Bibliothèque
Ma bibliothèque

+ Ajouter à la bibliothèque

Contacter-nous !
Support 24/24 | Rules regarding submitting

Nous téléphoner

0 825 300 230

Forum

Vos requêtes

  • Toutes : -
  • Non clôturées : -
  • Dernière : le -

Nous téléphoner

0 825 300 230

Profil

Trojan.Fakealert.42119

Added to the Dr.Web virus database: 2013-08-25

Virus description added:

Technical Information

To ensure autorun and distribution:
Modifies the following registry keys:
  • [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] '<File name>.exe' = '<SYSTEM32>\<File name>.exe'
Modifies file system:
Creates the following files:
  • <SYSTEM32>\986a5zware555.ocx
  • <SYSTEM32>\39e5z9r1378.exe
  • %WINDIR%\50a5ste9lz370.cpl
  • %WINDIR%\z7593w9rm7d5.ocx
  • %WINDIR%\99252trzj169.ocx
  • %WINDIR%\96z7addware22085.bin
  • <SYSTEM32>\29595spambot49z.dll
  • <SYSTEM32>\2899thie563z9.cpl
  • %WINDIR%\55989zpambo970b.cpl
  • %WINDIR%\19344virus935z.dll
  • %WINDIR%\5az3spars93235.bin
  • %WINDIR%\54569parse8z8.exe
  • <SYSTEM32>\19870spy25z.exe
  • <SYSTEM32>\5e79thizf589.dll
  • <SYSTEM32>\426459arze1545.dll
  • %WINDIR%\d7b5tez92318.cpl
  • %WINDIR%\1957hack9ozl1b6.exe
  • %WINDIR%\z35c9ir224.dll
  • <SYSTEM32>\58e9adzw5re2679.ocx
  • <SYSTEM32>\3189spambz520d.dll
  • <SYSTEM32>\95580virus7z2.dll
  • <SYSTEM32>\6z52thr9at30064.cpl
  • <SYSTEM32>\5598szarse202.exe
  • <SYSTEM32>\2617895rz3ee.ocx
  • <SYSTEM32>\79zbs5arse9282.exe
  • %WINDIR%\8z43t5oj966.bin
  • %WINDIR%\930zsp95ff.cpl
  • <SYSTEM32>\28322zacktool509.cpl
  • %WINDIR%\59z9addwar52900.cpl
  • <SYSTEM32>\32129not-a-5irzs4199.bin
  • <SYSTEM32>\3f159pyware3z26.cpl
  • <SYSTEM32>\25cazhie91715.exe
  • %WINDIR%\926z5ir533.exe
  • <SYSTEM32>\3484download9rz125.dll
  • %WINDIR%\5768s9ywarz2220.dll
  • %WINDIR%\2695sparze882.cpl
  • %WINDIR%\9752wo9m6dfz.exe
  • %WINDIR%\11159worm276z.dll
  • <SYSTEM32>\3660spambo97z5.cpl
  • <SYSTEM32>\4fz2vir5699.exe
  • %WINDIR%\1cb5ba5kdzo930.exe
  • %WINDIR%\22650sp97z0.exe
  • <SYSTEM32>\29b5steal18z8.bin
  • %WINDIR%\53z5threa9681.ocx
  • <SYSTEM32>\9905ot-a-viruz7749.bin
  • %WINDIR%\25959szy7b2.bin
  • %WINDIR%\7b12thief1995z.dll
  • <SYSTEM32>\z5203ha5ktool4819.ocx
  • <SYSTEM32>\dz89ddware553.dll
  • %WINDIR%\3582azd9are1439.exe
  • <SYSTEM32>\5z525ac9door1640.ocx
  • %WINDIR%\4515t9oj7f3z.bin
  • <SYSTEM32>\101435z9j6de.cpl
  • %WINDIR%\290z2v5rus695.cpl
  • <SYSTEM32>\212749ot-azviru5397.cpl
  • <SYSTEM32>\11985wzrm551.bin
  • <SYSTEM32>\z77spy39e5.exe
  • <SYSTEM32>\z3b1spa59e2033.exe
  • <SYSTEM32>\1z8169p521d.cpl
  • %WINDIR%\155245r9z47d.dll
