Home Malware Programs Adware Zombie Alert

Zombie Alert

Posted: March 31, 2014

Threat Metric

Threat Level: 2/10
Infected PCs: 29,688
First Seen: March 31, 2014
Last Seen: November 23, 2024
OS(es) Affected: Windows


Zombie Alert Screenshot 1Zombie Alert is adware, which may be marketed via numerous downloads of free software and, when installed, it may alter the Web browser's default homepage, search engine or a new tab window with a questionable website designed to possibly increase website traffic and generate advertising revenue from ad clicks. Zombie Alert may be created to show unwanted pop-up ads, deals, offers, sales and sponsored links in search results of any popular search provider and may gather search phrases from the PC user's search requests. Zombie Alert may be distributed via unsafe downloads of other programs, especially free applications that might have packaged into their installation package Zombie Alert. When the computer user uninstalls Zombie Alert from the computer system, the Web browser's default settings may not be reverted. This means that the PC user needs to remove Zombie Alert from the PC with a decent anti-malware program.

Zombie Alert Screenshot 2

Aliases

Adware/SaMon [Fortinet]not-a-virus:AdWare.Win32.SaMon [Ikarus]GrayWare[AdWare:not-a-virus]/Win32.SaMon [Antiy-AVL]Generic PUA NH [Sophos]Adware.Plugin.173 [DrWeb]ApplicUnwnt [Comodo]not-a-virus:AdWare.Win32.SaMon.a [Kaspersky]

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%ALLUSERSPROFILE%\ZombieAlert\ZombieAlertService.exe File name: ZombieAlertService.exe
Size: 64.88 KB (64888 bytes)
MD5: c3a4489eeea6dadcb947e5e74ea0f585
Detection count: 44
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\ZombieAlert
Group: Malware file
Last Updated: July 3, 2014

More files

Registry Modifications

The following newly produced Registry Values are:

HKEY..\..\..\..{RegistryKeys}SOFTWARE\Microsoft\Tracing\ZombieAlert_RASAPI32SOFTWARE\Microsoft\Tracing\ZombieAlert_RASMANCSSOFTWARE\Microsoft\Tracing\ZombieAlertService_RASAPI32SOFTWARE\Microsoft\Tracing\ZombieAlertService_RASMANCSSOFTWARE\Wow6432Node\Microsoft\Tracing\ZombieAlert_RASAPI32SOFTWARE\Wow6432Node\Microsoft\Tracing\ZombieAlert_RASMANCSSOFTWARE\Wow6432Node\Microsoft\Tracing\ZombieAlertService_RASAPI32SOFTWARE\Wow6432Node\Microsoft\Tracing\ZombieAlertService_RASMANCSSYSTEM\ControlSet001\services\ZombieAlertSYSTEM\ControlSet002\services\ZombieAlertSYSTEM\CurrentControlSet\services\ZombieAlertHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}ZombieAlert

Additional Information

The following directories were created:
%ALLUSERSPROFILE%\Application Data\ZombieAlert%ALLUSERSPROFILE%\ZombieAlert%LOCALAPPDATA%\ZombieAlert%SystemDrive%\ZombieAlert
Loading...