Поддержка
Круглосуточная поддержка

Позвоните

Бесплатно по России:
8-800-333-79-32

ЧаВо | Форум

Ваши запросы

  • Все: -
  • Незакрытые: -
  • Последний: -

Позвоните

Бесплатно по России:
8-800-333-79-32

Свяжитесь с нами Незакрытые запросы: 

Профиль

Профиль

Trojan.KillFiles.23710

Добавлен в вирусную базу Dr.Web: 2015-02-04

Описание добавлено:

Техническая информация

Вредоносные функции:
Создает и запускает на исполнение:
  • '%TEMP%\._msige61\GoogleEarth.exe' /S/v/qn /V"/qn"
  • '%TEMP%\RarSFX0\3.exe' /S/v/qn /V"/qn"
  • '<SYSTEM32>\asdata\xx\1.exe'
Запускает на исполнение:
  • '<SYSTEM32>\msiexec.exe' -Embedding 32CF85B2275EFCAA7D59DF1557B19B8C
  • '<SYSTEM32>\wbem\wmiadap.exe' /R /T
  • '<SYSTEM32>\msiexec.exe' /i "%TEMP%\._msige61\Google Earth.msi" /qn TRANSFORMS="1033.MST" SETUPEXEDIR="%TEMP%\._msige61" SETUPEXENAME="GoogleEarth.exe"
  • '<SYSTEM32>\msiexec.exe' /V
Изменения в файловой системе:
Создает следующие файлы:
  • %TEMP%\._msige61\13322.mst
  • %TEMP%\._msige61\14346.mst
  • %TEMP%\._msige61\15370.mst
  • %TEMP%\._msige61\12298.mst
  • %TEMP%\._msige61\1063.mst
  • %TEMP%\._msige61\1066.mst
  • %TEMP%\._msige61\11274.mst
  • %TEMP%\._msige61\2052.mst
  • %TEMP%\._msige61\3082.mst
  • %TEMP%\._msige61\3098.mst
  • %TEMP%\._msige61\4106.mst
  • %TEMP%\._msige61\3073.mst
  • %TEMP%\._msige61\2057.mst
  • %TEMP%\._msige61\2058.mst
  • %TEMP%\._msige61\2070.mst
  • %TEMP%\._msige61\1048.mst
  • %TEMP%\._msige61\1049.mst
  • %TEMP%\._msige61\1050.mst
  • %TEMP%\._msige61\1046.mst
  • %TEMP%\._msige61\1043.mst
  • %TEMP%\._msige61\1044.mst
  • %TEMP%\._msige61\1045.mst
  • %TEMP%\._msige61\1051.mst
  • %TEMP%\._msige61\1058.mst
  • %TEMP%\._msige61\1060.mst
  • %TEMP%\._msige61\1062.mst
  • %TEMP%\._msige61\1057.mst
  • %TEMP%\._msige61\1053.mst
  • %TEMP%\._msige61\1054.mst
  • %TEMP%\._msige61\1055.mst
  • %TEMP%\._msige61\5130.mst
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\lang\ca.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\client\lang\cs.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\lang\cs.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\client\lang\ca.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\lang\ar.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\client\lang\bg.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\lang\bg.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\client\lang\da.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\lang\el.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\client\lang\en.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\lang\en.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\client\lang\el.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\lang\da.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\client\lang\de.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\lang\de.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\client\shaders\stbillboard.ps_2_0
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\shaders\stbillboard.ps_2_0
  • %TEMP%\._msige61\program files\Google\Google Earth\client\shaders\stbranch.ps_2_0
  • %TEMP%\._msige61\9226.mst
  • %TEMP%\._msige61\6154.mst
  • %TEMP%\._msige61\7178.mst
  • %TEMP%\._msige61\8202.mst
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\shaders\stbranch.ps_2_0
  • %TEMP%\._msige61\program files\Google\Google Earth\client\shaders\stleafmesh.ps_2_0
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\shaders\stleafmesh.ps_2_0
  • %TEMP%\._msige61\program files\Google\Google Earth\client\lang\ar.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\shaders\stleafcard.ps_2_0
  • %TEMP%\._msige61\program files\Google\Google Earth\client\shaders\stfrond.ps_2_0
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\shaders\stfrond.ps_2_0
  • %TEMP%\._msige61\program files\Google\Google Earth\client\shaders\stleafcard.ps_2_0
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\shaders\stleafmesh.glslesf
  • %TEMP%\._msige61\program files\Google\Google Earth\client\shaders\watersurface.glslesf
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\shaders\watersurface.glslesf
  • %TEMP%\._msige61\program files\Google\Google Earth\client\shaders\stleafmesh.glslesf
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\shaders\stfrond.glslesf
  • %TEMP%\._msige61\program files\Google\Google Earth\client\shaders\stleafcard.glslesf
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\shaders\stleafcard.glslesf
  • %TEMP%\._msige61\program files\Google\Google Earth\client\shaders\atmosphere.glslesv
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\shaders\stbillboard.glslesv
  • %TEMP%\._msige61\program files\Google\Google Earth\client\shaders\stbranch.glslesv
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\shaders\stbranch.glslesv
  • %TEMP%\._msige61\program files\Google\Google Earth\client\shaders\stbillboard.glslesv