  • %WINDIR%\3e19hreat5269z.ocx
  • <SYSTEM32>\258z95py2c89.dll
  • <SYSTEM32>\5589spywzre9205.cpl
  • <SYSTEM32>\11428zi9u56fd.exe
  • %WINDIR%\9552v5r28z6.bin
  • <SYSTEM32>\19727tr5jz1e9.cpl
  • %WINDIR%\39881troj75z.dll
  • <SYSTEM32>\5864ztea91923.exe
  • %WINDIR%\4z745ackto9l16d.bin
  • <SYSTEM32>\4d2z9pars5524.bin
  • %WINDIR%\29271sp970z5.ocx
  • <SYSTEM32>\15285zirus5ab9.ocx
  • %WINDIR%\5e9ddownl5ader26z8.bin
  • <SYSTEM32>\24612not9a-viruz3695.dll
  • %WINDIR%\20059v9rus5z1.exe
  • <SYSTEM32>\29147zirus15b.exe
  • <SYSTEM32>\96731spambot5az5.exe
  • %WINDIR%\2z05vir1999.ocx
  • <SYSTEM32>\199dvir959z.ocx
  • %WINDIR%\za5fvi95451.exe
  • %WINDIR%\22155tzoj629.bin
  • <SYSTEM32>\6073hacktool597z.ocx
  • %WINDIR%\15296h5cktozl1d59.cpl
  • <SYSTEM32>\6657sp9m5otccz.cpl
  • <SYSTEM32>\104975ac9tozl5c5.dll
  • <SYSTEM32>\565zs9a5se980.bin
  • %WINDIR%\1669z95y5a5.ocx
  • %WINDIR%\5zcbthreat146239.cpl
  • %WINDIR%\6aabste5l9z1.cpl
  • %WINDIR%\5e1a9parse5394z.exe
  • <SYSTEM32>\9740s5ambzt5c39.ocx
  • %WINDIR%\8946not5a-virusz63.bin
  • %WINDIR%\5453no9za-virus247.bin
  • %WINDIR%\5ad9hiefz596.cpl
  • <SYSTEM32>\5z8c9ackdoor1390.exe
  • %WINDIR%\19037h5cktz9l2a6.cpl
  • <SYSTEM32>\f90s5arsez115.bin
  • %WINDIR%\z219ste5l1947.exe
  • %WINDIR%\10dz9hie52953.dll
  • %WINDIR%\9847zpam9ot558.cpl
  • <SYSTEM32>\9980spz558.cpl
  • %WINDIR%\z9ds5arse105.exe
  • %WINDIR%\5z36vi92295.bin
  • <SYSTEM32>\44f2s9ywar52373z.ocx
  • %WINDIR%\4290th9zf5244.ocx
  • <SYSTEM32>\5425z95j18e.dll
  • %WINDIR%\129z59pambot1db.dll
  • %WINDIR%\21959spyza5.exe
  • <SYSTEM32>\6d24bazkdoor9584.cpl
  • <SYSTEM32>\77bcspars51694z.exe
  • <SYSTEM32>\56726not-az9irus14a.dll
  • %WINDIR%\fd0addwa951749z.exe
  • %WINDIR%\2678hacztool957.bin
  • %WINDIR%\5259addwaze955.dll
  • <SYSTEM32>\18z03spa5b9t270.cpl
  • <SYSTEM32>\9946tr5z378.bin
  • <SYSTEM32>\6efz5hreat99747.ocx
  • %WINDIR%\6cd7dow9loade5142z.cpl
  • %WINDIR%\92445p939z.exe
  • %WINDIR%\1321spy5are91z3.bin
  • %WINDIR%\4902w5z96db.bin
  • %WINDIR%\169ha9kt5oz72.exe
  • %WINDIR%\13553hacktoo953z.dll
  • <SYSTEM32>\4071zackdo9r595.exe
  • %WINDIR%\115dz9arse3263.bin
  • %WINDIR%\81zs9yw5re2195.dll
  • %WINDIR%\29z89spy55d.exe
  • <SYSTEM32>\z9905worm32.bin
  • <SYSTEM32>\595fthreat39z13.cpl
  • <SYSTEM32>\2z953virus7c5.bin
  • <SYSTEM32>\z99759rm5f6.exe
  • %WINDIR%\45e1szywa9e896.exe
  • %WINDIR%\7152thr9az297955.cpl
  • %WINDIR%\571z5hief619.ocx
  • %WINDIR%\29855troz139.dll
  • %WINDIR%\7509w9zm5da.bin
  • %WINDIR%\5502s9y9z.exe
  • %WINDIR%\4d90zir5842.cpl
  • %WINDIR%\75e89ac5zoor2256.cpl
  • <SYSTEM32>\55deth9eat17592z.cpl
