Поддержка
Круглосуточная поддержка

Позвоните

Бесплатно по России:
8-800-333-79-32

ЧаВо | Форум

Ваши запросы

  • Все: -
  • Незакрытые: -
  • Последний: -

Позвоните

Бесплатно по России:
8-800-333-79-32

Свяжитесь с нами Незакрытые запросы: 

Профиль

Профиль

Trojan.Click3.25313

Добавлен в вирусную базу Dr.Web: 2018-01-09

Описание добавлено:

Техническая информация

Вредоносные функции:
Запускает на исполнение:
  • '%ProgramFiles%\Internet Explorer\IEXPLORE.EXE' http://www.hu###durr.com
  • '%ProgramFiles%\Internet Explorer\IEXPLORE.EXE' http://www.yo####anidiot.org
  • '<SYSTEM32>\taskkill.exe' /f /pid explorer.exe
Изменения в файловой системе:
Создает следующие файлы:
  • %HOMEPATH%\Desktop\error354.vbs
  • %HOMEPATH%\Desktop\error353.vbs
  • %HOMEPATH%\Desktop\error356.vbs
  • %HOMEPATH%\Desktop\error355.vbs
  • %HOMEPATH%\Desktop\error350.vbs
  • %HOMEPATH%\Desktop\error349.vbs
  • %HOMEPATH%\Desktop\error352.vbs
  • %HOMEPATH%\Desktop\error351.vbs
  • %HOMEPATH%\Desktop\error362.vbs
  • %HOMEPATH%\Desktop\error361.vbs
  • %HOMEPATH%\Desktop\error364.vbs
  • %HOMEPATH%\Desktop\error363.vbs
  • %HOMEPATH%\Desktop\error358.vbs
  • %HOMEPATH%\Desktop\error357.vbs
  • %HOMEPATH%\Desktop\error360.vbs
  • %HOMEPATH%\Desktop\error359.vbs
  • %HOMEPATH%\Desktop\error348.vbs
  • %HOMEPATH%\Desktop\error337.vbs
  • %HOMEPATH%\Desktop\error336.vbs
  • %HOMEPATH%\Desktop\error339.vbs
  • %HOMEPATH%\Desktop\error338.vbs
  • %HOMEPATH%\Desktop\error333.vbs
  • %HOMEPATH%\Desktop\error332.vbs
  • %HOMEPATH%\Desktop\error335.vbs
  • %HOMEPATH%\Desktop\error334.vbs
  • %HOMEPATH%\Desktop\error345.vbs
  • %HOMEPATH%\Desktop\error344.vbs
  • %HOMEPATH%\Desktop\error347.vbs
  • %HOMEPATH%\Desktop\error346.vbs
  • %HOMEPATH%\Desktop\error341.vbs
  • %HOMEPATH%\Desktop\error340.vbs
  • %HOMEPATH%\Desktop\error343.vbs
  • %HOMEPATH%\Desktop\error342.vbs
  • %HOMEPATH%\Desktop\error387.vbs
  • %HOMEPATH%\Desktop\error386.vbs
  • %HOMEPATH%\Desktop\error389.vbs
  • %HOMEPATH%\Desktop\error388.vbs
  • %HOMEPATH%\Desktop\error383.vbs
  • %HOMEPATH%\Desktop\error382.vbs
  • %HOMEPATH%\Desktop\error385.vbs
  • %HOMEPATH%\Desktop\error384.vbs
  • %HOMEPATH%\Desktop\error395.vbs
  • %HOMEPATH%\Desktop\error394.vbs
  • %HOMEPATH%\Desktop\error397.vbs
  • %HOMEPATH%\Desktop\error396.vbs
  • %HOMEPATH%\Desktop\error391.vbs
  • %HOMEPATH%\Desktop\error390.vbs
  • %HOMEPATH%\Desktop\error393.vbs
  • %HOMEPATH%\Desktop\error392.vbs
  • %HOMEPATH%\Desktop\error381.vbs
  • %HOMEPATH%\Desktop\error370.vbs
  • %HOMEPATH%\Desktop\error369.vbs
  • %HOMEPATH%\Desktop\error372.vbs
  • %HOMEPATH%\Desktop\error371.vbs
  • %HOMEPATH%\Desktop\error366.vbs
  • %HOMEPATH%\Desktop\error365.vbs
  • %HOMEPATH%\Desktop\error368.vbs
  • %HOMEPATH%\Desktop\error367.vbs
  • %HOMEPATH%\Desktop\error378.vbs
  • %HOMEPATH%\Desktop\error377.vbs
  • %HOMEPATH%\Desktop\error380.vbs
  • %HOMEPATH%\Desktop\error379.vbs
