1. /
  2. Security Response/
  3. Adware.WinLog

Adware.WinLog

Updated:
February 13, 2007 11:41:13 AM
Type:
Adware
Risk Impact:
Medium
Systems Affected:
Windows 2000, Windows 95, Windows 98, Windows Me, Windows NT, Windows XP

When Adware.WinLog is executed, it performs the following actions:
  1. Adds the value:

    "winlogon"="<path to executable>"

    to the registry key:

    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

    so that the Adware runs every time Windows starts.

  2. Adds the values:

    "iLastView"="156"
    "iLastCount"="0x00000000"


    to the registry key:

    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Active Setup\

  3. Creates the following files:
    • %Windir%help_dcc.dll
    • %Windir%help_ecc.dll

      Note: %Windir% is a variable that refers to the Windows installation folder. By default, this is C:\Windows or C:\Winnt.

    Summary| Technical Details| Removal

    Search Threats

    Search by name
    Example: W32.Beagle.AG@mm
    STAR Antimalware Protection Technologies
    Internet Security Threat Report