  • <SYSTEM32>\34d5v9z1759.ocx
  • <SYSTEM32>\35fat9iez2426.bin
  • %WINDIR%\z7098sp9mbot65a.exe
  • %WINDIR%\257495py7bbz.bin
  • %WINDIR%\2z999troja75.ocx
  • <SYSTEM32>\9dzthi9f2657.bin
  • <SYSTEM32>\1a4dsparse99z25.exe
  • %WINDIR%\3567spy9zre1102.dll
  • <SYSTEM32>\500azdw59e52.exe
  • <SYSTEM32>\6ez7v5r1889.exe
  • <SYSTEM32>\5ez19te5l2807.exe
  • <SYSTEM32>\672zaddware29885.cpl
  • <SYSTEM32>\92b4addzare5695.dll
  • %WINDIR%\51c9vir587z.ocx
  • %WINDIR%\3924addzare1205.exe
  • %WINDIR%\915zsparse5070.ocx
  • <SYSTEM32>\355h9ckzo5l6c8.dll
  • <SYSTEM32>\30545zr2695.dll
  • <SYSTEM32>\5z1baddware2907.ocx
  • <SYSTEM32>\11257w95m1z3.bin
  • %WINDIR%\99aeszarse5850.exe
  • %WINDIR%\524cdownloaze9579.cpl
  • <SYSTEM32>\80z5w5rm9f.dll
  • <SYSTEM32>\10064viru9z51.bin
  • <SYSTEM32>\699dszeal495.bin
  • %WINDIR%\5840notza9viru5c6.ocx
  • <SYSTEM32>\15705wzr9432.dll
  • <SYSTEM32>\2459spar9e3207z.ocx
  • %WINDIR%\1b1v5929z1.exe
  • <SYSTEM32>\5997troj6z8.dll
  • %WINDIR%\9197spambot55z.ocx
  • %WINDIR%\34fspywaze27589.bin
  • <SYSTEM32>\9481not-5-9iruszf.exe
  • <SYSTEM32>\110z4s9y546.cpl
  • %WINDIR%\55z6v9r2523.dll
  • %WINDIR%\3915hazk5ool2c7.cpl
  • <SYSTEM32>\2154thze9t25739.cpl
  • <SYSTEM32>\96z285roj5a9.dll
  • %WINDIR%\65czsparse9458.bin
  • <SYSTEM32>\934315pazbot5.bin
  • <SYSTEM32>\25639py55z.bin
  • %WINDIR%\51395ownloadzr2985.dll
  • <SYSTEM32>\9d9thr5atz3277.dll
  • <SYSTEM32>\23467tz59497.dll
  • %WINDIR%\54967spy379z.bin
  • %WINDIR%\2a5szar9e1461.cpl
  • %WINDIR%\95949zroj31a.dll
  • %WINDIR%\4dazs59ware2910.exe
  • <SYSTEM32>\4cz5thief2279.bin
  • %WINDIR%\23570zpy915.ocx
  • <SYSTEM32>\545fvzr9598.cpl
  • <SYSTEM32>\14591wzrm555.ocx
  • <SYSTEM32>\6a45hre9t1598z.ocx
  • <SYSTEM32>\1309spyw5rez393.ocx
  • %WINDIR%\95eethreatz8555.bin
  • %WINDIR%\1477v5zus791.bin
  • <SYSTEM32>\27299not-a-vzr5s156.cpl
  • %WINDIR%\297z6spambot25d9.cpl
  • %WINDIR%\zc28th9ef1053.ocx
  • %WINDIR%\5604zhief2592.cpl
  • %WINDIR%\19258troj5z9.ocx
  • %WINDIR%\9386woz56db.exe
  • %WINDIR%\400zspyw9re5025.exe
  • %WINDIR%\11z4add5are9389.bin
  • <SYSTEM32>\9455worm4z0.bin
  • %WINDIR%\59fdaddw5re282z.dll
  • %WINDIR%\16143tzoj593.cpl
  • <SYSTEM32>\zecdownloade5987.cpl
  • <SYSTEM32>\2577spazse9010.bin
  • %WINDIR%\1765vizu952d.exe
  • %WINDIR%\125699zy256.dll
  • <SYSTEM32>\13f95dware362z.bin
  • <SYSTEM32>\5995spzrse9799.cpl
  • <SYSTEM32>\1be5ad59aze2292.dll
  • %WINDIR%\4e29addwzre564.ocx
  • <SYSTEM32>\28843zp9575.cpl
  • %WINDIR%\2z56thief3169.cpl
  • %WINDIR%\95bzdown5oader712.bin
  • <SYSTEM32>\9dzsparse1915.dll
