Home Malware Programs Adware ZoomifyApp

ZoomifyApp

Posted: September 30, 2014

Threat Metric

Ranking: 19,642
Threat Level: 2/10
Infected PCs: 296,889
First Seen: September 30, 2014
Last Seen: January 20, 2025
OS(es) Affected: Windows


ZoomifyApp is an adware application that may be prone to displaying random pop-up or banner advertisements on a screen when the computer user is surfing the internet or viewing shopping sites. The ZoomifyApp program may be loaded through installing random freeware apps or bundled software downloaded from downloads sites on the internet. After it is has been loaded, ZoomifyApp is apt to loading ads and causing redirects to other questionable sites if its ads are clicked on. In some situations the ZoomifyApp ads will attempt to offer various savings or products through shopping on the internet. Stopping the ZoomifyApp ads may involve use of an antispyware tool to seek out all related components and then automatically remove them.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



C:\ProgramData\zoomify_29\1.1.0.29\Uninstaller.11274.exe File name: Uninstaller.11274.exe
Size: 226.81 KB (226816 bytes)
MD5: 94f8191e9a7c0697a7455e424bb3c9d5
Detection count: 4,701
File type: Executable File
Mime Type: unknown/exe
Path: C:\ProgramData\zoomify_29\1.1.0.29\Uninstaller.11274.exe
Group: Malware file
Last Updated: December 31, 2020
%ALLUSERSPROFILE%\zoomify2\1.1.0.25\wzoomifyd.exe File name: wzoomifyd.exe
Size: 161.79 KB (161792 bytes)
MD5: 0c2e26e6b356f513dfae24d1c059bdb1
Detection count: 1,850
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\zoomify2\1.1.0.25
Group: Malware file
Last Updated: March 22, 2016
%ALLUSERSPROFILE%\micron\1.1.0.29\cozahost.exe File name: cozahost.exe
Size: 72.7 KB (72704 bytes)
MD5: c17a73b8981da0fd9fcbbf7d635e4cc8
Detection count: 1,283
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\micron\1.1.0.29
Group: Malware file
Last Updated: January 1, 2020
%ALLUSERSPROFILE%\zoomify2\1.1.0.25\zoomifyL32.exe File name: zoomifyL32.exe
Size: 124.41 KB (124416 bytes)
MD5: e29da7b4658baa5060e3297a99b6c0da
Detection count: 586
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\zoomify2\1.1.0.25
Group: Malware file
Last Updated: March 22, 2016
%ALLUSERSPROFILE%\Dados de aplicativos\zoomify2\1.1.0.25\zoomifyl32.dll File name: zoomifyl32.dll
Size: 328.19 KB (328192 bytes)
MD5: 03e97867f4c9eb629c05f06581f48601
Detection count: 330
File type: Dynamic link library
Mime Type: unknown/dll
Path: %ALLUSERSPROFILE%\Dados de aplicativos\zoomify2\1.1.0.25
Group: Malware file
Last Updated: March 22, 2016
%ALLUSERSPROFILE%\zoomify2\1.1.0.29\zoomify64.dll File name: zoomify64.dll
Size: 390.65 KB (390656 bytes)
MD5: 15fdcb611b110da87ed130c14bdac4ed
Detection count: 185
File type: Dynamic link library
Mime Type: unknown/dll
Path: %ALLUSERSPROFILE%\zoomify2\1.1.0.29
Group: Malware file
Last Updated: March 22, 2016
%ALLUSERSPROFILE%\zoomify2\1.1.0.27\zoomify32.dll File name: zoomify32.dll
Size: 303.1 KB (303104 bytes)
MD5: 42cc100c0e0f100db1c960a23126130d
Detection count: 35
File type: Dynamic link library
Mime Type: unknown/dll
Path: %ALLUSERSPROFILE%\zoomify2\1.1.0.27
Group: Malware file
Last Updated: March 22, 2016
%ALLUSERSPROFILE%\Application Data\micron\1.1.0.29\coz32host.exe File name: coz32host.exe
Size: 66.56 KB (66560 bytes)
MD5: 8526d3b405632b62191abb4e7caf57b7
Detection count: 21
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\Application Data\micron\1.1.0.29
Group: Malware file
Last Updated: March 26, 2016
%ALLUSERSPROFILE%\zoomify2\1.1.0.29\cozwhost.exe File name: cozwhost.exe
Size: 199.15 KB (199152 bytes)
MD5: 53426589a686587ce78d6e1aabd8795c
Detection count: 14
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\zoomify2\1.1.0.29
Group: Malware file
Last Updated: March 22, 2016
%ALLUSERSPROFILE%\zoomify2\1.1.0.27\cozhost.exe File name: cozhost.exe
Size: 495.61 KB (495616 bytes)
MD5: 29e7a8ffb4cd1b47b00f392a9509598b
Detection count: 12
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\zoomify2\1.1.0.27
Group: Malware file
Last Updated: March 22, 2016
%ALLUSERSPROFILE%\micron\1.1.0.29\cozaghost.exe File name: cozaghost.exe
Size: 447.47 KB (447472 bytes)
MD5: 8ee156a4bafc1663aa38bc91186b9b6e
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\micron\1.1.0.29
Group: Malware file
Last Updated: March 26, 2016
%ALLUSERSPROFILE%\makulitsidwe\1.1.0.29\cozwdhost.exe File name: cozwdhost.exe
Size: 247.28 KB (247280 bytes)
MD5: e0dfe550b0a59c6f9c59746e8d7ff2cb
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\makulitsidwe\1.1.0.29
Group: Malware file
Last Updated: March 22, 2016
%ALLUSERSPROFILE%\makulitsidwe\1.1.0.29\coz64host.exe File name: coz64host.exe
Size: 81.92 KB (81920 bytes)
MD5: fa1ac6bfb3b3b50600e1c2b92a28b2d1
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\makulitsidwe\1.1.0.29
Group: Malware file
Last Updated: March 26, 2016

