Home Possibly Unwanted Program PUP.ArcadeParlor

PUP.ArcadeParlor

Posted: November 15, 2013

Threat Metric

Ranking: 12,285
Threat Level: 2/10
Infected PCs: 168,519
First Seen: November 15, 2013
Last Seen: March 10, 2025
OS(es) Affected: Windows

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%LOCALAPPDATA%\ArcadeParlor\CatWs\CatWSPrx.exe File name: CatWSPrx.exe
Size: 1.46 MB (1463872 bytes)
MD5: 589a43fab98233765fe29522c8fa95ca
Detection count: 11,720
File type: Executable File
Mime Type: unknown/exe
Path: %LOCALAPPDATA%\ArcadeParlor\CatWs
Group: Malware file
Last Updated: July 18, 2021
%LOCALAPPDATA%\ArcadeParlor\AOL\icgalo.dll File name: icgalo.dll
Size: 352.25 KB (352256 bytes)
MD5: 03d0d8d3089abaa19b4f72ca525c7839
Detection count: 72
File type: Dynamic link library
Mime Type: unknown/dll
Path: %LOCALAPPDATA%\ArcadeParlor\AOL
Group: Malware file
Last Updated: November 15, 2013
%PROGRAMFILES%\ArcadeParlor\parlor.crx File name: parlor.crx
Size: 1.81 KB (1817 bytes)
MD5: be18cf5a407c6c1bfa83bc1dfa97d44d
Detection count: 56
Mime Type: unknown/crx
Path: %PROGRAMFILES%\ArcadeParlor
Group: Malware file
Last Updated: January 16, 2018
%LOCALAPPDATA%\ArcadeParlor\removal.exe File name: removal.exe
Size: 232.36 KB (232360 bytes)
MD5: abacaa065603207c20d6ef8e8e885634
Detection count: 56
File type: Executable File
Mime Type: unknown/exe
Path: %LOCALAPPDATA%\ArcadeParlor
Group: Malware file
Last Updated: November 18, 2023
%SystemDrive%\Documents and Settings\NetworkService\Local Settings\Application Data\ArcadeParlor\versioncheck.exe File name: versioncheck.exe
Size: 132.92 KB (132920 bytes)
MD5: a0ca938a7cdb36fee80bfed4c4a4dc76
Detection count: 56
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\Documents and Settings\NetworkService\Local Settings\Application Data\ArcadeParlor
Group: Malware file
Last Updated: March 19, 2016
%ProgramFiles%\ArcadeParlor\unparlor.exe File name: unparlor.exe
Size: 153.75 KB (153754 bytes)
MD5: 522f454c36fffe0266b4f155d34bfc32
Detection count: 46
File type: Executable File
Mime Type: unknown/exe
Path: %ProgramFiles%\ArcadeParlor
Group: Malware file
Last Updated: January 16, 2018
%ProgramFiles%\ArcadeParlor\parlor.xpi File name: parlor.xpi
Size: 2.64 KB (2646 bytes)
MD5: 74bce2a9dbb02e192bb337dc3580de33
Detection count: 24
Mime Type: unknown/xpi
Path: %ProgramFiles%\ArcadeParlor
Group: Malware file
Last Updated: January 16, 2018
%ProgramFiles%\ArcadeParlor\parlor.dll File name: parlor.dll
Size: 86.52 KB (86528 bytes)
MD5: e1c78e6bd8befe312539e9ea248df5d7
Detection count: 16
File type: Dynamic link library
Mime Type: unknown/dll
Path: %ProgramFiles%\ArcadeParlor
Group: Malware file
Last Updated: January 16, 2018

More files

Registry Modifications

The following newly produced Registry Values are:

CLSID{06EF0449-904C-4889-A1F6-2E4985B9F403}{1F29738C-11D6-4AE5-A1B1-86D4D5F3A69C}{20A9DEDA-FDF9-4F04-8F0A-89D39BCB6CFA}{2335E186-D62F-4797-9333-D2AEA2E57608}{3029DF21-12EF-4C00-94FA-C13396C6136B}{39AD0726-986D-40F9-972B-E3BFA24B7745}{43D8B9FA-9C87-45B9-8FD1-C8C61396D412}{632D51D4-67C3-40CA-8A7E-D1E93E80B005}{64B125F5-7773-423F-9235-F467144F8DE1}{68CD2765-15CE-4728-A378-19A5B205069B}{7AB0755B-95F6-4866-AB40-55AD9CD2476A}{7CF15EBB-0783-49E6-8246-C65CE9152DA5}{96B4DEA0-F89C-475C-8124-B247260B7CB5}{A12461E4-07B0-4715-901A-308D739DD972}{A13AB2E1-2E63-4B52-A9F3-E193C5E23250}{B0BF013C-C6A1-4F8B-85DB-543B85E56EF7}{B847921D-48FF-4D2A-9F57-BD7B18B390D7}{BA673D09-7871-4B49-8270-C5EE26672158}{BCC93358-ADD8-43C4-A9C2-1EBCDD1E8ED6}{CA00F6C3-F6FA-4A3F-BD95-1E37212A9B6E}{D87B5DF5-EBB4-4150-A89F-E633A95C3141}{EAB7D945-0023-4213-A6D3-0C065E372908}Regexp file mask%WINDIR%\System32\CatWSPrx.ini%WINDIR%\System32\CatWSPrxOff.ini%windir%\system32\tasks\ApCatSupport%WINDIR%\SysWOW64\CatWSPrx.ini%WINDIR%\SysWOW64\CatWSPrxOff.ini%windir%\tasks\ApCatSupport.jobHKEY..\..\..\..{RegistryKeys}Software\AppDataLow\Software\arcadeparlorconfigSoftware\AppDataLow\Software\arcadeparlorconfigcatSOFTWARE\Classes\AppID\CatWSPrx.EXESOFTWARE\Classes\CatWSPrxLib.DataContainerSOFTWARE\Classes\CatWSPrxLib.DataContainer.1SOFTWARE\Classes\CatWSPrxLib.DataControllerSOFTWARE\Classes\CatWSPrxLib.DataController.1SOFTWARE\Classes\CatWSPrxLib.DataTableSOFTWARE\Classes\CatWSPrxLib.DataTable.1SOFTWARE\Classes\CatWSPrxLib.DataTableFieldsSOFTWARE\Classes\CatWSPrxLib.DataTableFields.1SOFTWARE\Classes\CatWSPrxLib.DataTableHolderSOFTWARE\Classes\CatWSPrxLib.DataTableHolder.1SOFTWARE\Classes\CatWSPrxLib.LSPLogicSOFTWARE\Classes\CatWSPrxLib.LSPLogic.1SOFTWARE\Classes\CatWSPrxLib.ReadOnlyManagerSOFTWARE\Classes\CatWSPrxLib.ReadOnlyManager.1SOFTWARE\Classes\CatWSPrxLib.WFPControllerSOFTWARE\Classes\CatWSPrxLib.WFPController.1Software\Microsoft\Internet Explorer\Approved Extensions\{39AD0726-986D-40F9-972B-E3BFA24B7745}Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CAB5F8C0-3826-489F-9C2B-8B73D2C9B0DA}SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ArcadeParlorSOFTWARE\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{39AD0726-986D-40F9-972B-E3BFA24B7745}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{39AD0726-986D-40F9-972B-E3BFA24B7745}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{39AD0726-986D-40F9-972B-E3BFA24B7745}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{632D51D4-67C3-40CA-8A7E-D1E93E80B005}SOFTWARE\Mozilla\Firefox\EXTENSIONS\addon@arcadeparlor.comSOFTWARE\Wow6432Node\Classes\AppID\CatWSPrx.EXESOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{39AD0726-986D-40F9-972B-E3BFA24B7745}SOFTWARE\Wow6432Node\{F2E9660B-98AF-42c0-8258-9CDDF07BF95D}SOFTWARE\{F2E9660B-98AF-42c0-8258-9CDDF07BF95D}SYSTEM\ControlSet001\services\CatWSPrxSYSTEM\ControlSet002\services\CatWSPrxSYSTEM\CurrentControlSet\services\CatWSPrxHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}{B74443DB-5A88-4583-860A-F0D06EF399E3}

Additional Information

The following directories were created:
%AppData%\Microsoft\Windows\Start Menu\Programs\ArcadeParlor%LOCALAPPDATA%\ArcadeParlor%PROGRAMFILES%\ArcadeParlor%PROGRAMFILES(x86)%\ArcadeParlor%USERPROFILE%\Local Settings\Application Data\ArcadeParlor
The following URL's were detected:
ArcadeParlor
Loading...