/octet-stream
    First seen
    2012-02-08
  • C:\Program Files\PC Performer\korean_rcp_ko.ini
    Size
    65K
    SHA-1
    9c9e472db028495fe9f7f65e712d3cfb3c4345b5
    MD5
    daedabaa1934d4e6127103350dd33133
    CRC-32
    40c35f6d
    File type
    application/octet-stream
    First seen
    2012-02-08
  • C:\Program Files\PC Performer\Norwegian_rcp.ini
    Size
    81K
    SHA-1
    19db3a16b6266f9c422758902b01bb5079c52dae
    MD5
    d06d286826354d242c8ab0b40014cb38
    CRC-32
    0fce8c6d
    File type
    application/octet-stream
    First seen
    2012-02-08
  • C:\Program Files\PC Performer\Portuguese_rcp.ini
    Size
    86K
    SHA-1
    69998cac82bc7e452d455d343454fb1ea191cfe8
    MD5
    5c88f9f0887611efa0d3965fc02531e4
    CRC-32
    7d5158e7
    File type
    application/octet-stream
    First seen
    2012-02-08
  • C:\WINDOWS\system32\roboot.exe
    Size
    18K
    SHA-1
    5981e3be592fda3dbcf6f7f6182e7c28ec5a3f76
    MD5
    d57d23471700cd8958e2ee4603510da2
    CRC-32
    6153ecb4
    File type
    application/x-ms-dos-executable
    First seen
    2012-02-08
  • c:\Documents and Settings\test user\Application Data\PerformerSoft\PC Performer\ExcludeList.rcp
  • C:\Program Files\PC Performer\Beforeuninstall.exe
    Size
    899K
    SHA-1
    85ddc0b23e5e2e7d3e35a30700b9e808127ffcc4
    MD5
    97988ae0d350150d4fdbf040967efe7d
    CRC-32
    dd26fbf2
    File type
    application/x-ms-dos-executable
    First seen
    2011-12-26
  • C:\Program Files\PC Performer\greek_rcp_el.ini
    Size
    93K
    SHA-1
    799f867397044c77f465d8bc5a6d6e9a6c59d343
    MD5
    553aef9948609db65397fb39ba3bdc26
    CRC-32
    a36ff924
    File type
    application/octet-stream
    First seen
    2012-02-08
  • C:\Program Files\PC Performer\Japanese_rcp.ini
    Size
    56K
    SHA-1
    498a8984481d93db9f31bcfe20c4675f35ce80f8
    MD5
    7b748a27ebd49ed48a3dc2960c84a663
    CRC-32
    e018d2dc
    File type
    application/octet-stream
    First seen
    2012-02-08
  • c:\Documents and Settings\test user\Application Data\PerformerSoft\PC Performer\log_02-09-2012.log
    Size
    1.4K
    SHA-1
    75aa77fea171310c0552f8e16978f50d9908b7e9
    MD5
    9625bda400f1c364a1f88188f90b5a75
    CRC-32
    7833883c
    File type
    application/octet-stream
    First seen
    2012-02-09
  • C:\Program Files\PC Performer\French_rcp.ini
    Size
    94K
    SHA-1
    e5385742a9d13dda23eb8537cf7cb78f9b61ad5f
    MD5
    cab61b64c67c2ca129508d1c1e06ce16
    CRC-32
    034a4cd7
    File type
    application/octet-stream
    First seen
    2012-02-08
  • C:\Program Files\PC Performer\CleanSchedule.exe
    Size
    132K
    SHA-1
    323b5a63a7a6f6f4385870bd670436483e7ca889
    MD5
    305d45111ee491bf06bdaf49d7930e1a
    CRC-32
    a67009c5
    File type
    application/x-ms-dos-executable
    First seen
    2012-01-24
  • C:\Program Files\PC Performer\TraditionalCn_rcp_zh-tw.ini
    Size
    46K
    SHA-1
    a7dc98709fb37fce6b0b86a476ad429263eb6ed2
    MD5
    c929463e7d4b58936f3ff7fac9ee5dd7
    CRC-32
    d1728766
    File type
    application/octet-stream
    First seen
    2012-02-08
  • C:\Documents and Settings\All Users\Start Menu\Programs\PC Performer\PC Performer.lnk
    Size
    737
    SHA-1
    9ad6975eba5b150c694e7de93491e9b1e3fd693f
    MD5
    66b733379ba4581610b4c58c00249634
    CRC-32
    ddc00334
    File type
    application/octet-stream
    First seen
    2012-02-09
  • c:\Documents and Settings\test user\Application Data\PerformerSoft\PC Performer\TempHLList.rcp
  • C:\Program Files\PC Performer\isxdl.dll
    Size
    153K
    SHA-1
    6bf5b904984f578ce4541d8221c72866a769c440
    MD5
    7fddd56873fe84a1a74bd888db5ee045
    CRC-32
    495e6eaa
    File type
    application/x-ms-dos-executable
    First seen
    2012-02-08
