Home Malware Programs Adware Loffinam

Loffinam

Posted: December 17, 2013

Threat Metric

Ranking: 9,993
Threat Level: 2/10
Infected PCs: 1,836
First Seen: December 18, 2013
Last Seen: September 24, 2023
OS(es) Affected: Windows

Loffinam is adware that may show unwanted pop-up ads when computer users are shopping online. Loffinam can be installed on Internet Explorer, Mozilla Firefox and Google Chrome. Usually, various security software may not be able to detect Loffinam as a harmful app because it may also be categorized as a PUP (potentially unwanted program). Loffinam may be usually delivered packaged with freeware, such as video file converters, codecs and similar programs. When the PC user chooses to install certain free software, it may carry additional toolbars, browser extensions, plug-ins and add-ons embedded in the installation wizard. These additional tools, particularly, Loffinam, may be marked as optional programs, but if the computer user does not deselect a check box to add them, he may end up facing unwanted system modifications on the computer.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%PROGRAMFILES(x86)%\loffinam\bin\loffinam.BrowserAdapter.exe File name: loffinam.BrowserAdapter.exe
Size: 96.54 KB (96544 bytes)
MD5: d369df4c7a511ba70e0e16d203ff898e
Detection count: 94
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\loffinam\bin
Group: Malware file
Last Updated: June 5, 2014
%PROGRAMFILES(x86)%\loffinam\loffinam.FirstRun.exe File name: loffinam.FirstRun.exe
Size: 1.12 MB (1122592 bytes)
MD5: 297fcbcd4aa7ee35392f3d84cd5745f3
Detection count: 90
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\loffinam
Group: Malware file
Last Updated: June 5, 2014
%PROGRAMFILES%\loffinam\bin\loffinam.PurBrowse.exe File name: loffinam.PurBrowse.exe
Size: 239.39 KB (239392 bytes)
MD5: 6d3e0a53a07932e498a3d14afd6081e5
Detection count: 59
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\loffinam\bin
Group: Malware file
Last Updated: June 5, 2014
%PROGRAMFILES%\loffinam\bin\loffinam.BrowserAdapter.exe File name: loffinam.BrowserAdapter.exe
Size: 96.54 KB (96544 bytes)
MD5: f91eb50947aed357595dab085d58c26d
Detection count: 45
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\loffinam\bin
Group: Malware file
Last Updated: June 5, 2014
%PROGRAMFILES(x86)%\loffinam\bin\loffinam.BrowserAdapter.exe File name: loffinam.BrowserAdapter.exe
Size: 95.52 KB (95520 bytes)
MD5: 72df175c2ee604be4537b32becfd2565
Detection count: 44
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\loffinam\bin
Group: Malware file
Last Updated: June 5, 2014
%PROGRAMFILES(x86)%\loffinam\bin\FilterApp_C64.exe File name: FilterApp_C64.exe
Size: 287 KB (287008 bytes)
MD5: 24a3c69f66c7c690721b38a7a10046e0
Detection count: 37
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\loffinam\bin
Group: Malware file
Last Updated: June 5, 2014
%PROGRAMFILES(x86)%\loffinam\bin\FilterApp_C64.exe File name: FilterApp_C64.exe
Size: 287 KB (287008 bytes)
MD5: 21dbbb92099021cc8c64f3b4662bd652
Detection count: 35
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\loffinam\bin
Group: Malware file
Last Updated: June 5, 2014
%PROGRAMFILES(x86)%\loffinam\loffinam.FirstRun.exe File name: loffinam.FirstRun.exe
Size: 1.12 MB (1122592 bytes)
MD5: fe4f635a65ac80df6b37e0f53a928854
Detection count: 31
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\loffinam
Group: Malware file
Last Updated: June 5, 2014
%PROGRAMFILES(x86)%\loffinam\updater.exe File name: updater.exe
Size: 109.56 KB (109568 bytes)
MD5: a86a5a0b50466912f90581e0a9944a90
Detection count: 30
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\loffinam
Group: Malware file
Last Updated: June 5, 2014
%PROGRAMFILES%\loffinam\bin\XTLSApp.exe File name: XTLSApp.exe
Size: 94.49 KB (94496 bytes)
MD5: d8a607e4ef069872a609f34f308ad369
Detection count: 28
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\loffinam\bin
Group: Malware file
Last Updated: June 5, 2014
%PROGRAMFILES%\loffinam\bin\utilloffinam.exe File name: utilloffinam.exe
Size: 348.96 KB (348960 bytes)
MD5: 8496446dbc5047591cf8d913b9bc4cfa
Detection count: 21
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\loffinam\bin
Group: Malware file
Last Updated: June 5, 2014
%PROGRAMFILES%\loffinam\bin\FilterApp_C.exe File name: FilterApp_C.exe
Size: 238.88 KB (238880 bytes)
MD5: e36a485433a379abc214b0d4b12e7db1
Detection count: 12
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\loffinam\bin
Group: Malware file
Last Updated: June 5, 2014
%PROGRAMFILES(x86)%\loffinam\updateloffinam.exe File name: updateloffinam.exe
Size: 317.72 KB (317728 bytes)
MD5: 4a7e7642c3fcec8a24f9f66f0f2966e6
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\loffinam
Group: Malware file
Last Updated: June 5, 2014
%PROGRAMFILES(x86)%\loffinam\bin\XTLSApp.exe File name: XTLSApp.exe
Size: 78.62 KB (78624 bytes)
MD5: 8b09dd9c4a244263a277ed061bee3c1f
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\loffinam\bin
Group: Malware file
Last Updated: June 5, 2014
%PROGRAMFILES(x86)%\loffinam\loffinam.FirstRun.exe File name: loffinam.FirstRun.exe
Size: 1.12 MB (1122592 bytes)
MD5: 443588cc4c6bc4d88086906a7be24103
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\loffinam
Group: Malware file
Last Updated: June 5, 2014
%PROGRAMFILES(x86)%\loffinam\loffinam.FirstRun.exe File name: loffinam.FirstRun.exe
Size: 1.12 MB (1121056 bytes)
MD5: db3398bb72bae52f777e75be90af4bc3
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\loffinam
Group: Malware file
Last Updated: June 5, 2014
%PROGRAMFILES%\loffinam\loffinam.FirstRun.exe File name: loffinam.FirstRun.exe
Size: 1.12 MB (1122592 bytes)
MD5: ce32b4145d21dc7286089412af1d454e
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\loffinam
Group: Malware file
Last Updated: June 5, 2014

