Bibliothèque
Ma bibliothèque

+ Ajouter à la bibliothèque

Contacter-nous !
Support 24/24 | Rules regarding submitting

Nous téléphoner

0 825 300 230

Forum

Vos requêtes

  • Toutes : -
  • Non clôturées : -
  • Dernière : le -

Nous téléphoner

0 825 300 230

Profil

Trojan.DownLoader45.7378

Added to the Dr.Web virus database: 2022-07-29

Virus description added:

Technical Information

Modifies file system
Creates the following files
  • %TEMP%\is-ko0ep.tmp\is-e4hci.tmp
  • %ProgramFiles(x86)%\viewfd\ini\is-le501.tmp
  • %ProgramFiles(x86)%\viewfd\ini\is-g6p01.tmp
  • %ProgramFiles(x86)%\viewfd\lsd\is-b2189.tmp
  • %ProgramFiles(x86)%\viewfd\lsd\is-ar7qp.tmp
  • %ProgramFiles(x86)%\viewfd\plugins\is-3v35i.tmp
  • %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\language\is-h5o2n.tmp
  • %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\plugin\is-8n5on.tmp
  • %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\plugin\is-nbbs1.tmp
  • %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\plugin\is-7uqmr.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\textures\is-hntoh.tmp
  • %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\plugin\is-uqug7.tmp
  • %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\plugin\is-lsgc0.tmp
  • %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\plugin\is-0gr1m.tmp
  • %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\plugin\is-dthda.tmp
  • %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\plugin\is-u7e3p.tmp
  • %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\plugin\is-vh61d.tmp
  • %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\plugin\is-ugfno.tmp
  • %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\plugin\is-c02io.tmp
  • %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\is-e0kht.tmp
  • %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\is-10p71.tmp
  • %ProgramFiles(x86)%\viewfd\ini\is-fvra7.tmp
  • %ProgramFiles(x86)%\viewfd\ini\is-2gp5f.tmp
  • %ProgramFiles(x86)%\viewfd\ini\is-8h2nd.tmp
  • %ProgramFiles(x86)%\viewfd\ini\is-psusg.tmp
  • %ProgramFiles(x86)%\viewfd\ini\is-8n4dc.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\textures\is-37su1.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\textures\is-dihuk.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\textures\is-9ckbs.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\textures\is-4p718.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\textures\is-d6dcg.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\textures\is-1o25v.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\textures\is-77rbi.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\textures\is-nqn6o.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\textures\is-5k0as.tmp
  • %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\is-4lees.tmp
  • %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\plugin\is-58pfa.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\textures\is-etbcp.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\textures\is-44lks.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\textures\is-2q4to.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\textures\is-rm88g.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\textures\is-esjld.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\transition\is-6sqa8.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\wavehv\is-ss7nn.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\wavergb\is-5ufl8.tmp
  • %ProgramFiles(x86)%\viewfd\ini\is-u5nc4.tmp
  • %ProgramFiles(x86)%\viewfd\ini\is-516ep.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\shiftrgb\is-7t3lc.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\textures\is-728uh.tmp
  • %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\is-e6md8.tmp
  • %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\is-rdqpe.tmp
  • %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\is-627rj.tmp
  • %ProgramFiles(x86)%\viewfd\url\soft\is-5907v.tmp
  • %ProgramFiles(x86)%\viewfd\url\soft\is-nudda.tmp
  • %ProgramFiles(x86)%\viewfd\url\soft\is-m4k67.tmp
  • %ProgramFiles(x86)%\viewfd\wallpaper\is-ohmq3.tmp
  • %ProgramFiles(x86)%\viewfd\wallpaper\is-9ofhk.tmp
  • %ProgramFiles(x86)%\viewfd\wallpaper\is-thdcg.tmp
  • %ProgramFiles(x86)%\viewfd\wallpaper\is-geld7.tmp
  • %ProgramFiles(x86)%\viewfd\wallpaper\is-g63k1.tmp
  • %ProgramFiles(x86)%\viewfd\wallpaper\is-i0h6d.tmp
  • %ProgramFiles(x86)%\viewfd\wallpaper\is-5mtjd.tmp
  • %ProgramFiles(x86)%\viewfd\is-un7ei.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\selection\is-n1m7m.tmp
  • %ProgramFiles(x86)%\viewfd\is-dj8e2.tmp
  • %ProgramFiles(x86)%\viewfd\is-5968o.tmp
  • %ProgramFiles(x86)%\viewfd\is-8d00g.tmp
  • %ProgramFiles(x86)%\viewfd\is-i8vie.tmp
  • %ProgramFiles(x86)%\viewfd\is-l4vkc.tmp
  • %ProgramFiles(x86)%\viewfd\is-9hj7a.tmp
  • %ProgramFiles(x86)%\viewfd\is-u4tk9.tmp
  • %ProgramFiles(x86)%\viewfd\is-913sc.tmp
  • %ProgramFiles(x86)%\viewfd\is-07693.tmp
  • %ProgramFiles(x86)%\viewfd\unins000.dat
  • %ProgramFiles(x86)%\viewfd\url\search\is-g5obv.tmp
  • %ProgramFiles(x86)%\viewfd\search\is-tsqih.tmp
  • %ProgramFiles(x86)%\viewfd\url\search\is-5ado0.tmp
  • %ProgramFiles(x86)%\viewfd\search\is-nk31q.tmp
  • %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\is-m950n.tmp
