Memory Watcher
Category: Cookie
Risk:
Low Risk
* Low risk threats pose a very low risk or no immediate danger to your computer or your privacy, however these types of applications may profile user online habits, but only according to specific privacy policies stated in the applications End-User License. These types of threats generally borderline on being a threat to being a standard application that has a complex license agreement that you knowingly installed.
Description: Memory Watcher downloads files to the user's computer, possibly adware which will open pop-up windows. Memory Watcher uses random file names, which it changes from time to time. It uses random text for registry entries, and changes this text, too. It is fault-tolerant, repairing itself when part of itself is deleted. It sets its file attributes to "system" and "hidden" to make detection and removal harder. And it works as a trickler, downloading more adware, spyware, porn dialers, and the like. A clear sign of infection is a 14 character long registry value starting with a number, located in 'HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Run'. Another indication of infection is random named processes listed in the Task Manager's process list. Another sign of infections is network connections to rads01.quadrogram.com (66.150.207.200). Peper Trojan is bundled with MemoryWatcher.
Alias: None
Signatures: None Listed
Copyright @2006 THR Computer Solutions: Memory Watcher