  • <SYSTEM32>\8c3spzrse92655.bin
  • <SYSTEM32>\z0584tro9540.ocx
  • <SYSTEM32>\735zdownl9ader20075.dll
  • <SYSTEM32>\ebzvi52952.exe
  • <SYSTEM32>\952z85py57d.cpl
  • %WINDIR%\8290noz-a-vi5us36e.bin
  • %WINDIR%\587zthrea92275.exe
  • %WINDIR%\2390spyware954z.cpl
  • %WINDIR%\9590wor51z4.exe
  • <SYSTEM32>\18z39s5y408.cpl
  • <SYSTEM32>\32426virzs1d59.bin
  • <SYSTEM32>\3249spzm5ot2b9.exe
  • <SYSTEM32>\28z395orm40a9.exe
  • <SYSTEM32>\16z45dd9are222.bin
  • %WINDIR%\1c91addwaze30215.dll
  • %WINDIR%\71d0s95warz2324.exe
  • <SYSTEM32>\49b3azd5are3170.cpl
  • %WINDIR%\14344not9a-viruz405.ocx
  • %WINDIR%\19z09tr5j595.bin
  • <SYSTEM32>\17bbackz95r1746.ocx
  • <SYSTEM32>\7949vi523z8.cpl
  • %WINDIR%\3555thr9at149z6.dll
  • %WINDIR%\57473zpambo9788.bin
  • %WINDIR%\61e8spzwar9455.bin
  • <SYSTEM32>\15z79wo5m9de.dll
  • %WINDIR%\74435tealz897.exe
  • <SYSTEM32>\27907hack5oolzcd.dll
  • %WINDIR%\6694downloazer592.dll
  • %WINDIR%\5c96v9rz804.bin
  • <SYSTEM32>\4398ste9lz056.ocx
  • <SYSTEM32>\3f4zad9wa5e301.ocx
  • %WINDIR%\d7zspywar51239.exe
  • %WINDIR%\53zdthr9at205725.cpl
  • %WINDIR%\36d59ac5dozr3102.exe
  • <SYSTEM32>\z019ro5564.dll
  • <SYSTEM32>\95557notza-virus761.ocx
  • <SYSTEM32>\1695stezl617.dll
  • <SYSTEM32>\5cfc9owz5oader2706.bin
  • %WINDIR%\4z42not9a5virus586.ocx
  • <SYSTEM32>\95228not5a-vzrus534.exe
  • <SYSTEM32>\21944v5ruz6dd.dll
  • %WINDIR%\820th5ez599.cpl
  • <SYSTEM32>\za7995ief92.exe
  • %WINDIR%\197785orm2za.dll
  • <SYSTEM32>\5a07thzef5109.ocx
  • %WINDIR%\4952downlzad9r859.dll
  • <SYSTEM32>\4245addwa9e938z.bin
  • %WINDIR%\4z38a59ware1410.exe
  • <SYSTEM32>\5b99thrz9t964.exe
  • %WINDIR%\10544sp9mboz688.bin
  • %WINDIR%\9fe5doznload5r1286.ocx
  • %WINDIR%\24275zroj599.ocx
  • <SYSTEM32>\zeec9pyware2865.ocx
  • <SYSTEM32>\5a53vz91865.exe
  • %WINDIR%\z3905ack9oor923.exe
  • %WINDIR%\146a5t9zl1597.dll
  • <SYSTEM32>\5ab5t9reat279z85.dll
  • %WINDIR%\5260n9t-a-vi5us5cz.exe
  • <SYSTEM32>\3aa9th5ef3z0.bin
  • <SYSTEM32>\51ccdownl9ade51z63.cpl
  • %WINDIR%\9349spzmb5t18e.dll
  • %WINDIR%\5985thzef651.cpl
  • %WINDIR%\z9avir2551.cpl
  • <SYSTEM32>\9f7a5hief1z04.exe
  • %WINDIR%\d98szywa5e1813.exe
  • <SYSTEM32>\5695thizf606.dll
  • <SYSTEM32>\3z4599iru525.bin
  • <SYSTEM32>\3f815z9409.cpl
  • %WINDIR%\6029vir129z5.ocx
  • %WINDIR%\258fz9r3275.ocx
  • %WINDIR%\2ea9steal250z.dll
  • <SYSTEM32>\z5542hack5o9l7e3.dll
  • %WINDIR%\256zspyware9022.ocx
  • %WINDIR%\219795iruz9af.cpl
  • <SYSTEM32>\5z775dd9are2891.ocx
  • <SYSTEM32>\5z16steal9195.bin
  • %WINDIR%\98906hacktool15z.cpl
  • %WINDIR%\5a52thre9t2815z.dll
