ApptoU

ApptoU

Known Toolbar

by InstalleRex-WebPick

What is ApptoU?

ApptoU is software application developed by InstalleRex-WebPick. It is most commonly found on computers running Windows 7 with nearly 60.19% of installations running this operating system. ApptoU's installer is typically 1.00 MB in size and installs around 60 files.

ApptoU is most popular in the United States with 58.02% of installations residing in this country.

About ApptoU?

AppToU is a software application designed to enhance user's online experiences by providing supplementary advertising content during search engine use, catering to Bing and Google search platforms. Upon installation, AppToU operates as an extension in Chrome and as a process along with a Browser Helper Object in Internet Explorer, in addition to integrating itself as a Windows add-on. The program also generates an Add or Remove Programs entry in the Control Panel, although removal of this entry may not entirely discontinue adware activities. Following installation, AppToU selectively displays advertisements within search results and various web pages that utilize third-party advertising. It utilizes the InstalleRex download and install manager provided by WebPicks Holdings to distribute Pay Per Install monetized software, commonly manifesting as unwanted toolbars and web browser extensions.

Multiple virus scanners have detected malware in ApptoU.

gae5RIXl8gvIuq.exe (MD5: eb843f08b06cc5bb0e8bbe9f8aaa0ba6) has been flagged by 52 scanners:
Scanner Software Result
Lavasoft Ad-Aware Gen:Variant.Adware.Mikey.7533
Agnitum Outpost Trojan.Agent!U5iWan7515g
AhnLab-V3 Trojan/Win32.Preloader
avast! Win32:Adware-gen [Adw]
AVG Generic6.DCC
Avira ADWARE/MultiPlug.Gen7
AVware Trojan.Win32.Generic!BT
Baidu-International Adware.Win32.MultiPlug.BN
Bitdefender Gen:Variant.Adware.Mikey.7533
CAT-QuickHeal AdWare.MultiPlug.r5 (Not a Virus)
Comodo Security Application.Win32.Multiplug.GETF
Cyren W32/S-a38b8d16!Eldorado
Emsisoft Anti-Malware Gen:Variant.Adware.Mikey.7533 (B)
ESET-NOD32 a variant of Win32/AdWare.MultiPlug.BN
Fortinet FortiGate Riskware/MultiPlug
F-Prot W32/S-a38b8d16!Eldorado
F-Secure Gen:Variant.Adware.Mikey
G Data Gen:Variant.Adware.Mikey.7533
K7 AntiVirus Adware ( 004a07251 )
K7GW Adware ( 004a07251 )
Kaspersky HEUR:Trojan.Win32.Generic
Malwarebytes PUP.Optional.Multiplug
McAfee RDN/Generic PUP.x!cqt
McAfee-GW-Edition BehavesLike.Win32.PWSZbot.bh
Microsoft Security Essentials Adware:Win32/SaverExtension
MicroWorld-eScan Gen:Variant.Adware.Mikey.7533
NANO AntiVirus Trojan.Win32.MultiPlug.dkmxxe
nProtect Trojan/W32.Agent.784384.AZ
Panda Antivirus Adware/AdSave
Qihoo-360 HEUR/QVM10.1.Malware.Gen
