ApptoU

ApptoU

Known Toolbar

by InstalleRex-WebPick

What is ApptoU?

ApptoU is software application developed by InstalleRex-WebPick. It is most commonly found on computers running Windows 7 with nearly 60.19% of installations running this operating system. ApptoU's installer is typically 1.00 MB in size and installs around 60 files.

ApptoU is most popular in the United States with 58.02% of installations residing in this country.

About ApptoU?

AppToU is a software application designed to enhance user's online experiences by providing supplementary advertising content during search engine use, catering to Bing and Google search platforms. Upon installation, AppToU operates as an extension in Chrome and as a process along with a Browser Helper Object in Internet Explorer, in addition to integrating itself as a Windows add-on. The program also generates an Add or Remove Programs entry in the Control Panel, although removal of this entry may not entirely discontinue adware activities. Following installation, AppToU selectively displays advertisements within search results and various web pages that utilize third-party advertising. It utilizes the InstalleRex download and install manager provided by WebPicks Holdings to distribute Pay Per Install monetized software, commonly manifesting as unwanted toolbars and web browser extensions.

Multiple virus scanners have detected malware in ApptoU.

gae5RIXl8gvIuq.exe (MD5: eb843f08b06cc5bb0e8bbe9f8aaa0ba6) has been flagged by 52 scanners:
Scanner Software Result
Lavasoft Ad-Aware Gen:Variant.Adware.Mikey.7533
Agnitum Outpost Trojan.Agent!U5iWan7515g
AhnLab-V3 Trojan/Win32.Preloader
avast! Win32:Adware-gen [Adw]
AVG Generic6.DCC
Avira ADWARE/MultiPlug.Gen7
AVware Trojan.Win32.Generic!BT
Baidu-International Adware.Win32.MultiPlug.BN
Bitdefender Gen:Variant.Adware.Mikey.7533
CAT-QuickHeal AdWare.MultiPlug.r5 (Not a Virus)
Comodo Security Application.Win32.Multiplug.GETF
Cyren W32/S-a38b8d16!Eldorado
Emsisoft Anti-Malware Gen:Variant.Adware.Mikey.7533 (B)
ESET-NOD32 a variant of Win32/AdWare.MultiPlug.BN
Fortinet FortiGate Riskware/MultiPlug
F-Prot W32/S-a38b8d16!Eldorado
F-Secure Gen:Variant.Adware.Mikey
G Data Gen:Variant.Adware.Mikey.7533
K7 AntiVirus Adware ( 004a07251 )
K7GW Adware ( 004a07251 )
Kaspersky HEUR:Trojan.Win32.Generic
Malwarebytes PUP.Optional.Multiplug
McAfee RDN/Generic PUP.x!cqt
McAfee-GW-Edition BehavesLike.Win32.PWSZbot.bh
Microsoft Security Essentials Adware:Win32/SaverExtension
MicroWorld-eScan Gen:Variant.Adware.Mikey.7533
NANO AntiVirus Trojan.Win32.MultiPlug.dkmxxe
nProtect Trojan/W32.Agent.784384.AZ
Panda Antivirus Adware/AdSave
Qihoo-360 HEUR/QVM10.1.Malware.Gen
SUPERAntiSpyware Adware.MultiPlug/Variant
Symantec Trojan.Gen.2
Tencent Trojan.Win32.Qudamah.Gen.5
Trend Micro ADW_MULTIPLUG
TrendMicro-HouseCall ADW_MULTIPLUG
Vba32 AntiVirus AdWare.MultiPlug
VIPRE Antivirus Trojan.Win32.Generic!BT
ViRobot Adware.Agent.784384[h]
Zillya Backdoor.PePatch.Win32.55985
ALYac Gen:Variant.Adware.Graftor.169592
Antiy-AVL GrayWare[AdWare:not-a-virus,HEUR]/Win32.Agent
Dr.Web Trojan.Crossrider.48485
Jiangmin Adware/Agent.agay
Sophos Generic PUA GO
Bkav FE W32.DropperAgentK.Trojan
IKARUS anti.virus Trojan.SuspectCRC
Norman Agent.BLMHC
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
Rising Antivirus PE:Trojan.Win32.Generic.1724658A!388261258