  • <SYSTEM32>\653bac9door1697z.exe
  • <SYSTEM32>\z946t9r5at25444.cpl
  • <SYSTEM32>\4994sp5ware1900z.cpl
  • %WINDIR%\293ezdd5are980.dll
  • <SYSTEM32>\5ze0stea91083.dll
  • %WINDIR%\17526no9-z5virus2f0.ocx
  • <SYSTEM32>\11551hazkto9l19a.exe
  • <SYSTEM32>\z05929irus251.ocx
  • %WINDIR%\7422sz59l1010.bin
  • %WINDIR%\44e35p9rsez404.exe
  • <SYSTEM32>\29657wz5m90f.cpl
  • <SYSTEM32>\5a335tzal9574.cpl
  • <SYSTEM32>\30542zirus929.cpl
  • %WINDIR%\9121s5arsz1125.exe
  • %WINDIR%\27900t5ojze7.exe
  • <SYSTEM32>\331db9c5dooz1821.bin
  • %WINDIR%\18b5addware22z59.bin
  • %WINDIR%\fdest9az2235.bin
  • <SYSTEM32>\9579h9ck5oolz2.cpl
  • %WINDIR%\94787spy48z5.cpl
  • <SYSTEM32>\645zr9j426.dll
  • %WINDIR%\z1ebstea95765.cpl
  • %WINDIR%\8z94t59je.dll
  • <SYSTEM32>\7e5fspywarez669.exe
  • <SYSTEM32>\627zbackd5o91027.bin
  • %WINDIR%\53164spambot910z.ocx
  • %WINDIR%\5918spz7e5.exe
  • %WINDIR%\537fbaz9door528.ocx
  • <SYSTEM32>\1cz9vir1675.ocx
  • <SYSTEM32>\5939spyware1595z.bin
  • %WINDIR%\22981s5y1z8.bin
  • %WINDIR%\6d39spazse1513.cpl
  • %WINDIR%\40feadd9arez956.bin
  • <SYSTEM32>\22955not-5zvir9s26d.bin
  • <SYSTEM32>\657dazdwa9e2628.bin
  • %WINDIR%\102z3not-a-5irus39e.exe
  • <SYSTEM32>\60f4z5yw9re2469.bin
  • %WINDIR%\57b0spar5e1z379.ocx
  • %WINDIR%\56548s9zmbot45c.exe
  • <SYSTEM32>\49z7vi5u910.dll
  • <SYSTEM32>\64c995dwarez055.ocx
  • <SYSTEM32>\10z209p53df.dll
  • <SYSTEM32>\zcdd9hief459.bin
  • %WINDIR%\8925not9a-v5zus75.cpl
  • <SYSTEM32>\9592wzrm565.cpl
  • %WINDIR%\1917backdozr3057.cpl
  • %WINDIR%\4ba8th9eat21555z.ocx
  • <SYSTEM32>\41z4steal11795.ocx
  • %WINDIR%\55aspyz9re2005.dll
  • <SYSTEM32>\10199paz5ot148.cpl
  • <SYSTEM32>\595dthief3198z.bin
  • <SYSTEM32>\9534zworm5ba.exe
  • %WINDIR%\6921down5oader9z4.cpl
  • %WINDIR%\115995acztool612.ocx
  • %WINDIR%\958t9reat1294z.dll
  • %WINDIR%\6a5spyw9rz985.dll
  • %WINDIR%\195cbackdzor1451.exe
  • <SYSTEM32>\26798viru95bz.dll
  • <SYSTEM32>\55z54spam9ot7.dll
  • <SYSTEM32>\955st9al26z0.cpl
  • %WINDIR%\739d5teaz1999.ocx
  • %WINDIR%\2292addwar5579z.bin
  • %WINDIR%\239cthze5t43.exe
  • %WINDIR%\5449spz57.dll
  • <SYSTEM32>\69e3zpyware5479.cpl
  • %WINDIR%\11525wo9m6zd.cpl
  • %WINDIR%\z617down5oa9er1391.bin
  • %WINDIR%\18703spyz589.cpl
  • %WINDIR%\520asteal9z54.cpl
  • %WINDIR%\z6389no9-a-vi5us36a.bin
  • %WINDIR%\7974not9azviru553c.ocx
  • <SYSTEM32>\9585thizf56.bin
  • <SYSTEM32>\30509noz-a-viru52be.ocx
  • %WINDIR%\24095tr5jz79.bin
  • %WINDIR%\8015z9y219.bin
  • %WINDIR%\26696t5oj4z2.exe
  • %WINDIR%\67e2thzea93952.exe
  • %WINDIR%\61295zr60.dll
  • %WINDIR%\19b6threaz4755.bin