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\shaders\atmosphere.glslesv
  • %TEMP%\._msige61\program files\Google\Google Earth\client\shaders\precipitation_double_cone.glslesv
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\shaders\precipitation_double_cone.glslesv
  • %TEMP%\._msige61\program files\Google\Google Earth\client\shaders\stleafmesh.cfg
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\shaders\stleafmesh.cfg
  • %TEMP%\._msige61\program files\Google\Google Earth\client\shaders\atmosphere.glslesf
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\shaders\stleafcard.cfg
  • %TEMP%\._msige61\program files\Google\Google Earth\client\shaders\stfrond.cfg
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\shaders\stfrond.cfg
  • %TEMP%\._msige61\program files\Google\Google Earth\client\shaders\stleafcard.cfg
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\shaders\atmosphere.glslesf
  • %TEMP%\._msige61\program files\Google\Google Earth\client\shaders\stbranch.glslesf
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\shaders\stbranch.glslesf
  • %TEMP%\._msige61\program files\Google\Google Earth\client\shaders\stfrond.glslesf
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\shaders\stbillboard.glslesf
  • %TEMP%\._msige61\program files\Google\Google Earth\client\shaders\precipitation_double_cone.glslesf
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\shaders\precipitation_double_cone.glslesf
  • %TEMP%\._msige61\program files\Google\Google Earth\client\shaders\stbillboard.glslesf
  • %TEMP%\._msige61\program files\Google\Google Earth\client\shaders\stfrond.glslesv
  • %TEMP%\._msige61\1031.mst
  • %TEMP%\._msige61\1032.mst
  • %TEMP%\._msige61\1033.mst
  • %TEMP%\._msige61\1030.mst
  • %TEMP%\._msige61\1027.mst
  • %TEMP%\._msige61\1028.mst
  • %TEMP%\._msige61\1029.mst
  • %TEMP%\._msige61\1034.mst
  • %TEMP%\._msige61\1040.mst
  • %TEMP%\._msige61\1041.mst
  • %TEMP%\._msige61\1042.mst
  • %TEMP%\._msige61\1038.mst
  • %TEMP%\._msige61\1035.mst
  • %TEMP%\._msige61\1036.mst
  • %TEMP%\._msige61\1037.mst
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\shaders\stleafmesh.glslesv
  • %TEMP%\._msige61\program files\Google\Google Earth\client\shaders\watersurface.glslesv
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\shaders\watersurface.glslesv
  • %TEMP%\._msige61\program files\Google\Google Earth\client\shaders\stleafmesh.glslesv
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\shaders\stfrond.glslesv
  • %TEMP%\._msige61\program files\Google\Google Earth\client\shaders\stleafcard.glslesv
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\shaders\stleafcard.glslesv
  • %TEMP%\._msige61\program files\Google\Google Earth\client\shaders\atmosphere.glsllib
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\res\userpalette.kml
  • %TEMP%\._msige61\10250.mst
  • %TEMP%\._msige61\1026.mst
  • %TEMP%\._msige61\program files\Google\Google Earth\client\res\userpalette.kml
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\shaders\atmosphere.glsllib
  • %TEMP%\._msige61\program files\Google\Google Earth\client\shaders\water.glsllib
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\shaders\water.glsllib
  • %TEMP%\._msige61\program files\Google\Google Earth\client\lang\es-419.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\client\res\leftpanel-layer.rcc
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\res\leftpanel-layer.rcc
  • %TEMP%\._msige61\program files\Google\Google Earth\client\res\localshapes.rcc
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\res\leftpanel-common.rcc
  • %TEMP%\._msige61\program files\Google\Google Earth\client\res\filmstrip.rcc
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\res\filmstrip.rcc
  • %TEMP%\._msige61\program files\Google\Google Earth\client\res\leftpanel-common.rcc
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\res\localshapes.rcc
  • %TEMP%\._msige61\program files\Google\Google Earth\client\res\progress.rcc
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\res\progress.rcc
  • %TEMP%\._msige61\program files\Google\Google Earth\client\res\renderui.rcc
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\res\notifications.rcc
  • %TEMP%\._msige61\program files\Google\Google Earth\client\res\navcontrols.rcc
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\res\navcontrols.rcc
  • %TEMP%\._msige61\program files\Google\Google Earth\client\res\notifications.rcc
  • %TEMP%\._msige61\program files\Google\Google Earth\client\lang\zh-Hant.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\lang\zh-Hant.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\client\res\application.rcc
