Zoompic

Zoompic

Known Adware

by Jambo Digital Ltd

What is Zoompic?

Zoompic is software application developed by Jambo Digital Ltd. It is most commonly found on computers running Windows 7 with nearly 58.02% of installations running this operating system. Zoompic's installer is typically 4.00 MB in size and installs around 11 files.

Zoompic is most popular in the United States with 100.00% of installations residing in this country.

Zoompic adds 1 scheduled task to the Windows Task Scheduler launching the program at randomly scheduled times. When using a computer that is connected to the internet, Zoompic is known to create 1 firewall exception to allow inbound and outbound connectivity.

About Zoompic?

Zoompic is a browser extension supported by advertisements that may serve a variety of ads, including coupons, affiliate links, and price comparisons. These ads are delivered through various methods, such as inserting them into the content of the web pages the user is viewing. This adware also tracks the user's browsing activity, including visited web pages, search terms, and domains. Additionally, Zoompic may install a web browser extension and inject ads into the underlying webpage in the form of banners or inline text advertisements. The ads are tailored to the user's queries.

Multiple virus scanners have detected malware in Zoompic.

cozwdhost.exe (MD5: a95f538dc9efeb2f3c3906b0739f8b07) has been flagged by 34 scanners:
Scanner Software Result
Lavasoft Ad-Aware Adware.Agent.PFN
Agnitum Outpost PUA.PennyBee!
ALYac Adware.Agent.PFN
avast! Win32:Adware-gen [Adw]
AVG Generic.397
Avira ADWARE/PennyBee.199200
AVware Trojan.Win32.Generic!BT
Bitdefender Adware.Agent.PFN
Comodo Security ApplicUnwnt
Dr.Web Trojan.Siggen6.28348
Emsisoft Anti-Malware Adware.Agent.PFN (B)
ESET-NOD32 Win32/Adware.PennyBee.D
Fortinet FortiGate Riskware/PennyBee
F-Secure Adware.Agent.PFN
G Data Adware.Agent.PFN
K7 AntiVirus Adware ( 004b77e51 )
K7GW Adware ( 004b77e51 )
Malwarebytes PUP.Optional.Zoomify.A
McAfee Artemis!A95F538DC9EF
Microsoft Security Essentials Adware:Win32/ZoomyLib
MicroWorld-eScan Adware.Agent.PFN
nProtect Adware.Agent.PFN
Panda Antivirus Trj/Genetic.gen
Qihoo-360 HEUR/QVM10.1.Malware.Gen
Sophos Zoomify
Symantec WS.Reputation.1
Trend Micro TROJ_GEN.R00UC0DAR15
TrendMicro-HouseCall TROJ_GEN.R00UC0DAR15
VIPRE Antivirus Trojan.Win32.Generic!BT
AhnLab-V3 Adware/Win32.Zoomylib
Arcabit Adware.ZoomyLib.A
CAT-QuickHeal AdWare.ZoomyLib.r5 (Not a Virus)
McAfee-GW-Edition Artemis
Tencent Win32.Risk.Adware.Chc
cozaghost.exe (MD5: 006001c7ae8047ef5287ca188968a6eb) has been flagged by 28 scanners:
Scanner Software Result
Lavasoft Ad-Aware Adware.ZoomyLib.A
Agnitum Outpost PUA.PennyBee!
AhnLab-V3 Adware/Win32.Zoomylib
ALYac Adware.ZoomyLib.A
Arcabit Adware.ZoomyLib.A
avast! Win32:Malware-gen
AVG Generic.397
Avira ADWARE/ClickPotato.471096
AVware Trojan.Win32.Generic!BT
Bitdefender Adware.ZoomyLib.A
CAT-QuickHeal AdWare.ZoomyLib.r5 (Not a Virus)
Emsisoft Anti-Malware Adware.ZoomyLib.A (B)
ESET-NOD32 a variant of Win32/Adware.PennyBee.J
F-Secure Adware.ZoomyLib.A
G Data Adware.ZoomyLib.A
K7 AntiVirus Riskware ( 0049f6ae1 )
K7GW Riskware ( 0049f6ae1 )
Malwarebytes PUP.Optional.Zoomify.A
McAfee Artemis!006001C7AE80
McAfee-GW-Edition Artemis
Microsoft Security Essentials Adware:Win32/ZoomyLib
MicroWorld-eScan Adware.ZoomyLib.A
nProtect Adware.ZoomyLib.A
Panda Antivirus Trj/Genetic.gen
Symantec WS.Reputation.1
Tencent Win32.Risk.Adware.Chc
Trend Micro TROJ_GEN.R03LC0DBJ15
VIPRE Antivirus Trojan.Win32.Generic!BT
coz32host.exe (MD5: 0865f36ba55217ebbd4251c72e5cef01) has been flagged by 36 scanners:
Scanner Software Result
Lavasoft Ad-Aware Adware.Jambo.A
Agnitum Outpost PUA.PennyBee
ALYac Adware.Jambo.A
avast! Win32:Dropper-gen [Drp]
AVG Generic6
Avira Adware/ClickPotato.154112
AVware Trojan.Win32.Generic!BT
Baidu-International Adware.Win32.PennyBee.D
Bitdefender Adware.Jambo.A
Cyren W32/Adware.ZXSK-1138
Emsisoft Anti-Malware Adware.Jambo
ESET-NOD32 Win32/Adware.PennyBee.D
Fortinet FortiGate Riskware/PennyBee
F-Secure Adware.Jambo.A
G Data Adware.Jambo
Malwarebytes PUP.Optional.Zoomify.A
McAfee Artemis!0865F36BA552
McAfee-GW-Edition BehavesLike.Win32.BadFile.cm
Microsoft Security Essentials Adware:Win32/ZoomyLib
MicroWorld-eScan Adware.Jambo.A
nProtect Adware.Jambo.A
Sophos Generic PUA EH
Symantec Trojan.Gen
Trend Micro TROJ_GEN.R047C0DAM15
TrendMicro-HouseCall TROJ_GEN.R047C0DAM15
VIPRE Antivirus Trojan.Win32.Generic!BT
Comodo Security ApplicUnwnt
Dr.Web Trojan.Siggen6.28348
K7 AntiVirus Adware ( 004b77e51 )
K7GW Adware ( 004b77e51 )
Panda Antivirus Trj/Genetic.gen
Qihoo-360 HEUR/QVM10.1.Malware.Gen
AhnLab-V3 Adware/Win32.Zoomylib
Arcabit Adware.ZoomyLib.A
CAT-QuickHeal AdWare.ZoomyLib.r5 (Not a Virus)
Tencent Win32.Risk.Adware.Chc

