Home Malware Programs Adware ZoomPic

ZoomPic

Posted: January 9, 2015

Threat Metric

Threat Level: 2/10
Infected PCs: 564
First Seen: January 9, 2015
Last Seen: June 16, 2023
OS(es) Affected: Windows

ZoomPic is one of those Potentially Unwanted Programs (PUPs) that gets distributed using different marketing methods such as bundling with other free applications. Often, PUPs claim to be useful optimization utilities for computers. Once infected with a PUP such as ZoomPic, users may experience difficulties in browsing the Internet due to ads, deals, offers and discounts powered by ZoomPic. Moreover, users may be redirected to possibly dangerous websites that are unsafe and might attract more malware and unwanted applications. PUPs such as ZoomPic are known to consume a large portion of computer resources, and this is why browsers may behave strangely or occasionally crash.

Technical Details

Registry Modifications

The following newly produced Registry Values are:

HKEY..\..\..\..{RegistryKeys}Software\AppDataLow\Software\zoompicSoftware\AppDataLow\Software\zoompic_29SOFTWARE\Wow6432Node\zoompic_29SOFTWARE\zoompic_29SYSTEM\ControlSet001\services\cozaghostSYSTEM\ControlSet001\services\cozwdhostSYSTEM\ControlSet002\services\cozaghostSYSTEM\ControlSet002\services\cozwdhostSYSTEM\CurrentControlSet\services\cozaghostSYSTEM\CurrentControlSet\services\cozwdhostHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}zoompic

Additional Information

The following directories were created:
%ALLUSERSPROFILE%\makulitsidwe%USERPROFILE%\AppData\LocalLow\zoompic
The following URL's were detected:
http://zoompic.co
Loading...