  • %HOMEPATH%\Desktop\error374.vbs
  • %HOMEPATH%\Desktop\error373.vbs
  • %HOMEPATH%\Desktop\error376.vbs
  • %HOMEPATH%\Desktop\error375.vbs
  • %HOMEPATH%\Desktop\error288.vbs
  • %HOMEPATH%\Desktop\error287.vbs
  • %HOMEPATH%\Desktop\error290.vbs
  • %HOMEPATH%\Desktop\error289.vbs
  • %HOMEPATH%\Desktop\error284.vbs
  • %HOMEPATH%\Desktop\error283.vbs
  • %HOMEPATH%\Desktop\error286.vbs
  • %HOMEPATH%\Desktop\error285.vbs
  • %HOMEPATH%\Desktop\error296.vbs
  • %HOMEPATH%\Desktop\error295.vbs
  • %HOMEPATH%\Desktop\error298.vbs
  • %HOMEPATH%\Desktop\error297.vbs
  • %HOMEPATH%\Desktop\error292.vbs
  • %HOMEPATH%\Desktop\error291.vbs
  • %HOMEPATH%\Desktop\error294.vbs
  • %HOMEPATH%\Desktop\error293.vbs
  • %HOMEPATH%\Desktop\error282.vbs
  • %HOMEPATH%\Desktop\error271.vbs
  • %HOMEPATH%\Desktop\error270.vbs
  • %HOMEPATH%\Desktop\error273.vbs
  • %HOMEPATH%\Desktop\error272.vbs
  • %HOMEPATH%\Desktop\error267.vbs
  • %HOMEPATH%\Desktop\error266.vbs
  • %HOMEPATH%\Desktop\error269.vbs
  • %HOMEPATH%\Desktop\error268.vbs
  • %HOMEPATH%\Desktop\error279.vbs
  • %HOMEPATH%\Desktop\error278.vbs
  • %HOMEPATH%\Desktop\error281.vbs
  • %HOMEPATH%\Desktop\error280.vbs
  • %HOMEPATH%\Desktop\error275.vbs
  • %HOMEPATH%\Desktop\error274.vbs
  • %HOMEPATH%\Desktop\error277.vbs
  • %HOMEPATH%\Desktop\error276.vbs
  • %HOMEPATH%\Desktop\error321.vbs
  • %HOMEPATH%\Desktop\error320.vbs
  • %HOMEPATH%\Desktop\error323.vbs
  • %HOMEPATH%\Desktop\error322.vbs
  • %HOMEPATH%\Desktop\error317.vbs
  • %HOMEPATH%\Desktop\error316.vbs
  • %HOMEPATH%\Desktop\error319.vbs
  • %HOMEPATH%\Desktop\error318.vbs
  • %HOMEPATH%\Desktop\error329.vbs
  • %HOMEPATH%\Desktop\error328.vbs
  • %HOMEPATH%\Desktop\error331.vbs
  • %HOMEPATH%\Desktop\error330.vbs
  • %HOMEPATH%\Desktop\error325.vbs
  • %HOMEPATH%\Desktop\error324.vbs
  • %HOMEPATH%\Desktop\error327.vbs
  • %HOMEPATH%\Desktop\error326.vbs
  • %HOMEPATH%\Desktop\error315.vbs
  • %HOMEPATH%\Desktop\error304.vbs
  • %HOMEPATH%\Desktop\error303.vbs
  • %HOMEPATH%\Desktop\error306.vbs
  • %HOMEPATH%\Desktop\error305.vbs
  • %HOMEPATH%\Desktop\error300.vbs
  • %HOMEPATH%\Desktop\error299.vbs
  • %HOMEPATH%\Desktop\error302.vbs
  • %HOMEPATH%\Desktop\error301.vbs
  • %HOMEPATH%\Desktop\error312.vbs
  • %HOMEPATH%\Desktop\error311.vbs
  • %HOMEPATH%\Desktop\error314.vbs
  • %HOMEPATH%\Desktop\error313.vbs
  • %HOMEPATH%\Desktop\error308.vbs
  • %HOMEPATH%\Desktop\error307.vbs
  • %HOMEPATH%\Desktop\error310.vbs
  • %HOMEPATH%\Desktop\error309.vbs
  • %HOMEPATH%\Desktop\error398.vbs
  • %HOMEPATH%\Desktop\error487.vbs
  • %HOMEPATH%\Desktop\error486.vbs
  • %HOMEPATH%\Desktop\error489.vbs
  • %HOMEPATH%\Desktop\error488.vbs
  • %HOMEPATH%\Desktop\error483.vbs
  • %HOMEPATH%\Desktop\error482.vbs
  • %HOMEPATH%\Desktop\error485.vbs
  • %HOMEPATH%\Desktop\error484.vbs
  • %HOMEPATH%\Desktop\error495.vbs
  • %HOMEPATH%\Desktop\error494.vbs