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\lang\zh-Hant-HK.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\client\lang\zh-Hans.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\lang\zh-Hans.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\client\lang\zh-Hant-HK.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\res\application.rcc
  • %TEMP%\._msige61\program files\Google\Google Earth\client\res\default_myplaces.rcc
  • %TEMP%\._msige61\program files\Google\Google Earth\client\res\effects.rcc
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\res\effects.rcc
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\res\builtin_webdata.rcc
  • %TEMP%\._msige61\program files\Google\Google Earth\client\res\balloons.rcc
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\res\balloons.rcc
  • %TEMP%\._msige61\program files\Google\Google Earth\client\res\builtin_webdata.rcc
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\res\renderui.rcc
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\shaders\stbranch.vs_2_0
  • %TEMP%\._msige61\program files\Google\Google Earth\client\shaders\stfrond.vs_2_0
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\shaders\stfrond.vs_2_0
  • %TEMP%\._msige61\program files\Google\Google Earth\client\shaders\stbranch.vs_2_0
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\res\webbrowser.rcc
  • %TEMP%\._msige61\program files\Google\Google Earth\client\shaders\stbillboard.vs_2_0
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\shaders\stbillboard.vs_2_0
  • %TEMP%\._msige61\program files\Google\Google Earth\client\shaders\stleafcard.vs_2_0
  • %WINDIR%\Installer\35a86.mst
  • %WINDIR%\Installer\MSI4.tmp
  • %TEMP%\DLL_{6F545E5E-4595-11E2-93B6-B8AC6F97B88E}.ini
  • %WINDIR%\Installer\35a85.msi
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\shaders\stleafcard.vs_2_0
  • %TEMP%\._msige61\program files\Google\Google Earth\client\shaders\stleafmesh.vs_2_0
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\shaders\stleafmesh.vs_2_0
  • %TEMP%\._msige61\program files\Google\Google Earth\client\res\statusbar.rcc
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\res\statusbar.rcc
  • %TEMP%\._msige61\program files\Google\Google Earth\client\res\terrainmgr.rcc
  • %TEMP%\._msige61\program files\Google\Google Earth\client\res\startinglocations.rcc
  • %TEMP%\._msige61\program files\Google\Google Earth\client\res\search.rcc
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\res\search.rcc
  • %TEMP%\._msige61\program files\Google\Google Earth\client\res\startinglocations-nonmac.rcc
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\res\terrainmgr.rcc
  • %TEMP%\._msige61\program files\Google\Google Earth\client\res\tourcontrols.rcc
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\res\tourcontrols.rcc
  • %TEMP%\._msige61\program files\Google\Google Earth\client\res\webbrowser.rcc
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\res\toolbar.rcc
  • %TEMP%\._msige61\program files\Google\Google Earth\client\res\tmcontrols.rcc
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\res\tmcontrols.rcc
  • %TEMP%\._msige61\program files\Google\Google Earth\client\res\toolbar.rcc
  • %TEMP%\._msige61\program files\Google\Google Earth\client\lang\id.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\lang\id.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\client\lang\it.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\lang\hu.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\client\lang\hr.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\lang\hr.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\client\lang\hu.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\lang\it.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\client\lang\lt.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\lang\lt.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\client\lang\lv.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\lang\ko.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\client\lang\ja.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\lang\ja.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\client\lang\ko.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\lang\fa.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\client\lang\fi.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\lang\fi.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\client\lang\fa.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\lang\es-419.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\client\lang\es.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\lang\es.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\client\lang\fil.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\lang\he.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\client\lang\hi.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\lang\hi.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\client\lang\he.