SOSVirus » news » PUP.Optional.SurfVox

PUP.Optional.SurfVox

SurfVox is a software usually installs without your knowledge vith the download of freeware. In fact some sites use the method of repackaging. This is an operation that is to redo the module software installation by adding download options. These options allow to add other software as for example toolbars browser, or potentially unwanted software. The addition of these new programs can decrease the performance of the system but also slow or redirect internet surfing. As a general rule, should focus on the author’s official site to download your software.
Identified : 07/08/2015.

Features

– It belongs to a family of PUP (Potentially Unwanted Program).
– A polluteware is a software that pollutes storage and/or the Base of registers.
– Vendor : PUP.Optional

Main Actions

– It changes the start page of the browser Mozilla Firefox (M0),
– It changes the start page of the browser Internet Explorer (R0),
– It installs as a process launched at startup of the system (RP),
– It settled in the Base of registers to be launched each time with the system (O4).
– It creates to many registry keys ‘Software’
– It creates additional folders (O43),
– It moved to the Windows prefetcher folder (O45).
– It creates multiple files users (O61),

– (…) — C:ProgramDatanvxasynccvxasync.exe
– (…) — C:UsersCoolmanAppDataRoamingnvxasyncnvxasync.exe
R0 – HKCUSOFTWAREMicrosoftInternet ExplorerMain,Start Page = http://www.surfvox.com
O4 – HKCU..Run: . (…) — C:UsersCoolmanAppDataRoamingnvxasyncnvxasync.exe
O4 – HKUSS-1-5-21-1508890139-150664837-1184423992-1000..Run: . (…) — C:UsersCoolmanAppDataRoamingnvxasyncnvxasync.exe
O43 – CFD: 18/06/2015 – 17:18:23 – [] RSHAD C:ProgramDatanvxasync
O43 – CFD: 18/06/2015 – 17:18:07 – [] —-D C:UsersCoolmanAppDataRoamingchportu
O43 – CFD: 18/06/2015 – 17:18:51 – [] RSHAD C:UsersCoolmanAppDataRoamingnvxasync
O61 – LFC: 18/06/2015 – 15:19:34 RSHA- . (…) — C:UsersCoolmanAppDataRoamingnvxasynccvxasync.exe
O61 – LFC: 18/06/2015 – 15:19:34 RSHA- . (…) — C:UsersCoolmanAppDataRoamingnvxasyncnvxasync.exe
O61 – LFC: 18/06/2015 – 15:19:34 RSHA- . (.DivX, LLC.) — C:UsersCoolmanAppDataRoamingnvxasyncklite.exe

Alias

PUP.Optional.SurfVox.A

Remove Software

– Remove software in Windows Configuration Panel,

Remove with ZHPcleaner

Diagnose with ZHPDiag

1 Vote2 Votes3 Votes4 Votes5 Votes (No Ratings Yet)
SOSVirusLoading...

Leave a Comment