  • C:\Program Files\PC Performer\turkish_rcp_tr.ini
    Size
    86K
    SHA-1
    bc78d8f4795200d68c708be0f8c839686f1be1e3
    MD5
    3e9148b929411189fbcb8ec9522a5255
    CRC-32
    a03e16ef
    File type
    application/octet-stream
    First seen
    2012-02-08
  • C:\Program Files\PC Performer\russian_rcp_ru.ini
    Size
    88K
    SHA-1
    609df3737d83a6fa5bc56032ec2a9572c63e0884
    MD5
    a86a8d9f84ec07c70aa2b9c33d33ffd0
    CRC-32
    e20540c6
    File type
    application/octet-stream
    First seen
    2012-02-08
  • C:\Program Files\PC Performer\German_rcp.ini
    Size
    94K
    SHA-1
    28b043855da088f0b62ff28ce7584a03d9c5a724
    MD5
    a015a6b07cefdcc9657b63044dcddb03
    CRC-32
    2d3b1511
    File type
    application/octet-stream
    First seen
    2012-02-08
  • C:\Program Files\PC Performer\PCPerformer.exe
    Size
    7.4M
    SHA-1
    83385c7518d52688d2aad94dc50e18b097b319d4
    MD5
    fcc40b95e7ac2cb6e5a4d5337cf86dbd
    CRC-32
    7c114cfb
    File type
    Windows executable
    First seen
    2012-02-08
  • C:\Program Files\PC Performer\Finnish_rcp_fi.ini
    Size
    82K
    SHA-1
    0bfbc618223d1808e259cfaddfb9915f98ca1a8f
    MD5
    094b39d833a09ca4de0991fb0a1b3252
    CRC-32
    b8fb20ea
    File type
    application/octet-stream
    First seen
    2012-02-08
  • C:\Documents and Settings\All Users\Desktop\PC Performer.lnk
    Size
    725
    SHA-1
    3a733bbfa83185c7ed52b5f72e89a0f6e58808dd
    MD5
    9405e20f53446e288a0fdada8e3302fb
    CRC-32
    e76a1940
    File type
    application/octet-stream
    First seen
    2012-02-09
  • C:\Program Files\PC Performer\PCPerformer.dll
    Size
    1.6M
    SHA-1
    9f4b45df9dbfa77ee82a460fc11396b2ddbd8839
    MD5
    d3282bc03f69559c45c24731f61ecc46
    CRC-32
    280dcda8
    File type
    application/x-ms-dos-executable
    First seen
    2012-02-08
  • C:\Program Files\PC Performer\Spanish_rcp.ini
    Size
    89K
    SHA-1
    74842fa87d45b0d7a3a6ee8343927f0eb44905a7
    MD5
    d2ca57a4f60550b0966ca576da9faf53
    CRC-32
    89671fd8
    File type
    application/octet-stream
    First seen
    2012-02-08
  • c:\Documents and Settings\test user\Application Data\PerformerSoft\PC Performer\results.rcp
  • C:\Program Files\PC Performer\Chinese_rcp.ini
    Size
    45K
    SHA-1
    3ddb60bf54215bd42a1d9b0e7d29e7ed52de4ffc
    MD5
    db152a0c5886726e8e349c83d57658be
    CRC-32
    75e10dc0
    File type
    application/octet-stream
    First seen
    2012-02-08
Registry Keys Created
  • HKLM\SOFTWARE\PerformerSoft\PC Performer\LANG
    LangID
    0x00000000
  • HKCR\CLSID\{AF175732-0D59-716D-F757-9F1492D808D9}\ProgID
    (Default)
    MSDASCErrorLookup.1
  • HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\PC Performer_is1
    InstallDate
    20120209
  • HKCU\Software\PerformerSoft\PC Performer
    StartAutoTutorial
    0x00000001
  • HKCU\Software\PerformerSoft
    MachineID
  • HKCU\Software\PerformerSoft\PC Performer\LANG
    LangID
    0x00000000
  • HKCU\Software\Microsoft\Windows\CurrentVersion\Run
    RDReminder
    C:\Program Files\PC Performer\PCPerformer.exe -rem
  • HKLM\SOFTWARE\PerformerSoft\PC Performer
    RENEWALURL
    http://www.performersoft.com/pcperformer/register/st.php?renew=1&utm_source=performersoft&utm_campaign=default&utm_medium=newbuild
Registry Keys Modified
  • HKLM\SYSTEM\CurrentControlSet\Services\Schedule
    Start
    0x00000002
Processes Created
  • c:\docume~1\support\locals~1\temp\is-nac81.tmp\sample.tmp
  • c:\program files\pc performer\pcperformer.exe
HTTP Requests
  • http://www.performersoft.com/pcperformer/thankyou.php
DNS Requests
  • www.performersoft.com

Example 3

File Information

Size
598K
SHA-1
faf63e959d07deca60151924cf63e31b171a1348
MD5
a290a6e6b761038aae88c550f0aedd40
CRC-32
344a2758
File type
