Поддержка
Круглосуточная поддержка

Позвоните

Бесплатно по России:
8-800-333-79-32

ЧаВо | Форум

Ваши запросы

  • Все: -
  • Незакрытые: -
  • Последний: -

Позвоните

Бесплатно по России:
8-800-333-79-32

Свяжитесь с нами Незакрытые запросы: 

Профиль

Профиль

Trojan.MulDrop8.27812

Добавлен в вирусную базу Dr.Web: 2018-06-26

Описание добавлено:

Техническая информация

Для обеспечения автозапуска и распространения:
Модифицирует следующие ключи реестра:
  • [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'Free Download Manager' = '"%ProgramFiles%\Free Download Manager\fdm.exe" -autorun'
Изменения в файловой системе:
Создает следующие файлы:
  • %TEMP%\RarSFX0\setup.exe
  • %ProgramFiles%\Free Download Manager\is-H38LV.tmp
  • %ProgramFiles%\Free Download Manager\is-66QAF.tmp
  • %ProgramFiles%\Free Download Manager\is-B7ACA.tmp
  • %ProgramFiles%\Free Download Manager\is-KMPTP.tmp
  • %ALLUSERSPROFILE%\Start Menu\Programs\Free Download Manager\Free Download Manager.lnk
  • %ALLUSERSPROFILE%\Start Menu\Programs\Free Download Manager\FDM remote control server.lnk
  • %ProgramFiles%\Free Download Manager\Server\is-C3JJJ.tmp
  • %ProgramFiles%\Free Download Manager\is-HQDF3.tmp
  • %ALLUSERSPROFILE%\Start Menu\Programs\Free Download Manager\Documentation.lnk
  • %ALLUSERSPROFILE%\Start Menu\Programs\Free Download Manager\Uninstall Free Download Manager.lnk
  • %ProgramFiles%\Free Download Manager\fdm.url
  • %ProgramFiles%\Free Download Manager\unins000.dat
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\fdm_ffext@freedownloadmanager.org
  • %TEMP%\is-0Q1DS.tmp\crack.tmp
  • %TEMP%\is-KN833.tmp\_isetup\_RegDLL.tmp
  • %ALLUSERSPROFILE%\Start Menu\Programs\Free Download Manager\Free Download Manager on the Web.lnk
  • %HOMEPATH%\Desktop\Free Download Manager.lnk
  • %ProgramFiles%\Free Download Manager\Server\is-SV4TB.tmp
  • %ProgramFiles%\Free Download Manager\Server\is-6P192.tmp
  • %TEMP%\is-KN833.tmp\fdminno.dll
  • %ProgramFiles%\Free Download Manager\is-EFEO9.tmp
  • %ProgramFiles%\Free Download Manager\is-HLPOR.tmp
  • %ProgramFiles%\Free Download Manager\Archive\is-F751T.tmp
  • %ProgramFiles%\Free Download Manager\Archive\7-zip\Codecs\is-54AED.tmp
  • %ProgramFiles%\Free Download Manager\Archive\7-zip\Formats\is-TTE98.tmp
  • %ProgramFiles%\Free Download Manager\Archive\7-zip\Formats\is-R3LSO.tmp
  • %ProgramFiles%\Free Download Manager\Firefox\extension\is-93A0F.tmp
  • %ProgramFiles%\Free Download Manager\Firefox\extension\is-FDSUB.tmp
  • %ProgramFiles%\Free Download Manager\Firefox\extension\chrome\content\is-UKBBS.tmp
  • %ProgramFiles%\Free Download Manager\Firefox\extension\chrome\content\is-4CA8S.tmp
  • %ProgramFiles%\Free Download Manager\Firefox\extension\chrome\content\is-5RUO3.tmp
  • %ProgramFiles%\Free Download Manager\Firefox\extension\chrome\content\is-17ERB.tmp
  • %ProgramFiles%\Free Download Manager\Firefox\extension\chrome\content\is-2INVT.tmp
  • %ProgramFiles%\Free Download Manager\Firefox\extension\components\is-7QL2E.tmp
  • %ProgramFiles%\Free Download Manager\Firefox\extension\components\is-DIH66.tmp
  • %TEMP%\is-KN833.tmp\_isetup\_shfoldr.dll
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-NTM6I.tmp
  • %ProgramFiles%\Free Download Manager\Server\is-ATB8N.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-F16T8.tmp
  • %ProgramFiles%\Free Download Manager\is-567FM.tmp
  • %ProgramFiles%\Free Download Manager\Language\is-KPTCD.tmp
  • %ProgramFiles%\Free Download Manager\Language\is-17U09.tmp
  • %ProgramFiles%\Free Download Manager\Language\is-MHPKP.tmp
  • %ProgramFiles%\Free Download Manager\Language\is-IF6HJ.tmp
  • %ProgramFiles%\Free Download Manager\Language\is-HSSGU.tmp
  • %ProgramFiles%\Free Download Manager\Language\is-ATTPU.tmp
  • %ProgramFiles%\Free Download Manager\Language\is-N6D44.tmp
  • %ProgramFiles%\Free Download Manager\Language\is-Q6E9C.tmp
  • %ProgramFiles%\Free Download Manager\Language\is-GD2UQ.tmp
  • %ProgramFiles%\Free Download Manager\Language\is-1HSI8.tmp
  • %ProgramFiles%\Free Download Manager\Language\is-0BVSM.tmp
  • %ProgramFiles%\Free Download Manager\Language\is-8A8V5.tmp
  • %ProgramFiles%\Free Download Manager\Language\is-02OIO.tmp
  • %ProgramFiles%\Free Download Manager\Language\is-4HPOV.tmp
