MovieDea is a software usually installed without your knowledge with the download of freeware. In fact some sites use the method of repackaging. This is an operation that is to redo the module software installation by adding download options. These options allow to add other software as for example toolbars browser, or potentially unwanted software. The addition of these new programs can decrease the performance of the system but also slow or redirect internet surfing. As a general rule, should focus on the author’s official site to download your software.
Identified : 06/06/2015.


– It belongs to a family of PUP (Potentially Unwanted Program).
– A polluteware is a software that pollutes storage and/or the Base of registers.
– Vendor : PUP.Optional


– It installs as a process launched at startup of the system (RP),
– It settled in the Base of registers to be launched each time with the system (O4),
– It installs as a program (O42),
– It creates to many registry keys ‘Software’,
– It creates additional folders (O43),
– It moved to the Windows prefetcher folder (O45),
– It creates a registry StartupReg key (O53),
– It installs as a driver system (O58),
– It creates multiple files users (O61),


[MD5.36DA47145D0A6C56A5AAE8C4973E1093] – (.MovieDea – MovieDea.) — C:\Program Files\MovieDea\MovieDea.exe [3184640] [PID.1452]
[MD5.EF0D6B43027D736A32C04A0B98782471] – (.MovieDea – MovieDea.) — C:\Program Files (x86)\MovieDea\MovieDea.exe
O4 – HKLM\..\Run: [MovieDea] . (.MovieDea – MovieDea.) — C:\Program Files\MovieDea\MovieDea.exe
O42 – Logiciel: MovieDea 1.0 – (.MovieDea.) [HKLM] — MovieDea
O43 – CFD: 06/06/2015 – 13:34:29 – [] —-D C:\Program Files\MovieDea
O43 – CFD: 06/06/2015 – 13:10:38 – [] —-D C:\ProgramData\MovieDeaConfig
O43 – CFD: 06/06/2015 – 13:10:27 – [] —-D C:\Users\Coolman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MovieDea
O43 – CFD: 2015/09/14 07:35:31 – [] D — C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MovieDea
O45 – LFCP:[MD5.A3D121571CCAB6E571DE37382F707202] 2015/07/25 20:28:51 A — C:\Windows\Prefetch\
C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MovieDea
C:\Program Files (x86)\MovieDea\MovieDea.exe


TR/Trash.Gen [Avira AntiVirus]
PUA.SearchProtect t3scan. [IKARUS anti.virus]
Packed.Win32.Krap [Kaspersky]
Backdoor.Win32.Bifrose.fsi [VIPRE Antivirus]


– Remove software in Windows Configuration Panel,
Remove with ZHPcleaner
Diagnose with ZHPDiag