SUPERAntiSpyware Adware.MultiPlug/Variant
Symantec Trojan.Gen.2
Tencent Trojan.Win32.Qudamah.Gen.5
Trend Micro ADW_MULTIPLUG
TrendMicro-HouseCall ADW_MULTIPLUG
Vba32 AntiVirus AdWare.MultiPlug
VIPRE Antivirus Trojan.Win32.Generic!BT
ViRobot Adware.Agent.784384[h]
Zillya Backdoor.PePatch.Win32.55985
ALYac Gen:Variant.Adware.Graftor.169592
Antiy-AVL GrayWare[AdWare:not-a-virus,HEUR]/Win32.Agent
Dr.Web Trojan.Crossrider.48485
Jiangmin Adware/Agent.agay
Sophos Generic PUA GO
Bkav FE W32.DropperAgentK.Trojan
IKARUS anti.virus Trojan.SuspectCRC
Norman Agent.BLMHC
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
Rising Antivirus PE:Trojan.Win32.Generic.1724658A!388261258
AegisLab AdWare.W32.MegaSearch
Avira AntiVir ADWARE/Adware.Gen7
Clam AntiVirus Win.Adware.Multiplug-21804
TLsYR.dll (MD5: 3553dbc5bbda05784bfdc1b12ba8a239) has been flagged by 14 scanners:
Scanner Software Result
AVG Generic5.AYUR
Baidu-International Adware.Win32.MultiPlug.50
Comodo Security ApplicUnwnt
ESET-NOD32 a variant of Win32/AdWare.MultiPlug.AG
Malwarebytes PUP.Optional.MultiPlug
McAfee RDN/Generic PUP.z!dw
McAfee-GW-Edition RDN/Generic PUP.z!dw
Sophos Generic PUA MN
TrendMicro-HouseCall Suspicious_GEN.F47V0704
VIPRE Antivirus Trojan.Win32.Generic!BT
AhnLab-V3 Trojan/Win32.Preloader
Symantec WS.Reputation.1
Qihoo-360 HEUR/Malware.QVM10.Gen
Trend Micro ADW_MULTIPLUG
cE5r.dll (MD5: 883e53a5d785b5b76f7a738e492cf4b7) has been flagged by 52 scanners:
Scanner Software Result
Lavasoft Ad-Aware Gen:Variant.Adware.Graftor.153998
Agnitum Outpost PUA.MultiPlug!
AhnLab-V3 Adware/Win32.MultiPlug
Antiy-AVL GrayWare[AdWare:not-a-virus]/Win32.Agent
avast! Win32:Adware-gen [Adw]
AVG Generic5.CFSX
Avira ADWARE/MultiPlug.Gen
AVware Trojan.Win32.Generic!BT
Baidu-International Adware.Win32.Agent.adqw
Bitdefender Gen:Variant.Adware.Graftor.153998
Comodo Security Application.Win32.MultiPlug.BNJ
Emsisoft Anti-Malware Gen:Variant.Adware.Graftor.153998 (B)
ESET-NOD32 a variant of Win32/AdWare.MultiPlug.BN
Fortinet FortiGate Riskware/MultiPlug
F-Prot W32/A-4a0379ef!Eldorado
F-Secure Gen:Variant.Adware.Graftor.153998
G Data Gen:Variant.Adware.Graftor.153998
K7 AntiVirus Riskware ( 0040eff71 )
K7GW Riskware ( 0040eff71 )
Kaspersky not-a-virus:AdWare.Win32.Agent.gjsc
Malwarebytes PUP.Optional.MultiPlug
McAfee MultiPlug
McAfee-GW-Edition BehavesLike.Win32.Downloader.jm
MicroWorld-eScan Gen:Variant.Adware.Graftor.153998
NANO AntiVirus Riskware.Win32.MultiPlug.dgszac
Panda Antivirus Trj/Genetic.gen
Qihoo-360 HEUR/QVM30.1.Malware.Gen
Sophos MultiPlug
Symantec Adware.Popuppers
Tencent Win32.Adware.Agent.Dztu
Trend Micro TROJ_GEN.R0C2C0OJJ14
TrendMicro-HouseCall TROJ_GEN.R0C2C0OJJ14
Vba32 AntiVirus AdWare.Agent
