Adware:W32/Eorezo.A

Threat description

Details

CATEGORYSpyware
TYPEAdware

Summary

This program delivers advertising content to the user.



Removal

Automatic action

Once detected, the F-Secure security product will block the suspect file until further user confirmation is received.

Exclusion

If you are aware of and accept the potential risks, you may choose to exclude this program from future scans by the F-Secure security product.

More scanning & removal options

More information on the scanning and removal options available in your F-Secure product can be found in the Help Center.

You may also refer to the Knowledge Base on the F-Secure Community site for more assistance.

If you suspect a file has been incorrectly identified as malicious, (that is, it is a False Alarm or False Positive), please first ensure your F-Secure security program is up-to-date with the latest detection database updates, then rescan the suspect file.

If you continue to suspect a False Alarm, you may submit a sample of the suspect file to our Security Labs for further analysis via the Submit A Sample (SAS).

Technical Details

Adware:w32/Eorezo.A is an adware component downloaded by software(s) from the French program tutorial services, PCTuto and Tuto4Pc.

Download and use of the adware component, as well as use of data gathered by the component, is explicitly stated in the (French-language) End User License Agreement (EULA) of these softwares.

Installation

Upon installation of the software(s), this adware component will be downloaded and saved in:

  • %APPDATA%\PCTuto\PCTuto\Software\itsTV\{version_id}\sufr.exe

It is then immediately executed.

Activity

On execution, the component opens the Interent Explorer web browser and connects to:

  • h t t p : / /ads.eorezo.com/[...]

In order to display various advertisements. It may also redirect searches.

Description Created: 2011-08-04 09:30:43.0

Description Last Modified: 2011-12-19 09:30:43.0

Submit a Sample

Suspect a file or URL was wrongly detected?
Send it to our Labs for further analysis

Submit a Sample

Give And Get Advice

Give advice. Get advice. Share the knowledge on our free discussion forum.

More Info