  • %ProgramFiles%\Free Download Manager\Language\is-QG7D7.tmp
  • %ProgramFiles%\Free Download Manager\Language\is-N5PSN.tmp
  • %ProgramFiles%\Free Download Manager\Language\is-DN5TH.tmp
  • %ProgramFiles%\Free Download Manager\Language\is-8IEI3.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-67LIC.tmp
  • %ProgramFiles%\Free Download Manager\Plugins\is-LBUUQ.tmp
  • %ProgramFiles%\Free Download Manager\Language\is-U5O8F.tmp
  • %ProgramFiles%\Free Download Manager\Language\is-SBOF9.tmp
  • %ProgramFiles%\Free Download Manager\Language\is-62IBD.tmp
  • %ProgramFiles%\Free Download Manager\Language\is-VINS9.tmp
  • %ProgramFiles%\Free Download Manager\Language\is-O6G5Q.tmp
  • %ProgramFiles%\Free Download Manager\Language\is-ML0VN.tmp
  • %ProgramFiles%\Free Download Manager\Language\is-5AHKI.tmp
  • %ProgramFiles%\Free Download Manager\Language\is-2HRT0.tmp
  • %ProgramFiles%\Free Download Manager\Language\is-J9A8D.tmp
  • %ProgramFiles%\Free Download Manager\Language\is-G617L.tmp
  • %ProgramFiles%\Free Download Manager\Language\is-89839.tmp
  • %ProgramFiles%\Free Download Manager\Language\is-E2M9J.tmp
  • %ProgramFiles%\Free Download Manager\Language\is-PL0ME.tmp
  • %ProgramFiles%\Free Download Manager\Language\is-15DOS.tmp
  • %ProgramFiles%\Free Download Manager\Language\is-A9KGB.tmp
  • %ProgramFiles%\Free Download Manager\Language\is-ECOTR.tmp
  • %ProgramFiles%\Free Download Manager\Language\is-I34QM.tmp
  • %ProgramFiles%\Free Download Manager\Language\is-JLL93.tmp
  • %ProgramFiles%\Free Download Manager\Language\is-RN2PG.tmp
  • %ProgramFiles%\Free Download Manager\Language\is-I1CNT.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-5LNT6.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-CTKMQ.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-57DSP.tmp
  • %ProgramFiles%\Free Download Manager\is-F9D1P.tmp
  • %ProgramFiles%\Free Download Manager\Skins\is-EOJUL.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-QOTE8.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-Q6NOD.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-JDPOF.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-TG3R0.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-I0UIT.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-B2M2P.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-IFCBB.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-O47KB.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-5TJOL.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-HHB2H.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-VOCP5.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-HUV4F.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-CIK08.tmp
  • %ProgramFiles%\Free Download Manager\is-7KG9J.tmp
  • %ProgramFiles%\Free Download Manager\is-GNS8R.tmp
  • %ProgramFiles%\Free Download Manager\is-TD03L.tmp
  • %ProgramFiles%\Free Download Manager\Language\is-P4O1P.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-VU1RE.tmp
  • %ProgramFiles%\Free Download Manager\is-O3G94.tmp
  • %TEMP%\RarSFX0\Aya.exe
  • %TEMP%\29128703.cmd
  • %TEMP%\is-RC0F4.tmp\setup.tmp
  • %TEMP%\is-FTA4P.tmp\_isetup\_RegDLL.tmp
  • %TEMP%\is-FTA4P.tmp\_isetup\_shfoldr.dll
  • %ProgramFiles%\Free Download Manager\is-JT9Q5.tmp
  • %ProgramFiles%\Free Download Manager\is-NIGM5.tmp
  • %TEMP%\RarSFX0\crack.exe
  • %ProgramFiles%\Free Download Manager\is-605OF.tmp
  • %ProgramFiles%\Free Download Manager\is-O325Q.tmp
  • %ProgramFiles%\Free Download Manager\is-77UVG.tmp
  • %ProgramFiles%\Free Download Manager\is-DLJI8.tmp
  • %ProgramFiles%\Free Download Manager\is-DTPB6.tmp
  • %ProgramFiles%\Free Download Manager\is-TTOG4.tmp
  • %ProgramFiles%\Free Download Manager\Help\is-617I2.tmp
  • %ProgramFiles%\Free Download Manager\Language\is-NLRA1.tmp
  • %ProgramFiles%\Free Download Manager\is-7KKJA.tmp
  • %ProgramFiles%\Free Download Manager\is-7QFSJ.tmp
