SpywareSignatures.com
Security Email Alerts & Updates
Quick Links: Malware List | Malware Categories

VombaShots

VombaShots is an adware installer that is typically freeware because it installs other advertising software. It installs other adware application which shows ads on the infected system.

General information:

Malware Name:VombaShots
Malware Type:Adware Installer
Company Name:Vomba Network
Company URL:http://vombashots.com/
Threat Level:Moderate Risk
Operating System:WIN XP
Installation Type:Installed through EXE
Operation:Time of After Installation

Company Description:

VombaShots is a free desktop wallpaper application from Vomba Network that gives user thousands of free wallpapers and screensaver, the program is supported by Vomba which is an adware program from the same publisher.

Spyware Description:

VombaShots is an adware installer that is typically freeware because it installs other advertising software. It installs other adware application which shows ads on the infected system.

Characteristics/Symptoms:

    -> Installs adware program to the system. -> The adware application installed with this program (Vomba) shows advertisements on the infected System.

Additional information might be found here:

googleSearch at Google for VombaShots
bingSearch at Bing for VombaShots
yahooSearch at Yahoo for VombaShots

Processes Running:

VombaShots.exe

File information Created after Installation:

File LocationSize (Bytes)Type
C:\Program Files\VombaShots\CrashReport.exe144896Application
C:\Program Files\VombaShots\CrashReport.ini735Configuration Settings
C:\Program Files\VombaShots\install.log10262Text Document

Folder information Created after Installation:

Folder Location
C:\Documents and Settings\[USER]\Start Menu\Programs\VombaShot

Registry information Created after Installation:

Main Registry KeySub Registry KeyKey Value Name
HKEY_CLASSES_ROOT\CLSID\{0BE667F4-2BA2-4728-80B7-533FEA738B4E}
HKEY_CLASSES_ROOT\CLSID\{DD0E9F89-55AA-4D52-9BA6-209536B3A36E}
HKEY_CLASSES_ROOT\CLSID\{DD0E9F89-55AA-4D52-9BA6-209536B3A36E}ThreadingModel