Threat Information for "Zeno Tecnico Zeno Browser Enhancer"
- Name: Zeno Tecnico Zeno Browser Enhancer
- Aliases:HEUR/Trojan.Downloader, W32/Trojan.AVK, Win32:Dialer-566, Adware Generic.JNJ, Adware.Zenosearch.M, AdWare.ZenoSearch.o
- Date Discovered: 2006-08-10
- Protection Added: 2006-08-16
- Added Directory/File:
FilePath: %USERSTARTUP%\Think-Adz.lnk - Added Directory/File:
FilePath: %ROOTDRIVE%zi*00?.exe - Added Directory/File:
FilePath: %SYSTEMDIR%\bang-00?.ico - Added Directory/File:
FilePath: %SYSTEMDIR%\?win????.exe - Added Directory/File:
FilePath: %SYSTEMDIR%\*.exe
MD5: 923835f17e007306d8d00d34ca0a5939 - Added Directory/File:
FilePath: %SYSTEMDIR%\dwdsregt.exe - Added Directory/File:
FilePath: %CACHE%\bang-00*.ico - Added Directory/File:
FilePath: %SYSTEMDIR%\*.exe
MD5: 7ee4b208e79b02cf8865e9015ddfec08 - Added Directory/File:
FilePath: %USERSTARTUP%\Zeno.lnk - Added Directory/File:
FilePath: %CACHE%\ag*.exe - Added Directory/File:
FilePath: %SYSTEMDIR%\nt68rrtc12.sys - Added Directory/File:
FilePath: %USERDESKTOP%\Click to Find and Fix Errors.url - Added Directory/File:
FilePath: %SYSTEMDIR%\zi*00?.exe - Added Directory/File:
FilePath: %SYSTEMDIR%\zx*.cfg - Added Directory/File:
FilePath: %SYSTEMDIR%\????reg?.exe - Added Directory/File:
FilePath: %CACHE%\ex*.exe - Added Directory/File:
FilePath: %SYSTEMDIR%\*.exe
MD5: a4752b02b877ff4698bd858081405731 - Added Directory/File:
FilePath: %USERSTARTUP%\Z_Start.lnk - Added Directory/File:
FilePath: %CACHE%\ez*.exe - Added Directory/File:
FilePath: %SYSTEMDIR%\winpfg32.sys - Added Registry Key:
Key: HKLM\%CURRENTVERSIONREG%\Uninstall\Zeno Browser Enhancer - Added Registry Key:
Key: HKLM\%CURRENTVERSIONREG%\Uninstall\Enhanced Ads by Zeno - Added Registry Key:
Key: HKLM\%CURRENTVERSIONREG%\Uninstall\Enhanced Ads by Think-Adz - Added Registry Key:
Key: HKLM\%CURRENTVERSIONREG%\Uninstall\Zeno Search Assistant - Added Registry Key:
Key: HKLM\%CURRENTVERSIONREG%\Uninstall\Think-Adz Search Assistant - Added Registry Value:
Key: HKLM\%CURRENTVERSIONREG%\Run
Value: BrowserUpdateSched - Added Registry Value:
Key: HKLM\%CURRENTVERSIONREG%\Run
Value: SysStart - Added Registry Data:
Key: HKLM\%CURRENTVERSIONREG%\Run
Value: [RANDOM VALUE]
Data: CORN00