Software Behaviors

Services:
  • cozwdhost.exe runs as a service named 'cozwdhost' (cozwdhost).
  • cozaghost.exe runs as a service named 'cozaghost' (cozaghost).
Firewall:
  • cozaghost.exe is added as a firewall exception for 'C:\Documents and Settings\user\Application Data\makulitsidwe\1.1.0.29\cozaghost.exe'.
Scheduled tasks:
  • cozaghost.exe is scheduled as a task named 'Tempo Runner coz64host'.

Software Details

URL:
Support:
Installation path:
C:\ProgramData\makulitsidwe\1.1.0.29
Uninstaller:
C:\ProgramData\makulitsidwe\1.1.0.29\Uninstaller.exe /ga=1503
Size:
4.00 MB
Language:
English

Zoompic Executable Details

Primary executable:
coz32host.exe
Name:
Zoompic
Path:
C:\ProgramData\makulitsidwe\1.1.0.29\coz32host.exe
MD5:
0865f36ba55217ebbd4251c72e5cef01
SHA-1:
SHA-256:
Files installed by Zoompic
File Type Filename MD5
EXE
5c437e5e231bb135a46cd8ed5ba17796
EXE
a93d3040777ef2f8da8c91784dd53c70
XPI
6be8326561ad034c7bafe6dea3b2892c
DLL
4ab973f3e190eb8cb3f501d15f0bb64a
DLL
bbddd70592e85e49dfc3d5b712e86fd8
DLL
d720123bceba40ed8243f54f78a24a62
EXE
a95f538dc9efeb2f3c3906b0739f8b07
EXE
c75348cf22ef07a9b35f6d9f81e35354
EXE
006001c7ae8047ef5287ca188968a6eb
EXE
b4c7b49e79e377df6f6256f2842a5c79