  • %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\is-8i9tj.tmp
  • %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\is-kc9u3.tmp
  • %ProgramFiles(x86)%\viewfd\programs\is-t3nhs.tmp
  • %ProgramFiles(x86)%\viewfd\radio\is-vt7b4.tmp
  • %ProgramFiles(x86)%\viewfd\radio\is-7goog.tmp
  • %ProgramFiles(x86)%\viewfd\reports\is-je47k.tmp
  • %ProgramFiles(x86)%\viewfd\search\is-gvbgk.tmp
  • %ProgramFiles(x86)%\viewfd\search\is-ditfo.tmp
  • %ProgramFiles(x86)%\viewfd\search\is-d236n.tmp
  • %ProgramFiles(x86)%\viewfd\viewfd.exe
  • %ProgramFiles(x86)%\viewfd\url\search\is-6095n.tmp
  • %ProgramFiles(x86)%\viewfd\search\is-a3hkd.tmp
  • %ProgramFiles(x86)%\viewfd\soft\is-r2k51.tmp
  • %ProgramFiles(x86)%\viewfd\url\is-u0ksd.tmp
  • %ProgramFiles(x86)%\viewfd\url\is-fg56e.tmp
  • %ProgramFiles(x86)%\viewfd\url\is-apu2r.tmp
  • %ProgramFiles(x86)%\viewfd\url\is-sa746.tmp
  • %ProgramFiles(x86)%\viewfd\url\is-kjrb4.tmp
  • %ProgramFiles(x86)%\viewfd\url\help\is-t5bf1.tmp
  • %ProgramFiles(x86)%\viewfd\url\help\is-jcr8p.tmp
  • %ProgramFiles(x86)%\viewfd\url\help\is-5ge8t.tmp
  • %ProgramFiles(x86)%\viewfd\url\search\is-29332.tmp
  • %ProgramFiles(x86)%\viewfd\is-arean.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\sharpness2\is-88f00.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\metallic\is-se2ii.tmp
  • %ProgramFiles(x86)%\viewfd\colourschemes\is-51ilo.tmp
  • %ProgramFiles(x86)%\viewfd\data\is-65qms.tmp
  • %ProgramFiles(x86)%\viewfd\forms\is-c54dp.tmp
  • %ProgramFiles(x86)%\viewfd\formulas\is-id4ml.tmp
  • %ProgramFiles(x86)%\viewfd\formulas\is-5csi5.tmp
  • %ProgramFiles(x86)%\viewfd\formulas\is-0pc7t.tmp
  • %ProgramFiles(x86)%\viewfd\formulas\is-0gsi1.tmp
  • %ProgramFiles(x86)%\viewfd\formulas\is-48vmp.tmp
  • %ProgramFiles(x86)%\viewfd\formulas\is-o8f9s.tmp
  • %ProgramFiles(x86)%\viewfd\browser\is-ebfic.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\3dturn\is-hc4hj.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\anyset\is-gkguu.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\anyset\is-e31pm.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\anyset\is-9se3m.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\anyset\is-vrcar.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\anyset\is-ejeos.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\anyset\is-mgrib.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\anyset\is-so6ht.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\anyset\is-4asgu.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\anyset\is-8ndia.tmp
  • %ProgramFiles(x86)%\viewfd\colourschemes\is-1hfq0.tmp
  • %ProgramFiles(x86)%\viewfd\colourschemes\is-cgpoo.tmp
  • %ProgramFiles(x86)%\viewfd\colourschemes\is-u6qin.tmp
  • %ProgramFiles(x86)%\viewfd\colourschemes\is-9u5bt.tmp
  • %ProgramFiles(x86)%\viewfd\colourschemes\is-9tqrd.tmp
  • %TEMP%\is-lpln6.tmp\_isetup\_setup64.tmp
  • %TEMP%\is-lpln6.tmp\_isetup\_shfoldr.dll
  • %TEMP%\is-lpln6.tmp\_isetup\_iscrypt.dll
  • %ProgramFiles(x86)%\viewfd\is-dcls2.tmp
  • %ProgramFiles(x86)%\viewfd\7-zip\lang\is-rd7tm.tmp
  • %ProgramFiles(x86)%\viewfd\7-zip\is-890k3.tmp
  • %ProgramFiles(x86)%\viewfd\7-zip\is-r6sbc.tmp
  • %ProgramFiles(x86)%\viewfd\7-zip\is-iag40.tmp
  • %ProgramFiles(x86)%\viewfd\7-zip\is-hg8ke.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\anyset\is-4fqoi.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\anyset\is-cdr1e.tmp
  • %ProgramFiles(x86)%\viewfd\backup\is-6cngs.tmp
  • %ProgramFiles(x86)%\viewfd\browser\is-o1d1t.tmp
  • %ProgramFiles(x86)%\viewfd\browser\is-sc7f7.tmp
  • %ProgramFiles(x86)%\viewfd\colourschemes\is-bl0gv.tmp
  • %ProgramFiles(x86)%\viewfd\colourschemes\is-05em2.tmp
  • %ProgramFiles(x86)%\viewfd\colourschemes\is-0ihsq.tmp
  • %ProgramFiles(x86)%\viewfd\colourschemes\is-1fo0p.tmp
  • %ProgramFiles(x86)%\viewfd\colourschemes\is-smcvt.tmp
  • %ProgramFiles(x86)%\viewfd\colourschemes\is-bidjm.tmp
  • %ProgramFiles(x86)%\viewfd\colourschemes\is-c4ffu.tmp
  • %TEMP%\is-lpln6.tmp\_isetup\_regdll.tmp
  • %ProgramFiles(x86)%\viewfd\browser\is-8ijq3.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\anyset\is-nhsk0.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\anyset\is-08daf.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\anyset\is-3bdt1.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\inscriptions\is-9fksu.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\inscriptions\is-7806e.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\inscriptions\is-5mjl5.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\inscriptions\is-sf3qu.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\inscriptions\is-lr754.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\inscriptions\is-e4rq9.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\inscriptions\is-h0vfa.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\inscriptions\is-9s7gq.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\inscriptions\is-ce4hg.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\inscriptions\is-qp5j4.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\new\is-9ai42.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\sharpness\is-jdu7n.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\radialrgb\is-np10q.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\saturation\is-0epao.