  • %HOMEPATH%\Desktop\error497.vbs
  • %HOMEPATH%\Desktop\error496.vbs
  • %HOMEPATH%\Desktop\error491.vbs
  • %HOMEPATH%\Desktop\error490.vbs
  • %HOMEPATH%\Desktop\error493.vbs
  • %HOMEPATH%\Desktop\error492.vbs
  • %HOMEPATH%\Desktop\error481.vbs
  • %HOMEPATH%\Desktop\error470.vbs
  • %HOMEPATH%\Desktop\error469.vbs
  • %HOMEPATH%\Desktop\error472.vbs
  • %HOMEPATH%\Desktop\error471.vbs
  • %HOMEPATH%\Desktop\error466.vbs
  • %HOMEPATH%\Desktop\error465.vbs
  • %HOMEPATH%\Desktop\error468.vbs
  • %HOMEPATH%\Desktop\error467.vbs
  • %HOMEPATH%\Desktop\error478.vbs
  • %HOMEPATH%\Desktop\error477.vbs
  • %HOMEPATH%\Desktop\error480.vbs
  • %HOMEPATH%\Desktop\error479.vbs
  • %HOMEPATH%\Desktop\error474.vbs
  • %HOMEPATH%\Desktop\error473.vbs
  • %HOMEPATH%\Desktop\error476.vbs
  • %HOMEPATH%\Desktop\error475.vbs
  • %HOMEPATH%\Desktop\error20.txt
  • %HOMEPATH%\Desktop\error19.txt
  • %HOMEPATH%\Desktop\error22.txt
  • %HOMEPATH%\Desktop\error21.txt
  • %HOMEPATH%\Desktop\error16.txt
  • %HOMEPATH%\Desktop\error15.txt
  • %HOMEPATH%\Desktop\error18.txt
  • %HOMEPATH%\Desktop\error17.txt
  • %HOMEPATH%\Desktop\error28.txt
  • %HOMEPATH%\Desktop\error27.txt
  • %HOMEPATH%\Desktop\error30.txt
  • %HOMEPATH%\Desktop\error29.txt
  • %HOMEPATH%\Desktop\error24.txt
  • %HOMEPATH%\Desktop\error23.txt
  • %HOMEPATH%\Desktop\error26.txt
  • %HOMEPATH%\Desktop\error25.txt
  • %HOMEPATH%\Desktop\error14.txt
  • %HOMEPATH%\Desktop\error3.txt
  • %HOMEPATH%\Desktop\error2.txt
  • %HOMEPATH%\Desktop\error5.txt
  • %HOMEPATH%\Desktop\error4.txt
  • %HOMEPATH%\Desktop\error499.vbs
  • %HOMEPATH%\Desktop\error498.vbs
  • %HOMEPATH%\Desktop\error1.txt
  • %HOMEPATH%\Desktop\error500.vbs
  • %HOMEPATH%\Desktop\error11.txt
  • %HOMEPATH%\Desktop\error10.txt
  • %HOMEPATH%\Desktop\error13.txt
  • %HOMEPATH%\Desktop\error12.txt
  • %HOMEPATH%\Desktop\error7.txt
  • %HOMEPATH%\Desktop\error6.txt
  • %HOMEPATH%\Desktop\error9.txt
  • %HOMEPATH%\Desktop\error8.txt
  • %HOMEPATH%\Desktop\error421.vbs
  • %HOMEPATH%\Desktop\error420.vbs
  • %HOMEPATH%\Desktop\error423.vbs
  • %HOMEPATH%\Desktop\error422.vbs
  • %HOMEPATH%\Desktop\error417.vbs
  • %HOMEPATH%\Desktop\error416.vbs
  • %HOMEPATH%\Desktop\error419.vbs
  • %HOMEPATH%\Desktop\error418.vbs
  • %HOMEPATH%\Desktop\error429.vbs
  • %HOMEPATH%\Desktop\error428.vbs
  • %HOMEPATH%\Desktop\error431.vbs
  • %HOMEPATH%\Desktop\error430.vbs
  • %HOMEPATH%\Desktop\error425.vbs
  • %HOMEPATH%\Desktop\error424.vbs
  • %HOMEPATH%\Desktop\error427.vbs
  • %HOMEPATH%\Desktop\error426.vbs
  • %HOMEPATH%\Desktop\error415.vbs
  • %HOMEPATH%\Desktop\error404.vbs
  • %HOMEPATH%\Desktop\error403.vbs
  • %HOMEPATH%\Desktop\error406.vbs
  • %HOMEPATH%\Desktop\error405.vbs
  • %HOMEPATH%\Desktop\error400.vbs
  • %HOMEPATH%\Desktop\error399.vbs
  • %HOMEPATH%\Desktop\error402.vbs
  • %HOMEPATH%\Desktop\error401.vbs
  • %HOMEPATH%\Desktop\error412.vbs
