Home Malware Programs Potentially Unwanted Programs (PUPs) Glindorus

Glindorus

Posted: October 7, 2013

Threat Metric

Ranking: 10,396
Threat Level: 2/10
Infected PCs: 2,986
First Seen: October 7, 2013
Last Seen: October 4, 2023
OS(es) Affected: Windows

Glindorus is a potentially unwanted application created by Super Web LLC, which may lead its users to various PC problems. Glindorus can be downloaded manually; however, it may also enter the targeted computer system without the PC user's permission and knowledge. Glindorus may access the affected computer system bundled with a variety of freeware and shareware applications. When installed on the compromised PC, Glindorus may change computer settings to get ability to deliver and show unwanted pop-up ads. Glindorus may try to monitor the PC user's surfing activities on the web browser and then start unwanted diversions to doubtful websites. Glindorus can be downloaded from its official website as a helpful application. However, there are many PC users, who state that they didn't download Glindorus on their computers manually. In order to restrict penetration of Glindorus, PC users should choose 'Custom' installation method when downloading free software programs on the computer. Computer users should read every sentence, which is written on installation windows of free software products, and uncheck unfamiliar entries.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%PROGRAMFILES%\glindorus\glindorusbho.dll File name: glindorusbho.dll
Size: 12.27 KB (12273 bytes)
MD5: 933ae440f5be866231e6141972c16f88
Detection count: 12
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES%\glindorus
Group: Malware file
Last Updated: November 22, 2013
%PROGRAMFILES%\glindorus\updateglindorus.exe File name: updateglindorus.exe
Size: 65.31 KB (65312 bytes)
MD5: 15e2b2a25e16469520eb949a8bc52899
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\glindorus
Group: Malware file
Last Updated: November 22, 2013
%PROGRAMFILES(x86)%\glindorus\bin\utilglindorus.exe File name: utilglindorus.exe
Size: 6.85 KB (6856 bytes)
MD5: 10f7a2e79ff815f35e4036e045b79b98
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\glindorus\bin
Group: Malware file
Last Updated: November 22, 2013
%PROGRAMFILES%\glindorus\bin\utilglindorus.exe File name: utilglindorus.exe
Size: 60.3 KB (60309 bytes)
MD5: 9b53451f80423ea608c4d36fe649ba59
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\glindorus\bin
Group: Malware file
Last Updated: November 22, 2013

Registry Modifications

The following newly produced Registry Values are:

CLSID{1A1BD1A4-DE07-441E-8EAF-880C7FDF7683}{886CB8E6-B6B1-492B-8FE6-CE8AC83F6AC5}{9598e82a-7e09-4438-b425-b9e9718c3c73}HKEY..\..\..\..{RegistryKeys}Software\glindorusSOFTWARE\Microsoft\Tracing\updateglindorus_RASAPI32SOFTWARE\Microsoft\Tracing\updateglindorus_RASMANCSSOFTWARE\Wow6432Node\glindorusSOFTWARE\Wow6432Node\Microsoft\Tracing\updateglindorus_RASAPI32SOFTWARE\Wow6432Node\Microsoft\Tracing\updateglindorus_RASMANCSSOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{9598e82a-7e09-4438-b425-b9e9718c3c73}SYSTEM\ControlSet001\services\eventlog\Application\Update glindorusSYSTEM\ControlSet001\services\Update glindorusSYSTEM\CurrentControlSet\services\eventlog\Application\Update glindorusSYSTEM\CurrentControlSet\services\Update glindorusHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}glindorus

Additional Information

The following directories were created:
%PROGRAMFILES%\glindorus%PROGRAMFILES(x86)%\glindorus
Loading...