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\lang\fil.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\client\lang\fr.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\lang\fr.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\lang\lv.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\lang\sr.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\client\lang\sv.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\lang\sv.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\client\lang\sr.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\lang\sk.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\client\lang\sl.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\lang\sl.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\client\lang\th.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\lang\uk.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\client\lang\vi.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\lang\vi.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\client\lang\uk.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\lang\th.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\client\lang\tr.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\lang\tr.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\client\lang\pl.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\lang\pl.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\client\lang\pt-PT.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\lang\no.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\client\lang\nl.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\lang\nl.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\client\lang\no.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\lang\pt-PT.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\client\lang\ru.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\lang\ru.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\client\lang\sk.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\lang\ro.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\client\lang\pt.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\lang\pt.qm
  • %TEMP%\._msige61\program files\Google\Google Earth\client\lang\ro.qm
  • %TEMP%\._msige61\0x1c0a.ini
  • %TEMP%\._msige61\0x200a.ini
  • %TEMP%\._msige61\0x240a.ini
  • %TEMP%\._msige61\0x180a.ini
  • %TEMP%\._msige61\0x0c1a.ini
  • %TEMP%\._msige61\0x100a.ini
  • %TEMP%\._msige61\0x140a.ini
  • %TEMP%\._msige61\0x280a.ini
  • %TEMP%\._msige61\0x3c0a.ini
  • %TEMP%\._msige61\program files\Google\Google Earth\client\drivers.ini
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\drivers.ini
  • %TEMP%\._msige61\0x380a.ini
  • %TEMP%\._msige61\0x2c0a.ini
  • %TEMP%\._msige61\0x300a.ini
  • %TEMP%\._msige61\0x340a.ini
  • %TEMP%\._msige61\0x0422.ini
  • %TEMP%\._msige61\0x0424.ini
  • %TEMP%\._msige61\0x0426.ini
  • %TEMP%\._msige61\0x0421.ini
  • %TEMP%\._msige61\0x041d.ini
  • %TEMP%\._msige61\0x041e.ini
  • %TEMP%\._msige61\0x041f.ini
  • %TEMP%\._msige61\0x0427.ini
  • %TEMP%\._msige61\0x0816.ini
  • %TEMP%\._msige61\0x0c01.ini
  • %TEMP%\._msige61\0x0c0a.ini
  • %TEMP%\._msige61\0x080a.ini
  • %TEMP%\._msige61\0x042a.ini
  • %TEMP%\._msige61\0x0804.ini
  • %TEMP%\._msige61\0x0809.ini
  • %TEMP%\._msige61\program files\Google\Google Earth\client\res\flightsim\planet\earth.ini
  • %TEMP%\._msige61\program files\Google\Google Earth\client\res\flightsim\controller\logitech_force_3d.ini
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\res\flightsim\controller\logitech_force_3d.ini
  • %TEMP%\._msige61\program files\Google\Google Earth\client\res\flightsim\controller\logitech_freedom.ini
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\res\flightsim\controller\logitech_extreme_3d.ini
  • %TEMP%\._msige61\program files\Google\Google Earth\client\res\flightsim\controller\logitech_attack3.ini
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\res\flightsim\controller\logitech_attack3.ini
  • %TEMP%\._msige61\program files\Google\Google Earth\client\res\flightsim\controller\logitech_extreme_3d.ini
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\res\flightsim\controller\logitech_freedom.ini
  • %TEMP%\._msige61\program files\Google\Google Earth\client\res\flightsim\controller\saitek_x52.ini
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\res\flightsim\controller\saitek_x52.ini
  • %TEMP%\._msige61\Setup.ini
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\res\flightsim\controller\saitek_cyborg_evo.ini
  • %TEMP%\._msige61\program files\Google\Google Earth\client\PCOptimizations.ini
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\PCOptimizations.ini
  • %TEMP%\._msige61\program files\Google\Google Earth\client\res\flightsim\controller\saitek_cyborg_evo.ini
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\res\flightsim\controller\generic.ini