  • %HOMEPATH%\Desktop\error411.vbs
  • %HOMEPATH%\Desktop\error414.vbs
  • %HOMEPATH%\Desktop\error413.vbs
  • %HOMEPATH%\Desktop\error408.vbs
  • %HOMEPATH%\Desktop\error407.vbs
  • %HOMEPATH%\Desktop\error410.vbs
  • %HOMEPATH%\Desktop\error409.vbs
  • %HOMEPATH%\Desktop\error454.vbs
  • %HOMEPATH%\Desktop\error453.vbs
  • %HOMEPATH%\Desktop\error456.vbs
  • %HOMEPATH%\Desktop\error455.vbs
  • %HOMEPATH%\Desktop\error450.vbs
  • %HOMEPATH%\Desktop\error449.vbs
  • %HOMEPATH%\Desktop\error452.vbs
  • %HOMEPATH%\Desktop\error451.vbs
  • %HOMEPATH%\Desktop\error462.vbs
  • %HOMEPATH%\Desktop\error461.vbs
  • %HOMEPATH%\Desktop\error464.vbs
  • %HOMEPATH%\Desktop\error463.vbs
  • %HOMEPATH%\Desktop\error458.vbs
  • %HOMEPATH%\Desktop\error457.vbs
  • %HOMEPATH%\Desktop\error460.vbs
  • %HOMEPATH%\Desktop\error459.vbs
  • %HOMEPATH%\Desktop\error448.vbs
  • %HOMEPATH%\Desktop\error437.vbs
  • %HOMEPATH%\Desktop\error436.vbs
  • %HOMEPATH%\Desktop\error439.vbs
  • %HOMEPATH%\Desktop\error438.vbs
  • %HOMEPATH%\Desktop\error433.vbs
  • %HOMEPATH%\Desktop\error432.vbs
  • %HOMEPATH%\Desktop\error435.vbs
  • %HOMEPATH%\Desktop\error434.vbs
  • %HOMEPATH%\Desktop\error445.vbs
  • %HOMEPATH%\Desktop\error444.vbs
  • %HOMEPATH%\Desktop\error447.vbs
  • %HOMEPATH%\Desktop\error446.vbs
  • %HOMEPATH%\Desktop\error441.vbs
  • %HOMEPATH%\Desktop\error440.vbs
  • %HOMEPATH%\Desktop\error443.vbs
  • %HOMEPATH%\Desktop\error442.vbs
  • %HOMEPATH%\Desktop\error265.vbs
  • %HOMEPATH%\Desktop\error88.vbs
  • %HOMEPATH%\Desktop\error87.vbs
  • %HOMEPATH%\Desktop\error90.vbs
  • %HOMEPATH%\Desktop\error89.vbs
  • %HOMEPATH%\Desktop\error84.vbs
  • %HOMEPATH%\Desktop\error83.vbs
  • %HOMEPATH%\Desktop\error86.vbs
  • %HOMEPATH%\Desktop\error85.vbs
  • %HOMEPATH%\Desktop\error96.vbs
  • %HOMEPATH%\Desktop\error95.vbs
  • %HOMEPATH%\Desktop\error98.vbs
  • %HOMEPATH%\Desktop\error97.vbs
  • %HOMEPATH%\Desktop\error92.vbs
  • %HOMEPATH%\Desktop\error91.vbs
  • %HOMEPATH%\Desktop\error94.vbs
  • %HOMEPATH%\Desktop\error93.vbs
  • %HOMEPATH%\Desktop\error82.vbs
  • %HOMEPATH%\Desktop\error71.vbs
  • %HOMEPATH%\Desktop\error70.vbs
  • %HOMEPATH%\Desktop\error73.vbs
  • %HOMEPATH%\Desktop\error72.vbs
  • %HOMEPATH%\Desktop\error67.vbs
  • %HOMEPATH%\Desktop\error66.vbs
  • %HOMEPATH%\Desktop\error69.vbs
  • %HOMEPATH%\Desktop\error68.vbs
  • %HOMEPATH%\Desktop\error79.vbs
  • %HOMEPATH%\Desktop\error78.vbs
  • %HOMEPATH%\Desktop\error81.vbs
  • %HOMEPATH%\Desktop\error80.vbs
  • %HOMEPATH%\Desktop\error75.vbs
  • %HOMEPATH%\Desktop\error74.vbs
  • %HOMEPATH%\Desktop\error77.vbs
  • %HOMEPATH%\Desktop\error76.vbs
  • %HOMEPATH%\Desktop\error121.vbs
  • %HOMEPATH%\Desktop\error120.vbs
  • %HOMEPATH%\Desktop\error123.vbs
  • %HOMEPATH%\Desktop\error122.vbs
  • %HOMEPATH%\Desktop\error117.vbs
  • %HOMEPATH%\Desktop\error116.vbs
  • %HOMEPATH%\Desktop\error119.vbs
  • %HOMEPATH%\Desktop\error118.vbs
