Home Malware Programs Adware LoadLeader

LoadLeader

Posted: December 21, 2015

Threat Metric

Ranking: 12,445
Threat Level: 1/10
Infected PCs: 2,028
First Seen: November 19, 2015
Last Seen: September 4, 2023
OS(es) Affected: Windows

LoadLeader is a very suspicious Russian torrent client that you should avoid at all costs. It is promoted as a handy tool with user-friendly interface, which should optimize the downloading speed thanks to new algorithms. In reality, this application belongs to the category of Potentially Unwanted Programs (PUPs). It doesn't perform in the promised way. The problematic functionality of the torrent client is just one reason not to install it. Although you may not expect it, this PUP affects other programs for the benefits of its developers. LoadLeader may cause various changes in Google Chrome, Mozilla Firefox and Internet Explorer. It may inject some commercial materials like pop-ups, banners and videos. Moreover, the PUP may manipulate the search results or even change the search engine entirely. The purpose is to increase the popularity of affiliate platforms, some of which may attempt to sell you stuff. However, the seemingly innocent vouchers and coupons may represent a severe security risk as they may open malicious pages. Sometimes the pop-ups may offer you unsafe software like bogus security applications. Due to the large amount of new ads, the performance of the browsers may suffer. The multimedia materials of this PUP may even result in sporadic freezes and crashes. The torrent client itself may contain the same ads. The official site of LoadLeader offers the installation file, but the most popular browsers have blocked the domain. Unfortunately, this measure may not harm the distribution of the PUP. It relies heavily on the bundling tactic to enter unnoticed. To keep it away, you should read the details whenever you install freeware as it may come with additional components. LoadLeader may be difficult to eliminate manually, so you should consider using special security software.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%SYSTEMDRIVE%\Users\<username>\Downloads\crack-dlya-rs-partition-recovery-salvation\crack-dlya-rs-partition-recovery-salvation.exe File name: crack-dlya-rs-partition-recovery-salvation.exe
Size: 1.12 MB (1120257 bytes)
MD5: ceff314a0de99099ea79996f40f5eae9
Detection count: 70
File type: Executable File
Mime Type: unknown/exe
Path: %SYSTEMDRIVE%\Users\<username>\Downloads\crack-dlya-rs-partition-recovery-salvation\crack-dlya-rs-partition-recovery-salvation.exe
Group: Malware file
Last Updated: January 11, 2023

Registry Modifications

The following newly produced Registry Values are:

File name without pathLoadLeader.lnkHKEY..\..\..\..{RegistryKeys}Software\LoadLeaderSOFTWARE\Microsoft\Tracing\loadleader_RASAPI32SOFTWARE\Microsoft\Tracing\loadleader_RASMANCSSoftware\Microsoft\Windows\CurrentVersion\Run\LoadLeaderSOFTWARE\Wow6432Node\Microsoft\Tracing\loadleader_RASAPI32SOFTWARE\Wow6432Node\Microsoft\Tracing\loadleader_RASMANCSHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}loadleader

Additional Information

The following directories were created:
%APPDATA%\Microsoft\Windows\Start Menu\Programs\LoadLeader%appdata%\LoadLeader

Related Posts

Loading...