Windows executable
First seen
2012-07-01

Runtime Analysis

Copies Itself To
  • c:\Documents and Settings\test user\Local Settings\Temp\PC Performer43559.exe
Dropped Files
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\page_1920_attr_3.png
    Size
    8.2K
    SHA-1
    51ff752ff5d60dd519e7b850a11ad51359856ce7
    MD5
    aca750069a6cbdc37974002264473ec4
    CRC-32
    ee48cc8b
    File type
    PNG (Portable Network Graphics) image format
    First seen
    2012-03-06
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\page_1918_feature_.png
    Size
    4.6K
    SHA-1
    a7edcdc1d270330c3451077bdd671e2176ccbda8
    MD5
    4643962f1fbd3e85f72011ee0860d578
    CRC-32
    a20f9387
    File type
    PNG (Portable Network Graphics) image format
    First seen
    2012-05-17
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\page_1921_attr_3.png
    Size
    8.2K
    SHA-1
    51ff752ff5d60dd519e7b850a11ad51359856ce7
    MD5
    aca750069a6cbdc37974002264473ec4
    CRC-32
    ee48cc8b
    File type
    PNG (Portable Network Graphics) image format
    First seen
    2012-03-06
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\page_1929_attr_46.bmp
    Size
    42K
    SHA-1
    a41ae63f80dc451fb68a34f64aa86867f2cdbd6e
    MD5
    19cafe521085d306aa66d256bce120c6
    CRC-32
    d91e5339
    File type
    Device-independent bitmap (DIB) file
    First seen
    2012-03-06
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\1922.html
    Size
    6.5K
    SHA-1
    fc915b65987eccc3313b19f76b1b738fc51f48a1
    MD5
    ccf498c90b8450240352cd89ed41ca46
    CRC-32
    6f37df4a
    File type
    Hypertext Markup Language
    First seen
    2012-06-21
  • c:\Documents and Settings\test user\Desktop\Continue PC Performer installation.lnk
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\pb-bg.jpg
    Size
    333
    SHA-1
    811c6e931da087b2770ca12adb8279f0812c2d5d
    MD5
    2e10180c1033f49fef8881a9d0506dac
    CRC-32
    93de945a
    File type
    JPEG Interchange Format
    First seen
    2012-02-18
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\1921.html
    Size
    6.0K
    SHA-1
    88ca0f703a44ce1d8b08eb3f24a18a8e34cf759b
    MD5
    069394cbdcc68f8507126da2c47c31ae
    CRC-32
    15bb8650
    File type
    Hypertext Markup Language
    First seen
    2012-06-21
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\page_1920_attr_15.png
    Size
    13K
    SHA-1
    f5344a7eb67f3d49ff68f531456528e921dcabb1
    MD5
    3e19ba7e686e10fb597053e7a2e122c2
    CRC-32
    d7bd81e4
    File type
    PNG (Portable Network Graphics) image format
    First seen
    2012-03-06
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\events\events.js
    Size
    9.7K
    SHA-1
    de18d72cbd2741936ad54d1bfc2483ff354c78a3
    MD5
    1a6366ac0f2ee9c4f85ab6d92c67f2cf
    CRC-32
    b47cce08
    File type
    JavaScript
    First seen
    2012-06-21
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\page_1919_attr_3.png
    Size
    8.2K
    SHA-1
    51ff752ff5d60dd519e7b850a11ad51359856ce7
    MD5
    aca750069a6cbdc37974002264473ec4
    CRC-32
    ee48cc8b
    File type
    PNG (Portable Network Graphics) image format
    First seen
    2012-03-06
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\page_1921_feature_.png
    Size
    7.7K
    SHA-1
    4b838441d6fcfc01043f6dd55c886ab88f6fb161
    MD5
    531aa070a9fa057d879cb0419d62cb0e
    CRC-32
    0a913ac5
    File type
    PNG (Portable Network Graphics) image format
    First seen
    2012-02-21
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\2203.html
    Size
    3.5K
    SHA-1
    b505e6715028404ef322bd3da65e1266d5449897
    MD5
    c586eb85afc7898720ee44e218cb9684
    CRC-32
    18cab6ee
    File type
    Hypertext Markup Language
    First seen
    2012-06-21
