The-Go-Photo-it-v11

The-Go-Photo-it-v11

Known Toolbar

by BrightCircle Investments Limited

What is The-Go-Photo-it-v11?

The-Go-Photo-it-v11 is software application developed by BrightCircle Investments Limited. It is most commonly found on computers running Windows 7 with nearly 71.43% of installations running this operating system. The-Go-Photo-it-v11's installer is typically 18.00 MB in size and installs around 328 files. The most common release is 1.35.12.18 with 40.00% of all installations currently using this version.

The-Go-Photo-it-v11 is most popular in the United States with 28.32% of installations residing in this country.

The-Go-Photo-it-v11 adds 1 scheduled task to the Windows Task Scheduler launching the program at randomly scheduled times.

Multiple virus scanners have detected malware in The-Go-Photo-it-v11.

309bf83c-e8bc-4966-a485-d2b4d3db313d-7.exe (MD5: 8820dad7a4ad67dd514b0d6266270f2b) has been flagged by 27 scanners:
Scanner Software Result
Lavasoft Ad-Aware Gen:Application.Heur.9u1@mCXzDZfO
AhnLab-V3 PUP/Win32.CrossRider
avast! Win32:Malware-gen
Avira ADWARE/CrossRider.Gen7
AVware Crossrider (fs)
Baidu-International PUA.Win32.CrossRider.BBM
Bitdefender Gen:Application.Heur.9u1@mCXzDZfO
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.BM
F-Secure Gen:Application.Heur.9u1@mCXzDZfO
G Data Gen:Application.Heur.9u1@mCXzDZfO
Kaspersky not-a-virus:WebToolbar.Win32.CrossRider.lpz
Malwarebytes PUP.Optional.GoPhotoIt.A
McAfee Artemis!8820DAD7A4AD
McAfee-GW-Edition Artemis
MicroWorld-eScan Gen:Application.Heur.9u1@mCXzDZfO
Panda Antivirus Trj/Genetic.gen
Qihoo-360 HEUR/QVM10.1.Malware.Gen
Sophos Generic PUA GA
Tencent Win32.Adware.Bp-browser.Luqs
VIPRE Antivirus Crossrider (fs)
ALYac Gen:Variant.Adware.Graftor.171733
Emsisoft Anti-Malware Gen:Variant.Adware.Graftor.171733 (B)
Fortinet FortiGate Riskware/CrossRider
TrendMicro-HouseCall Suspicious_GEN.F47V0128
Comodo Security Application.Win32.Plush.GRI
AVG Generic.95F
IKARUS anti.virus Trojan.GoogUpdate
309bf83c-e8bc-4966-a485-d2b4d3db313d-6.exe (MD5: 75582873314e5538d58492926b2117cc) has been flagged by 47 scanners:
Scanner Software Result
Lavasoft Ad-Aware Gen:Variant.Adware.Kazy.133003
AhnLab-V3 PUP/Win32.CrossRider
ALYac Gen:Variant.Adware.Kazy.133003
Antiy-AVL GrayWare[WebToolbar:not-a-virus]/Win32.CrossRider.lpz
avast! Win32:Crossrider-CD [PUP]
AVG Generic.2FB
Avira Adware/CrossRider.ZR
AVware Crossrider (fs)
Baidu-International Adware.Win32.CrossAd.BM
Bitdefender Gen:Variant.Adware.Kazy.133003
Bkav FE W32.HfsAdware.A232
CAT-QuickHeal PUA.BrightCircle.OD6
Dr.Web Trojan.Crossrider1.15372
Emsisoft Anti-Malware Gen:Variant.Adware.Kazy.133003 (B)
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.CD potentially unwanted
Fortinet FortiGate Riskware/CrossRider
F-Secure Gen:Variant.Adware.Kazy
G Data Gen:Variant.Adware.Kazy.133003
K7 AntiVirus Unwanted-Program ( 0040fa071 )
K7GW Unwanted-Program ( 0040fa071 )
Kaspersky not-a-virus:WebToolbar.Win32.CrossRider.lpz
Malwarebytes PUP.Optional.GoPhotoIt.A
McAfee Artemis!75582873314E
McAfee-GW-Edition Artemis!PUP
MicroWorld-eScan Gen:Variant.Adware.Kazy.133003
NANO AntiVirus Trojan.Win32.Crossrider1.dnjzlj
Panda Antivirus Trj/Genetic.gen
Qihoo-360 HEUR/QVM10.1.Malware.Gen
Sophos Generic PUA HI
Symantec Adware.Crossid
Tencent Win32.Adware.Bp-browser.Luqs
Trend Micro TROJ_GEN.R047C0EBC15
TrendMicro-HouseCall TROJ_GEN.R047C0EBC15
VIPRE Antivirus Crossrider (fs)
Zillya Adware.CrossRider.Win32.2974
Jiangmin Trojan/NSIS.ccv
Vba32 AntiVirus Trojan.GoogUpdate
Agnitum Outpost PUA.Toolbar.CrossRider!
Clam AntiVirus Win.Adware.Application-522
Cyren W32/Application.EUSN-4914
Rising Antivirus PE:Malware.CrossRider!6.229B
SUPERAntiSpyware Adware.CrossRider/Variant
Comodo Security Application.Win32.Plush.GRI