AegisLab AdWare.W32.MegaSearch
Avira AntiVir ADWARE/Adware.Gen7
Clam AntiVirus Win.Adware.Multiplug-21804
TLsYR.dll (MD5: 3553dbc5bbda05784bfdc1b12ba8a239) has been flagged by 14 scanners:
Scanner Software Result
AVG Generic5.AYUR
Baidu-International Adware.Win32.MultiPlug.50
Comodo Security ApplicUnwnt
ESET-NOD32 a variant of Win32/AdWare.MultiPlug.AG
Malwarebytes PUP.Optional.MultiPlug
McAfee RDN/Generic PUP.z!dw
McAfee-GW-Edition RDN/Generic PUP.z!dw
Sophos Generic PUA MN
TrendMicro-HouseCall Suspicious_GEN.F47V0704
VIPRE Antivirus Trojan.Win32.Generic!BT
AhnLab-V3 Trojan/Win32.Preloader
Symantec WS.Reputation.1
Qihoo-360 HEUR/Malware.QVM10.Gen
Trend Micro ADW_MULTIPLUG
cE5r.dll (MD5: 883e53a5d785b5b76f7a738e492cf4b7) has been flagged by 52 scanners:
Scanner Software Result
Lavasoft Ad-Aware Gen:Variant.Adware.Graftor.153998
Agnitum Outpost PUA.MultiPlug!
AhnLab-V3 Adware/Win32.MultiPlug
Antiy-AVL GrayWare[AdWare:not-a-virus]/Win32.Agent
avast! Win32:Adware-gen [Adw]
AVG Generic5.CFSX
Avira ADWARE/MultiPlug.Gen
AVware Trojan.Win32.Generic!BT
Baidu-International Adware.Win32.Agent.adqw
Bitdefender Gen:Variant.Adware.Graftor.153998
Comodo Security Application.Win32.MultiPlug.BNJ
Emsisoft Anti-Malware Gen:Variant.Adware.Graftor.153998 (B)
ESET-NOD32 a variant of Win32/AdWare.MultiPlug.BN
Fortinet FortiGate Riskware/MultiPlug
F-Prot W32/A-4a0379ef!Eldorado
F-Secure Gen:Variant.Adware.Graftor.153998
G Data Gen:Variant.Adware.Graftor.153998
K7 AntiVirus Riskware ( 0040eff71 )
K7GW Riskware ( 0040eff71 )
Kaspersky not-a-virus:AdWare.Win32.Agent.gjsc
Malwarebytes PUP.Optional.MultiPlug
McAfee MultiPlug
McAfee-GW-Edition BehavesLike.Win32.Downloader.jm
MicroWorld-eScan Gen:Variant.Adware.Graftor.153998
NANO AntiVirus Riskware.Win32.MultiPlug.dgszac
Panda Antivirus Trj/Genetic.gen
Qihoo-360 HEUR/QVM30.1.Malware.Gen
Sophos MultiPlug
Symantec Adware.Popuppers
Tencent Win32.Adware.Agent.Dztu
Trend Micro TROJ_GEN.R0C2C0OJJ14
TrendMicro-HouseCall TROJ_GEN.R0C2C0OJJ14
Vba32 AntiVirus AdWare.Agent
VIPRE Antivirus Trojan.Win32.Generic!BT
AegisLab AdWare.W32.MegaSearch
Rising Antivirus PE:Trojan.Win32.Generic.1757E18B!391635339
Avira AntiVir ADWARE/Adware.Gen7
Bkav FE W32.QuyletsoLTAI.Trojan
IKARUS anti.virus Win32.SuspectCrc
Jiangmin AdWare/MegaSearch.zcn
Dr.Web Trojan.Crossrider.3485
Kingsoft AntiVirus Win32.Troj.MegaSearch.at.(kcloud)
Clam AntiVirus Win.Adware.Multiplug-21804
ViRobot Adware.Agent.636928.A
Norman Multiplug.A
nProtect Adware.Agent.NYS
SUPERAntiSpyware Adware.Multiplug/Variant
CAT-QuickHeal AdWare.BHO.r6 (Not a Virus)
Zillya Adware.MultiPlug.Win64.10
Cyren W64/Application.FHCW-8023
Microsoft Security Essentials BrowserModifier:Win32/CouponRuc
ALYac Trojan.Generic.12382416
IZ9acMNbzf7tyz.dll (MD5: 4d05aab49d1ad9626e309ea81112d6ea) has been flagged by 52 scanners:
Scanner Software Result
Lavasoft Ad-Aware Gen:Variant.Adware.Graftor.169592
Agnitum Outpost PUA.MultiPlug!
AhnLab-V3 PUP/Win32.Generic
ALYac Gen:Variant.Adware.Graftor.169592
Antiy-AVL GrayWare[AdWare:not-a-virus,HEUR]/Win32.Agent
avast! Win32:MultiPlug-LV [PUP]
AVG Generic6.BKI
Avira ADWARE/MultiPlug.Gen
AVware Trojan.Win32.Generic!BT
Baidu-International Adware.Win32.MultiPlug.Gen
Bitdefender Gen:Variant.Adware.Graftor.169592
CAT-QuickHeal BrowserModifier.CouponRuc.r6 (Not a Virus)