  • %HOMEPATH%\Desktop\error129.vbs
  • %HOMEPATH%\Desktop\error128.vbs
  • %HOMEPATH%\Desktop\error131.vbs
  • %HOMEPATH%\Desktop\error130.vbs
  • %HOMEPATH%\Desktop\error125.vbs
  • %HOMEPATH%\Desktop\error124.vbs
  • %HOMEPATH%\Desktop\error127.vbs
  • %HOMEPATH%\Desktop\error126.vbs
  • %HOMEPATH%\Desktop\error115.vbs
  • %HOMEPATH%\Desktop\error104.vbs
  • %HOMEPATH%\Desktop\error103.vbs
  • %HOMEPATH%\Desktop\error106.vbs
  • %HOMEPATH%\Desktop\error105.vbs
  • %HOMEPATH%\Desktop\error100.vbs
  • %HOMEPATH%\Desktop\error99.vbs
  • %HOMEPATH%\Desktop\error102.vbs
  • %HOMEPATH%\Desktop\error101.vbs
  • %HOMEPATH%\Desktop\error112.vbs
  • %HOMEPATH%\Desktop\error111.vbs
  • %HOMEPATH%\Desktop\error114.vbs
  • %HOMEPATH%\Desktop\error113.vbs
  • %HOMEPATH%\Desktop\error108.vbs
  • %HOMEPATH%\Desktop\error107.vbs
  • %HOMEPATH%\Desktop\error110.vbs
  • %HOMEPATH%\Desktop\error109.vbs
  • %HOMEPATH%\Desktop\error22.vbs
  • %HOMEPATH%\Desktop\error21.vbs
  • %HOMEPATH%\Desktop\error24.vbs
  • %HOMEPATH%\Desktop\error23.vbs
  • %HOMEPATH%\Desktop\error18.vbs
  • %HOMEPATH%\Desktop\error17.vbs
  • %HOMEPATH%\Desktop\error20.vbs
  • %HOMEPATH%\Desktop\error19.vbs
  • %HOMEPATH%\Desktop\error30.vbs
  • %HOMEPATH%\Desktop\error29.vbs
  • %HOMEPATH%\Desktop\error32.vbs
  • %HOMEPATH%\Desktop\error31.vbs
  • %HOMEPATH%\Desktop\error26.vbs
  • %HOMEPATH%\Desktop\error25.vbs
  • %HOMEPATH%\Desktop\error28.vbs
  • %HOMEPATH%\Desktop\error27.vbs
  • %HOMEPATH%\Desktop\error16.vbs
  • %HOMEPATH%\Desktop\error5.vbs
  • %HOMEPATH%\Desktop\error4.vbs
  • %HOMEPATH%\Desktop\error7.vbs
  • %HOMEPATH%\Desktop\error6.vbs
  • %HOMEPATH%\Desktop\error1.vbs
  • %TEMP%\1.tmp\2.bat
  • %HOMEPATH%\Desktop\error3.vbs
  • %HOMEPATH%\Desktop\error2.vbs
  • %HOMEPATH%\Desktop\error13.vbs
  • %HOMEPATH%\Desktop\error12.vbs
  • %HOMEPATH%\Desktop\error15.vbs
  • %HOMEPATH%\Desktop\error14.vbs
  • %HOMEPATH%\Desktop\error9.vbs
  • %HOMEPATH%\Desktop\error8.vbs
  • %HOMEPATH%\Desktop\error11.vbs
  • %HOMEPATH%\Desktop\error10.vbs
  • %HOMEPATH%\Desktop\error55.vbs
  • %HOMEPATH%\Desktop\error54.vbs
  • %HOMEPATH%\Desktop\error57.vbs
  • %HOMEPATH%\Desktop\error56.vbs
  • %HOMEPATH%\Desktop\error51.vbs
  • %HOMEPATH%\Desktop\error50.vbs
  • %HOMEPATH%\Desktop\error53.vbs
  • %HOMEPATH%\Desktop\error52.vbs
  • %HOMEPATH%\Desktop\error63.vbs
  • %HOMEPATH%\Desktop\error62.vbs
  • %HOMEPATH%\Desktop\error65.vbs
  • %HOMEPATH%\Desktop\error64.vbs
  • %HOMEPATH%\Desktop\error59.vbs
  • %HOMEPATH%\Desktop\error58.vbs
  • %HOMEPATH%\Desktop\error61.vbs
  • %HOMEPATH%\Desktop\error60.vbs
  • %HOMEPATH%\Desktop\error49.vbs
  • %HOMEPATH%\Desktop\error38.vbs
  • %HOMEPATH%\Desktop\error37.vbs
  • %HOMEPATH%\Desktop\error40.vbs
  • %HOMEPATH%\Desktop\error39.vbs
  • %HOMEPATH%\Desktop\error34.vbs
  • %HOMEPATH%\Desktop\error33.vbs
  • %HOMEPATH%\Desktop\error36.vbs
  • %HOMEPATH%\Desktop\error35.vbs