  • %TEMP%\._msige61\program files\Google\Google Earth\client\res\flightsim\hud\generic.ini
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\res\flightsim\hud\generic.ini
  • %TEMP%\._msige61\program files\Google\Google Earth\client\res\flightsim\controller\generic.ini
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\res\flightsim\planet\earth.ini
  • %TEMP%\._msige61\program files\Google\Google Earth\client\res\flightsim\flightsim.ini
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\res\flightsim\flightsim.ini
  • %TEMP%\._msige61\program files\Google\Google Earth\client\res\flightsim\keyboard\generic.ini
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\ImporterGlobalSettings.ini
  • %TEMP%\._msige61\program files\Google\Google Earth\client\ImporterUISettings.ini
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\ImporterUISettings.ini
  • %TEMP%\._msige61\program files\Google\Google Earth\client\ImporterGlobalSettings.ini
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\res\flightsim\keyboard\generic.ini
  • %TEMP%\._msige61\program files\Google\Google Earth\client\res\flightsim\controller\genius_maxfighter_f16u.ini
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\res\flightsim\controller\genius_maxfighter_f16u.ini
  • %TEMP%\._msige61\program files\Google\Google Earth\client\kmz_file.ico
  • %TEMP%\._msige61\program files\Google\Google Earth\client\uninstall.ico
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\uninstall.ico
  • %TEMP%\._msige61\program files\Google\Google Earth\client\kml_file.ico
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\res\unknown_plugin.png
  • %TEMP%\._msige61\program files\Google\Google Earth\client\google_earth.ico
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\google_earth.ico
  • %TEMP%\._msige61\program files\Google\Google Earth\client\res\flightsim\aircraft\f16.acf
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\shaders\glsles.h
  • %TEMP%\._msige61\program files\Google\Google Earth\client\shaders\speedtree_configuration_glsles.h
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\shaders\speedtree_configuration_glsles.h
  • %TEMP%\._msige61\program files\Google\Google Earth\client\shaders\glsles.h
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\res\flightsim\aircraft\f16.acf
  • %TEMP%\._msige61\program files\Google\Google Earth\client\res\flightsim\aircraft\sr22.acf
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\res\flightsim\aircraft\sr22.acf
  • %TEMP%\aut3.tmp
  • <SYSTEM32>\asdata\xx\2.exe
  • %TEMP%\RarSFX0\3.exe
  • <SYSTEM32>\asdata\xx\1.exe
  • %TEMP%\aut1.tmp
  • <SYSTEM32>\asdata\xx\predator.exe
  • %TEMP%\aut2.tmp
  • %TEMP%\._msige61\Google Earth.msi
  • %TEMP%\._msige61\program files\Google\Google Earth\client\res\spin_icon.png
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\res\spin_icon.png
  • %TEMP%\._msige61\program files\Google\Google Earth\client\res\unknown_plugin.png
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\res\cursor_crosshair_thick.png
  • %TEMP%\._msige61\program files\Google\Google Earth\client\res\cursor_crosshair_inverse.png
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\res\cursor_crosshair_inverse.png
  • %TEMP%\._msige61\program files\Google\Google Earth\client\res\cursor_crosshair_thick.png
  • %TEMP%\._msige61\program files\Google\Google Earth\client\shaders\speedtree_utils_glsles.h
  • %TEMP%\._msige61\0x0410.ini
  • %TEMP%\._msige61\0x0411.ini
  • %TEMP%\._msige61\0x0412.ini
  • %TEMP%\._msige61\0x040e.ini
  • %TEMP%\._msige61\0x040b.ini
  • %TEMP%\._msige61\0x040c.ini
  • %TEMP%\._msige61\0x040d.ini
  • %TEMP%\._msige61\0x0413.ini
  • %TEMP%\._msige61\0x0419.ini
  • %TEMP%\._msige61\0x041a.ini
  • %TEMP%\._msige61\0x041b.ini
  • %TEMP%\._msige61\0x0418.ini
  • %TEMP%\._msige61\0x0414.ini
  • %TEMP%\._msige61\0x0415.ini
  • %TEMP%\._msige61\0x0416.ini
  • %TEMP%\._msige61\program files\Google\Google Earth\client\gpl.txt
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\gpl.txt
  • %TEMP%\._msige61\0x0402.ini
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\res\doppler.txt
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\shaders\speedtree_utils_glsles.h
  • %TEMP%\._msige61\LocalAppData\Google\Custom Buttons\toolbar.google.com_MXE8GT6B9RBHXCGLZ06L.xml
  • %TEMP%\._msige61\program files\Google\Google Earth\client\res\doppler.txt
  • %TEMP%\._msige61\0x0403.ini
  • %TEMP%\._msige61\0x0408.ini
  • %TEMP%\._msige61\0x0409.ini
  • %TEMP%\._msige61\0x040a.ini
  • %TEMP%\._msige61\0x0407.ini
  • %TEMP%\._msige61\0x0404.ini
  • %TEMP%\._msige61\0x0405.ini
  • %TEMP%\._msige61\0x0406.ini
  • %TEMP%\._msige61\program files\Google\Google Earth\client\res\flightsim\controller\speed_link_black_hawk.ini
