Roimoi

Description: Adware
Risk Level: High
Date of First Occurence: Friday, May 09, 2008
Software Developer: Roings.com
Brief Info: Roimoi continually launches Internet Explorer popups.
Removal: This threat can be removed using "Spyware Terminator"

RIMUOVI SPYWARE »

Geographical Distribution of Threat "Roimoi"

Threat Info

View All

Detected Items

  1. Detected Files: %WINDIR%\suploads.exe MD5: 3BBD140C45352F5C7EC70655E0EA7138 Size:24576 MD5: 759174B5560C046B441EE4E5502D1232 Size:32768 %WINDIR%\mmups.exe MD5: 7F6BDE732C008811C517E22A44CCA0F2 Size:32768
  2. Detected Files with variable Filenames: MD5: 6E5E2D285D30D7931254B1977C0B1135 Size: 32768 %WINDIR%\mmups.exe D:\DISTRIBUTIVI\ANTIVIRUSY\viruses-20070914\vx.netlux.org\Trojan-Clicker.Win32.VB.ei

Detecting items list:

  1. Files by Name %windir%\mmups.exe %windir%\suploads.exe
  2. Files by MD5 MD5: 6E5E2D285D30D7931254B1977C0B1135 Size: 32768
  3. Files by CLSID or Name CLSID=E0CE16CB-741C-4B24-8D04-A817856E07F4
  4. Registry Keys HKLM\Software\roimoi

« Go to Software Database