Adware.Loadscc
Adware.Loadscc Description
Adware.Loadscc is a malignant adware program that may irritate a victim with frequent pop-up advertisements. Adware.Loadscc spreads with the help of Trojans or other malware programs. Adware.Loadscc generates funds for its creator by contacting the service provider in order to confirm when malware installations have been accomplished. Use a security tool to completely remove Adware.Loadscc from your system.
Type: Adware
Aliases: Downloader (Symantec), Downloader.gen.a (McAfee), Generic Packed (McAfee), Infostealer (Symantec), Packed.Win32.PolyCrypt.d (Kaspersky Lab), TROJ_DLOADER.SZU [Trend Micro], TROJ_VUNDO.CTK [Trend Micro], Trojan.Vundo [Symantec], Vundo [McAfee].
How Can You Detect Adware.Loadscc?
Adware.Loadscc has typically the following processes in memory:
- %ProgramFiles%\Internet Explorer\Connection Wizard\icwconn1.exe
- %ProgramFiles%\Internet Explorer\Connection Wizard\icwtutor.exe
- %ProgramFiles%\Internet Explorer\iedw.exe
- %ProgramFiles%\MSN\MSNIA\prestp.exe
- %ProgramFiles%\NetMeeting\conf.exe
- %ProgramFiles%\Outlook Express\oemig50.exe
- %ProgramFiles%\Outlook Express\wabmig.exe
- %ProgramFiles%\Windows Media Player\mplayer2.exe
- %ProgramFiles%\Windows NT\Accessories\wordpad.exe
- %ProgramFiles%\Windows NT\Pinball\PINBALL.EXE
- %Windir%\inf\unregmp2.exe
- %Windir%\Microsoft.NET\Framework\v2.0.50727\aspnet_compiler.exe
- %Windir%\Microsoft.NET\Framework\v2.0.50727\CasPol.exe
- %Windir%\Microsoft.NET\Framework\v2.0.50727\InstallUtil.exe
- %Windir%\Microsoft.NET\Framework\v2.0.50727\RegAsm.exe
- %Windir%\mui\muisetup.exe
- %Windir%\pchealth\helpctr\binaries\HelpHost.exe
- %Windir%\pchealth\helpctr\binaries\msconfig.exe
- %Windir%\regedit.exe
- %System%\ahui.exe
- %System%\asr_ldm.exe
- %System%\atmadm.exe
- %System%\blastcln.exe
- %System%\bootvrfy.exe
- %System%\charmap.exe
- %System%\cidaemon.exe
- %System%\ckcnv.exe
- %System%\cliconfg.exe
- %System%\cmd.exe
- %System%\cmstp.exe
- %System%\comp.exe
- %System%\control.exe
- %System%\ctfmon.exe
- %System%\kapg1.dll
- %ProgramFiles%\Internet Explorer\Connection Wizard\icwrmind.exe
- %ProgramFiles%\Internet Explorer\Connection Wizard\isignup.exe
- %ProgramFiles%\MSN\MSNIA\msniasvc.exe
- %ProgramFiles%\NetMeeting\cb32.exe
- %ProgramFiles%\Outlook Express\msimn.exe
- %ProgramFiles%\Outlook Express\wab.exe
- %ProgramFiles%\Windows Media Player\migrate.exe
- %ProgramFiles%\Windows Media Player\wmplayer.exe
- %ProgramFiles%\Windows NT\hypertrm.exe
- %Windir%\hh.exe
- %Windir%\Microsoft.NET\Framework\NETFXSBS10.exe
- %Windir%\Microsoft.NET\Framework\v2.0.50727\aspnet_regsql.exe
- %Windir%\Microsoft.NET\Framework\v2.0.50727\IEExec.exe
- %Windir%\Microsoft.NET\Framework\v2.0.50727\MSBuild.exe
- %Windir%\msagent\agentsvr.exe
- %Windir%\pchealth\helpctr\binaries\HelpCtr.exe
- %Windir%\pchealth\helpctr\binaries\HscUpd.exe
- %Windir%\pchealth\UploadLB\Binaries\UploadM.exe
- %System%\actmovie.exe
- %System%\asr_fmt.exe
- %System%\at.exe
- %System%\auditusr.exe
- %System%\bootok.exe
- %System%\calc.exe
- %System%\chkntfs.exe
- %System%\cisvc.exe
- %System%\clean_all.exe
- %System%\clipsrv.exe
- %System%\cmmon32.exe
- %System%\Com\comrereg.exe
- %System%\conime.exe
- %System%\cscript.exe
- %System%\drivers\smss.exe
- %ProgramFiles%\Internet Explorer\Connection Wizard\icwconn2.exe
- %ProgramFiles%\Internet Explorer\Connection Wizard\inetwiz.exe
- %ProgramFiles%\Internet Explorer\IEXPLORE.EXE
- %ProgramFiles%\MSN\MsnInstaller\msninst.exe
- %ProgramFiles%\NetMeeting\wb32.exe
- %ProgramFiles%\Outlook Express\setup50.exe
- %ProgramFiles%\Web Publish\WPWIZ.EXE
- %ProgramFiles%\Windows Media Player\setup_wm.exe
- %ProgramFiles%\Windows NT\dialer.exe
- %Windir%\Cache\Adobe Reader 6.0.1\ENUBIG\setup.exe
- %Windir%\Installer\{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}\places.exe
- %Windir%\Microsoft.NET\Framework\v2.0.50727\aspnet_regbrowsers.exe
- %Windir%\Microsoft.NET\Framework\v2.0.50727\dfsvc.exe
- %Windir%\Microsoft.NET\Framework\v2.0.50727\jsc.exe
- %Windir%\Microsoft.NET\Framework\v2.0.50727\RegSvcs.exe
- %Windir%\NOTEPAD.EXE
- %Windir%\pchealth\helpctr\binaries\HelpSvc.exe
- %Windir%\pchealth\helpctr\binaries\notiflag.exe
- %System%\accwiz.exe
- %System%\arp.exe
- %System%\asr_pfu.exe
- %System%\attrib.exe
- %System%\bootcfg.exe
- %System%\cacls.exe
- %System%\chkdsk.exe
- %System%\cipher.exe
- %System%\cleanmgr.exe
- %System%\clipbrd.exe
- %System%\cmdl32.exe
- %System%\Com\comrepl.exe
- %System%\compact.exe
- %System%\convert.exe
- %System%\dcomcnfg.exe
Adware.Loadscc creates the following registry entries:
- HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D9793596-12C2-44CE-96F3-03A62638E9AE}\ProgID
- HKEY_LOCAL_MACHINE\SOFTWARE\MSN
- HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D9793596-12C2-44CE-96F3-03A62638E9AE}\InprocServer32
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D9793596-12C2-44CE-96F3-03A62638E9AE}
- HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D9793596-12C2-44CE-96F3-03A62638E9AE}
- HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D9793596-12C2-44CE-96F3-03A62638E9AE}\TypeLib
Important Article Disclaimer

English 
Deutsch
Español
Français
Portuguese
Adware.Loadscc 











