Home Malware Programs Adware MirageISO

MirageISO

Posted: October 9, 2017

Threat Metric

Ranking: 13,557
Threat Level: 1/10
Infected PCs: 40,507
First Seen: October 10, 2017
Last Seen: September 22, 2023
OS(es) Affected: Windows

MirageISO is a piece of software, which is being promoted as an all-in-one virtual CD-ROM software. With its assistance, users should be able to create virtual CD-ROM images or mount existing ones to use the files present on them quickly. While this functionality may be appreciated by many users, there are more legitimate and reputable programs that can provide MirageISO's features alongside additional perks for free! While MirageISO might work as expected and it is free, online reports show that the installation of this tool might also cause unforeseen side effects such as the inclusion of unwanted ads in hidden Web browser windows. The advertisements may vary a lot in terms of their contents, but that's probably because they are being changed according to the needs of MirageISO's advertising partners constantly. Keep in mind that these ads are not visible to the user and, instead, the hidden instances of the default system Web browser may click on the ads to generate revenue automatically. Some of the domains that MirageISO connects to click on ads are ad.soicos.com, tj.51Ltj.com and dangyu.info.

The MirageISO software can be installed via their official website and, so far, we have not identified cases in which the program has been distributed via alternative methods like software bundling. If the MirageISO program is present on your computer and you are happy with what it has to provide, then it is probably not an issue to keep on using it. However, if you are unhappy with the ads it displays, then the recommendation is to remove it as soon as possible. Since MirageISO is not harmful, it can be uninstalled via the Windows Control Panel manually, but you could also take care of the task with the help of a credible anti-virus program.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



dir\name.exe File name: name.exe
Size: 2.32 MB (2329368 bytes)
MD5: 80327d3c91504ca38c7b86f0145482b5
Detection count: 20
File type: Executable File
Mime Type: unknown/exe
Path: dir
Group: Malware file
Last Updated: October 12, 2017

Registry Modifications

The following newly produced Registry Values are:

File name without pathMirageISO.lnkRegexp file mask%WINDIR%\System32\drivers\vtuiso.sysHKEY..\..\..\..{RegistryKeys}SYSTEM\ControlSet001\Enum\Root\LEGACY_VTUISOSYSTEM\ControlSet001\services\vtuisoSYSTEM\ControlSet002\Enum\Root\LEGACY_VTUISOSYSTEM\ControlSet002\services\vtuisoSYSTEM\CurrentControlSet\Enum\Root\LEGACY_VTUISOSYSTEM\CurrentControlSet\services\vtuisoHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}{227D5BAD-71AE-4EC4-92F3-046EA3A1D9ED}

Additional Information

The following directories were created:
%ALLUSERSPROFILE%\Microsoft\Windows\Start Menu\Programs\MirageISO%APPDATA%\Microsoft\Windows\Start Menu\Programs\MirageISO%PROGRAMFILES%\MirageISO%PROGRAMFILES(x86)%\MirageISO%USERPROFILE%\Documents\mirage
Loading...