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\QtCore4.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\client\QtGui4.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\QtGui4.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\client\QtCore4.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\imageformats\qgif4.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\client\imageformats\qjpeg4.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\imageformats\qjpeg4.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\client\QtNetwork4.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\shaders\stbillboard.arbfp1
  • %TEMP%\._msige61\program files\Google\Google Earth\client\shaders\stbranch.arbfp1
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\shaders\stbranch.arbfp1
  • %TEMP%\._msige61\program files\Google\Google Earth\client\shaders\stbillboard.arbfp1
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\QtNetwork4.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\client\QtWebKit4.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\QtWebKit4.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\libEGL.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\libGLESv2.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\libGLESv2.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\libEGL.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\IGSg.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\client\IGUtils.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\IGUtils.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\client\msvcp100.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\npgeplugin.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\plugin_ax.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\client\imageformats\qgif4.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\client\Plugins\npgeinprocessplugin.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\msvcp100.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\client\msvcr100.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\msvcr100.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\client\shaders\stfrond.arbfp1
  • %TEMP%\._msige61\program files\Google\Google Earth\client\shaders\stfrond.asd
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\shaders\stfrond.asd
  • %TEMP%\._msige61\program files\Google\Google Earth\client\shaders\stleafcard.asd
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\shaders\stbranch.asd
  • %TEMP%\._msige61\program files\Google\Google Earth\client\shaders\stbillboard.asd
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\shaders\stbillboard.asd
  • %TEMP%\._msige61\program files\Google\Google Earth\client\shaders\stbranch.asd
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\shaders\stleafcard.asd
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\shaders\stbillboard.cfg
  • %TEMP%\._msige61\program files\Google\Google Earth\client\shaders\stbranch.cfg
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\shaders\stbranch.cfg
  • %TEMP%\._msige61\program files\Google\Google Earth\client\shaders\stbillboard.cfg
  • %TEMP%\._msige61\program files\Google\Google Earth\client\shaders\stleafmesh.asd
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\shaders\stleafmesh.asd
  • %TEMP%\._msige61\program files\Google\Google Earth\client\wavdest.ax
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\shaders\stleafmesh.arbfp1
  • %TEMP%\._msige61\program files\Google\Google Earth\client\shaders\stbillboard.arbvp1
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\shaders\stbillboard.arbvp1
  • %TEMP%\._msige61\program files\Google\Google Earth\client\shaders\stleafmesh.arbfp1
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\shaders\stfrond.arbfp1
  • %TEMP%\._msige61\program files\Google\Google Earth\client\shaders\stleafcard.arbfp1
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\shaders\stleafcard.arbfp1
  • %TEMP%\._msige61\program files\Google\Google Earth\client\shaders\stbranch.arbvp1
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\shaders\stleafcard.arbvp1
  • %TEMP%\._msige61\program files\Google\Google Earth\client\shaders\stleafmesh.arbvp1
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\shaders\stleafmesh.arbvp1
  • %TEMP%\._msige61\program files\Google\Google Earth\client\shaders\stleafcard.arbvp1
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\shaders\stbranch.arbvp1
  • %TEMP%\._msige61\program files\Google\Google Earth\client\shaders\stfrond.arbvp1
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\shaders\stfrond.arbvp1
  • %TEMP%\._msige61\program files\Google\Google Earth\client\gpsbabel.exe
  • %TEMP%\._msige61\program files\Google\Google Earth\client\alchemyext.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\alchemyext.dll
  • %TEMP%\._msige61\GoogleEarth.exe
  • %TEMP%\._msige61\program files\Google\Google Earth\client\earthflashsol.exe