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\sharpness\is-q0vvl.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\sharpness\is-52aof.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\sharpness\is-i0o5r.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\sharpness\is-s8ous.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\sharpness\is-mupba.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\sharpness\is-19hlp.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\sharpness\is-k337a.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\sharpness\is-mqqh9.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\illuminance2\is-jnr2m.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\contour\is-iupi8.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\illuminance\is-odkna.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\cb\is-h06ra.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\anyset\is-s0q54.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\anyset\is-due5o.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\barrgb\is-bgc27.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\brightness\is-q0aeo.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\cb\is-j5n4o.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\cb\is-4c66t.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\cb\is-327mt.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\cb\is-na618.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\cb\is-nkno6.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\cb\is-i2qr6.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\sharpness\is-i3kua.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\ellipsergb\is-r7be8.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\contour\is-iggk7.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\contour\is-psbab.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\contour\is-6btm5.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\contour\is-9523h.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\contour\is-blb1j.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\contour\is-16u05.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\contour\is-cg427.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\contour2\is-75eqq.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\contour2\is-mbat1.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\contour2\is-kvucc.tmp
  • %ProgramFiles(x86)%\viewfd\graphic\grids\is-gbf1s.tmp
  • %TEMP%\lohkos.cab
Moves the following files
  • from %ProgramFiles(x86)%\viewfd\is-dcls2.tmp to %ProgramFiles(x86)%\viewfd\unins000.exe
  • from %ProgramFiles(x86)%\viewfd\ini\is-le501.tmp to %ProgramFiles(x86)%\viewfd\ini\picture.ini
  • from %ProgramFiles(x86)%\viewfd\ini\is-g6p01.tmp to %ProgramFiles(x86)%\viewfd\ini\readme.txt
  • from %ProgramFiles(x86)%\viewfd\lsd\is-b2189.tmp to %ProgramFiles(x86)%\viewfd\lsd\default.lsd
  • from %ProgramFiles(x86)%\viewfd\lsd\is-ar7qp.tmp to %ProgramFiles(x86)%\viewfd\lsd\readme.txt
  • from %ProgramFiles(x86)%\viewfd\plugins\is-3v35i.tmp to %ProgramFiles(x86)%\viewfd\plugins\readme.txt
  • from %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\language\is-h5o2n.tmp to %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\language\russian.lng
  • from %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\plugin\is-8n5on.tmp to %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\plugin\copying
  • from %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\plugin\is-nbbs1.tmp to %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\plugin\ark32.dll
  • from %ProgramFiles(x86)%\viewfd\ini\is-fvra7.tmp to %ProgramFiles(x86)%\viewfd\ini\ms office.ini
  • from %ProgramFiles(x86)%\viewfd\ini\is-2gp5f.tmp to %ProgramFiles(x86)%\viewfd\ini\owner.ini
  • from %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\plugin\is-7uqmr.tmp to %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\plugin\archive.plg
  • from %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\plugin\is-lsgc0.tmp to %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\plugin\hv3.plg
  • from %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\plugin\is-0gr1m.tmp to %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\plugin\jbig.plg
  • from %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\plugin\is-dthda.tmp to %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\plugin\jpeg2000.plg
  • from %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\plugin\is-u7e3p.tmp to %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\plugin\openexr.plg
  • from %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\plugin\is-vh61d.tmp to %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\plugin\webp.plg
  • from %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\plugin\is-ugfno.tmp to %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\plugin\arklicense.txt
  • from %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\plugin\is-c02io.tmp to %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\plugin\dir.txt
  • from %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\is-e0kht.tmp to %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\imagine.chm
  • from %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\plugin\is-uqug7.tmp to %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\plugin\dcraw.plg