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\page_1926_attr_46.bmp
    Size
    42K
    SHA-1
    a41ae63f80dc451fb68a34f64aa86867f2cdbd6e
    MD5
    19cafe521085d306aa66d256bce120c6
    CRC-32
    d91e5339
    File type
    Device-independent bitmap (DIB) file
    First seen
    2012-03-06
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\page_1920_feature_.png
    Size
    4.6K
    SHA-1
    a7edcdc1d270330c3451077bdd671e2176ccbda8
    MD5
    4643962f1fbd3e85f72011ee0860d578
    CRC-32
    a20f9387
    File type
    PNG (Portable Network Graphics) image format
    First seen
    2012-05-17
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\ib\trust.gif
    Size
    437
    SHA-1
    f14ef2635cb28a8bc867be1a079169f87de35b29
    MD5
    ca20a3e54659f23c282e968e1f25c45d
    CRC-32
    1222d9ce
    File type
    Graphic interchange format
    First seen
    2012-02-23
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\page_2203_attr_46.bmp
    Size
    42K
    SHA-1
    a41ae63f80dc451fb68a34f64aa86867f2cdbd6e
    MD5
    19cafe521085d306aa66d256bce120c6
    CRC-32
    d91e5339
    File type
    Device-independent bitmap (DIB) file
    First seen
    2012-03-06
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\js\jquery-1.7.min.js
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\ib\b4.gif
    Size
    661
    SHA-1
    5ee26dfb316d3609fcaccf6397d54b1c2e980cc2
    MD5
    3b3924eba4e7ae4a2a99e76df1977794
    CRC-32
    45f1e8d1
    File type
    Graphic interchange format
    First seen
    2012-02-23
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\ib\btn2.png
    Size
    402
    SHA-1
    9c8ac194b8e8f49b0a785220fe24b2affd213284
    MD5
    cf9e964e2540767be74ed19c30267c34
    CRC-32
    59d4b8fa
    File type
    PNG (Portable Network Graphics) image format
    First seen
    2012-03-06
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\pb-bg-right.jpg
    Size
    468
    SHA-1
    3f06444e6b765714a4cef6fadbb41dde408076e4
    MD5
    76b8fc261a0fe9b93823266d92364d48
    CRC-32
    2c1e6dab
    File type
    JPEG Interchange Format
    First seen
    2012-02-18
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\page_1922_feature_205.png
    Size
    2.7K
    SHA-1
    b1b78522e0638ba564c3e7fdd6a5a96278f05794
    MD5
    75739e2888d1881bfeb6393f4727c1d9
    CRC-32
    1e0ec8bb
    File type
    PNG (Portable Network Graphics) image format
    First seen
    2012-06-10
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\1929.html
    Size
    5.1K
    SHA-1
    966d85f951671dcf19b58fa63eceae7d26d58a4f
    MD5
    6bfaadd75e06ef4fdef1a3fc9585564b
    CRC-32
    0ef1661a
    File type
    Hypertext Markup Language
    First seen
    2012-06-21
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\page_1918_attr_3.png
    Size
    8.2K
    SHA-1
    51ff752ff5d60dd519e7b850a11ad51359856ce7
    MD5
    aca750069a6cbdc37974002264473ec4
    CRC-32
    ee48cc8b
    File type
    PNG (Portable Network Graphics) image format
    First seen
    2012-03-06
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\1926.html
    Size
    3.8K
    SHA-1
    5572c03369c4fbafee3e2ef996b907766c4ab84e
    MD5
    3aa8fb1cc99d783f4d22ab6378bca7bd
    CRC-32
    c1b9539a
    File type
    Hypertext Markup Language
    First seen
    2012-05-17
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\ib\corn4.png
    Size
    130
    SHA-1
    9a7d91c91dfc5325bcf082a2fd4b6a26a876327c
    MD5
    365029d515a200667b472e6c21fbbf22
    CRC-32
    18b2dcea
    File type
    PNG (Portable Network Graphics) image format
    First seen
    2012-02-19
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\1920.html
    Size
    5.6K
    SHA-1
    83eac9d710e575f436619641f2d3cf852af0b24d
    MD5
    35f28b9b1cc5a63438c5594bf854b297
    CRC-32