  • %ProgramFiles%\Free Download Manager\Language\is-GE9JS.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-1TAKM.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-FFUL8.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-359DN.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-E40FG.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-BETCN.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-0O642.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-9HIIV.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-C9T0N.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-FDLLO.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-2BFG7.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-LGHAN.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-MO5UG.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-ITEDM.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-V77MQ.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-QAOMO.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-UJIHK.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-NMK08.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-K94IK.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-QHG93.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-NHPBJ.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-JBKUD.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-L20AR.tmp
  • %ProgramFiles%\Free Download Manager\is-H9HTT.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-V1J4L.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-GBL40.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-AHGRT.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-0JSRM.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-S973R.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-KK9QT.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-M4CLF.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-KVCUG.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-U7H0V.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-3IQNJ.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-LATRR.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-QSIHF.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-VQQUQ.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-SPI7P.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-Q6GJR.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-9F2CB.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-T54K4.tmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-ISDM4.tmp
  • %ProgramFiles%\Free Download Manager\Language\is-I28OD.tmp
Присваивает атрибут 'скрытый' для следующих файлов:
  • %TEMP%\29128703.cmd
Удаляет следующие файлы:
  • %TEMP%\is-FTA4P.tmp\_isetup\_RegDLL.tmp
  • %TEMP%\is-FTA4P.tmp\_isetup\_shfoldr.dll
  • %TEMP%\is-RC0F4.tmp\setup.tmp
  • %ProgramFiles%\Free Download Manager\Language\eng.lng
  • %ProgramFiles%\Free Download Manager\unins000.exe
  • %TEMP%\is-KN833.tmp\fdminno.dll
  • %TEMP%\is-KN833.tmp\_isetup\_RegDLL.tmp
  • %TEMP%\is-KN833.tmp\_isetup\_shfoldr.dll
  • %TEMP%\is-0Q1DS.tmp\crack.tmp
Перемещает следующие файлы:
  • %ProgramFiles%\Free Download Manager\is-JT9Q5.tmp в %ProgramFiles%\Free Download Manager\unins000.exe
  • %ProgramFiles%\Free Download Manager\Firefox\extension\components\is-7QL2E.tmp в %ProgramFiles%\Free Download Manager\Firefox\extension\components\ivmsfdmff.xpt
  • %ProgramFiles%\Free Download Manager\Firefox\extension\components\is-DIH66.tmp в %ProgramFiles%\Free Download Manager\Firefox\extension\components\vmsfdmff.dll
  • %ProgramFiles%\Free Download Manager\Server\is-6P192.tmp в %ProgramFiles%\Free Download Manager\Server\adddownloadres_err.html
  • %ProgramFiles%\Free Download Manager\Server\is-ATB8N.tmp в %ProgramFiles%\Free Download Manager\Server\adddownloadres_ok.html
  • %ProgramFiles%\Free Download Manager\Server\is-SV4TB.tmp в %ProgramFiles%\Free Download Manager\Server\compdlds.html
  • %ProgramFiles%\Free Download Manager\Language\is-62IBD.tmp в %ProgramFiles%\Free Download Manager\Language\bul.lng
  • %ProgramFiles%\Free Download Manager\Firefox\extension\chrome\content\is-2INVT.tmp в %ProgramFiles%\Free Download Manager\Firefox\extension\chrome\content\fdm_ffpxy.js
  • %ProgramFiles%\Free Download Manager\Firefox\extension\chrome\content\is-17ERB.tmp в %ProgramFiles%\Free Download Manager\Firefox\extension\chrome\content\fdm_ffextDM.xul
  • %ProgramFiles%\Free Download Manager\is-66QAF.tmp в %ProgramFiles%\Free Download Manager\vistafx.dll
  • %ProgramFiles%\Free Download Manager\is-B7ACA.tmp в %ProgramFiles%\Free Download Manager\sigkey.dat
  • %ProgramFiles%\Free Download Manager\is-KMPTP.tmp в %ProgramFiles%\Free Download Manager\tips.dat