  • from %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\plugin\is-58pfa.tmp to %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\plugin\hdphoto.plg
  • from %ProgramFiles(x86)%\viewfd\ini\is-8h2nd.tmp to %ProgramFiles(x86)%\viewfd\ini\mp3 and wma.ini
  • from %ProgramFiles(x86)%\viewfd\ini\is-psusg.tmp to %ProgramFiles(x86)%\viewfd\ini\example2.ini
  • from %ProgramFiles(x86)%\viewfd\ini\is-8n4dc.tmp to %ProgramFiles(x86)%\viewfd\ini\example1.ini
  • from %ProgramFiles(x86)%\viewfd\graphic\textures\is-dihuk.tmp to %ProgramFiles(x86)%\viewfd\graphic\textures\bricks.bmp
  • from %ProgramFiles(x86)%\viewfd\graphic\textures\is-9ckbs.tmp to %ProgramFiles(x86)%\viewfd\graphic\textures\embossing1.bmp
  • from %ProgramFiles(x86)%\viewfd\graphic\textures\is-4p718.tmp to %ProgramFiles(x86)%\viewfd\graphic\textures\embossing2.bmp
  • from %ProgramFiles(x86)%\viewfd\graphic\textures\is-d6dcg.tmp to %ProgramFiles(x86)%\viewfd\graphic\textures\embossing3.bmp
  • from %ProgramFiles(x86)%\viewfd\graphic\textures\is-1o25v.tmp to %ProgramFiles(x86)%\viewfd\graphic\textures\embossing4.bmp
  • from %ProgramFiles(x86)%\viewfd\graphic\textures\is-77rbi.tmp to %ProgramFiles(x86)%\viewfd\graphic\textures\grid1.bmp
  • from %ProgramFiles(x86)%\viewfd\graphic\textures\is-nqn6o.tmp to %ProgramFiles(x86)%\viewfd\graphic\textures\grid2.bmp
  • from %ProgramFiles(x86)%\viewfd\graphic\textures\is-5k0as.tmp to %ProgramFiles(x86)%\viewfd\graphic\textures\line1.bmp
  • from %ProgramFiles(x86)%\viewfd\graphic\textures\is-etbcp.tmp to %ProgramFiles(x86)%\viewfd\graphic\textures\line2.bmp
  • from %ProgramFiles(x86)%\viewfd\graphic\textures\is-37su1.tmp to %ProgramFiles(x86)%\viewfd\graphic\textures\b-a-v.bmp
  • from %ProgramFiles(x86)%\viewfd\graphic\textures\is-hntoh.tmp to %ProgramFiles(x86)%\viewfd\graphic\textures\line3.bmp
  • from %ProgramFiles(x86)%\viewfd\graphic\textures\is-44lks.tmp to %ProgramFiles(x86)%\viewfd\graphic\textures\red.bmp
  • from %ProgramFiles(x86)%\viewfd\graphic\textures\is-2q4to.tmp to %ProgramFiles(x86)%\viewfd\graphic\textures\viewfd.bmp
  • from %ProgramFiles(x86)%\viewfd\graphic\textures\is-rm88g.tmp to %ProgramFiles(x86)%\viewfd\graphic\textures\y-r-v.bmp
  • from %ProgramFiles(x86)%\viewfd\graphic\textures\is-esjld.tmp to %ProgramFiles(x86)%\viewfd\graphic\textures\readme.txt
  • from %ProgramFiles(x86)%\viewfd\graphic\transition\is-6sqa8.tmp to %ProgramFiles(x86)%\viewfd\graphic\transition\readme.txt
  • from %ProgramFiles(x86)%\viewfd\graphic\wavehv\is-ss7nn.tmp to %ProgramFiles(x86)%\viewfd\graphic\wavehv\readme.txt
  • from %ProgramFiles(x86)%\viewfd\graphic\wavergb\is-5ufl8.tmp to %ProgramFiles(x86)%\viewfd\graphic\wavergb\readme.txt
  • from %ProgramFiles(x86)%\viewfd\ini\is-u5nc4.tmp to %ProgramFiles(x86)%\viewfd\ini\default.ini
  • from %ProgramFiles(x86)%\viewfd\ini\is-516ep.tmp to %ProgramFiles(x86)%\viewfd\ini\description.ini
  • from %ProgramFiles(x86)%\viewfd\graphic\textures\is-728uh.tmp to %ProgramFiles(x86)%\viewfd\graphic\textures\purple.bmp
  • from %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\is-10p71.tmp to %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\imagine.dll
  • from %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\is-4lees.tmp to %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\imagine.exe
  • from %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\is-e6md8.tmp to %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\pluginst.inf
  • from %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\is-rdqpe.tmp to %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\imagine.ini
  • from %ProgramFiles(x86)%\viewfd\url\search\is-5ado0.tmp to %ProgramFiles(x86)%\viewfd\url\search\sputnik.url
  • from %ProgramFiles(x86)%\viewfd\url\search\is-g5obv.tmp to %ProgramFiles(x86)%\viewfd\url\search\yandex.url
  • from %ProgramFiles(x86)%\viewfd\url\soft\is-5907v.tmp to %ProgramFiles(x86)%\viewfd\url\soft\oszone.url
  • from %ProgramFiles(x86)%\viewfd\url\soft\is-nudda.tmp to %ProgramFiles(x86)%\viewfd\url\soft\softodrom.url
  • from %ProgramFiles(x86)%\viewfd\url\soft\is-m4k67.tmp to %ProgramFiles(x86)%\viewfd\url\soft\softportal.url
  • from %ProgramFiles(x86)%\viewfd\wallpaper\is-ohmq3.tmp to %ProgramFiles(x86)%\viewfd\wallpaper\blue.jpg
  • from %ProgramFiles(x86)%\viewfd\wallpaper\is-9ofhk.tmp to %ProgramFiles(x86)%\viewfd\wallpaper\darkblue.jpg
  • from %ProgramFiles(x86)%\viewfd\wallpaper\is-thdcg.tmp to %ProgramFiles(x86)%\viewfd\wallpaper\darkyellow.jpg
  • from %ProgramFiles(x86)%\viewfd\wallpaper\is-geld7.tmp to %ProgramFiles(x86)%\viewfd\wallpaper\silver.jpg
  • from %ProgramFiles(x86)%\viewfd\wallpaper\is-g63k1.tmp to %ProgramFiles(x86)%\viewfd\wallpaper\viewfd.jpg
  • from %ProgramFiles(x86)%\viewfd\wallpaper\is-i0h6d.tmp to %ProgramFiles(x86)%\viewfd\wallpaper\white.jpg
  • from %ProgramFiles(x86)%\viewfd\wallpaper\is-5mtjd.tmp to %ProgramFiles(x86)%\viewfd\wallpaper\readme.txt
  • from %ProgramFiles(x86)%\viewfd\is-arean.tmp to %ProgramFiles(x86)%\viewfd\turbosearch.exe
  • from %ProgramFiles(x86)%\viewfd\is-un7ei.tmp to %ProgramFiles(x86)%\viewfd\viewfd.exe
  • from %ProgramFiles(x86)%\viewfd\is-dj8e2.tmp to %ProgramFiles(x86)%\viewfd\bootfd.ini
  • from %ProgramFiles(x86)%\viewfd\is-5968o.tmp to %ProgramFiles(x86)%\viewfd\viewfd.ini
  • from %ProgramFiles(x86)%\viewfd\is-8d00g.tmp to %ProgramFiles(x86)%\viewfd\viewfd2.ini
