Roogoo
|
Description:
|
Adware
|
|
Risk Level:
|
Low
|
|
Date of First Occurence:
|
Wednesday, May 14, 2008
|
|
Software Developer:
|
(unknown)
|
|
Brief Info:
|
Adware
Software that is displaying pop-up/pop-under windows containing advertisements when the primary user interface is not visible or displayed advertisements are not related to the product.
|
|
Removal:
|
This threat can be removed using "Spyware
Terminator"
|
RIMUOVI SPYWARE »
Geographical Distribution of Threat "Roogoo"
Threat Info
View All
Detected Items
- Detected Files:
%SYSDIR%\quartz32.dll
MD5: B5AF715E1A8FF2B5D2A5D4DCD120FDB5 Size:15430
MD5: FB4ABBDF7EC2FCA1C761E2BED7E707C3 Size:86016
%SYSDIR%\drivers\RGWatch.sys
MD5: 975EF90A573771EACA5552ABB6409244 Size:26112
- Detected Files with variable Filenames:
Detecting items list:
- Files by Name
%SYSDIR%\quartz32.dll
%TEMP%\Setup-232.exe
%SYSDIR%\drivers\RGWatch.sys
- Files by CLSID or Name
CLSID=18F57D30-EF36-4C0E-9343-7BFA6DF79B4A
- Registry Keys
HKCR\Adplus.XLink
HKCR\Adplus.XLink.2
HKLM\SYSTEM\ControlSet001\Services\RGWatch
HKLM\SYSTEM\CurrentControlSet\Services\RGWatch
«
Go to Software Database