F-Prot W32/S-95be3f30!Eldorado
Microsoft Security Essentials BrowserModifier:Win32/IeEnablerCby
nProtect Trojan-Clicker/W32.Agent.1866208
IKARUS anti.virus not-a-virus:WebToolbar.CroRi
309bf83c-e8bc-4966-a485-d2b4d3db313d-5.exe (MD5: adff7701e6b84ad2d34e78d8d2ab0f5f) has been flagged by 29 scanners:
Scanner Software Result
Lavasoft Ad-Aware Gen:Application.Heur.gv1@mOOkPcjO
AVG Generic.2FB
Avira ADWARE/CrossRider.Gen4
AVware Crossrider (fs)
Baidu-International PUA.Win32.CrossRider.bBM
Bitdefender Gen:Application.Heur.gv1@mOOkPcjO
Dr.Web Trojan.Crossrider1.15379
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.BM potentially unwanted
Fortinet FortiGate Riskware/CrossRider
F-Secure Gen:Application.Heur.gv1@mOOkPcjO
G Data Gen:Application.Heur.gv1@mOOkPcjO
Kaspersky not-a-virus:WebToolbar.Win32.CrossRider.lpz
Malwarebytes PUP.Optional.GoPhotoIt.A
McAfee Artemis!ADFF7701E6B8
McAfee-GW-Edition Artemis
MicroWorld-eScan Gen:Application.Heur.gv1@mOOkPcjO
Panda Antivirus Trj/Genetic.gen
Qihoo-360 HEUR/QVM10.1.Malware.Gen
Sophos Generic PUA CI
Symantec Adware.Crossid
Tencent Win32.Adware.Bp-browser.Luqs
VIPRE Antivirus Crossrider (fs)
AhnLab-V3 PUP/Win32.CrossRider
avast! Win32:Malware-gen
ALYac Gen:Variant.Adware.Graftor.171733
Emsisoft Anti-Malware Gen:Variant.Adware.Graftor.171733 (B)
TrendMicro-HouseCall Suspicious_GEN.F47V0128
Comodo Security Application.Win32.Plush.GRI
IKARUS anti.virus Trojan.GoogUpdate
309bf83c-e8bc-4966-a485-d2b4d3db313d-4.exe (MD5: 65c9d7ba3e3126a43d7f47a6e30ca167) has been flagged by 24 scanners:
Scanner Software Result
Lavasoft Ad-Aware Gen:Application.Heur.Cv1@mmI4NPjO
AhnLab-V3 PUP/Win32.CrossRider
avast! Win32:Malware-gen
Avira ADWARE/CrossRider.Gen7
Baidu-International PUA.Win32.CrossRider.bBV
Bitdefender Gen:Application.Heur.Cv1@mmI4NPjO
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.BV
Fortinet FortiGate Riskware/CrossRider
G Data Gen:Application.Heur.Cv1@mmI4NPjO
Kaspersky not-a-virus:WebToolbar.Win32.CrossRider.lpz
Malwarebytes PUP.Optional.GoPhotoIt.A
McAfee Artemis!65C9D7BA3E31
McAfee-GW-Edition BehavesLike.Win32.BadFile.th
MicroWorld-eScan Gen:Application.Heur.Cv1@mmI4NPjO
Sophos Generic PUA OG
Tencent Win32.Adware.Bp-browser.Luqs
TrendMicro-HouseCall Suspicious_GEN.F47V0128
AVware Crossrider (fs)
Comodo Security Application.Win32.Plush.GRI
F-Secure Gen:Application.Heur.6v1@mS34OQaO
Panda Antivirus Trj/Genetic.gen
VIPRE Antivirus Crossrider (fs)
AVG Generic.95F
IKARUS anti.virus Trojan.GoogUpdate
309bf83c-e8bc-4966-a485-d2b4d3db313d-2.exe (MD5: e5cd022b3c8e1d73e3a1347c3cbdb53c) has been flagged by 31 scanners:
Scanner Software Result
Lavasoft Ad-Aware Gen:Variant.Adware.Kazy.133004
AhnLab-V3 PUP/Win32.CrossRider
ALYac Gen:Variant.Adware.Kazy.133004
AVG Generic.2FB
Avira ADWARE/CrossRider.Gen7
AVware Crossrider (fs)
Baidu-International PUA.Win32.CrossRider.BBM
Bitdefender Gen:Variant.Adware.Kazy.133004
Emsisoft Anti-Malware Gen:Variant.Adware.Kazy.133004 (B)
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.BM potentially unwanted
Fortinet FortiGate Riskware/CrossRider
F-Prot W32/S-95be3f30!Eldorado
F-Secure Gen:Variant.Adware.Kazy.133004
G Data Gen:Variant.Adware.Kazy.133004
Kaspersky not-a-virus:WebToolbar.Win32.CrossRider.lpz
Malwarebytes PUP.Optional.GoPhotoIt.A
McAfee Artemis!E5CD022B3C8E
McAfee-GW-Edition Artemis
MicroWorld-eScan Gen:Variant.Adware.Kazy.133004
Panda Antivirus Trj/Genetic.gen
Qihoo-360 Win32/Virus.Adware.de5
Rising Antivirus PE:Malware.Obscure!1.9C59
Sophos Generic PUA FC
Symantec Adware.Crossid
Tencent Win32.Adware.Bp-browser.Luqs
VIPRE Antivirus Crossrider (fs)
Dr.Web Trojan.Crossrider1.15379
avast! Win32:Malware-gen
TrendMicro-HouseCall Suspicious_GEN.F47V0128
Comodo Security Application.Win32.Plush.GRI
IKARUS anti.virus Trojan.GoogUpdate