  • from %ProgramFiles(x86)%\viewfd\is-i8vie.tmp to %ProgramFiles(x86)%\viewfd\viewfd home site.url
  • from %ProgramFiles(x86)%\viewfd\is-l4vkc.tmp to %ProgramFiles(x86)%\viewfd\readme.html
  • from %ProgramFiles(x86)%\viewfd\is-9hj7a.tmp to %ProgramFiles(x86)%\viewfd\keyboard.html
  • from %ProgramFiles(x86)%\viewfd\is-u4tk9.tmp to %ProgramFiles(x86)%\viewfd\unrar.dll
  • from %ProgramFiles(x86)%\viewfd\url\search\is-29332.tmp to %ProgramFiles(x86)%\viewfd\url\search\google.url
  • from %ProgramFiles(x86)%\viewfd\url\help\is-5ge8t.tmp to %ProgramFiles(x86)%\viewfd\url\help\subtitles.url
  • from %ProgramFiles(x86)%\viewfd\url\search\is-6095n.tmp to %ProgramFiles(x86)%\viewfd\url\search\bing.url
  • from %ProgramFiles(x86)%\viewfd\url\help\is-jcr8p.tmp to %ProgramFiles(x86)%\viewfd\url\help\pictures.url
  • from %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\is-627rj.tmp to %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\readme.txt
  • from %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\is-m950n.tmp to %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\whatsnew.txt
  • from %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\is-8i9tj.tmp to %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\imagine.wcx
  • from %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\is-kc9u3.tmp to %ProgramFiles(x86)%\viewfd\plugins\wlx\imagine\imagine.wlx
  • from %ProgramFiles(x86)%\viewfd\programs\is-t3nhs.tmp to %ProgramFiles(x86)%\viewfd\programs\readme.txt
  • from %ProgramFiles(x86)%\viewfd\radio\is-vt7b4.tmp to %ProgramFiles(x86)%\viewfd\radio\stations.txt
  • from %ProgramFiles(x86)%\viewfd\radio\is-7goog.tmp to %ProgramFiles(x86)%\viewfd\radio\readme.txt
  • from %ProgramFiles(x86)%\viewfd\reports\is-je47k.tmp to %ProgramFiles(x86)%\viewfd\reports\readme.txt
  • from %ProgramFiles(x86)%\viewfd\search\is-gvbgk.tmp to %ProgramFiles(x86)%\viewfd\search\1 hour.ini
  • from %ProgramFiles(x86)%\viewfd\search\is-ditfo.tmp to %ProgramFiles(x86)%\viewfd\search\3 minutes.ini
  • from %ProgramFiles(x86)%\viewfd\search\is-d236n.tmp to %ProgramFiles(x86)%\viewfd\search\picture.ini
  • from %ProgramFiles(x86)%\viewfd\search\is-nk31q.tmp to %ProgramFiles(x86)%\viewfd\search\sound.ini
  • from %ProgramFiles(x86)%\viewfd\search\is-tsqih.tmp to %ProgramFiles(x86)%\viewfd\search\video.ini
  • from %ProgramFiles(x86)%\viewfd\search\is-a3hkd.tmp to %ProgramFiles(x86)%\viewfd\search\readme.txt
  • from %ProgramFiles(x86)%\viewfd\soft\is-r2k51.tmp to %ProgramFiles(x86)%\viewfd\soft\readme.txt
  • from %ProgramFiles(x86)%\viewfd\url\is-u0ksd.tmp to %ProgramFiles(x86)%\viewfd\url\demo.txt
  • from %ProgramFiles(x86)%\viewfd\url\is-fg56e.tmp to %ProgramFiles(x86)%\viewfd\url\readme.txt
  • from %ProgramFiles(x86)%\viewfd\url\is-apu2r.tmp to %ProgramFiles(x86)%\viewfd\url\contribute.url
  • from %ProgramFiles(x86)%\viewfd\url\is-sa746.tmp to %ProgramFiles(x86)%\viewfd\url\microsoft.url
  • from %ProgramFiles(x86)%\viewfd\url\is-kjrb4.tmp to %ProgramFiles(x86)%\viewfd\url\virustotal.url
  • from %ProgramFiles(x86)%\viewfd\url\help\is-t5bf1.tmp to %ProgramFiles(x86)%\viewfd\url\help\iqcomp.url
  • from %ProgramFiles(x86)%\viewfd\is-913sc.tmp to %ProgramFiles(x86)%\viewfd\viewfd.md5
  • from %ProgramFiles(x86)%\viewfd\graphic\shiftrgb\is-7t3lc.tmp to %ProgramFiles(x86)%\viewfd\graphic\shiftrgb\readme.txt
  • from %ProgramFiles(x86)%\viewfd\graphic\selection\is-n1m7m.tmp to %ProgramFiles(x86)%\viewfd\graphic\selection\readme.txt
  • from %ProgramFiles(x86)%\viewfd\graphic\sharpness2\is-88f00.tmp to %ProgramFiles(x86)%\viewfd\graphic\sharpness2\readme.txt
  • from %ProgramFiles(x86)%\viewfd\formulas\is-5csi5.tmp to %ProgramFiles(x86)%\viewfd\formulas\heart.cfl
  • from %ProgramFiles(x86)%\viewfd\formulas\is-0pc7t.tmp to %ProgramFiles(x86)%\viewfd\formulas\hypocycloid.cfl
  • from %ProgramFiles(x86)%\viewfd\formulas\is-0gsi1.tmp to %ProgramFiles(x86)%\viewfd\formulas\lissajous.cfl
  • from %ProgramFiles(x86)%\viewfd\formulas\is-48vmp.tmp to %ProgramFiles(x86)%\viewfd\formulas\pascal's limacon.cfl
  • from %ProgramFiles(x86)%\viewfd\formulas\is-o8f9s.tmp to %ProgramFiles(x86)%\viewfd\formulas\readme.txt
  • from %ProgramFiles(x86)%\viewfd\graphic\3dturn\is-hc4hj.tmp to %ProgramFiles(x86)%\viewfd\graphic\3dturn\readme.txt
  • from %ProgramFiles(x86)%\viewfd\graphic\anyset\is-cdr1e.tmp to %ProgramFiles(x86)%\viewfd\graphic\anyset\blurring.ini
  • from %ProgramFiles(x86)%\viewfd\graphic\anyset\is-gkguu.tmp to %ProgramFiles(x86)%\viewfd\graphic\anyset\blurring1.ini
  • from %ProgramFiles(x86)%\viewfd\forms\is-c54dp.tmp to %ProgramFiles(x86)%\viewfd\forms\readme.txt
  • from %ProgramFiles(x86)%\viewfd\formulas\is-id4ml.tmp to %ProgramFiles(x86)%\viewfd\formulas\aastroid.cfl
  • from %ProgramFiles(x86)%\viewfd\graphic\anyset\is-e31pm.tmp to %ProgramFiles(x86)%\viewfd\graphic\anyset\blurring2.ini
  • from %ProgramFiles(x86)%\viewfd\graphic\anyset\is-ejeos.tmp to %ProgramFiles(x86)%\viewfd\graphic\anyset\contour.ini
  • from %ProgramFiles(x86)%\viewfd\graphic\anyset\is-mgrib.tmp to %ProgramFiles(x86)%\viewfd\graphic\anyset\contour1.ini
  • from %ProgramFiles(x86)%\viewfd\graphic\anyset\is-so6ht.tmp to %ProgramFiles(x86)%\viewfd\graphic\anyset\contour2.ini
  • from %ProgramFiles(x86)%\viewfd\graphic\anyset\is-4asgu.tmp to %ProgramFiles(x86)%\viewfd\graphic\anyset\negative.ini