VIPRE Antivirus Trojan.Win32.Generic!BT
AegisLab AdWare.W32.MegaSearch
Rising Antivirus PE:Trojan.Win32.Generic.1757E18B!391635339
Avira AntiVir ADWARE/Adware.Gen7
Bkav FE W32.QuyletsoLTAI.Trojan
IKARUS anti.virus Win32.SuspectCrc
Jiangmin AdWare/MegaSearch.zcn
Dr.Web Trojan.Crossrider.3485
Kingsoft AntiVirus Win32.Troj.MegaSearch.at.(kcloud)
Clam AntiVirus Win.Adware.Multiplug-21804
ViRobot Adware.Agent.636928.A
Norman Multiplug.A
nProtect Adware.Agent.NYS
SUPERAntiSpyware Adware.Multiplug/Variant
CAT-QuickHeal AdWare.BHO.r6 (Not a Virus)
Zillya Adware.MultiPlug.Win64.10
Cyren W64/Application.FHCW-8023
Microsoft Security Essentials BrowserModifier:Win32/CouponRuc
ALYac Trojan.Generic.12382416
IZ9acMNbzf7tyz.dll (MD5: 4d05aab49d1ad9626e309ea81112d6ea) has been flagged by 52 scanners:
Scanner Software Result
Lavasoft Ad-Aware Gen:Variant.Adware.Graftor.169592
Agnitum Outpost PUA.MultiPlug!
AhnLab-V3 PUP/Win32.Generic
ALYac Gen:Variant.Adware.Graftor.169592
Antiy-AVL GrayWare[AdWare:not-a-virus,HEUR]/Win32.Agent
avast! Win32:MultiPlug-LV [PUP]
AVG Generic6.BKI
Avira ADWARE/MultiPlug.Gen
AVware Trojan.Win32.Generic!BT
Baidu-International Adware.Win32.MultiPlug.Gen
Bitdefender Gen:Variant.Adware.Graftor.169592
CAT-QuickHeal BrowserModifier.CouponRuc.r6 (Not a Virus)
Comodo Security Application.Win32.AdWare.MultiPlug.VB
Cyren W32/S-71786d78!Eldorado
Dr.Web Trojan.Crossrider.48485
Emsisoft Anti-Malware Gen:Variant.Adware.Graftor.169592 (B)
ESET-NOD32 a variant of Win32/Adware.MultiPlug.EG
Fortinet FortiGate Riskware/MultiPlug
F-Prot W32/S-71786d78!Eldorado
F-Secure Gen:Variant.Adware.Graftor
G Data Gen:Variant.Adware.Graftor.169592
Jiangmin Adware/Agent.agay
K7 AntiVirus Adware ( 004a07251 )
K7GW Adware ( 004a07251 )
Malwarebytes PUP.Optional.MultiPlug
McAfee Multiplug-FRF
McAfee-GW-Edition BehavesLike.Win32.Downloader.bm
Microsoft Security Essentials BrowserModifier:Win32/CouponRuc
MicroWorld-eScan Gen:Variant.Adware.Graftor.169592
NANO AntiVirus Riskware.Win32.MultiPlug.djtcsa
Panda Antivirus Trj/Genetic.gen
Qihoo-360 HEUR/QVM30.1.Malware.Gen
Sophos Generic PUA GO
SUPERAntiSpyware Adware.MultiPlug/Variant
Symantec Trojan.Gen.2
Trend Micro TROJ_GEN.R02KC0EA415
TrendMicro-HouseCall TROJ_GEN.R02KC0EA415
VIPRE Antivirus Trojan.Win32.Generic!BT
Zillya Adware.MultiPlug.Win32.225346
Kaspersky not-a-virus:AdWare.Win32.Agent.gppu
Tencent Win32.Adware.Agent.Dzty
Vba32 AntiVirus AdWare.Agent
Bkav FE W32.DropperAgentK.Trojan
IKARUS anti.virus Trojan.SuspectCRC
Norman Agent.BLMHC
nProtect Adware.Agent.PKA
ViRobot Dropper.A.Agent.165888.I[h]
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
Rising Antivirus PE:Trojan.Win32.Generic.1724658A!388261258
AegisLab AdWare.W32.MegaSearch
