Home / malwarePDF  

BrowserModifier:Win32/Heazycrome!blnk


First posted on 27 October 2016.
Source: Microsoft

Aliases :

There are no other names known for BrowserModifier:Win32/Heazycrome!blnk.

Explanation :

This is the detection for browser shortcut files modified by BrowserModifier:Win32/Heazycrome.

When launched using these modified shortcuts, the browsers open any of the following websites:

  • 9o0gle.com
  • jyhjyy.top
  • navigation.iwatchavi.com
  • navsmart.info
  • yeabests.cc


The following is a screenshot of one of the websites:

The modified shortcut files are for any of the following browsers:
  • 360 browsers
  • Baidu browser
  • Google Chrome
  • Internet Explorer
  • LieBao browser
  • Maxthon
  • Mozilla Firefox
  • Opera
  • QQ browser
  • Safari
  • Sogou Explorer
  • Tencent Traveler
  • TheWorld browser


For example, the following is a screenshot of the properties of a modified Internet Explorer shortcut:

Last update 27 October 2016

 

TOP

Malware :