Ge-Forces

Ge-Forces

Known Malware

by BrightCircle Investments Limited

What is Ge-Forces?

Ge-Forces is software application developed by BrightCircle Investments Limited. It is most commonly found on computers running Windows 10 with nearly 50.00% of installations running this operating system. Ge-Forces's installer is typically 10.00 MB in size and installs around 38 files. The most common release is 1.36.01.08 with 80.00% of all installations currently using this version.

Ge-Forces is most popular in the United States with 100.00% of installations residing in this country.

Multiple virus scanners have detected malware in Ge-Forces.

Ge-Forces-bho.dll (MD5: a903e4cbf8332235eb898997a8934beb) has been flagged by 40 scanners:
Scanner Software Result
Lavasoft Ad-Aware Gen:Application.Heur.Ly9@mKPvPKgi
Agnitum Outpost PUA.Toolbar.CrossRider!
AhnLab-V3 Win-PUP/CrossRider
Antiy-AVL GrayWare[WebToolbar:not-a-virus]/Win32.CrossRider.kyc
avast! Win32:Crossrider-CB [PUP]
AVG Generic.619
Avira ADWARE/CrossRid.bqyp
AVware Crossrider (fs)
Baidu-International Adware.Win32.CrossAd.BA
Bitdefender Gen:Application.Heur.Ly9@mKPvPKgi
Bkav FE W32.HfsAdware.52D8
CAT-QuickHeal PUA.BrightCircle.OD6
Cyren W32/S-c19140ac!Eldorado
Dr.Web Trojan.Crossrider1.23051
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.BA potentially unwanted
Fortinet FortiGate Riskware/CrossRider
F-Prot W32/S-c19140ac!Eldorado
F-Secure Gen:Application.Heur.Ly9@mKPvPKgi
G Data Gen:Application.Heur.Ly9@mKPvPKgi
K7 AntiVirus Trojan ( 004af5321 )
K7GW Trojan ( 004af5321 )
Kaspersky not-a-virus:WebToolbar.Win32.CrossRider.kyc
Malwarebytes PUP.Optional.GeForce.A
McAfee Artemis!A903E4CBF833
McAfee-GW-Edition Artemis
MicroWorld-eScan Gen:Application.Heur.Ly9@mKPvPKgi
NANO AntiVirus Trojan.Win32.CrossRid.dnprwg
Panda Antivirus Trj/Genetic.gen
Qihoo-360 Win32/Application.ebf
Rising Antivirus PE:Malware.Obscure!1.9C59
Sophos AppRider
Symantec Adware.Crossid
Tencent Trojan.Win32.Qudamah.Gen.15
Trend Micro TROJ_GEN.F0C2C00AH15
TrendMicro-HouseCall TROJ_GEN.F0C2C00AH15
VIPRE Antivirus Crossrider (fs)
Zillya Adware.CrossRider.Win32.3548
Comodo Security ApplicUnwnt
SUPERAntiSpyware Adware.CrossRider/Variant
Microsoft Security Essentials BrowserModifier:Win32/IeEnablerCby
b6549de6-7523-4ca3-8c57-7b06fd8356a0-7.exe (MD5: c232fb12ba7173bb11f332d422972624) has been flagged by 40 scanners:
Scanner Software Result
Lavasoft Ad-Aware Gen:Application.Heur.dv1@mWK6lwmO
Agnitum Outpost PUA.Toolbar.CrossRider!
AhnLab-V3 PUP/Win32.CrossRider
Antiy-AVL GrayWare[WebToolbar:not-a-virus]/Win32.CrossRider.kyc
avast! Win32:Crossrider-CB [PUP]
AVG Generic.619
Avira ADWARE/CrossRid.bqyp
AVware Crossrider (fs)
Baidu-International Adware.Win32.CrossAd.CD
Bitdefender Gen:Application.Heur.dv1@mWK6lwmO
Bkav FE W32.HfsAdware.52D8
CAT-QuickHeal PUA.BrightCircle.OD6
Comodo Security Application.Win32.CrossRider.CK
Cyren W32/S-dbad4651!Eldorado
Dr.Web Trojan.Crossrider1.23051
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.CD potentially unwanted