Avira AntiVir ADWARE/Adware.Gen7
Clam AntiVirus Win.Adware.Multiplug-21804
NsMuvYOkYg95st.x64.dll (MD5: a54825eb522f417801b811d3f57bc200) has been flagged by 47 scanners:
Scanner Software Result
Lavasoft Ad-Aware Application.Generic.901162
Agnitum Outpost PUA.MultiPlug!
avast! Win64:Adware-gen [Adw]
AVG Generic_r.WA
Avira ADWARE/Adware.Gen
AVware Trojan.Win32.Generic!BT
Baidu-International Adware.Win64.MultiPlug.bE
Bitdefender Application.Generic.901162
Comodo Security ApplicUnwnt
Cyren W64/Application.FHCW-8023
ESET-NOD32 a variant of Win64/Adware.MultiPlug.E
Fortinet FortiGate Adware/MultiPlug
F-Secure Application.Generic.901162
G Data Application.Generic.901162
K7 AntiVirus Adware ( 004a921f1 )
K7GW Adware ( 004a921f1 )
Malwarebytes PUP.Optional.MultiPlug
McAfee RDN/Generic PUP.x!cpb
McAfee-GW-Edition BehavesLike.Win64.Downloader.jm
Microsoft Security Essentials BrowserModifier:Win32/CouponRuc
MicroWorld-eScan Application.Generic.901162
Panda Antivirus Trj/CI.A
SUPERAntiSpyware Adware.MultiPlug/Variant
Symantec Trojan.Gen.2
Trend Micro TROJ_GEN.R0C1C0OLK14
TrendMicro-HouseCall TROJ_GEN.R0C1C0OLK14
VIPRE Antivirus Trojan.Win32.Generic!BT
AhnLab-V3 Adware/Win32.Graftor
Avira AntiVir ADWARE/Adware.Gen
Dr.Web Trojan.Crossrider.8415
IKARUS anti.virus Win32.AdWare
NANO AntiVirus Riskware.Win32.MultiPlug.cvyzmh
Rising Antivirus PE:Malware.MultiPlug!6.16AF
Sophos MultiPlug
Qihoo-360 HEUR/QVM30.1.Malware.Gen
Antiy-AVL GrayWare[AdWare:not-a-virus,HEUR]/Win32.Agent
Emsisoft Anti-Malware Gen:Variant.Adware.Graftor.153998 (B)
CAT-QuickHeal Adware.Megasearch.at (Not a Virus)
Kaspersky not-a-virus:AdWare.Win32.MegaSearch.at
Kingsoft AntiVirus Win32.Troj.MegaSearch.at.(kcloud)
Vba32 AntiVirus BScope.Trojan.Agent
ALYac Trojan.Generic.12382416
Norman Suspicious_Gen4.HJRUN
nProtect Trojan.Generic.12382416
AegisLab AdWare.W32.MegaSearch
F-Prot W32/A-4a0379ef!Eldorado
Tencent Win32.Adware.Agent.Eive

Software Details

URL:
–
Support:
–
Installation path:
C:\ProgramData\apptou
Uninstaller:
"C:\ProgramData\ApptoU\qX.exe" /s /n /C:"ExecuteCommands;UninstallCommands" ""
Size:
1.00 MB
Language:
English

ApptoU Executable Details

Primary executable:
QX.exe
Name:
ApptoU
Path:
C:\ProgramData\apptou\QX.exe
MD5:
31660bea6df0ed8414f97f7f9aa49d9e
SHA-1:
–
SHA-256:
–
Files installed by ApptoU
File Type Filename MD5
EXE
dd659ac85fad1370a5969577de786e3e
EXE
db2598dd349651cacfefd5b240bfc33a
EXE
065a59096c5f1a6b3450f599141f13e8
DLL
207f6a1c004413589fab5383301007cf
EXE
31660bea6df0ed8414f97f7f9aa49d9e
EXE
eca21a46f6bd2768685b0ec3a01ba0d9
EXE
eb843f08b06cc5bb0e8bbe9f8aaa0ba6
DLL
764c6b602df14c3d64317327d99a9831
DLL
ef89bc9bf818992f5cfdcf59e2dd4e86
DLL
928b2b5007cbb5c220085abbe1bf206d