  • %WINDIR%\729559arsz2046.ocx
  • %WINDIR%\5ca5v9rz0.bin
  • %WINDIR%\90533spz7825.ocx
  • %WINDIR%\2908b9c5dooz350.ocx
  • <SYSTEM32>\264889zrus55.cpl
  • <SYSTEM32>\698d5ddwar91z50.ocx
  • %WINDIR%\4850h9cktoolz3c.ocx
  • %WINDIR%\6332z95al2344.bin
  • <SYSTEM32>\2z918not-5-vi9useb.cpl
  • <SYSTEM32>\2851spzrs51329.dll
  • %WINDIR%\1379zspy6859.bin
  • <SYSTEM32>\28251trzj79b.dll
  • <SYSTEM32>\22z7spa5bot77b9.cpl
  • %WINDIR%\52z03spa9bot1d3.bin
  • <SYSTEM32>\5z185p9ware330.cpl
  • %WINDIR%\16945wozm952.dll
  • <SYSTEM32>\528cbz9kd5or1919.bin
  • <SYSTEM32>\16675hac9tooz195.dll
  • %WINDIR%\5974back5oor1932z.ocx
  • %WINDIR%\3z11troj5a9.ocx
  • %WINDIR%\58f09ir1079z.dll
  • <SYSTEM32>\9a0a9dw5re934z.dll
  • %WINDIR%\5z6fspywa9e1535.dll
  • %WINDIR%\3893backdo9z356.exe
  • %WINDIR%\49f3ba9kdoor1z995.exe
  • <SYSTEM32>\z9535t9oj7af.bin
  • <SYSTEM32>\21570ha9ztool6a65.bin
  • %WINDIR%\5cz6v9r1285.bin
  • %WINDIR%\5d5avi98z.exe
  • %WINDIR%\3745d5w9lzader2642.cpl
  • %WINDIR%\845t59j7z4.ocx
  • %WINDIR%\2785zv59us57b.exe
  • <SYSTEM32>\62dedownloa5ez908.dll
  • <SYSTEM32>\19509spam5ot641z.ocx
  • <SYSTEM32>\5c97b5ck9zor1724.bin
  • <SYSTEM32>\5bd9thzef1945.dll
  • <SYSTEM32>\19352not-a-vz5us139.ocx
  • %WINDIR%\z65abackdo5r92.dll
  • %WINDIR%\543f9ir527z.exe
  • <SYSTEM32>\2faf5ddwarz1997.ocx
  • %WINDIR%\2559znot-59virus3e7.dll
  • %WINDIR%\61z15roj59c.dll
  • <SYSTEM32>\15z30tro9660.bin
  • <SYSTEM32>\5z2troj25c9.dll
  • %WINDIR%\143z6spa9bot554.exe
  • <SYSTEM32>\5fd9thi9530z4.bin
  • %WINDIR%\4491zhreat31650.dll
  • %WINDIR%\46a99ownloader52z.cpl
  • %WINDIR%\298599pazbot63a5.bin
  • <SYSTEM32>\2ez39i5109.cpl
  • <SYSTEM32>\15502hazktoo9317.bin
  • %WINDIR%\z4021hack95ol788.exe
  • <SYSTEM32>\22112t9z51bd.cpl
  • %WINDIR%\3b0bvz92595.bin
  • <SYSTEM32>\3e72s59al13z0.ocx
  • %WINDIR%\59b5b9ckzoo5277.bin
  • %WINDIR%\6c81zte9l4055.bin
  • %WINDIR%\18236h59ktozl441.ocx
  • <SYSTEM32>\15995roz105.bin
  • <SYSTEM32>\2545zpy697.bin
  • %WINDIR%\17100vi9us350z.exe
  • <SYSTEM32>\4z459d5ware1608.dll
  • %WINDIR%\30665oz-a-vi9us491.ocx
  • %WINDIR%\29z295py795.bin
  • %WINDIR%\29529spy59dz.exe
  • %WINDIR%\91afzhreat5895.ocx
  • <SYSTEM32>\32545spy9bz.ocx
  • %WINDIR%\230415rzj76d9.exe
  • <SYSTEM32>\5551sp95d5z.ocx
  • <SYSTEM32>\5990vir1z12.dll
  • <SYSTEM32>\1z40295rm7d9.exe
  • %WINDIR%\5335adz9are2214.exe
  • <SYSTEM32>\31229hacktooz7b55.ocx
  • %WINDIR%\5d9zthief1294.cpl
  • <SYSTEM32>\15356zo9-a-virus1cf.ocx
  • %WINDIR%\12195zirus79d.cpl
  • %WINDIR%\165fzir1989.bin
  • %WINDIR%\60zdad5ware9780.dll
  • <SYSTEM32>\z175vir2594.bin