    902e43d5
    File type
    Hypertext Markup Language
    First seen
    2012-06-21
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\ib\corn1.png
    Size
    139
    SHA-1
    02fa1ed9acd529a7f843e2487314c522a99875d1
    MD5
    c5e7aadfabf03e1e0bf154e5f4eb659b
    CRC-32
    2383ba0f
    File type
    PNG (Portable Network Graphics) image format
    First seen
    2012-02-19
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\page_1920_attr_46.bmp
    Size
    42K
    SHA-1
    a41ae63f80dc451fb68a34f64aa86867f2cdbd6e
    MD5
    19cafe521085d306aa66d256bce120c6
    CRC-32
    d91e5339
    File type
    Device-independent bitmap (DIB) file
    First seen
    2012-03-06
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\pb-bg-left.jpg
    Size
    460
    SHA-1
    90d6be20c34d09ee96ae159fd60a4a27111d29d9
    MD5
    00d9cfcf73887764e50af9b60845478d
    CRC-32
    c909eeb7
    File type
    JPEG Interchange Format
    First seen
    2012-02-18
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\page_1926_attr_3.png
    Size
    8.2K
    SHA-1
    51ff752ff5d60dd519e7b850a11ad51359856ce7
    MD5
    aca750069a6cbdc37974002264473ec4
    CRC-32
    ee48cc8b
    File type
    PNG (Portable Network Graphics) image format
    First seen
    2012-03-06
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\page_2048_attr_15.png
    Size
    26K
    SHA-1
    9168c3fc3a755b6eaaa7fa90336007cb1530db6c
    MD5
    d5965a3812531d52a35ecbf7b0186f43
    CRC-32
    e0e7a462
    File type
    PNG (Portable Network Graphics) image format
    First seen
    2012-05-03
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\ib\corn2.png
    Size
    136
    SHA-1
    33a70391ea5178e08fd047df58fc7e9292954f3b
    MD5
    43fd885dd90eb9ac613d8eef27c50e95
    CRC-32
    e2d89cda
    File type
    PNG (Portable Network Graphics) image format
    First seen
    2012-02-19
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\component_360
    Size
    49K
    SHA-1
    5d556c6cfdfa766cb5b5de4c9ce64d510c640572
    MD5
    97b86475f7333ce9a29726c420583a47
    CRC-32
    282b00c9
    File type
    Unspecified binary - probably data
    First seen
    2012-02-19
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\ib\b3.gif
    Size
    384
    SHA-1
    08088a71bdb759efa4ef4e4f45ad914ea6328f26
    MD5
    6b798878e8aa084ee38ea2bb33fabab8
    CRC-32
    8f25fdce
    File type
    Graphic interchange format
    First seen
    2012-02-23
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\1919.html
    Size
    9.0K
    SHA-1
    b2843f21e5ac42e00c831aa9c237d743f9ce99fb
    MD5
    f7d75e36316bef3e14bd9e6890d98417
    CRC-32
    0f8b9d8d
    File type
    Hypertext Markup Language
    First seen
    2012-06-21
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\ajax-loader2.gif
    Size
    6.7K
    SHA-1
    9a7d6b553d4e73edea59f99bd05f3de2662d68ef
    MD5
    f6da23a955b4c5f6888b78d6704bfd83
    CRC-32
    ff0bcf6a
    File type
    Graphic interchange format
    First seen
    2012-02-19
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\ib\arrow.gif
    Size
    207
    SHA-1
    d2eb41a48c05af5f54ba24456ed6f751fa5b0804
    MD5
    e59393726e591e7688132d3e467f9d58
    CRC-32
    b95a72a4
    File type
    Graphic interchange format
    First seen
    2012-02-23
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\ib\main.css
    Size
    8.3K
    SHA-1
    7a0d9fc7e92be2a4a968c0c9b31601b80c6b813e
    MD5
    eb622082fdb08a3495f2770f890494f8
    CRC-32
    4071c7ba
    File type
    Cascading Style Sheet
    First seen
    2012-03-06
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\page_2203_attr_3.png
    Size
    8.2K
    SHA-1
    51ff752ff5d60dd519e7b850a11ad51359856ce7
    MD5
    aca750069a6cbdc37974002264473ec4
    CRC-32
    ee48cc8b