  • from %ProgramFiles(x86)%\viewfd\graphic\anyset\is-8ndia.tmp to %ProgramFiles(x86)%\viewfd\graphic\anyset\relief.ini
  • from %ProgramFiles(x86)%\viewfd\graphic\anyset\is-4fqoi.tmp to %ProgramFiles(x86)%\viewfd\graphic\anyset\relief1.ini
  • from %ProgramFiles(x86)%\viewfd\graphic\anyset\is-nhsk0.tmp to %ProgramFiles(x86)%\viewfd\graphic\anyset\relief2.ini
  • from %ProgramFiles(x86)%\viewfd\graphic\anyset\is-08daf.tmp to %ProgramFiles(x86)%\viewfd\graphic\anyset\sharpness.ini
  • from %ProgramFiles(x86)%\viewfd\graphic\anyset\is-9se3m.tmp to %ProgramFiles(x86)%\viewfd\graphic\anyset\brightness.ini
  • from %ProgramFiles(x86)%\viewfd\graphic\anyset\is-vrcar.tmp to %ProgramFiles(x86)%\viewfd\graphic\anyset\ccontrast.ini
  • from %ProgramFiles(x86)%\viewfd\data\is-65qms.tmp to %ProgramFiles(x86)%\viewfd\data\readme.txt
  • from %ProgramFiles(x86)%\viewfd\colourschemes\is-51ilo.tmp to %ProgramFiles(x86)%\viewfd\colourschemes\readme.txt
  • from %ProgramFiles(x86)%\viewfd\colourschemes\is-cgpoo.tmp to %ProgramFiles(x86)%\viewfd\colourschemes\white2.ini
  • from %ProgramFiles(x86)%\viewfd\7-zip\is-890k3.tmp to %ProgramFiles(x86)%\viewfd\7-zip\7-zip.chm
  • from %ProgramFiles(x86)%\viewfd\7-zip\is-r6sbc.tmp to %ProgramFiles(x86)%\viewfd\7-zip\7z.dll
  • from %ProgramFiles(x86)%\viewfd\7-zip\is-iag40.tmp to %ProgramFiles(x86)%\viewfd\7-zip\7zg.exe
  • from %ProgramFiles(x86)%\viewfd\7-zip\is-hg8ke.tmp to %ProgramFiles(x86)%\viewfd\7-zip\7z.sfx
  • from %ProgramFiles(x86)%\viewfd\backup\is-6cngs.tmp to %ProgramFiles(x86)%\viewfd\backup\readme.txt
  • from %ProgramFiles(x86)%\viewfd\browser\is-ebfic.tmp to %ProgramFiles(x86)%\viewfd\browser\default.wbr1
  • from %ProgramFiles(x86)%\viewfd\browser\is-8ijq3.tmp to %ProgramFiles(x86)%\viewfd\browser\default.wbr2
  • from %ProgramFiles(x86)%\viewfd\browser\is-o1d1t.tmp to %ProgramFiles(x86)%\viewfd\browser\default.wbr4
  • from %ProgramFiles(x86)%\viewfd\browser\is-sc7f7.tmp to %ProgramFiles(x86)%\viewfd\browser\readme.txt
  • from %ProgramFiles(x86)%\viewfd\7-zip\lang\is-rd7tm.tmp to %ProgramFiles(x86)%\viewfd\7-zip\lang\ru.txt
  • from %ProgramFiles(x86)%\viewfd\colourschemes\is-bl0gv.tmp to %ProgramFiles(x86)%\viewfd\colourschemes\attributes.ini
  • from %ProgramFiles(x86)%\viewfd\colourschemes\is-0ihsq.tmp to %ProgramFiles(x86)%\viewfd\colourschemes\blue.ini
  • from %ProgramFiles(x86)%\viewfd\colourschemes\is-1fo0p.tmp to %ProgramFiles(x86)%\viewfd\colourschemes\colours.ini
  • from %ProgramFiles(x86)%\viewfd\colourschemes\is-smcvt.tmp to %ProgramFiles(x86)%\viewfd\colourschemes\colours2.ini
  • from %ProgramFiles(x86)%\viewfd\colourschemes\is-bidjm.tmp to %ProgramFiles(x86)%\viewfd\colourschemes\colours3.ini
  • from %ProgramFiles(x86)%\viewfd\colourschemes\is-c4ffu.tmp to %ProgramFiles(x86)%\viewfd\colourschemes\darkblue.ini
  • from %ProgramFiles(x86)%\viewfd\colourschemes\is-9tqrd.tmp to %ProgramFiles(x86)%\viewfd\colourschemes\darkblue2.ini
  • from %ProgramFiles(x86)%\viewfd\colourschemes\is-9u5bt.tmp to %ProgramFiles(x86)%\viewfd\colourschemes\darkyellow.ini
  • from %ProgramFiles(x86)%\viewfd\colourschemes\is-u6qin.tmp to %ProgramFiles(x86)%\viewfd\colourschemes\silver.ini
  • from %ProgramFiles(x86)%\viewfd\colourschemes\is-1hfq0.tmp to %ProgramFiles(x86)%\viewfd\colourschemes\white.ini
  • from %ProgramFiles(x86)%\viewfd\colourschemes\is-05em2.tmp to %ProgramFiles(x86)%\viewfd\colourschemes\black.ini
  • from %ProgramFiles(x86)%\viewfd\graphic\anyset\is-3bdt1.tmp to %ProgramFiles(x86)%\viewfd\graphic\anyset\sharpness1.ini
  • from %ProgramFiles(x86)%\viewfd\graphic\anyset\is-s0q54.tmp to %ProgramFiles(x86)%\viewfd\graphic\anyset\sharpness2.ini
  • from %ProgramFiles(x86)%\viewfd\graphic\anyset\is-due5o.tmp to %ProgramFiles(x86)%\viewfd\graphic\anyset\readme.txt
  • from %ProgramFiles(x86)%\viewfd\graphic\barrgb\is-bgc27.tmp to %ProgramFiles(x86)%\viewfd\graphic\barrgb\readme.txt
  • from %ProgramFiles(x86)%\viewfd\graphic\inscriptions\is-5mjl5.tmp to %ProgramFiles(x86)%\viewfd\graphic\inscriptions\viewfd1.ini
  • from %ProgramFiles(x86)%\viewfd\graphic\inscriptions\is-sf3qu.tmp to %ProgramFiles(x86)%\viewfd\graphic\inscriptions\viewfd2.ini
  • from %ProgramFiles(x86)%\viewfd\graphic\inscriptions\is-lr754.tmp to %ProgramFiles(x86)%\viewfd\graphic\inscriptions\viewfd3.ini
  • from %ProgramFiles(x86)%\viewfd\graphic\inscriptions\is-e4rq9.tmp to %ProgramFiles(x86)%\viewfd\graphic\inscriptions\viewfd4.ini
  • from %ProgramFiles(x86)%\viewfd\graphic\inscriptions\is-h0vfa.tmp to %ProgramFiles(x86)%\viewfd\graphic\inscriptions\viewfd5.ini
  • from %ProgramFiles(x86)%\viewfd\graphic\inscriptions\is-9s7gq.tmp to %ProgramFiles(x86)%\viewfd\graphic\inscriptions\viewfd6.ini
  • from %ProgramFiles(x86)%\viewfd\graphic\inscriptions\is-ce4hg.tmp to %ProgramFiles(x86)%\viewfd\graphic\inscriptions\viewfd7.ini
  • from %ProgramFiles(x86)%\viewfd\graphic\inscriptions\is-qp5j4.tmp to %ProgramFiles(x86)%\viewfd\graphic\inscriptions\readme.txt
  • from %ProgramFiles(x86)%\viewfd\graphic\metallic\is-se2ii.tmp to %ProgramFiles(x86)%\viewfd\graphic\metallic\readme.txt
  • from %ProgramFiles(x86)%\viewfd\graphic\new\is-9ai42.tmp to %ProgramFiles(x86)%\viewfd\graphic\new\readme.txt
  • from %ProgramFiles(x86)%\viewfd\graphic\radialrgb\is-np10q.tmp to %ProgramFiles(x86)%\viewfd\graphic\radialrgb\readme.txt
