74,139,804 programs installed

Should I remove topbbuuyer?

What percent of users and experts removed it?
80% remove it20% keep it
Overall Sentiment
What do people think about it?
(click star to rate)
How common is it?
Reach 0.0002%


What is topbbuuyer?

TopBuyer is an adware program will display extra advertisements when users are using search engines such as Bing and Google. In Chrome, it installs itself as an extension and in Internet Explorer it runs as a process as well as a Browser Helper Object. It also adds itself as a Windows add-on. The program creates an entry in the Add or Remove Programs of the Control Panel however deleting this entry might stop the adware running, but will not stop ads from displaying. Once installed, This adware displays ads if a user searches using Bing or Google by injecting or inserting over new ads in search as well as various web pages that use 3rd party advertising. The software users the InstalleRex download and install manager from WebPicks Holdings used to distribute Pay Per Install monetized software, typically unwanted toolbars and web browser extensions.

About  (from InstalleRex-WebPick)

We may collect certain information about your web usage and websites you have visited, which may be shared with third parties and used for advertising. NOTE: THE PLUGIN AND OTHER SERVICES COLLECT AND STORES INFORMATION CONCERNING THE WEB PAGES YOU VISIT AND YOUR ACTIVITY ON THOSE PAGES, SUCH AS IMPRESSIONS, CLICKS AND ...  Read more
  • Malware detected in the program
  • Integrates into the web browser
  • Typically distributed through a pay-per-install bundle
  • Injects advertisements unassociated with the underlying web page
  • The experts agree, you should remove it!
Warning, multiple anti-virus scanners have detected possible malware in topbbuuyer.
kS.dll (374367ba293ed2c64cb7bfc4d1fe1417) has been flagged by the following 36 scanners:
Anti-Virus softwareVersionDetection
Lavasoft Ad-Aware 806 Application.Generic.708030
Agnitum Outpost 7.1.1 PUA.MultiPlug
AhnLab-V3 2014.11.12 Adware/Win32.Agent
Antiy-AVL GrayWare[AdWare:not-a-virus]/Win32.Agent
avast! 2014.9-141120 Win32:Adware-gen [Adw]
AVG 2015.0.3284 Generic_r
Avira Adware/MultiPlug.essz
AVware Trojan.Win32.Generic!BT
Baidu-International Adware.Win32.MultiPlug.77
Bitdefender Application.Generic.708030
Bkav FE W32.BogayP.Trojan
CAT-QuickHeal AdWare.Agent.r6 (Not a Virus)
Comodo Security 20055 Application.Win32.MultiPlug.AUAU
Dr.Web Adware.Plugin.454
ESET-NOD32 8.10707 a variant of Win32/AdWare.MultiPlug.BN
F-Secure 11.2014-20-11_5 Application.Generic.708030
G Data 14.11.24 Application.Generic.708030
K7 AntiVirus 13.185.13980 Adware
K7GW 13.185.13980 Trojan ( 050000001 )
Kaspersky not-a-virus:AdWare.Win32.Agent
Kingsoft AntiVirus 331020.49267 Win32.Troj.Generic.a.(kcloud)
Malwarebytes v2014.11.20.01 PUP.Optional.MultiPlug
McAfee 5600.6940 Generic PUP.x
McAfee-GW-Edition 7.6940 BehavesLike.Win32.Downloader.gh
MicroWorld-eScan Application.Generic.708030
NANO AntiVirus Riskware.Win32.Agent.desgnm
Panda Antivirus Adware/Multiplug
Rising Antivirus PE:Trojan.Win32.Generic.1724658A!388261258
Sophos 4.98 MultiPlug
Symantec 11/20/2014 rev. 5 Adware.Popuppers
Tencent Win32.Adware.Agent.Ljah
Trend Micro 10.465.20 ADW_MULPLUG
TrendMicro-HouseCall 7.2.324 ADW_MULPLUG
Vba32 AntiVirus AdWare.Agent
VIPRE Antivirus 34710 Trojan.Win32.Generic!BT
Zillya Adware.Agent.Win32.12788
kS.x64.dll (54e21b7dae36a033b7e663765a15b095) has been flagged by the following 27 scanners:
Anti-Virus softwareSoftware versionDetection
Lavasoft Ad-Aware Adware.Agent.OGL
AegisLab 1.5 AdWare.Win64.MegaSearch
Agnitum Outpost PUA.MultiPlug!
AhnLab-V3 2014.11.10.00 PUP/Win64.MultiPlug
avast! 8.0.1489.320 Win64:Adware-gen [Adw]
AVG Generic_r.QB
AVware Adware.Agent
Baidu-International Adware.Win64.MultiPlug.bD
Bitdefender 7.2 Adware.Agent.OGL
Comodo Security 20033 ApplicUnwnt
Emsisoft Anti-Malware Adware.Agent.OGL (B)
ESET-NOD32 10694 a variant of Win64/Adware.MultiPlug.D
F-Secure 11.0.19100.45 Adware.Agent.OGL
G Data 24 Adware.Agent.OGL
K7 AntiVirus 9.185.13943 Adware ( 004a07491 )
K7GW 9.185.13943 Adware ( 004a07491 )
Malwarebytes PUP.Optional.Preload
McAfee RDN/Generic PUP.x!clw
McAfee-GW-Edition v2014.2 BehavesLike.Win64.Downloader.hm
MicroWorld-eScan Adware.Agent.OGL
nProtect 2014-11-06.01 Adware.Agent.OGL
Qihoo-360 Win32/Trojan.Adware.d41
Sophos 4.98.0 MultiPlug
Trend Micro 9.740.0.1012 ADW_MULPLUG
TrendMicro-HouseCall 9.700.0.1001 ADW_MULPLUG
VIPRE Antivirus 34634 Adware.Agent
Zillya Adware.MultiPlug.Win64.10
kS.exe (097aefd095f0ef6c2da7651a2d5a9b8f) has been flagged by the following 10 scanners:
Anti-Virus softwareSoftware versionDetection
Lavasoft Ad-Aware Gen:Variant.Adware.61989
AhnLab-V3 2014.08.25.03 Trojan/Win32.Preloader
Avira AntiVir TR/Crypt.EPACK.Gen2
Baidu-International Adware.Win32.MultiPlug.BAG
Bitdefender 7.2 Gen:Variant.Adware.61989
Emsisoft Anti-Malware Gen:Variant.Adware.61989 (B)
ESET-NOD32 10310 a variant of Win32/AdWare.MultiPlug.AG
F-Secure 11.0.19100.45 Gen:Variant.Adware.61989
G Data 24 Gen:Variant.Adware.61989
MicroWorld-eScan Gen:Variant.Adware.61989
       View all 73 all detections
topbbuuyer has been found to be bundled with 3rd party software. If you have not purposefully installed this, you should be safe uninstalling it.
Find out how to remove topbbuuyer.