    File type
    PNG (Portable Network Graphics) image format
    First seen
    2012-03-06
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\ib\arrow.png
    Size
    911
    SHA-1
    8e63744f7882a28749389ea8f0ae1532c0bce47b
    MD5
    2552341fe2cff755e80e5063a3b5941c
    CRC-32
    b4980d00
    File type
    PNG (Portable Network Graphics) image format
    First seen
    2012-02-23
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\ib\center2.jpg
    Size
    305
    SHA-1
    ed66236f7db2924ba1f958dca97878b64d539ee5
    MD5
    390596b126edfb80e3ee615d7567689e
    CRC-32
    324cd295
    File type
    JPEG Interchange Format
    First seen
    2012-02-19
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\page_2048_attr_3.png
    Size
    8.2K
    SHA-1
    51ff752ff5d60dd519e7b850a11ad51359856ce7
    MD5
    aca750069a6cbdc37974002264473ec4
    CRC-32
    ee48cc8b
    File type
    PNG (Portable Network Graphics) image format
    First seen
    2012-03-06
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\page_1929_attr_3.png
    Size
    8.2K
    SHA-1
    51ff752ff5d60dd519e7b850a11ad51359856ce7
    MD5
    aca750069a6cbdc37974002264473ec4
    CRC-32
    ee48cc8b
    File type
    PNG (Portable Network Graphics) image format
    First seen
    2012-03-06
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\page_1919_attr_46.bmp
    Size
    42K
    SHA-1
    a41ae63f80dc451fb68a34f64aa86867f2cdbd6e
    MD5
    19cafe521085d306aa66d256bce120c6
    CRC-32
    d91e5339
    File type
    Device-independent bitmap (DIB) file
    First seen
    2012-03-06
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\check.jpg
    Size
    1.1K
    SHA-1
    da754d95145bb72393cf3c65996ef679fa95d736
    MD5
    45be5e2ef98fa9aa42529da98cf9d62b
    CRC-32
    20fb9064
    File type
    JPEG Interchange Format
    First seen
    2012-02-18
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\page_2048_attr_46.bmp
    Size
    42K
    SHA-1
    a41ae63f80dc451fb68a34f64aa86867f2cdbd6e
    MD5
    19cafe521085d306aa66d256bce120c6
    CRC-32
    d91e5339
    File type
    Device-independent bitmap (DIB) file
    First seen
    2012-03-06
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\page_1922_attr_46.bmp
    Size
    42K
    SHA-1
    a41ae63f80dc451fb68a34f64aa86867f2cdbd6e
    MD5
    19cafe521085d306aa66d256bce120c6
    CRC-32
    d91e5339
    File type
    Device-independent bitmap (DIB) file
    First seen
    2012-03-06
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\page_2203_attr_15.png
    Size
    13K
    SHA-1
    f5344a7eb67f3d49ff68f531456528e921dcabb1
    MD5
    3e19ba7e686e10fb597053e7a2e122c2
    CRC-32
    d7bd81e4
    File type
    PNG (Portable Network Graphics) image format
    First seen
    2012-03-06
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\red-pb-act-left.jpg
    Size
    681
    SHA-1
    b30ae124419f96630320e9cb473639dddef74463
    MD5
    66654e879ad2cd806db9851035878b9a
    CRC-32
    c61ded6f
    File type
    JPEG Interchange Format
    First seen
    2012-02-18
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\page_1922_attr_3.png
    Size
    8.2K
    SHA-1
    51ff752ff5d60dd519e7b850a11ad51359856ce7
    MD5
    aca750069a6cbdc37974002264473ec4
    CRC-32
    ee48cc8b
    File type
    PNG (Portable Network Graphics) image format
    First seen
    2012-03-06
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\1925.html
    Size
    5.2K
    SHA-1
    6867230cd23c0dd45a9ac815af965872885e4dd4
    MD5
    ce2ee25597c75d5686579eed04e7c5af
    CRC-32
    12e8ad3f
    File type
    Hypertext Markup Language
    First seen
    2012-06-21
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\page_1925_attr_3.png
    Size
    8.2K
    SHA-1
    51ff752ff5d60dd519e7b850a11ad51359856ce7