Registry Modifications

The following newly produced Registry Values are:

CLSID{0ED16458-2CBE-472A-B294-E096DBEA012B}{8D9D0B04-2794-47D1-96AC-12FFF5EAFD5A}HKEY..\..\..\..{RegistryKeys}SOFTWARE\loffinamSoftware\Microsoft\Internet Explorer\Approved Extensions\{5C3E2969-CE7A-4FF3-8EEB-C93EDBC9D66B}SOFTWARE\Microsoft\Tracing\loffinam_RASAPI32SOFTWARE\Microsoft\Tracing\loffinam_RASMANCSSOFTWARE\Microsoft\Tracing\updateloffinam_RASAPI32SOFTWARE\Microsoft\Tracing\updateloffinam_RASMANCSSOFTWARE\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{5C3E2969-CE7A-4FF3-8EEB-C93EDBC9D66B}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{5C3E2969-CE7A-4FF3-8EEB-C93EDBC9D66B}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{5C3E2969-CE7A-4FF3-8EEB-C93EDBC9D66B}SOFTWARE\Wow6432Node\loffinamSOFTWARE\Wow6432Node\Microsoft\Tracing\loffinam_RASAPI32SOFTWARE\Wow6432Node\Microsoft\Tracing\loffinam_RASMANCSSOFTWARE\Wow6432Node\Microsoft\Tracing\updateloffinam_RASAPI32SOFTWARE\Wow6432Node\Microsoft\Tracing\updateloffinam_RASMANCSSOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{5C3E2969-CE7A-4FF3-8EEB-C93EDBC9D66B}SYSTEM\ControlSet001\services\eventlog\Application\Update loffinamSYSTEM\ControlSet001\services\eventlog\Application\Util loffinamSYSTEM\ControlSet001\services\Update loffinamSYSTEM\ControlSet001\services\Util loffinamSYSTEM\ControlSet002\services\eventlog\Application\Util loffinamSYSTEM\ControlSet002\services\Util loffinamSYSTEM\CurrentControlSet\services\eventlog\Application\Update loffinamSYSTEM\CurrentControlSet\services\eventlog\Application\Util loffinamSYSTEM\CurrentControlSet\services\Update loffinamSYSTEM\CurrentControlSet\services\Util loffinamHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}loffinam

Additional Information

The following directories were created:
%PROGRAMFILES%\loffinam%PROGRAMFILES(x86)%\loffinam
The following URL's were detected:
loffinam
Loading...