  • %ProgramFiles%\Free Download Manager\Language\is-I1CNT.tmp в %ProgramFiles%\Free Download Manager\Language\alb.lng
  • %ProgramFiles%\Free Download Manager\Language\is-SBOF9.tmp в %ProgramFiles%\Free Download Manager\Language\arb.lng
  • %ProgramFiles%\Free Download Manager\Server\is-C3JJJ.tmp в %ProgramFiles%\Free Download Manager\Server\index.html
  • %ProgramFiles%\Free Download Manager\is-H38LV.tmp в %ProgramFiles%\Free Download Manager\player.swf
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-K94IK.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\tray.ico
  • %ProgramFiles%\Free Download Manager\is-HQDF3.tmp в %ProgramFiles%\Free Download Manager\fdmwi.exe
  • %ProgramFiles%\Free Download Manager\is-HLPOR.tmp в %ProgramFiles%\Free Download Manager\fdm_01.gif
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-CTKMQ.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\tray_err.ico
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-5LNT6.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\tray_starting.ico
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-67LIC.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\vidman.bmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-NTM6I.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\vidman_d.bmp
  • %ProgramFiles%\Free Download Manager\Plugins\is-LBUUQ.tmp в %ProgramFiles%\Free Download Manager\Plugins\FDM plugins SDK.url
  • %ProgramFiles%\Free Download Manager\Firefox\extension\chrome\content\is-UKBBS.tmp в %ProgramFiles%\Free Download Manager\Firefox\extension\chrome\content\fdm_ffext.js
  • %ProgramFiles%\Free Download Manager\Firefox\extension\chrome\content\is-5RUO3.tmp в %ProgramFiles%\Free Download Manager\Firefox\extension\chrome\content\fdm_ffextDM.js
  • %ProgramFiles%\Free Download Manager\Firefox\extension\chrome\content\is-4CA8S.tmp в %ProgramFiles%\Free Download Manager\Firefox\extension\chrome\content\fdm_ffext.xul
  • %ProgramFiles%\Free Download Manager\Archive\7-zip\Codecs\is-54AED.tmp в %ProgramFiles%\Free Download Manager\Archive\7-zip\Codecs\Deflate.dll
  • %ProgramFiles%\Free Download Manager\Archive\7-zip\Formats\is-TTE98.tmp в %ProgramFiles%\Free Download Manager\Archive\7-zip\Formats\arj.dll
  • %ProgramFiles%\Free Download Manager\Archive\7-zip\Formats\is-R3LSO.tmp в %ProgramFiles%\Free Download Manager\Archive\7-zip\Formats\zip.dll
  • %ProgramFiles%\Free Download Manager\Firefox\extension\is-93A0F.tmp в %ProgramFiles%\Free Download Manager\Firefox\extension\chrome.manifest
  • %ProgramFiles%\Free Download Manager\Firefox\extension\is-FDSUB.tmp в %ProgramFiles%\Free Download Manager\Firefox\extension\install.rdf
  • %ProgramFiles%\Free Download Manager\is-EFEO9.tmp в %ProgramFiles%\Free Download Manager\msvcp60.dll
  • %ProgramFiles%\Free Download Manager\Archive\is-F751T.tmp в %ProgramFiles%\Free Download Manager\Archive\unrar.dll
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-57DSP.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\tray_down.ico
  • %ProgramFiles%\Free Download Manager\Language\is-VINS9.tmp в %ProgramFiles%\Free Download Manager\Language\cat.lng
  • %ProgramFiles%\Free Download Manager\Language\is-2HRT0.tmp в %ProgramFiles%\Free Download Manager\Language\czk.lng
  • %ProgramFiles%\Free Download Manager\Language\is-HSSGU.tmp в %ProgramFiles%\Free Download Manager\Language\ptbr.lng
  • %ProgramFiles%\Free Download Manager\Language\is-ATTPU.tmp в %ProgramFiles%\Free Download Manager\Language\pt_PT.lng
  • %ProgramFiles%\Free Download Manager\Language\is-N6D44.tmp в %ProgramFiles%\Free Download Manager\Language\rom.lng
  • %ProgramFiles%\Free Download Manager\Language\is-Q6E9C.tmp в %ProgramFiles%\Free Download Manager\Language\rus.lng
  • %ProgramFiles%\Free Download Manager\Language\is-GD2UQ.tmp в %ProgramFiles%\Free Download Manager\Language\slo.lng
  • %ProgramFiles%\Free Download Manager\Language\is-MHPKP.tmp в %ProgramFiles%\Free Download Manager\Language\nor.LNG
  • %ProgramFiles%\Free Download Manager\Language\is-IF6HJ.tmp в %ProgramFiles%\Free Download Manager\Language\pol.lng
  • %ProgramFiles%\Free Download Manager\Language\is-1HSI8.tmp в %ProgramFiles%\Free Download Manager\Language\spn.lng