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\geplugin.exe
  • %TEMP%\._msige61\program files\Google\Google Earth\client\googleearth.exe
  • %TEMP%\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\D3DCompiler_43.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\earthps.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\client\ge_expat.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\ge_expat.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\client\earthps.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\D3DCompiler_43.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\d3dx9_43.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\d3dx9_43.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\res\flightsim\controller\speed_link_cougar_flightstick.ini
  • %TEMP%\._msige61\program files\Google\Google Earth\client\res\flightsim\controller\speed_link_dark_tornado.ini
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\res\flightsim\controller\speed_link_dark_tornado.ini
  • %TEMP%\._msige61\program files\Google\Google Earth\client\res\flightsim\controller\speed_link_cougar_flightstick.ini
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\res\flightsim\controller\speed_link_black_hawk.ini
  • %TEMP%\._msige61\program files\Google\Google Earth\client\res\flightsim\controller\speed_link_black_widow.ini
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\res\flightsim\controller\speed_link_black_widow.ini
  • %TEMP%\._msige61\program files\Google\Google Earth\client\res\flightsim\keyboard\sr22.ini
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\shaders\stcommonobjects.ini
  • %TEMP%\._msige61\program files\Google\Google Earth\client\res\flightsim\controller\xbox_360.ini
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\res\flightsim\controller\xbox_360.ini
  • %TEMP%\._msige61\program files\Google\Google Earth\client\shaders\stcommonobjects.ini
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\res\flightsim\keyboard\sr22.ini
  • %TEMP%\._msige61\program files\Google\Google Earth\client\res\flightsim\hud\sr22.ini
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\res\flightsim\hud\sr22.ini
  • %TEMP%\._msige61\program files\Google\Google Earth\client\googleearth_free.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\client\IGMath.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\IGMath.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\client\IGOpt.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\IGGfx.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\alchemy\ogl\IGGfx.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\IGGfx.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\IGGfx.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\IGOpt.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\alchemy\ogl\IGSg.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\IGSg.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\IGSg.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\client\IGSg.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\client\alchemy\optimizations\IGOptExtension.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\alchemy\optimizations\IGOptExtension.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\client\alchemy\ogl\IGSg.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\client\IGAttrs.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\alchemy\ogl\IGAttrs.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\IGAttrs.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\client\alchemy\ogl\IGAttrs.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\googleearth_free.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\client\icudt.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\icudt.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\IGAttrs.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\IGExportCommon.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\client\alchemy\ogl\IGGfx.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\client\IGGfx.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\client\IGExportCommon.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\IGAttrs.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\client\IGCore.dll
  • %TEMP%\._msige61\program files\Google\Google Earth\plugin\IGCore.dll
Присваивает атрибут 'скрытый' для следующих файлов:
  • <SYSTEM32>\asdata\xx\2.exe
  • <SYSTEM32>\asdata\xx\1.exe
  • <SYSTEM32>\asdata\xx\predator.exe
Удаляет следующие файлы:
  • %WINDIR%\Installer\35a85.msi
  • %WINDIR%\Installer\35a86.mst
  • <SYSTEM32>\PerfStringBackup.TMP
  • <SYSTEM32>\wbem\Performance\WmiApRpl.ini
  • %TEMP%\aut2.tmp
  • %TEMP%\aut1.tmp
  • %WINDIR%\Installer\MSI4.tmp
  • %TEMP%\aut3.tmp
Другое:
Ищет следующие окна:
  • ClassName: 'EDIT' WindowName: ''
  • ClassName: 'Shell_TrayWnd' WindowName: ''