  • from %ProgramFiles(x86)%\viewfd\graphic\saturation\is-0epao.tmp to %ProgramFiles(x86)%\viewfd\graphic\saturation\readme.txt
  • from %ProgramFiles(x86)%\viewfd\graphic\sharpness\is-q0vvl.tmp to %ProgramFiles(x86)%\viewfd\graphic\sharpness\blurring1.ini
  • from %ProgramFiles(x86)%\viewfd\graphic\sharpness\is-52aof.tmp to %ProgramFiles(x86)%\viewfd\graphic\sharpness\blurring2.ini
  • from %ProgramFiles(x86)%\viewfd\graphic\sharpness\is-i0o5r.tmp to %ProgramFiles(x86)%\viewfd\graphic\sharpness\blurring3.ini
  • from %ProgramFiles(x86)%\viewfd\graphic\sharpness\is-s8ous.tmp to %ProgramFiles(x86)%\viewfd\graphic\sharpness\compromise1.ini
  • from %ProgramFiles(x86)%\viewfd\graphic\sharpness\is-mupba.tmp to %ProgramFiles(x86)%\viewfd\graphic\sharpness\compromise2.ini
  • from %ProgramFiles(x86)%\viewfd\graphic\sharpness\is-19hlp.tmp to %ProgramFiles(x86)%\viewfd\graphic\sharpness\compromise3.ini
  • from %ProgramFiles(x86)%\viewfd\graphic\sharpness\is-k337a.tmp to %ProgramFiles(x86)%\viewfd\graphic\sharpness\sharpness1.ini
  • from %ProgramFiles(x86)%\viewfd\graphic\sharpness\is-mqqh9.tmp to %ProgramFiles(x86)%\viewfd\graphic\sharpness\sharpness2.ini
  • from %ProgramFiles(x86)%\viewfd\graphic\sharpness\is-i3kua.tmp to %ProgramFiles(x86)%\viewfd\graphic\sharpness\sharpness3.ini
  • from %ProgramFiles(x86)%\viewfd\graphic\inscriptions\is-7806e.tmp to %ProgramFiles(x86)%\viewfd\graphic\inscriptions\copyright2.ini
  • from %ProgramFiles(x86)%\viewfd\graphic\illuminance2\is-jnr2m.tmp to %ProgramFiles(x86)%\viewfd\graphic\illuminance2\readme.txt
  • from %ProgramFiles(x86)%\viewfd\graphic\inscriptions\is-9fksu.tmp to %ProgramFiles(x86)%\viewfd\graphic\inscriptions\copyright1.ini
  • from %ProgramFiles(x86)%\viewfd\graphic\illuminance\is-odkna.tmp to %ProgramFiles(x86)%\viewfd\graphic\illuminance\readme.txt
  • from %ProgramFiles(x86)%\viewfd\graphic\brightness\is-q0aeo.tmp to %ProgramFiles(x86)%\viewfd\graphic\brightness\readme.txt
  • from %ProgramFiles(x86)%\viewfd\graphic\cb\is-j5n4o.tmp to %ProgramFiles(x86)%\viewfd\graphic\cb\negative.ini
  • from %ProgramFiles(x86)%\viewfd\graphic\cb\is-4c66t.tmp to %ProgramFiles(x86)%\viewfd\graphic\cb\solarization1.ini
  • from %ProgramFiles(x86)%\viewfd\graphic\cb\is-327mt.tmp to %ProgramFiles(x86)%\viewfd\graphic\cb\solarization2.ini
  • from %ProgramFiles(x86)%\viewfd\graphic\cb\is-na618.tmp to %ProgramFiles(x86)%\viewfd\graphic\cb\solarization3.ini
  • from %ProgramFiles(x86)%\viewfd\graphic\cb\is-nkno6.tmp to %ProgramFiles(x86)%\viewfd\graphic\cb\solarization4.ini
  • from %ProgramFiles(x86)%\viewfd\graphic\cb\is-i2qr6.tmp to %ProgramFiles(x86)%\viewfd\graphic\cb\solarization5.ini
  • from %ProgramFiles(x86)%\viewfd\graphic\cb\is-h06ra.tmp to %ProgramFiles(x86)%\viewfd\graphic\cb\readme.txt
  • from %ProgramFiles(x86)%\viewfd\graphic\contour\is-iupi8.tmp to %ProgramFiles(x86)%\viewfd\graphic\contour\normal.ini
  • from %ProgramFiles(x86)%\viewfd\graphic\contour\is-iggk7.tmp to %ProgramFiles(x86)%\viewfd\graphic\contour\outlining.ini
  • from %ProgramFiles(x86)%\viewfd\graphic\contour\is-psbab.tmp to %ProgramFiles(x86)%\viewfd\graphic\contour\picture.ini
  • from %ProgramFiles(x86)%\viewfd\graphic\contour\is-6btm5.tmp to %ProgramFiles(x86)%\viewfd\graphic\contour\picture2.ini
  • from %ProgramFiles(x86)%\viewfd\graphic\contour\is-9523h.tmp to %ProgramFiles(x86)%\viewfd\graphic\contour\picture3.ini
  • from %ProgramFiles(x86)%\viewfd\graphic\contour\is-blb1j.tmp to %ProgramFiles(x86)%\viewfd\graphic\contour\thick.ini
  • from %ProgramFiles(x86)%\viewfd\graphic\contour\is-16u05.tmp to %ProgramFiles(x86)%\viewfd\graphic\contour\thin.ini
  • from %ProgramFiles(x86)%\viewfd\graphic\contour\is-cg427.tmp to %ProgramFiles(x86)%\viewfd\graphic\contour\readme.txt
  • from %ProgramFiles(x86)%\viewfd\graphic\contour2\is-75eqq.tmp to %ProgramFiles(x86)%\viewfd\graphic\contour2\picture.ini
  • from %ProgramFiles(x86)%\viewfd\graphic\contour2\is-mbat1.tmp to %ProgramFiles(x86)%\viewfd\graphic\contour2\picture2.ini
  • from %ProgramFiles(x86)%\viewfd\graphic\contour2\is-kvucc.tmp to %ProgramFiles(x86)%\viewfd\graphic\contour2\readme.txt
  • from %ProgramFiles(x86)%\viewfd\graphic\ellipsergb\is-r7be8.tmp to %ProgramFiles(x86)%\viewfd\graphic\ellipsergb\readme.txt
  • from %ProgramFiles(x86)%\viewfd\graphic\grids\is-gbf1s.tmp to %ProgramFiles(x86)%\viewfd\graphic\grids\readme.txt
  • from %ProgramFiles(x86)%\viewfd\graphic\sharpness\is-jdu7n.tmp to %ProgramFiles(x86)%\viewfd\graphic\sharpness\readme.txt
  • from %ProgramFiles(x86)%\viewfd\is-07693.tmp to %ProgramFiles(x86)%\viewfd\viewfd.crc
Network activity
Connects to
  • 'so###como.gq':80
TCP
HTTP GET requests
  • http://ctldl.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab?08######
HTTP POST requests
  • http://so###como.gq/new/net_api
UDP
  • DNS ASK so###como.gq
Miscellaneous
Searches for the following windows
  • ClassName: '{E611A93F-EC60-4AD7-A3C8-3D5DC3E02E40}' WindowName: ''
Creates and executes the following
  • '%TEMP%\is-ko0ep.tmp\is-e4hci.tmp' /SL4 $C00A2 "<Full path to file>" 6917025 52736
  • '%ProgramFiles(x86)%\viewfd\viewfd.exe'
  • '%ProgramFiles(x86)%\viewfd\viewfd.exe' cc9d84e46d14dbf775106ff181d7b522
Executes the following
  • '%WINDIR%\syswow64\schtasks.exe' /Query
  • '%WINDIR%\syswow64\schtasks.exe' /Delete /F /TN "ViewFD_3.5.1.0"