Comodo Security Application.Win32.AdWare.MultiPlug.VB
Cyren W32/S-71786d78!Eldorado
Dr.Web Trojan.Crossrider.48485
Emsisoft Anti-Malware Gen:Variant.Adware.Graftor.169592 (B)
ESET-NOD32 a variant of Win32/Adware.MultiPlug.EG
Fortinet FortiGate Riskware/MultiPlug
F-Prot W32/S-71786d78!Eldorado
F-Secure Gen:Variant.Adware.Graftor
G Data Gen:Variant.Adware.Graftor.169592
Jiangmin Adware/Agent.agay
K7 AntiVirus Adware ( 004a07251 )
K7GW Adware ( 004a07251 )
Malwarebytes PUP.Optional.MultiPlug
McAfee Multiplug-FRF
McAfee-GW-Edition BehavesLike.Win32.Downloader.bm
Microsoft Security Essentials BrowserModifier:Win32/CouponRuc
MicroWorld-eScan Gen:Variant.Adware.Graftor.169592
NANO AntiVirus Riskware.Win32.MultiPlug.djtcsa
Panda Antivirus Trj/Genetic.gen
Qihoo-360 HEUR/QVM30.1.Malware.Gen
Sophos Generic PUA GO
SUPERAntiSpyware Adware.MultiPlug/Variant
Symantec Trojan.Gen.2
Trend Micro TROJ_GEN.R02KC0EA415
TrendMicro-HouseCall TROJ_GEN.R02KC0EA415
VIPRE Antivirus Trojan.Win32.Generic!BT
Zillya Adware.MultiPlug.Win32.225346
Kaspersky not-a-virus:AdWare.Win32.Agent.gppu
Tencent Win32.Adware.Agent.Dzty
Vba32 AntiVirus AdWare.Agent
Bkav FE W32.DropperAgentK.Trojan
IKARUS anti.virus Trojan.SuspectCRC
Norman Agent.BLMHC
nProtect Adware.Agent.PKA
ViRobot Dropper.A.Agent.165888.I[h]
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
Rising Antivirus PE:Trojan.Win32.Generic.1724658A!388261258
AegisLab AdWare.W32.MegaSearch
Avira AntiVir ADWARE/Adware.Gen7
Clam AntiVirus Win.Adware.Multiplug-21804
NsMuvYOkYg95st.x64.dll (MD5: a54825eb522f417801b811d3f57bc200) has been flagged by 47 scanners:
Scanner Software Result
Lavasoft Ad-Aware Application.Generic.901162
Agnitum Outpost PUA.MultiPlug!
avast! Win64:Adware-gen [Adw]
AVG Generic_r.WA
Avira ADWARE/Adware.Gen
AVware Trojan.Win32.Generic!BT
Baidu-International Adware.Win64.MultiPlug.bE
Bitdefender Application.Generic.901162
Comodo Security ApplicUnwnt
Cyren W64/Application.FHCW-8023
ESET-NOD32 a variant of Win64/Adware.MultiPlug.E
Fortinet FortiGate Adware/MultiPlug
F-Secure Application.Generic.901162
G Data Application.Generic.901162
K7 AntiVirus Adware ( 004a921f1 )
K7GW Adware ( 004a921f1 )
Malwarebytes PUP.Optional.MultiPlug
McAfee RDN/Generic PUP.x!cpb
McAfee-GW-Edition BehavesLike.Win64.Downloader.jm
Microsoft Security Essentials BrowserModifier:Win32/CouponRuc
MicroWorld-eScan Application.Generic.901162
Panda Antivirus Trj/CI.A
SUPERAntiSpyware Adware.MultiPlug/Variant
Symantec Trojan.Gen.2
Trend Micro TROJ_GEN.R0C1C0OLK14
TrendMicro-HouseCall TROJ_GEN.R0C1C0OLK14
VIPRE Antivirus Trojan.Win32.Generic!BT
AhnLab-V3 Adware/Win32.Graftor
Avira AntiVir ADWARE/Adware.Gen
Dr.Web Trojan.Crossrider.8415
IKARUS anti.virus Win32.AdWare
NANO AntiVirus Riskware.Win32.MultiPlug.cvyzmh
Rising Antivirus PE:Malware.MultiPlug!6.16AF
Sophos MultiPlug
Qihoo-360 HEUR/QVM30.1.Malware.Gen
Antiy-AVL GrayWare[AdWare:not-a-virus,HEUR]/Win32.Agent
Emsisoft Anti-Malware Gen:Variant.Adware.Graftor.153998 (B)
CAT-QuickHeal Adware.Megasearch.at (Not a Virus)
Kaspersky not-a-virus:AdWare.Win32.MegaSearch.at
Kingsoft AntiVirus Win32.Troj.MegaSearch.at.(kcloud)
Vba32 AntiVirus BScope.Trojan.Agent
ALYac Trojan.Generic.12382416
Norman Suspicious_Gen4.HJRUN
nProtect Trojan.Generic.12382416
AegisLab AdWare.W32.MegaSearch
F-Prot W32/A-4a0379ef!Eldorado
Tencent Win32.Adware.Agent.Eive