  • %HOMEPATH%\Desktop\error46.vbs
  • %HOMEPATH%\Desktop\error45.vbs
  • %HOMEPATH%\Desktop\error48.vbs
  • %HOMEPATH%\Desktop\error47.vbs
  • %HOMEPATH%\Desktop\error42.vbs
  • %HOMEPATH%\Desktop\error41.vbs
  • %HOMEPATH%\Desktop\error44.vbs
  • %HOMEPATH%\Desktop\error43.vbs
  • %HOMEPATH%\Desktop\error132.vbs
  • %HOMEPATH%\Desktop\error221.vbs
  • %HOMEPATH%\Desktop\error220.vbs
  • %HOMEPATH%\Desktop\error223.vbs
  • %HOMEPATH%\Desktop\error222.vbs
  • %HOMEPATH%\Desktop\error217.vbs
  • %HOMEPATH%\Desktop\error216.vbs
  • %HOMEPATH%\Desktop\error219.vbs
  • %HOMEPATH%\Desktop\error218.vbs
  • %HOMEPATH%\Desktop\error229.vbs
  • %HOMEPATH%\Desktop\error228.vbs
  • %HOMEPATH%\Desktop\error231.vbs
  • %HOMEPATH%\Desktop\error230.vbs
  • %HOMEPATH%\Desktop\error225.vbs
  • %HOMEPATH%\Desktop\error224.vbs
  • %HOMEPATH%\Desktop\error227.vbs
  • %HOMEPATH%\Desktop\error226.vbs
  • %HOMEPATH%\Desktop\error215.vbs
  • %HOMEPATH%\Desktop\error204.vbs
  • %HOMEPATH%\Desktop\error203.vbs
  • %HOMEPATH%\Desktop\error206.vbs
  • %HOMEPATH%\Desktop\error205.vbs
  • %HOMEPATH%\Desktop\error200.vbs
  • %HOMEPATH%\Desktop\error199.vbs
  • %HOMEPATH%\Desktop\error202.vbs
  • %HOMEPATH%\Desktop\error201.vbs
  • %HOMEPATH%\Desktop\error212.vbs
  • %HOMEPATH%\Desktop\error211.vbs
  • %HOMEPATH%\Desktop\error214.vbs
  • %HOMEPATH%\Desktop\error213.vbs
  • %HOMEPATH%\Desktop\error208.vbs
  • %HOMEPATH%\Desktop\error207.vbs
  • %HOMEPATH%\Desktop\error210.vbs
  • %HOMEPATH%\Desktop\error209.vbs
  • %HOMEPATH%\Desktop\error254.vbs
  • %HOMEPATH%\Desktop\error253.vbs
  • %HOMEPATH%\Desktop\error256.vbs
  • %HOMEPATH%\Desktop\error255.vbs
  • %HOMEPATH%\Desktop\error250.vbs
  • %HOMEPATH%\Desktop\error249.vbs
  • %HOMEPATH%\Desktop\error252.vbs
  • %HOMEPATH%\Desktop\error251.vbs
  • %HOMEPATH%\Desktop\error262.vbs
  • %HOMEPATH%\Desktop\error261.vbs
  • %HOMEPATH%\Desktop\error264.vbs
  • %HOMEPATH%\Desktop\error263.vbs
  • %HOMEPATH%\Desktop\error258.vbs
  • %HOMEPATH%\Desktop\error257.vbs
  • %HOMEPATH%\Desktop\error260.vbs
  • %HOMEPATH%\Desktop\error259.vbs
  • %HOMEPATH%\Desktop\error248.vbs
  • %HOMEPATH%\Desktop\error237.vbs
  • %HOMEPATH%\Desktop\error236.vbs
  • %HOMEPATH%\Desktop\error239.vbs
  • %HOMEPATH%\Desktop\error238.vbs
  • %HOMEPATH%\Desktop\error233.vbs
  • %HOMEPATH%\Desktop\error232.vbs
  • %HOMEPATH%\Desktop\error235.vbs
  • %HOMEPATH%\Desktop\error234.vbs
  • %HOMEPATH%\Desktop\error245.vbs
  • %HOMEPATH%\Desktop\error244.vbs
  • %HOMEPATH%\Desktop\error247.vbs
  • %HOMEPATH%\Desktop\error246.vbs
  • %HOMEPATH%\Desktop\error241.vbs
  • %HOMEPATH%\Desktop\error240.vbs
  • %HOMEPATH%\Desktop\error243.vbs
  • %HOMEPATH%\Desktop\error242.vbs
  • %HOMEPATH%\Desktop\error155.vbs
  • %HOMEPATH%\Desktop\error154.vbs
  • %HOMEPATH%\Desktop\error157.vbs
  • %HOMEPATH%\Desktop\error156.vbs
  • %HOMEPATH%\Desktop\error151.vbs
  • %HOMEPATH%\Desktop\error150.vbs
  • %HOMEPATH%\Desktop\error153.vbs