Recommandations pour le traitement

  1. Si le système d'exploitation peut être démarré (en mode normal ou en mode sans échec), téléchargez Dr.Web Security Space et lancez un scan complet de votre ordinateur et de tous les supports amovibles que vous utilisez. En savoir plus sur Dr.Web Security Space.
  2. Si le démarrage du système d'exploitation est impossible, veuillez modifier les paramètres du BIOS de votre ordinateur pour démarrer votre ordinateur via CD/DVD ou clé USB. Téléchargez l'image du disque de secours de restauration du système Dr.Web® LiveDisk ou l'utilitaire pour enregistrer Dr.Web® LiveDisk sur une clé USB, puis préparez la clé USB appropriée. Démarrez l'ordinateur à l'aide de cette clé et lancez le scan complet et le traitement des menaces détectées.

Veuillez lancer le scan complet du système à l'aide de Dr.Web Antivirus pour Mac OS.

Veuillez lancer le scan complet de toutes les partitions du disque à l'aide de Dr.Web Antivirus pour Linux.

  1. Si votre appareil mobile fonctionne correctement, veuillez télécharger et installer sur votre appareil mobile Dr.Web pour Android. Lancez un scan complet et suivez les recommandations sur la neutralisation des menaces détectées.
  2. Si l'appareil mobile est bloqué par le Trojan de la famille Android.Locker (un message sur la violation grave de la loi ou la demande d'une rançon est affiché sur l'écran de l'appareil mobile), procédez comme suit:
    • démarrez votre Smartphone ou votre tablette en mode sans échec (si vous ne savez pas comment faire, consultez la documentation de l'appareil mobile ou contactez le fabricant) ;
    • puis téléchargez et installez sur votre appareil mobile Dr.Web pour Android et lancez un scan complet puis suivez les recommandations sur la neutralisation des menaces détectées ;
    • Débranchez votre appareil et rebranchez-le.

En savoir plus sur Dr.Web pour Android