  • %ProgramFiles%\Free Download Manager\Language\is-02OIO.tmp в %ProgramFiles%\Free Download Manager\Language\swe.lng
  • %ProgramFiles%\Free Download Manager\Language\is-4HPOV.tmp в %ProgramFiles%\Free Download Manager\Language\tha.lng
  • %ProgramFiles%\Free Download Manager\Language\is-QG7D7.tmp в %ProgramFiles%\Free Download Manager\Language\tur.lng
  • %ProgramFiles%\Free Download Manager\Language\is-N5PSN.tmp в %ProgramFiles%\Free Download Manager\Language\ukr.lng
  • %ProgramFiles%\Free Download Manager\Language\is-DN5TH.tmp в %ProgramFiles%\Free Download Manager\Language\uzb.lng
  • %ProgramFiles%\Free Download Manager\Language\is-0BVSM.tmp в %ProgramFiles%\Free Download Manager\Language\srb.lng
  • %ProgramFiles%\Free Download Manager\Language\is-8A8V5.tmp в %ProgramFiles%\Free Download Manager\Language\svk.lng
  • %ProgramFiles%\Free Download Manager\Language\is-ML0VN.tmp в %ProgramFiles%\Free Download Manager\Language\cht.lng
  • %ProgramFiles%\Free Download Manager\Language\is-O6G5Q.tmp в %ProgramFiles%\Free Download Manager\Language\chs.lng
  • %ProgramFiles%\Free Download Manager\Language\is-8IEI3.tmp в %ProgramFiles%\Free Download Manager\Language\kor.lng
  • %ProgramFiles%\Free Download Manager\Language\is-J9A8D.tmp в %ProgramFiles%\Free Download Manager\Language\dan.lng
  • %ProgramFiles%\Free Download Manager\Language\is-G617L.tmp в %ProgramFiles%\Free Download Manager\Language\dut.lng
  • %ProgramFiles%\Free Download Manager\Language\is-89839.tmp в %ProgramFiles%\Free Download Manager\Language\ell.lng
  • %ProgramFiles%\Free Download Manager\Language\is-PL0ME.tmp в %ProgramFiles%\Free Download Manager\Language\far.lng
  • %ProgramFiles%\Free Download Manager\Language\is-KPTCD.tmp в %ProgramFiles%\Free Download Manager\Language\lt.lng
  • %ProgramFiles%\Free Download Manager\Language\is-5AHKI.tmp в %ProgramFiles%\Free Download Manager\Language\cro.lng
  • %ProgramFiles%\Free Download Manager\Language\is-17U09.tmp в %ProgramFiles%\Free Download Manager\Language\mac.lng
  • %ProgramFiles%\Free Download Manager\Language\is-15DOS.tmp в %ProgramFiles%\Free Download Manager\Language\fin.lng
  • %ProgramFiles%\Free Download Manager\Language\is-JLL93.tmp в %ProgramFiles%\Free Download Manager\Language\heb.lng
  • %ProgramFiles%\Free Download Manager\Language\is-U5O8F.tmp в %ProgramFiles%\Free Download Manager\Language\hun.lng
  • %ProgramFiles%\Free Download Manager\Language\is-RN2PG.tmp в %ProgramFiles%\Free Download Manager\Language\ita.lng
  • %ProgramFiles%\Free Download Manager\Language\is-GE9JS.tmp в %ProgramFiles%\Free Download Manager\Language\jpn.lng
  • %ProgramFiles%\Free Download Manager\Language\is-A9KGB.tmp в %ProgramFiles%\Free Download Manager\Language\fre.lng
  • %ProgramFiles%\Free Download Manager\Language\is-ECOTR.tmp в %ProgramFiles%\Free Download Manager\Language\gal.lng
  • %ProgramFiles%\Free Download Manager\Language\is-I34QM.tmp в %ProgramFiles%\Free Download Manager\Language\ger.lng
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-NMK08.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\tounsel.ico
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-UJIHK.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\tosel.ico
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-QAOMO.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\tool_spider_small_d.bmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-Q6NOD.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\back_d.bmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-JDPOF.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\checks.bmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-TG3R0.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\choosefolder.ico
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-I0UIT.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\creategroup.ico
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-B2M2P.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\dldtasks.bmp
  • %ProgramFiles%\Free Download Manager\Skins\is-EOJUL.tmp в %ProgramFiles%\Free Download Manager\Skins\How to create a skin.url
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-1TAKM.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\groupsmenu_d.bmp
  • %ProgramFiles%\Free Download Manager\is-F9D1P.tmp в %ProgramFiles%\Free Download Manager\fdmcs.dat