Software Details

URL:
–
Support:
–
Installation path:
C:\ProgramData\apptou
Uninstaller:
"C:\ProgramData\ApptoU\qX.exe" /s /n /C:"ExecuteCommands;UninstallCommands" ""
Size:
1.00 MB
Language:
English

ApptoU Executable Details

Primary executable:
QX.exe
Name:
ApptoU
Path:
C:\ProgramData\apptou\QX.exe
MD5:
31660bea6df0ed8414f97f7f9aa49d9e
SHA-1:
–
SHA-256:
–
Files installed by ApptoU
File Type Filename MD5
DLL
TLsYR.dll
Malware
3553dbc5bbda05784bfdc1b12ba8a239
EXE
d94195f2fdf86ff4821015238d23db39
DLL
3894a42a8a5c72c464d4b233afb32451
DLL
cE5r.dll
Malware
883e53a5d785b5b76f7a738e492cf4b7
EXE
dcd148f6f3af3e3b0935c4fcc9f41811
EXE
eacea60d2d7b8bb2d61b1819225ee124
DLL
a2b7a104024ed1662a4b5e25fe612313
DLL
ce718f87e9d438e99e0f3a976ecae549
DLL
4d05aab49d1ad9626e309ea81112d6ea
EXE
5c8c96986c68283a64004abde25a0c00