1. /
  2. Security Response/
  3. Adware.MSView

Adware.MSView

Updated:
February 13, 2007 11:38:55 AM
Type:
Adware
Publisher:
http://www.msview.cc
Risk Impact:
Medium
File Names:
MSView.dll,MSView.exe,MSVprep.exe
Systems Affected:
Windows 2000, Windows 98, Windows Me, Windows NT, Windows Server 2003, Windows XP

When Adware.MSView is executed, it performs the following actions:
  1. Creates one or both of these files:
    • %Windir%\MSView.dll
    • %Windir%\MSVprep.exe

      Note:
      %Windir% is a variable. The adware locates the Windows installation folder (by default, this is C:\Windows or C:\Winnt) and copies the files to that location.

  2. Attempts to create the registry keys:

    HKEY_CLASSES_ROOT\CLSID\{00000580-C637-11D5-831C-00105AD6ACF0}
    HKEY_CLASSES_ROOT\TypeLib\{690BCCB4-6B83-4203-AE77-038C116594EC}
    HKEY_CLASSES_ROOT\Interface\{4534CD6B-59D6-43FD-864B-06A0D843444A}
    HKEY_CLASSES_ROOT\MSView.MSViewObj.1
    HKEY_CLASSES_ROOT\VX2.VX2Obj
    HKEY_LOCAL_MACHINE\Software\MSView


Summary| Technical Details| Removal

Search Threats

Search by name
Example: W32.Beagle.AG@mm
STAR Antimalware Protection Technologies
Internet Security Threat Report