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-HHB2H.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\filelist.bmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-VOCP5.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\filelist_sel.bmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-HUV4F.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\go.bmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-CIK08.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\groups.bmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-VU1RE.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\groupsmenu.bmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-O47KB.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\dlinfo.bmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-IFCBB.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\dldtasks_sel.bmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-5TJOL.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\dropbox.ico
  • %ProgramFiles%\Free Download Manager\is-H9HTT.tmp в %ProgramFiles%\Free Download Manager\npfdm.dll
  • %ProgramFiles%\Free Download Manager\Help\is-617I2.tmp в %ProgramFiles%\Free Download Manager\Help\Free Download Manager.chm
  • %ProgramFiles%\Free Download Manager\is-605OF.tmp в %ProgramFiles%\Free Download Manager\Updater.exe
  • %ProgramFiles%\Free Download Manager\is-7KKJA.tmp в %ProgramFiles%\Free Download Manager\dlall.htm
  • %ProgramFiles%\Free Download Manager\is-O325Q.tmp в %ProgramFiles%\Free Download Manager\dlfvideo.htm
  • %ProgramFiles%\Free Download Manager\is-77UVG.tmp в %ProgramFiles%\Free Download Manager\dllink.htm
  • %ProgramFiles%\Free Download Manager\is-DLJI8.tmp в %ProgramFiles%\Free Download Manager\dlpage.htm
  • %ProgramFiles%\Free Download Manager\is-TD03L.tmp в %ProgramFiles%\Free Download Manager\license.txt
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-QHG93.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\login.ico
  • %ProgramFiles%\Free Download Manager\is-NIGM5.tmp в %ProgramFiles%\Free Download Manager\fdm.exe
  • %ProgramFiles%\Free Download Manager\Language\is-NLRA1.tmp в %ProgramFiles%\Free Download Manager\Language\eng.lng
  • %ProgramFiles%\Free Download Manager\is-O3G94.tmp в %ProgramFiles%\Free Download Manager\dbghelp.dll
  • %ProgramFiles%\Free Download Manager\is-GNS8R.tmp в %ProgramFiles%\Free Download Manager\iefdm.dll
  • %ProgramFiles%\Free Download Manager\is-7QFSJ.tmp в %ProgramFiles%\Free Download Manager\iefdmdm.dll
  • %ProgramFiles%\Free Download Manager\is-7KG9J.tmp в %ProgramFiles%\Free Download Manager\iefdm2.dll
  • %ProgramFiles%\Free Download Manager\is-TTOG4.tmp в %ProgramFiles%\Free Download Manager\fdm.tlb
  • %ProgramFiles%\Free Download Manager\is-DTPB6.tmp в %ProgramFiles%\Free Download Manager\dlselected.htm
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-QOTE8.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\back.bmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-JBKUD.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\logstat.bmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-L20AR.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\tool_hfe_d.bmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-359DN.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\tool_hfe_small_d.bmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-E40FG.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\tool_sch.bmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-BETCN.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\tool_sch_d.bmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-0O642.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\tool_sch_small.bmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-ISDM4.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\tool_hfe.bmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-T54K4.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\tool_dld_small.bmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-NHPBJ.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\tool_hfe_small.bmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-9HIIV.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\tool_sch_small_d.bmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-LGHAN.