  • <SYSTEM32>\55959orm590z.cpl
  • <SYSTEM32>\22e9thief905z.cpl
  • <SYSTEM32>\217z4no5-a-v9rus738.cpl
  • <SYSTEM32>\7b51szywar915435.exe
  • %WINDIR%\9459spyware20z2.ocx
  • %WINDIR%\164th9ef295z.cpl
  • %WINDIR%\5030sp9wa5z2625.dll
  • <SYSTEM32>\5756tzrea923204.ocx
  • %WINDIR%\7a59zpyw9re1492.ocx
  • <SYSTEM32>\20944vir5z32a.bin
  • <SYSTEM32>\5984not-azvirus5a5.bin
  • %WINDIR%\9189virusz75.exe
  • %WINDIR%\2f9athz5f2309.cpl
  • <SYSTEM32>\21d1thr5zt39079.ocx
  • <SYSTEM32>\5694downlo5der11z3.bin
  • %WINDIR%\1926z5orm190.ocx
  • %WINDIR%\z2819not-9-viru57a1.bin
  • %WINDIR%\1e939zckdoo51167.cpl
  • %WINDIR%\99z0v9r5s31d.cpl
  • <SYSTEM32>\6598sp5zbot4229.ocx
  • <SYSTEM32>\<File name>.exe
  • %WINDIR%\3bb2s5azse9279.exe
  • <SYSTEM32>\5530dowzloader729.dll
  • <SYSTEM32>\4z1dthi5f2396.bin
  • <SYSTEM32>\9858noz-a-v9ru53e3.cpl
  • <SYSTEM32>\154159zrus55d.exe
  • <SYSTEM32>\23002no5-a-virusz39.cpl
  • %WINDIR%\aczdownloade51493.ocx
  • %WINDIR%\13938no5-a-zirus289.ocx
  • <SYSTEM32>\1075thief929z.cpl
  • %WINDIR%\7c56down9oa5erz427.dll
  • %WINDIR%\6897addwa5e28z0.bin
  • %WINDIR%\12bdth5eat25z90.bin
  • %WINDIR%\43915pz9c.exe
  • %WINDIR%\z562threat8349.ocx
  • %WINDIR%\244czd5wa9e170.exe
  • %WINDIR%\5ac7vi95212z.dll
  • %WINDIR%\z7a95ir3205.bin
  • <SYSTEM32>\7971hacktozl60c5.ocx
  • <SYSTEM32>\34b7s9zr5e897.dll
  • <SYSTEM32>\5f2a5hief191z.exe
  • %WINDIR%\59b5zh59f1472.dll
  • <SYSTEM32>\79efsp5zse23239.ocx
  • <SYSTEM32>\2709downloader28z35.dll
  • %WINDIR%\30b95zeal935.ocx
  • %WINDIR%\56z23troj9d6.ocx
  • %WINDIR%\525dbazkd9or2007.ocx
  • <SYSTEM32>\1a5dzackd9or859.exe
  • <SYSTEM32>\5de59ownloader129z.exe
  • <SYSTEM32>\155709roj1zd.exe
  • %WINDIR%\1fbaad5waze28599.exe
  • <SYSTEM32>\73335zr599.exe
  • %WINDIR%\954zir2761.exe
  • %WINDIR%\7d139ownloadz53258.exe
  • %WINDIR%\6999viz5s2f8.exe
  • <SYSTEM32>\594sp5ware3231z.exe
  • %WINDIR%\1608z5py389.bin
  • <SYSTEM32>\12038no9-a-vizus505.cpl
  • <SYSTEM32>\1aadbac9dozr22925.cpl
  • <SYSTEM32>\57d0spzware9959.ocx
  • <SYSTEM32>\fe4zpy9a5e2171.dll
  • <SYSTEM32>\28d1zhr9at18255.exe
  • <SYSTEM32>\163885pambzt9fa.bin
  • <SYSTEM32>\1z030spy695.exe
  • <SYSTEM32>\155679iz5s6cd.ocx
  • <SYSTEM32>\4a56threat19839z.exe
  • <SYSTEM32>\7a9fb5ckdooz10019.exe
  • <SYSTEM32>\6391s9eaz2815.exe
  • %WINDIR%\78zathief20595.dll
  • <SYSTEM32>\94z9worm3115.exe
  • <SYSTEM32>\z8575v9rus505.dll
  • %WINDIR%\73925ot-z-virusbe.ocx
  • <SYSTEM32>\3z5dthre9t14455.dll
  • <SYSTEM32>\12987ha9ktzol5a.ocx
  • <SYSTEM32>\4a85bac5dooz1191.ocx
  • <SYSTEM32>\6986vir1517z.cpl
  • %WINDIR%\5df0thrzat14389.cpl
