Home
Articles
Spyware Research
Support
Scan Now
Purchase
F.A.Q.
Top 25 Spyware:
Glossary Latest Detections ![]() |
Adware/Toolbar/VirtuMondeAlias: Trj/Virtumonde.C TrojanSpy.Win32.Agent.I Virtumonde.C, VirtuMonde, Spyware/Virtumonde
Description: Adware/Toolbar/VirtuMonde opens pop-up advertisements windows. See also Adware/Trojan/Vundo. Threat type: Adware - Adware is a software application which displays advertisements on your computer. Advertisements can be displayed through pop-up / pop-under windows, additional bars or toolbars, underlined links or buttons that appear on a computer screen. Adware applications include additional code that delivers the ads. Adware authors earn money when users click on those ads. Occasionally, adware includes code that tracks user's site visits and passes it to third parties without the user's permission or knowledge. Toolbar - A Toolbar is a group of buttons that performs different tasks. Unwanted toolbars are usually installed by adware programs that try to send users to their paying advertisers. Advice: Remove This is a very high risk threat and should be removed immediately as to prevent harm to your computer or your privacy. Detection: SpyNoMore detects Adware/Toolbar/VirtuMonde: Yes Threat risk: High Risk Very dangerous malware. Can log user's keyboard activity and take snapshots of the user's screen. Uses stealth installation and removal is very difficult. Category includes spyware programs, adware programs and trojans. Symptoms: Running Process Signatures: N/A File Signatures: %WINDOWS%\system32\svci.exe %WINDOWS%\inf\vrdsp.ini %PROFILE%\local settings\temp\svci.exe %WINDOWS%\inf\psdrv.exe %WINDOWS%\system32\cidrules.dll Registered Dll (Dynamic Link Library) Signatures: N/A Folder Signatures: %PROGRAM_FILES%\earn Registry Signatures: HKCR\clsid\{13589181-4f0d-4553-b9f8-b4b72172c139} HKCU\software\microsoft\sysupd HKLM\software\targetsoft HKCR\atlevents.atlevents HKLM\software\microsoft\windows nt\currentversion\winlogon\notify\psdrv HKLM\software\microsoft\windows nt\currentversion\winlogon\notify\catw HKCR\atlevents.atlevents.1 HKCU\software\microsoft\windowsupd SpyNoMore Collected Residual File Signatures: N/A
| ||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
|
||||