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\tool_sites_small_d.bmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-MO5UG.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\tool_spider.bmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-ITEDM.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\tool_spider_d.bmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-V77MQ.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\tool_spider_small.bmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-C9T0N.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\tool_sites.bmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-FDLLO.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\tool_sites_d.bmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-2BFG7.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\tool_sites_small.bmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-F16T8.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\tool_dld_small_d.bmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-9F2CB.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\tool_dld_d.bmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-FFUL8.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\mute.bmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-GBL40.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\scheduler_sel.bmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-AHGRT.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\settime.ico
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-0JSRM.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\sitelist.bmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-S973R.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\sitelist_sel.bmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-KK9QT.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\skin.ini
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-M4CLF.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\tool0.bmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-V1J4L.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\scheduler.bmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-KVCUG.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\tool0_d.bmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-3IQNJ.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\tool0_small_d.bmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-LATRR.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\tool_bt.bmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-QSIHF.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\tool_bt_d.bmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-VQQUQ.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\tool_bt_small.bmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-SPI7P.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\tool_bt_small_d.bmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-Q6GJR.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\tool_dld.bmp
  • %ProgramFiles%\Free Download Manager\Skins\old style\is-U7H0V.tmp в %ProgramFiles%\Free Download Manager\Skins\old style\tool0_small.bmp
  • %ProgramFiles%\Free Download Manager\Language\is-P4O1P.tmp в %ProgramFiles%\Free Download Manager\Language\val.lng
  • %ProgramFiles%\Free Download Manager\Language\is-I28OD.tmp в %ProgramFiles%\Free Download Manager\Language\vie.lng
Подменяет следующие файлы:
  • %ProgramFiles%\Free Download Manager\Language\eng.lng
  • %ProgramFiles%\Free Download Manager\unins000.exe
Другое:
Ищет следующие окна:
  • ClassName: 'EDIT' WindowName: ''
Создает и запускает на исполнение:
  • '%TEMP%\RarSFX0\Aya.exe'
  • '%TEMP%\RarSFX0\setup.exe' /VERYSILENT /SUPPRESSMSGBOXES /NORESTART /SP-
  • '%TEMP%\is-RC0F4.tmp\setup.tmp' /SL5="$200FC,2044092,53248,%TEMP%\RarSFX0\setup.exe" /VERYSILENT /SUPPRESSMSGBOXES /NORESTART /SP-
  • '%ProgramFiles%\Free Download Manager\fdm.exe' -regserver
  • '%TEMP%\RarSFX0\crack.exe' /VERYSILENT /SUPPRESSMSGBOXES /NORESTART /SP-
  • '%TEMP%\is-0Q1DS.tmp\crack.tmp' /SL5="$300FC,622482,53248,%TEMP%\RarSFX0\crack.exe" /VERYSILENT /SUPPRESSMSGBOXES /NORESTART /SP-
Запускает на исполнение:
  • '<SYSTEM32>\cmd.exe' /c ""%TEMP%\29128703.cmd" "%TEMP%\RarSFX0\Aya.exe" "