  • %HOMEPATH%\Desktop\error152.vbs
  • %HOMEPATH%\Desktop\error163.vbs
  • %HOMEPATH%\Desktop\error162.vbs
  • %HOMEPATH%\Desktop\error165.vbs
  • %HOMEPATH%\Desktop\error164.vbs
  • %HOMEPATH%\Desktop\error159.vbs
  • %HOMEPATH%\Desktop\error158.vbs
  • %HOMEPATH%\Desktop\error161.vbs
  • %HOMEPATH%\Desktop\error160.vbs
  • %HOMEPATH%\Desktop\error149.vbs
  • %HOMEPATH%\Desktop\error138.vbs
  • %HOMEPATH%\Desktop\error137.vbs
  • %HOMEPATH%\Desktop\error140.vbs
  • %HOMEPATH%\Desktop\error139.vbs
  • %HOMEPATH%\Desktop\error134.vbs
  • %HOMEPATH%\Desktop\error133.vbs
  • %HOMEPATH%\Desktop\error136.vbs
  • %HOMEPATH%\Desktop\error135.vbs
  • %HOMEPATH%\Desktop\error146.vbs
  • %HOMEPATH%\Desktop\error145.vbs
  • %HOMEPATH%\Desktop\error148.vbs
  • %HOMEPATH%\Desktop\error147.vbs
  • %HOMEPATH%\Desktop\error142.vbs
  • %HOMEPATH%\Desktop\error141.vbs
  • %HOMEPATH%\Desktop\error144.vbs
  • %HOMEPATH%\Desktop\error143.vbs
  • %HOMEPATH%\Desktop\error188.vbs
  • %HOMEPATH%\Desktop\error187.vbs
  • %HOMEPATH%\Desktop\error190.vbs
  • %HOMEPATH%\Desktop\error189.vbs
  • %HOMEPATH%\Desktop\error184.vbs
  • %HOMEPATH%\Desktop\error183.vbs
  • %HOMEPATH%\Desktop\error186.vbs
  • %HOMEPATH%\Desktop\error185.vbs
  • %HOMEPATH%\Desktop\error196.vbs
  • %HOMEPATH%\Desktop\error195.vbs
  • %HOMEPATH%\Desktop\error198.vbs
  • %HOMEPATH%\Desktop\error197.vbs
  • %HOMEPATH%\Desktop\error192.vbs
  • %HOMEPATH%\Desktop\error191.vbs
  • %HOMEPATH%\Desktop\error194.vbs
  • %HOMEPATH%\Desktop\error193.vbs
  • %HOMEPATH%\Desktop\error182.vbs
  • %HOMEPATH%\Desktop\error171.vbs
  • %HOMEPATH%\Desktop\error170.vbs
  • %HOMEPATH%\Desktop\error173.vbs
  • %HOMEPATH%\Desktop\error172.vbs
  • %HOMEPATH%\Desktop\error167.vbs
  • %HOMEPATH%\Desktop\error166.vbs
  • %HOMEPATH%\Desktop\error169.vbs
  • %HOMEPATH%\Desktop\error168.vbs
  • %HOMEPATH%\Desktop\error179.vbs
  • %HOMEPATH%\Desktop\error178.vbs
  • %HOMEPATH%\Desktop\error181.vbs
  • %HOMEPATH%\Desktop\error180.vbs
  • %HOMEPATH%\Desktop\error175.vbs
  • %HOMEPATH%\Desktop\error174.vbs
  • %HOMEPATH%\Desktop\error177.vbs
  • %HOMEPATH%\Desktop\error176.vbs
Сетевая активность:
Подключается к:
  • 'localhost':1043
  • 'localhost':1044
  • 'hu###durr.com':80
  • 'yo####anidiot.org':80
  • 'localhost':1036
  • 'localhost':1038
  • 'localhost':1039
TCP:
Запросы HTTP GET:
  • http://www.hu###durr.com/ via hu###durr.com
  • http://www.yo####anidiot.org/ via yo####anidiot.org
UDP:
  • DNS ASK www.hu###durr.com
  • DNS ASK www.yo####anidiot.org
Другое:
Ищет следующие окна:
  • ClassName: 'MS_WebcheckMonitor' WindowName: ''
  • ClassName: 'MS_AutodialMonitor' WindowName: ''
  • ClassName: '' WindowName: ''
Запускает на исполнение:
  • '<SYSTEM32>\mode.com' 1000
  • '<SYSTEM32>\mode.com' 9191
  • '<SYSTEM32>\cmd.exe' /c ""%TEMP%\1.tmp\2.bat" <Полный путь к файлу>"
  • '<SYSTEM32>\shutdown.exe' -g -t 30 -c "shutdowning your computer"