Fortinet FortiGate Riskware/CrossRider
F-Prot W32/S-dbad4651!Eldorado
F-Secure Gen:Application.Heur.dv1@mWK6lwmO
G Data Gen:Application.Heur.dv1@mWK6lwmO
K7 AntiVirus Unwanted-Program ( 0040f9e41 )
K7GW Unwanted-Program ( 0040f9e41 )
Kaspersky not-a-virus:WebToolbar.Win32.CrossRider.kyc
Malwarebytes PUP.Optional.GeForce.A
McAfee Artemis!C232FB12BA71
McAfee-GW-Edition Artemis!PUP
MicroWorld-eScan Gen:Application.Heur.dv1@mWK6lwmO
NANO AntiVirus Trojan.Win32.Crossrider1.dmedhk
Panda Antivirus Trj/Genetic.gen
Qihoo-360 Win32/Virus.Adware.de5
Rising Antivirus PE:Trojan.GoogUpdate!6.1E39
Sophos AppRider
SUPERAntiSpyware Adware.CrossRider/Variant
Symantec Trojan.Gen.2
Tencent Trojan.Win32.Qudamah.Gen.2
Trend Micro TROJ_GEN.F0C2C00AE15
TrendMicro-HouseCall TROJ_GEN.F0C2C00AE15
VIPRE Antivirus Crossrider (fs)
Zillya Adware.CrossRider.Win32.1703
Microsoft Security Essentials BrowserModifier:Win32/IeEnablerCby
b6549de6-7523-4ca3-8c57-7b06fd8356a0-6.exe (MD5: fc9ac109dfc0836167b40f89ec8e9903) has been flagged by 43 scanners:
Scanner Software Result
Lavasoft Ad-Aware Gen:Variant.Adware.Kazy.133003
Agnitum Outpost PUA.Toolbar.CrossRider!
AhnLab-V3 PUP/Win32.CrossRider
ALYac Gen:Variant.Adware.Kazy.133003
Antiy-AVL GrayWare[WebToolbar:not-a-virus]/Win32.CrossRider.kyc
Arcabit Trojan.Adware.Kazy.D2078B
avast! Win32:Crossrider-CB [PUP]
AVG Generic.619
Avira ADWARE/CrossRid.bqyp
AVware Crossrider (fs)
Baidu-International Adware.Win32.CrossAd.CD
Bitdefender Gen:Variant.Adware.Kazy.133003
Bkav FE W32.HfsAdware.52D8
CAT-QuickHeal PUA.BrightCircle.OD6
Comodo Security ApplicUnwnt
Cyren W32/Adware.TTLS-1485
Dr.Web Trojan.Crossrider1.23051
Emsisoft Anti-Malware Gen:Variant.Adware.Kazy.133003 (B)
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.CD potentially unwanted
Fortinet FortiGate Riskware/CrossRider
F-Secure Gen:Variant.Adware.Kazy
G Data Gen:Variant.Adware.Kazy.133003
K7 AntiVirus Unwanted-Program ( 0040f9e41 )
K7GW Unwanted-Program ( 0040f9e41 )
Kaspersky not-a-virus:WebToolbar.Win32.CrossRider.kyc
Malwarebytes PUP.Optional.GeForce.A
McAfee Artemis!FC9AC109DFC0
McAfee-GW-Edition Artemis!PUP
MicroWorld-eScan Gen:Variant.Adware.Kazy.133003
NANO AntiVirus Trojan.Win32.Crossrider1.dmjqzq
Panda Antivirus Trj/Genetic.gen
Qihoo-360 HEUR/QVM10.1.Malware.Gen
Sophos AppRider
SUPERAntiSpyware Adware.CrossRider/Variant
Symantec Trojan.Gen.2
Tencent Trojan.Win32.Qudamah.Gen.3
Trend Micro TROJ_GEN.F0C2C00AO15
TrendMicro-HouseCall TROJ_GEN.F0C2C00AO15
VIPRE Antivirus Crossrider (fs)
Zillya Adware.CrossRider.Win32.1586
F-Prot W32/S-dbad4651!Eldorado
Rising Antivirus PE:Trojan.GoogUpdate!6.1E39
Microsoft Security Essentials BrowserModifier:Win32/IeEnablerCby
b6549de6-7523-4ca3-8c57-7b06fd8356a0-5.exe (MD5: eb4cc9aa2420568c94c64a32f8c9279d) has been flagged by 39 scanners:
Scanner Software Result
Lavasoft Ad-Aware Gen:Application.Heur.gv1@m4yfVJiO
Agnitum Outpost PUA.Toolbar.CrossRider!
AhnLab-V3 PUP/Win32.CrossRider
Antiy-AVL GrayWare[WebToolbar:not-a-virus]/Win32.CrossRider.kyc