    MD5
    aca750069a6cbdc37974002264473ec4
    CRC-32
    ee48cc8b
    File type
    PNG (Portable Network Graphics) image format
    First seen
    2012-03-06
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\ib\lbg-bottom.gif
    Size
    9.1K
    SHA-1
    69d0778cd403608844bd324d3278078c8d2a5421
    MD5
    7ddfe7aae738fd183fb7a05ebf6a7996
    CRC-32
    0e1b8343
    File type
    Graphic interchange format
    First seen
    2012-02-23
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\ib\mid.jpg
    Size
    403
    SHA-1
    f6fdcabf76965d7f38e79b67b34ad5f92e5f5248
    MD5
    59c7970dc9f80fea9efd5be6f3e4cab6
    CRC-32
    3264bcbb
    File type
    JPEG Interchange Format
    First seen
    2012-02-19
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\page_1921_attr_46.bmp
    Size
    42K
    SHA-1
    a41ae63f80dc451fb68a34f64aa86867f2cdbd6e
    MD5
    19cafe521085d306aa66d256bce120c6
    CRC-32
    d91e5339
    File type
    Device-independent bitmap (DIB) file
    First seen
    2012-03-06
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\js\config.js
    Size
    1.1K
    SHA-1
    89420a11047516058b75aa8dc63efce4f14ead27
    MD5
    a466f1a3c27d888fc922706870a672a7
    CRC-32
    c1f3a09f
    File type
    JavaScript
    First seen
    2012-02-18
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\page_1925_attr_46.bmp
    Size
    42K
    SHA-1
    a41ae63f80dc451fb68a34f64aa86867f2cdbd6e
    MD5
    19cafe521085d306aa66d256bce120c6
    CRC-32
    d91e5339
    File type
    Device-independent bitmap (DIB) file
    First seen
    2012-03-06
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\ib\lbg.gif
    Size
    5.3K
    SHA-1
    09236fa3f23e1fca188aaca960363753c5a978eb
    MD5
    180bc08fc2ff239de985ccf1656a3e39
    CRC-32
    b6022cf7
    File type
    Graphic interchange format
    First seen
    2012-02-23
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\ib\lbg-top.gif
    Size
    14K
    SHA-1
    32c7a3f9822c685d086529354c764ef749afe904
    MD5
    cdc14b5c3aae1631cd7474374f558193
    CRC-32
    0248a151
    File type
    Graphic interchange format
    First seen
    2012-02-23
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\js\jquery.noselect.min.js
    Size
    299
    SHA-1
    4223d971949e4cdbcd77e01277f6b63a6a0794e5
    MD5
    5d8695424bd95c0fa7930b9544041b08
    CRC-32
    c48ed906
    File type
    JavaScript
    First seen
    2012-02-18
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\page_1925_attr_15.png
    Size
    13K
    SHA-1
    f5344a7eb67f3d49ff68f531456528e921dcabb1
    MD5
    3e19ba7e686e10fb597053e7a2e122c2
    CRC-32
    d7bd81e4
    File type
    PNG (Portable Network Graphics) image format
    First seen
    2012-03-06
  • c:\Documents and Settings\test user\Local Settings\Temp\~3A6.tmp
    Size
    16
    SHA-1
    8d60afe6af50077d831402063239ec11f5288217
    MD5
    76f221a7eb9700ea43c410e87d0cffd5
    CRC-32
    884e6cc6
    File type
    Unspecified binary - probably data
    First seen
    2012-07-01
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\page_1918_attr_46.bmp
    Size
    42K
    SHA-1
    a41ae63f80dc451fb68a34f64aa86867f2cdbd6e
    MD5
    19cafe521085d306aa66d256bce120c6
    CRC-32
    d91e5339
    File type
    Device-independent bitmap (DIB) file
    First seen
    2012-03-06
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\ajax-loader.gif
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\ib\btn.png
    Size
    716
    SHA-1
    64926c79a672bbe9ff05090e1074e3259fa69557
    MD5
    9143dee981c65f8704b4b1f4cbf120ba
    CRC-32
    9deee75b
    File type
    PNG (Portable Network Graphics) image format
    First seen
    2012-02-23
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\js\smart.js
    Size
    22K
    SHA-1
