WinShow
|
Description:
|
Hijacker
|
|
Risk Level:
|
High
|
|
Date of First Occurence:
|
Friday, May 09, 2008
|
|
Software Developer:
|
8AD.com
|
|
Brief Info:
|
WinShow is a homepage hijacker that is updated from http://00hg.com.
|
|
Removal:
|
This threat can be removed using "Spyware
Terminator"
|
RIMUOVI SPYWARE »
Geographical Distribution of Threat "WinShow"
Threat Info
View All
Detected Items
- Detected Files:
%SYSDIR%\winshow.dll
MD5: 88CA983A9F60BF07BCDE46651C3B5481 Size:1838080
MD5: 1B97DA570A341F164DD1C623EC283C26 Size:1840128
%APPDATA%\winshow\winshow.dll
MD5: 7416468F45D17F912D98BAB5B1612A34 Size:34816
MD5: 4B854F8552912499F592CC232FD13EEC Size:98304
- Detected Files with variable Filenames:
Detecting items list:
- Files by Name
%start_menu%\msupdater.exe
%sysdir%\winshow.dll
- Files by Directories
%APPDATA%\winshow
- Files by CLSID or Name
CLSID=6CC1C918-AE8B-4373-A5B4-28BA1851E39A
«
Go to Software Database