Home / malwarePDF  

BrowserModifier:Win32/Pointup


First posted on 15 February 2019.
Source: Microsoft

Aliases :

BrowserModifier:Win32/Pointup is also known as Mal/BHO-J, Trojan-Downloader.Win32.Delf.qfw, :Trj/Downloader.MDW, SecurityRisk.Downldr.

Explanation :

BrowserModifier:Win32/Pointup is a multi-component detection for a Browser Helper Object (BHO) that may hijack the browser to connect to certain websites or display advertisements for certain products. InstallationUpon execution, BrowserModifier:Win32/Pointup creates the following registry keys and their associated entries to register itself as a BHO: HKCUSoftwarePoint-up HKCRCLSID{89675691-85E0-4180-99F1-E8864E4C177E} HKLMSOFTWAREClassesCLSID{89675691-85E0-4180-99F1-E8864E4C177E} HKLMSOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{89675691-85E0-4180-99F1-E8864E4C177E} Once installed, BrowserModifier:Win32/Pointup may contact the server "reward.point-up.kr" to update itself and to display advertisements for certain products.  Analysis by Jireh Sanico

Last update 15 February 2019

 

TOP