Home Malware Programs Bad Toolbars PremierDownloadManager Toolbar

PremierDownloadManager Toolbar

Posted: October 27, 2014

Threat Metric

Ranking: 7,734
Threat Level: 2/10
Infected PCs: 17,093
First Seen: October 27, 2014
Last Seen: October 5, 2023
OS(es) Affected: Windows

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



C:\Program Files (x86)\PremierDownloadManager\PDManager.exe File name: PDManager.exe
Size: 735.74 KB (735744 bytes)
MD5: fbdd362e800c1e3632eebe24c729214a
Detection count: 752
File type: Executable File
Mime Type: unknown/exe
Path: C:\Program Files (x86)\PremierDownloadManager\PDManager.exe
Group: Malware file
Last Updated: July 26, 2023
C:\Windows.old.000\Program Files\PremierDownloadManager\PDManager.exe File name: PDManager.exe
Size: 733.18 KB (733184 bytes)
MD5: 2fb33788e5ac9dbe87aa7dbea287fe40
Detection count: 84
File type: Executable File
Mime Type: unknown/exe
Path: C:\Windows.old.000\Program Files\PremierDownloadManager\PDManager.exe
Group: Malware file
Last Updated: March 21, 2023
%PROGRAMFILES%\PremierDownloadManager_ag\bar\1.bin\agbarsvc.exe File name: agbarsvc.exe
Size: 90.69 KB (90696 bytes)
MD5: aaa160ae4cd63a8f6ee47b86f63a9824
Detection count: 57
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\PremierDownloadManager_ag\bar\1.bin
Group: Malware file
Last Updated: October 27, 2014
%PROGRAMFILES%\PremierDownloadManager\dotNetFx40_Full_x86_x64.exe File name: dotNetFx40_Full_x86_x64.exe
Size: 3.88 MB (3883008 bytes)
MD5: a65518b2a2ecc4dc876fe5f14c84ce08
Detection count: 44
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\PremierDownloadManager
Group: Malware file
Last Updated: October 27, 2014
%PROGRAMFILES%\PremierDownloadManager\FWISetup.exe File name: FWISetup.exe
Size: 75.69 KB (75692 bytes)
MD5: 2347c2192d6f319775a61b26ac595935
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\PremierDownloadManager
Group: Malware file
Last Updated: December 4, 2022

Registry Modifications

The following newly produced Registry Values are:

CLSID{08D76822-8C0C-4F2D-826C-5C9FC5E8BC6E}{0E01F743-5F86-437C-AFF8-F8B81E8D1455}{12B0C2CE-8371-4826-9112-2EE71C4AEBD9}{13bf204e-491f-45e2-9fc2-2969c903b459}{18BF8106-8C3C-4FF5-A483-8654144F7F32}{1a1f743b-4631-46e1-84a6-677557ccc83c}{1d806c49-099a-4ac9-8339-be248856de96}{23AD211A-1B82-4582-947D-C3C88388D8A7}{24e8f441-b633-49b9-856e-1869c06527d5}{327E6890-7483-4BF0-A4AC-47733D6B3DAE}{34A8F66F-BD14-4CAD-8013-181FFA827C52}{371C3417-6D07-4484-870D-4240DB5C4FFC}{3B18B575-7750-4EF5-88C0-4B923E81CAAB}{40485C5B-7707-448F-97FB-B6958A7E491A}{4833CC5F-F775-4D48-BF64-B6968D9D0D1A}{4d687bc7-7f1a-472c-bf8e-9af6d7b17ac8}{4F107491-CB01-4090-A378-76D29C67C4A8}{523BB920-0F2D-4E7E-BB43-6B426E347DD5}{5473ee40-254d-4e91-9cf3-6a63cc600f48}{56497D89-7F84-40C3-8BFE-A0312A552905}{62219837-ECAB-46B3-B467-9DED4DEEFB46}{6773eedc-4504-4743-b2eb-4300279250f9}{68B6016B-1308-4D05-9EFB-2A50F159ED78}{6BFB71F4-FF52-4C54-ABE8-D79A0D3A8C12}{79b92d37-5edb-428a-ad11-f801ed3ae0c0}{7a85162c-2222-4492-9c14-ea8ec9ec9c7f}{8127B594-FE69-4D62-8E68-AF362CDC67FF}{819D045F-E9A2-39E0-B495-D615AD1A9471}{87D1BD5F-0174-4AB2-FFC4-9E3A451F17EB}{8B7FD08D-4012-4343-AC8F-A0D90C3101B3}{917DD37D-6F5F-4AFB-BC8F-F21EA71D8CB4}{970c55b4-c79e-4c62-9bfa-76439b68969f}{a0854441-df43-4985-a1c2-16ce64bb7458}{A3B093F2-FAA2-4C9D-BB20-30F346B1316B}{B0E55DA4-7799-4ECC-AE04-745ECFBAF79D}{B28B0498-E37B-4A9B-AC37-4D65443F82FE}{BA0CC1B0-494E-4B94-A2C2-F9D9C6D2B569}{bacf0bb5-e070-45a8-afef-548fcf5ae807}{BB9E7A3A-186A-40E8-B9FF-8C24FFAFDD64}{BDFE2FC2-BDD5-419D-973C-A04EDAB40D11}{BE5F8580-7A0F-48A5-B84A-2E5DB8EAB60D}{C22BA932-C30F-328F-9775-BFF6D9A9F26D}{c42118c7-59e5-404c-b161-2314a645b84f}{CC391B01-F037-3EF0-AEAF-680F5F8DB98C}{CFE23A98-9CF0-4334-8148-C496EB26F4BA}{D30287C4-60E3-418C-BCBF-1E68FB8B4331}{D45CB87C-A884-408C-ADE8-807D4ADC7EA8}{d46a933c-4507-46b7-bc70-f6dc8a57e2fc}{D8C05950-3253-4E4A-82DA-9640A4A43289}{da104fa1-3714-4056-8f42-d7fb74fd43dc}{E9216FF6-BDD0-493A-BD7A-A424FE8AB016}{eba5bdb3-535a-48f8-ab79-c2f0075dc43b}{F133B294-8A56-44A1-BCF4-40127EB142A9}{F448F83B-3C69-4081-95A0-4A5B2DDFB95F}{F4DDDD9D-5FB1-4FE9-A538-C8BBD695A2A9}{F6EB7866-E726-4D2C-BAB6-15D396698FD0}{F704FB2B-1CF2-4088-B5FA-5D8C585626EF}{FB19751C-C628-43DB-895C-3B33DEDA7ECC}{FBB95F79-F60C-4F3F-B608-FEE5A2A8940C}File name without pathpremierdownloadmanager.dl.tb.ask[1].xmlHKEY..\..\..\..{RegistryKeys}Software\AppDataLow\Software\PremierDownloadManager_agSOFTWARE\Google\Chrome\NativeMessagingHosts\com.mindspark.premierdownloadmanager_agSoftware\Microsoft\Internet Explorer\DOMStorage\premierdownloadmanager.dl.myway.comSoftware\Microsoft\Internet Explorer\DOMStorage\premierdownloadmanager.dl.tb.ask.comSOFTWARE\Microsoft\Internet Explorer\Toolbar\{c42118c7-59e5-404c-b161-2314a645b84f}SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{970c55b4-c79e-4c62-9bfa-76439b68969f}SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{da104fa1-3714-4056-8f42-d7fb74fd43dc}SOFTWARE\Microsoft\Windows\CurrentVersion\Run\PremierDownloadManager AppIntegrator 32-bitSOFTWARE\Microsoft\Windows\CurrentVersion\Run\PremierDownloadManager AppIntegrator 64-bitSOFTWARE\Microsoft\Windows\CurrentVersion\Run\PremierDownloadManager EPM SupportSOFTWARE\Microsoft\Windows\CurrentVersion\Run\PremierDownloadManager Search Scope MonitorSOFTWARE\Premier Download ManagerSoftware\PremierDownloadManagerSoftware\PremierDownloadManager_agSOFTWARE\Wow6432Node\Google\Chrome\NativeMessagingHosts\com.mindspark.premierdownloadmanager_agSOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{c42118c7-59e5-404c-b161-2314a645b84f}SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{970c55b4-c79e-4c62-9bfa-76439b68969f}SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{da104fa1-3714-4056-8f42-d7fb74fd43dc}SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run\PremierDownloadManager AppIntegrator 32-bitSOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run\PremierDownloadManager AppIntegrator 64-bitSOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run\PremierDownloadManager EPM SupportSOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run\PremierDownloadManager Search Scope MonitorSOFTWARE\Wow6432Node\Premier Download ManagerSOFTWARE\Wow6432Node\PremierDownloadManager_agSYSTEM\ControlSet001\services\PremierDownloadManager_agServiceSYSTEM\ControlSet002\services\PremierDownloadManager_agServiceSYSTEM\CurrentControlSet\services\PremierDownloadManager_agServiceHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}PremierDownloadManagerTooltab Uninstall Internet Explorer

Additional Information

The following directories were created:
%ALLUSERSPROFILE%\Start Menu\Programs\PremierDownloadManager%APPDATA%\PDManager%LOCALAPPDATA%\PremierDownloadManagerTooltab%LOCALAPPDATA%\PremierDownloadManager_ag%PROGRAMFILES%\PremierDownloadManager%PROGRAMFILES%\PremierDownloadManager_ag%PROGRAMFILES%\PremierDownloadManager_agEI%PROGRAMFILES(x86)%\PremierDownloadManager%PROGRAMFILES(x86)%\PremierDownloadManager_ag%PROGRAMFILES(x86)%\PremierDownloadManager_agEI%USERPROFILE%\AppData\LocalLow\PremierDownloadManager_ag%USERPROFILE%\AppData\LocalLow\PremierDownloadManager_agEI
Loading...