Home / malware BrowserModifier:Win32/Heazycrome!blnk
First posted on 27 October 2016.
Source: MicrosoftAliases :
There are no other names known for BrowserModifier:Win32/Heazycrome!blnk.
Explanation :
This is the detection for browser shortcut files modified by BrowserModifier:Win32/Heazycrome.
When launched using these modified shortcuts, the browsers open any of the following websites:
- 9o0gle.com
- jyhjyy.top
- navigation.iwatchavi.com
- navsmart.info
- yeabests.cc
The following is a screenshot of one of the websites:
The modified shortcut files are for any of the following browsers:
- 360 browsers
- Baidu browser
- Google Chrome
- Internet Explorer
- LieBao browser
- Maxthon
- Mozilla Firefox
- Opera
- QQ browser
- Safari
- Sogou Explorer
- Tencent Traveler
- TheWorld browser
For example, the following is a screenshot of the properties of a modified Internet Explorer shortcut:Last update 27 October 2016