ThreatFire

ThreatFire

by PC Tools Software

What is ThreatFire?

ThreatFire is software application developed by PC Tools Software. It is most commonly found on computers running Windows 7 with nearly 71.55% of installations running this operating system. ThreatFire's installer is typically 19.00 MB in size and installs around 41 files.

ThreatFire is most popular in the United States with 55.03% of installations residing in this country.

ThreatFire adds 1 scheduled task to the Windows Task Scheduler launching the program at randomly scheduled times. When using a computer that is connected to the internet, ThreatFire is known to create 1 firewall exception to allow inbound and outbound connectivity.

Software Behaviors

Services:
  • TFService.exe runs as a service named 'ThreatFire' (ThreatFire) "The ThreatFire engine responsible for monitoring your system for viruses, spyware, and other malware. Turning this service off makes your machine vulnerable to such attacks.".
Firewall:
  • TFGui.exe is added as a firewall exception for 'C:\Sicherheit\ThreatFire\TFGui.exe'.
Scheduled tasks:
  • TFGui.exe is scheduled as a task with the class '{8540361E-0457-4990-86D6-44FA0E145470}' (runs on registration).

Startup Entries

Registry entries:
  • TFTray.exe is loaded in the current user (HKCU) registry as an auto-starting executable named 'ThreatFire' and executes as C:\Program Files\ThreatFire\TFTray.exe.

Software Details

URL:
https://www.threatfire.com
Support:
https://www.threatfire.com/support
Installation path:
C:\Program Files\ThreatFire\
Uninstaller:
"C:\Program Files\ThreatFire\unins000.exe"
Size:
19.00 MB
Language:
English

ThreatFire Executable Details

Primary executable:
TFUD.exe
Name:
ThreatFire
Path:
C:\Program Files\ThreatFire\TFUD.exe
MD5:
1443c6170a96be009b148881b49be73c
SHA-1:
SHA-256:
Files installed by ThreatFire
File Type Filename MD5
EXE
b40527b83f3dc1ced677105ff4884a7d
DLL
7e8b5fdd28108f9eb49b94b5e9e1c6e9
EXE
1dc9c5d9b53a4e49f23776a3ea3a852a
DLL
fdda6d799f8d67d3a993a2284f530264
EXE
332f1e3540fce65afbef88bd4b1ffebe
DLL
5a54250691d37ba85ad6e30b1274d0ef
EXE
c379e2c0158e47403899253c3770e60c
DLL
90d1cb7a6930c0b22ca53207af658b75
EXE
74ae0773f9a0a64648cdf5ab05f45b19
EXE
1443c6170a96be009b148881b49be73c