avast! Win32:Crossrider-CN [PUP]
AVG Crossrider.KIX
Avira ADWARE/CrossRid.bqyp
AVware Crossrider (fs)
Baidu-International Adware.Win32.CrossAd.BM
Bitdefender Gen:Application.Heur.gv1@m4yfVJiO
Bkav FE W32.HfsAdware.52D8
CAT-QuickHeal PUA.BrightCircle.OD6
Cyren W32/Application.OXSY-0380
Dr.Web Trojan.Crossrider1.23051
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.CC potentially unwanted
Fortinet FortiGate Riskware/CrossRider
F-Secure Gen:Application.Heur.gv1@m4yfVJiO
G Data Gen:Application.Heur.gv1@m4yfVJiO
K7 AntiVirus Unwanted-Program ( 0040f9e41 )
K7GW Unwanted-Program ( 0040f9e41 )
Kaspersky not-a-virus:WebToolbar.Win32.CrossRider.kyc
Malwarebytes PUP.Optional.GeForce.A
McAfee Artemis!EB4CC9AA2420
McAfee-GW-Edition Artemis!PUP
MicroWorld-eScan Gen:Application.Heur.gv1@m4yfVJiO
NANO AntiVirus Trojan.Win32.Crossrider1.dmhsci
Panda Antivirus Trj/Genetic.gen
Qihoo-360 Win32/Virus.Adware.de5
Rising Antivirus PE:Malware.Adwapper!6.252F
Sophos AppRider
SUPERAntiSpyware Adware.CrossRider/Variant
Symantec Trojan.Gen.2
Tencent Trojan.Win32.Qudamah.Gen.2
Trend Micro TROJ_GEN.F0C2C00AE15
TrendMicro-HouseCall TROJ_GEN.F0C2C00AE15
VIPRE Antivirus Crossrider (fs)
Zillya Adware.CrossRider.Win32.1684
F-Prot W32/S-95be3f30!Eldorado
Microsoft Security Essentials BrowserModifier:Win32/IeEnablerCby
b6549de6-7523-4ca3-8c57-7b06fd8356a0-2.exe (MD5: 1c2850982922c33c2dd174fb43c79aa1) has been flagged by 40 scanners:
Scanner Software Result
Lavasoft Ad-Aware Gen:Application.Heur.4u1@mGBo1zaO
AhnLab-V3 PUP/Win32.CrossRider
Antiy-AVL GrayWare[WebToolbar:not-a-virus]/Win32.CrossRider.kyc
avast! Win32:Adware-gen [Adw]
AVG Generic.619
Avira Adware/CrossRid.bqyp
AVware Crossrider (fs)
Baidu-International Adware.Win32.CrossAd.BM
Bitdefender Gen:Application.Heur.4u1@mGBo1zaO
Bkav FE W32.HfsAdware.58B9
CAT-QuickHeal PUA.BrightCircle.OD6
Cyren W32/S-95be3f30!Eldorado
Dr.Web Trojan.Crossrider1.144
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.BM potentially unwanted
Fortinet FortiGate Riskware/CrossRider
F-Prot W32/S-95be3f30!Eldorado
F-Secure Gen:Application.Heur.4u1@mGBo1zaO
G Data Gen:Application.Heur.4u1@mGBo1zaO
K7 AntiVirus Unwanted-Program ( 0040f9e41 )
K7GW Unwanted-Program ( 0040f9e41 )
Kaspersky not-a-virus:WebToolbar.Win32.CrossRider.kyc
Malwarebytes PUP.Optional.GeForce.A
McAfee Artemis!1C2850982922
McAfee-GW-Edition Artemis!PUP
Microsoft Security Essentials BrowserModifier:Win32/IeEnablerCby
MicroWorld-eScan Gen:Application.Heur.4u1@mGBo1zaO
NANO AntiVirus Riskware.Win32.CrossRider.dmdmam
Panda Antivirus Trj/Genetic.gen
Qihoo-360 Win32/Virus.WebToolbar.44b
Rising Antivirus PE:Malware.Obscure!1.9C59
Sophos AppRider
Symantec Trojan.Gen.2
Tencent Win32.Adware.Bp-browser.Luqs
Trend Micro TROJ_GEN.F0C2C00AH15
TrendMicro-HouseCall TROJ_GEN.F0C2C00AH15
VIPRE Antivirus Crossrider (fs)
Zillya Adware.CrossRider.Win32.1626
Comodo Security Application.Win32.CrossRider.CK
SUPERAntiSpyware Adware.CrossRider/Variant
Agnitum Outpost PUA.Toolbar.CrossRider!