Software Behaviors

Scheduled tasks:
  • 1afa8b90-f6b3-42ab-a882-8ec63992db3d-5.exe is scheduled as a task named '1afa8b90-f6b3-42ab-a882-8ec63992db3d-5_user'.

Startup Entries

Startup tasks:
  • b5c0f8c6-9ca9-4c8d-b90f-e89ac3a61dc2-1-7.exe is automatically launched at startup through a scheduled task named b5c0f8c6-9ca9-4c8d-b90f-e89ac3a61dc2-7.
  • b5c0f8c6-9ca9-4c8d-b90f-e89ac3a61dc2-6.exe is automatically launched at startup through a scheduled task named b5c0f8c6-9ca9-4c8d-b90f-e89ac3a61dc2-6.
  • b5c0f8c6-9ca9-4c8d-b90f-e89ac3a61dc2-4.exe is automatically launched at startup through a scheduled task named b5c0f8c6-9ca9-4c8d-b90f-e89ac3a61dc2-4.
  • b5c0f8c6-9ca9-4c8d-b90f-e89ac3a61dc2-10.exe is automatically launched at startup through a scheduled task named b5c0f8c6-9ca9-4c8d-b90f-e89ac3a61dc2-10_user.
  • b5c0f8c6-9ca9-4c8d-b90f-e89ac3a61dc2-1-6.exe is automatically launched at startup through a scheduled task named b5c0f8c6-9ca9-4c8d-b90f-e89ac3a61dc2-1-6.
  • 303b71a9-9ce8-4ac7-9b0c-93cefd86f194-6.exe is automatically launched at startup through a scheduled task named 303b71a9-9ce8-4ac7-9b0c-93cefd86f194-6.

Software Details

URL:
–
Support:
–
Installation path:
C:\Program Files\the-go-photo-it-v11
Uninstaller:
C:\Program Files\The-Go-Photo-it-v11\Uninstall.exe /fcp=1
Size:
18.00 MB
Language:
English

The-Go-Photo-it-v11 Executable Details

Name:
The-Go-Photo-it-v11
Path:
C:\Program Files\the-go-photo-it-v11\00571e87-fccb-4b85-a76d-e5b0e6130523-10.exe
MD5:
dbc901d526fcc8796010d24bce8dc1a8
SHA-1:
–
SHA-256:
–
Files installed by The-Go-Photo-it-v11
File Type Filename MD5
EXE
ab91a7350a5fddcdf0a7b0c60e8e4e71
EXE
a0bdc8051a740904d9e5f24d697f6875
EXE
c3fec9a02ff42cbfffabc070e549b09e
EXE
9f7e4bdf17d3f33de23fc708c3816167
EXE
679968aa167b8fe7a320a2a9594d0264
EXE
8820dad7a4ad67dd514b0d6266270f2b
EXE
75582873314e5538d58492926b2117cc
EXE
adff7701e6b84ad2d34e78d8d2ab0f5f
EXE
65c9d7ba3e3126a43d7f47a6e30ca167
EXE
e5cd022b3c8e1d73e3a1347c3cbdb53c