Host-Codec - One more Zlob fake codec
We have one more fake codec by Zlob group, called
host-codec. At this time, detections by AVs are poor for this codec installer. Once installed, it drops a file named
a.exeto root-drive and drops one BHO named
system32directory. Along with this, it changes DNS addresses to these things:
Information about these DNSes can be found here and here. More information about this malware can be found here.