Program detailsProgram details

Displayed publisher: topbUyer
URL: justplug.it
Installation folder: C:\ProgramData\topbbuuyer
Uninstaller: "C:\ProgramData\topbbuuyer\ns.exe" /s /n /C:"ExecuteCommands;UninstallCommands" ""
Estimated size: 1.34 MB

Program filesFiles installed by topbbuuyer

Program executable:ns.exe
Additional files:
  • (Malware detected) kS.exe (by values be account) - values be account (data DBMS hallmark its it)
  • (Malware detected) kS.dll (by 2 stable) - 2 stable (system the as tool)
  • (Malware detected) kS.x64.dll (by 2 stable)
  • ns.dll
  • ns.x64.dll

Program behaviorsBehaviors exhibited

3 Internet Explorer BHOs
  • kS.dll is installed in Internet Explorer as a BHO (Browser Helper Object) under the name 'PriinacceCoupon' with the class of {1BA25A4D-480B-91C1-7F15-65AF9A86C45F}.
  • kS.x64.dll is installed in Internet Explorer as a BHO (Browser Helper Object) under the name 'PRInuceCoUPonn' with the class of {89739C2C-6664-3DE9-48DC-E1DCECACAA9E}.
  • ns.dll is installed in Internet Explorer as a BHO (Browser Helper Object) under the name 'topbbuuyer' with the class of {74A5134D-D1E0-920B-EE53-977AB64EBF32}.

How do I remove topbbuuyer?

Quickly and completely remove topbbuuyer from your computer by downloading "Should I Remove It?", its 100% FREE and installs in seconds (click the button below).
Download "Should I Remove It?", it's FREE!Remove topbbuuyer from your computer.
Or, you can uninstall topbbuuyer from your computer by using the Add/Remove Program feature in the Window's Control Panel.
  1. On the Start menu (for Windows 8, right-click the screen's bottom-left corner), click Control Panel, and then, under Programs, do one of the following:
    • Windows Vista/7/8: Click Uninstall a Program.
    • Windows XP: Click Add or Remove Programs.
  2. When you find the program topbbuuyer, click it, and then do one of the following:
    • Windows Vista/7/8: Click Uninstall.
    • Windows XP: Click the Remove or Change/Remove tab (to the right of the program).
  3. Follow the prompts. A progress bar shows you how long it will take to remove topbbuuyer.
  4. If for some reason uninstallation fails, please install Microsoft's uninstall fixer utility which will help fix problems with programs that can't be uninstalled at support.microsoft.com.

How do I reset my web browser?

If your web browser homepage and search settings have been modfied by topbbuuyer you can restore them to their previous default settings.
Microsoft Internet Explorer
Mozilla Firefox
Google Chrome
Scan your PC for malware
If you do not have a good anti-virus program, please consider installing one. Below are some we highly recommend.

Uninstall it 80%
Keep it 20%
Windows 7 (SP1)
United States

Distribution by countryGeography

80.00% of installs come from the United States
Which countries install it?
  United States 80.00%
  Canada 20.00%


user comment
No one has commented yet. Help others learn more about this software, share your comments.