HQ Codec
ZCodec is an adware program that passes itself off as a video codec. It accesses an IP address on the Internet in order to download and run a certain file at random. This file can be of any nature. For example, ZCodec could download the Trojan Ruins.MB,
which uses rootkit techniques in order to hide itself. Or, it could install an online casino. ZCodec also changes the DNS configuration and monitors if the user accesses any of several adult websites. ZCodec can be voluntarily downloaded from a certain
website.0
General information:
Malware Name: |
HQ Codec |
Malware Type: |
Adware |
Company Name: |
zCodec |
Company URL: |
http://www.zcodec.com/
|
Threat Level: |
Low Risk |
Operating System: |
WIN XP |
Installation Type: |
Installed through EXE |
Operation: |
Time of After Installation. |
Company Description:
zCodec is a multimedia compressor/decompressor which registers into the Windows collection of multimedia drivers and integrates with any application using DirectShow and Microsoft Video for Windows. zCodec will highly increase quality of video files
we play. zCodec enhances our music listening experience by improving the sound quality of video files sound, MP3, internet radio, Windows Media and other music files. Renew stereo depth, add 3D surround sound, restore sound clarity, boost our audio
levels, and produce deep, rich bass sounds.
Spyware Description:
ZCodec is an adware program that passes itself off as a video codec. It accesses an IP address on the Internet in order to download and run a certain file at random. This file can be of any nature. For example, ZCodec could download the Trojan Ruins.MB,
which uses rootkit techniques in order to hide itself. Or, it could install an online casino. ZCodec also changes the DNS configuration and monitors if the user accesses any of several adult websites. ZCodec can be voluntarily downloaded from a certain
website.0
Characteristics/Symptoms:
-> Displays third-party advertising on the computer -> Tracks browsing habits -> Degrade the performance and stability of the computer. -> Bundled with other adware 0
Additional information might be found here:
Processes Running:
File information Created after Installation:
File Location |
Size (Bytes) |
Type |
Folder information Created after Installation:
Registry information Created after Installation:
Main Registry Key |
Sub Registry Key |
Key Value Name |