More files

Registry Modifications

The following newly produced Registry Values are:

CLSID{72351B45-9636-4F99-820B-7C552D27897D}{99C1EDDE-1A80-48EA-BD58-CEA4B2DFAC81}{C1F35F0B-FED4-4BB8-9343-D68619D62E6C}HKEY..\..\..\..{RegistryKeys}Software\AppDataLow\Software\zoomifySoftware\AppDataLow\Software\zoomify_29SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures\Tempo Runner coz64host.jobSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures\Tempo Runner coz64host.job.fpSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures\Tempo Runner cozahost.jobSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures\Tempo Runner cozahost.job.fpSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Tempo Runner coz32hostSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Tempo Runner coz64hostSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Tempo Runner cozahostSOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72351B45-9636-4F99-820B-7C552D27897D}}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{72351B45-9636-4F99-820B-7C552D27897D}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{72351B45-9636-4F99-820B-7C552D27897D}SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID\{72351B45-9636-4F99-820B-7C552D27897D}SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{72351B45-9636-4F99-820B-7C552D27897D}}SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID\{72351B45-9636-4F99-820B-7C552D27897D}SOFTWARE\Wow6432Node\zoomifySOFTWARE\Wow6432Node\zoomify_29SOFTWARE\zoomifySOFTWARE\zoomify_29SYSTEM\ControlSet001\services\zoomifySYSTEM\CurrentControlSet\services\zoomify

Additional Information

The following directories were created:
%ALLUSERSPROFILE%\Application Data\zoomify2%ALLUSERSPROFILE%\Application Data\zoomify_29%ALLUSERSPROFILE%\zoomify2%ALLUSERSPROFILE%\zoomify_29%USERPROFILE%\AppData\LocalLow\zoomify
Loading...