Рекомендации по лечению

  1. В случае если операционная система способна загрузиться (в штатном режиме или режиме защиты от сбоев), скачайте лечащую утилиту Dr.Web CureIt! и выполните с ее помощью полную проверку вашего компьютера, а также используемых вами переносных носителей информации.
  2. Если загрузка операционной системы невозможна, измените настройки BIOS вашего компьютера, чтобы обеспечить возможность загрузки ПК с компакт-диска или USB-накопителя. Скачайте образ аварийного диска восстановления системы Dr.Web® LiveDisk или утилиту записи Dr.Web® LiveDisk на USB-накопитель, подготовьте соответствующий носитель. Загрузив компьютер с использованием данного носителя, выполните его полную проверку и лечение обнаруженных угроз.
Скачать Dr.Web

По серийному номеру

Выполните полную проверку системы с использованием Антивируса Dr.Web Light для macOS. Данный продукт можно загрузить с официального сайта Apple App Store.

На загруженной ОС выполните полную проверку всех дисковых разделов с использованием продукта Антивирус Dr.Web для Linux.

Скачать Dr.Web

По серийному номеру

  1. Если мобильное устройство функционирует в штатном режиме, загрузите и установите на него бесплатный антивирусный продукт Dr.Web для Android Light. Выполните полную проверку системы и используйте рекомендации по нейтрализации обнаруженных угроз.
  2. Если мобильное устройство заблокировано троянцем-вымогателем семейства Android.Locker (на экране отображается обвинение в нарушении закона, требование выплаты определенной денежной суммы или иное сообщение, мешающее нормальной работе с устройством), выполните следующие действия:
    • загрузите свой смартфон или планшет в безопасном режиме (в зависимости от версии операционной системы и особенностей конкретного мобильного устройства эта процедура может быть выполнена различными способами; обратитесь за уточнением к инструкции, поставляемой вместе с приобретенным аппаратом, или напрямую к его производителю);
    • после активации безопасного режима установите на зараженное устройство бесплатный антивирусный продукт Dr.Web для Android Light и произведите полную проверку системы, выполнив рекомендации по нейтрализации обнаруженных угроз;
    • выключите устройство и включите его в обычном режиме.

Подробнее о Dr.Web для Android

Демо бесплатно на 14 дней

Выдаётся при установке