    21eae1a0489fd7acfe81729291fce2ead102debb
    MD5
    8d3095923d083e7f4af19ee5d9fab1a9
    CRC-32
    9dbd2d12
    File type
    JavaScript
    First seen
    2012-05-01
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\template_40.png
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\red-pb-act.jpg
    Size
    380
    SHA-1
    3fe1a250be8f4631f30d569e9547e8a893616a9b
    MD5
    da7ee492bc775bdb5fee5ca0c2fd3838
    CRC-32
    dc82f9eb
    File type
    JPEG Interchange Format
    First seen
    2012-02-18
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\red-pb-act-right.jpg
    Size
    694
    SHA-1
    22d907e481dfaf7b0935d7632f24bfe1d28900ea
    MD5
    8e245fdba5046bc9370e30d555136691
    CRC-32
    cff0e7cd
    File type
    JPEG Interchange Format
    First seen
    2012-02-18
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\component_442.part
    Size
    1.5M
    SHA-1
    8064e474646eb10c187e5761c0447ab5f5a52c13
    MD5
    133e8c23deec7048d2e7aaf15f18aa75
    CRC-32
    f0164549
    File type
    Unspecified binary - probably data
    First seen
    2012-06-11
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\page_1919_feature_.png
    Size
    7.7K
    SHA-1
    4b838441d6fcfc01043f6dd55c886ab88f6fb161
    MD5
    531aa070a9fa057d879cb0419d62cb0e
    CRC-32
    0a913ac5
    File type
    PNG (Portable Network Graphics) image format
    First seen
    2012-02-21
  • c:\Documents and Settings\test user\Local Settings\Temp\2.tmp
    Size
    85K
    SHA-1
    6bd3b58441f8f92ccfb20d95cd17e392f1921ae7
    MD5
    0d5ca1a54e17320d48cf64765e609467
    CRC-32
    759f2a84
    File type
    Extensible Markup Language (XML)
    First seen
    2012-06-21
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\2048.html
    Size
    3.4K
    SHA-1
    e508e832f98b1750b1ecc8a7252a898dc32faf5d
    MD5
    9d050ac8cf0c3f7de7c92b25a7e2d922
    CRC-32
    61062ff6
    File type
    Hypertext Markup Language
    First seen
    2012-06-21
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\ib\b-bg.gif
    Size
    295
    SHA-1
    40ee0d31bd32ab90a977ebbf640c9c03d5d4bdc5
    MD5
    1fd20d77482fa7374d96fae16c05af33
    CRC-32
    1d588318
    File type
    Graphic interchange format
    First seen
    2012-02-23
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\ib\corn3.png
    Size
    138
    SHA-1
    fd3faa4931c403a62643a08fd368a047bf74c765
    MD5
    228eb9bcf1cc874cdcd2e8f7c9850c8c
    CRC-32
    539f0d54
    File type
    PNG (Portable Network Graphics) image format
    First seen
    2012-02-19
  • c:\Documents and Settings\test user\Local Settings\Temp\ibtmp3f6c444\config\1918.html
    Size
    13K
    SHA-1
    47682103e402e0fbdb721d0582a20d4ec83b17fe
    MD5
    602b10d745dbd8d921b07e21a92fac3b
    CRC-32
    4b3acdbf
    File type
    Hypertext Markup Language
    First seen
    2012-06-21
Registry Keys Created
  • HKCU\Software\Microsoft\Windows\CurrentVersion\Run
    PC Performer43559.exe
    "C:\DOCUME~1\support\LOCALS~1\Temp\PC Performer43559.exe" /XML="C:\DOCUME~1\support\LOCALS~1\Temp\2.tmp" /STP=0:1
Processes Created
  • c:\docume~1\support\locals~1\temp\3.tmp
HTTP Requests
  • http://s3.amazonaws.com/installbrain/bootstrap/444/start.cf
  • http://s3.amazonaws.com/installbrain/bootstrap/444/startgui.cf
  • http://s3.amazonaws.com/installbrain/components/BabProtectSetupv3.cf
  • http://s3.amazonaws.com/installbrain/components/ibarioinstallerv4.cf
  • http://s3.amazonaws.com/installbrain/conditions/bandoocheck.exe
  • http://stats-182385724-1591972470.us-east-1.elb.amazonaws.com/installer/bootstrap.php
DNS Requests
  • d2qsma9t6l5kt7.cloudfront.net
  • s3.amazonaws.com
  • stats-182385724-1591972470.us-east-1.elb.amazonaws.com
  • www.bit89.com

Download Sophos Produkte kostenlos testen
Jetzt downloaden