Roogoo

Description: Adware
Risk Level: Low
Date of First Occurence: Wednesday, May 14, 2008
Software Developer: (unknown)
Brief Info: Adware Software that is displaying pop-up/pop-under windows containing advertisements when the primary user interface is not visible or displayed advertisements are not related to the product.
Removal: This threat can be removed using "Spyware Terminator"

RIMUOVI SPYWARE »

Geographical Distribution of Threat "Roogoo"

Threat Info

View All

Detected Items

  1. Detected Files: %SYSDIR%\quartz32.dll MD5: B5AF715E1A8FF2B5D2A5D4DCD120FDB5 Size:15430 MD5: FB4ABBDF7EC2FCA1C761E2BED7E707C3 Size:86016 %SYSDIR%\drivers\RGWatch.sys MD5: 975EF90A573771EACA5552ABB6409244 Size:26112
  2. Detected Files with variable Filenames:

Detecting items list:

  1. Files by Name %SYSDIR%\quartz32.dll %TEMP%\Setup-232.exe %SYSDIR%\drivers\RGWatch.sys
  2. Files by CLSID or Name CLSID=18F57D30-EF36-4C0E-9343-7BFA6DF79B4A
  3. Registry Keys HKCR\Adplus.XLink HKCR\Adplus.XLink.2 HKLM\SYSTEM\ControlSet001\Services\RGWatch HKLM\SYSTEM\CurrentControlSet\Services\RGWatch

« Go to Software Database