Startup Entries

Startup tasks:
  • b6549de6-7523-4ca3-8c57-7b06fd8356a0-4.exe is automatically launched at startup through a scheduled task named b6549de6-7523-4ca3-8c57-7b06fd8356a0-4.
  • b6549de6-7523-4ca3-8c57-7b06fd8356a0-11.exe is automatically launched at startup through a scheduled task named b6549de6-7523-4ca3-8c57-7b06fd8356a0-11.
  • 2e0af350-8ab7-4b40-a054-874fd853c2b4-7.exe is automatically launched at startup through a scheduled task named 2e0af350-8ab7-4b40-a054-874fd853c2b4-1.
  • 2e0af350-8ab7-4b40-a054-874fd853c2b4-6.exe is automatically launched at startup through a scheduled task named 2e0af350-8ab7-4b40-a054-874fd853c2b4-6.
  • 2e0af350-8ab7-4b40-a054-874fd853c2b4-5.exe is automatically launched at startup through a scheduled task named 2e0af350-8ab7-4b40-a054-874fd853c2b4-5_user.
  • 2e0af350-8ab7-4b40-a054-874fd853c2b4-2.exe is automatically launched at startup through a scheduled task named 2e0af350-8ab7-4b40-a054-874fd853c2b4-2.

Software Details

URL:
Support:
Installation path:
C:\Program Files\ge-forces
Uninstaller:
C:\Program Files\Ge-Forces\Uninstall.exe /fcp=1
Size:
10.00 MB
Language:
English

Ge-Forces Executable Details

Primary executable:
utils.exe
Name:
Ge-Forces
Path:
C:\Program Files\ge-forces\utils.exe
MD5:
SHA-1:
SHA-256:
Files installed by Ge-Forces
File Type Filename MD5
EXE
a7d9b086af935614d521931e39cb2a03
EXE
DLL
c1462b8a338293ab5130f4338ba6a012
DLL
8f9a98c6398e545f7a6a19724a34ba15
EXE
626233468e73a1c2381ddca20c21992b
EXE
e053baee2d9079d470b076f8faf4a8d8
DLL
2787e21268ccb821c14aad682e23b590
DLL
a903e4cbf8332235eb898997a8934beb
EXE
9eb389b2aa8cc9427b5778b40d53c474
EXE
43bda14862f91b2be8425c988214202f