Рекомендации по лечению

  1. В случае если операционная система способна загрузиться (в штатном режиме или режиме защиты от сбоев), скачайте лечащую утилиту Dr.Web CureIt! и выполните с ее помощью полную проверку вашего компьютера, а также используемых вами переносных носителей информации.
  2. Если загрузка операционной системы невозможна, измените настройки BIOS вашего компьютера, чтобы обеспечить возможность загрузки ПК с компакт-диска или USB-накопителя. Скачайте образ аварийного диска восстановления системы Dr.Web® LiveDisk или утилиту записи Dr.Web® LiveDisk на USB-накопитель, подготовьте соответствующий носитель. Загрузив компьютер с использованием данного носителя, выполните его полную проверку и лечение обнаруженных угроз.
Скачать Dr.Web

По серийному номеру

Выполните полную проверку системы с использованием Антивируса Dr.Web Light для macOS. Данный продукт можно загрузить с официального сайта Apple App Store.

На загруженной ОС выполните полную проверку всех дисковых разделов с использованием продукта Антивирус Dr.Web для Linux.

Скачать Dr.Web

По серийному номеру

  1. Если мобильное устройство функционирует в штатном режиме, загрузите и установите на него бесплатный антивирусный продукт Dr.Web для Android Light. Выполните полную проверку системы и используйте рекомендации по нейтрализации обнаруженных угроз.
  2. Если мобильное устройство заблокировано троянцем-вымогателем семейства Android.Locker (на экране отображается обвинение в нарушении закона, требование выплаты определенной денежной суммы или иное сообщение, мешающее нормальной работе с устройством), выполните следующие действия:
    • загрузите свой смартфон или планшет в безопасном режиме (в зависимости от версии операционной системы и особенностей конкретного мобильного устройства эта процедура может быть выполнена различными способами; обратитесь за уточнением к инструкции, поставляемой вместе с приобретенным аппаратом, или напрямую к его производителю);
    • после активации безопасного режима установите на зараженное устройство бесплатный антивирусный продукт Dr.Web для Android Light и произведите полную проверку системы, выполнив рекомендации по нейтрализации обнаруженных угроз;
    • выключите устройство и включите его в обычном режиме.

Подробнее о Dr.Web для Android

Демо бесплатно на 14 дней

Выдаётся при установке