Рекомендации по лечению

  1. В случае если операционная система способна загрузиться (в штатном режиме или режиме защиты от сбоев), скачайте лечащую утилиту Dr.Web CureIt! и выполните с ее помощью полную проверку вашего компьютера, а также используемых вами переносных носителей информации.
  2. Если загрузка операционной системы невозможна, измените настройки BIOS вашего компьютера, чтобы обеспечить возможность загрузки ПК с компакт-диска или USB-накопителя. Скачайте образ аварийного диска восстановления системы Dr.Web® LiveDisk или утилиту записи Dr.Web® LiveDisk на USB-накопитель, подготовьте соответствующий носитель. Загрузив компьютер с использованием данного носителя, выполните его полную проверку и лечение обнаруженных угроз.
Скачать Dr.Web

По серийному номеру

Выполните полную проверку системы с использованием Антивируса Dr.Web Light для macOS. Данный продукт можно загрузить с официального сайта Apple App Store.

На загруженной ОС выполните полную проверку всех дисковых разделов с использованием продукта Антивирус Dr.Web для Linux.

Скачать Dr.Web

По серийному номеру

  1. Если мобильное устройство функционирует в штатном режиме, загрузите и установите на него бесплатный антивирусный продукт Dr.Web для Android Light. Выполните полную проверку системы и используйте рекомендации по нейтрализации обнаруженных угроз.
  2. Если мобильное устройство заблокировано троянцем-вымогателем семейства Android.Locker (на экране отображается обвинение в нарушении закона, требование выплаты определенной денежной суммы или иное сообщение, мешающее нормальной работе с устройством), выполните следующие действия:
    • загрузите свой смартфон или планшет в безопасном режиме (в зависимости от версии операционной системы и особенностей конкретного мобильного устройства эта процедура может быть выполнена различными способами; обратитесь за уточнением к инструкции, поставляемой вместе с приобретенным аппаратом, или напрямую к его производителю);
    • после активации безопасного режима установите на зараженное устройство бесплатный антивирусный продукт Dr.Web для Android Light и произведите полную проверку системы, выполнив рекомендации по нейтрализации обнаруженных угроз;
    • выключите устройство и включите его в обычном режиме.

Подробнее о Dr.Web для Android

Демо бесплатно на 14 дней

Выдаётся при установке