  • %WINDIR%\78z5spambot3539.ocx
  • <SYSTEM32>\5z369t5al1972.bin
  • <SYSTEM32>\36ed9d5ware29z5.dll
  • <SYSTEM32>\11498hackzo5l521.dll
  • <SYSTEM32>\35f1spzrse1983.bin
  • <SYSTEM32>\77955roj4d0z.dll
  • %WINDIR%\541zback9oor656.exe
  • %WINDIR%\8a85hr9at3082z.cpl
  • <SYSTEM32>\13532trz975d.cpl
  • %WINDIR%\50759vir9s5z.dll
  • <SYSTEM32>\13559hacktooz2f.cpl
  • %WINDIR%\2456zvirus5915.dll
  • %WINDIR%\1z154troj599.exe
  • <SYSTEM32>\45aabazkdoor5198.ocx
  • <SYSTEM32>\z5998spambot7ae.bin
  • <SYSTEM32>\205z7worm5e9.exe
  • <SYSTEM32>\5505backdoor174z9.ocx
  • <SYSTEM32>\26261zpy9c5.dll
  • <SYSTEM32>\2e7z5pars92579.bin
  • %WINDIR%\7e5fbackdzor2059.cpl
  • <SYSTEM32>\19025hackto5z779.cpl
  • %WINDIR%\47fa5h9ezt9539.exe
  • <SYSTEM32>\23759worz5a1.dll
  • %WINDIR%\15318hackt9ol65z.bin
  • %WINDIR%\5f619zr5181.dll
  • %WINDIR%\a5a9parsz1795.cpl
  • <SYSTEM32>\298bthizf5789.cpl
  • <SYSTEM32>\72615p9warz3205.exe
  • <SYSTEM32>\7bd75ackdo9rz587.dll
  • %WINDIR%\26z5backdoor8499.exe
  • %WINDIR%\5050noz-a-virus5559.dll
  • <SYSTEM32>\575dspywa9e5z5.exe
  • %WINDIR%\28960spazb5t7a9.dll
  • %WINDIR%\570f5zyw9re1560.dll
  • <SYSTEM32>\6598stzal230.dll
  • <SYSTEM32>\32b2addwarez5499.cpl
  • <SYSTEM32>\24732tzoj5f95.exe
  • <SYSTEM32>\4595vir1z63.bin
  • <SYSTEM32>\1058backdoor91z5.dll
  • %WINDIR%\92e95ackzoor1890.dll
  • <SYSTEM32>\410zad9w5re1598.cpl
  • <SYSTEM32>\1359zeal1202.bin
  • <SYSTEM32>\3zf8dow5loa9er2790.cpl
  • %WINDIR%\13195py9are93z.dll
  • %WINDIR%\526129izus792.bin
  • <SYSTEM32>\295149acktool52fz.cpl
  • <SYSTEM32>\2f5caddz9re516.cpl
  • %WINDIR%\86fvz55539.bin
  • <SYSTEM32>\27661notza-9irus5d5.cpl
  • <SYSTEM32>\2z015hackt5ol449.bin
  • <SYSTEM32>\9185wzrm795.exe
  • %WINDIR%\8930wozm9be5.exe
  • <SYSTEM32>\4zb95teal2639.exe
  • %WINDIR%\545z5iru93a2.cpl
  • %WINDIR%\9412t5reatz8497.dll
  • %WINDIR%\582695zusad.cpl
  • %WINDIR%\6z35spy62c9.exe
  • %WINDIR%\z7d3sparse5092.exe
  • %WINDIR%\2b95v9r1z36.exe
  • <SYSTEM32>\45c2s9zal7435.ocx
  • <SYSTEM32>\1943zhackt5ol712.exe
  • %WINDIR%\56c1addw5re189z9.exe
  • %WINDIR%\5491troj16z9.bin
  • <SYSTEM32>\257z8not-a-v9rus109.exe
  • <SYSTEM32>\53959ddware257z.ocx
  • %WINDIR%\37z5vi520549.cpl
  • <SYSTEM32>\6594thiez922.bin
  • %WINDIR%\z9516w5rm448.cpl
  • %WINDIR%\1156zworm92a.cpl
  • %WINDIR%\5e1baddware292z.ocx
  • %WINDIR%\7z259ddware2140.exe
  • <SYSTEM32>\1554ztroj95.dll
  • <SYSTEM32>\57b4spy9arz2391.bin
  • <SYSTEM32>\5c77t59ezt24295.dll
  • <SYSTEM32>\2e54tzi9f2941.bin
  • %WINDIR%\5dathizf9313.dll
  • <SYSTEM32>\2z868n5t-a-viru95dc.dll
  • %WINDIR%\9e9zv5r1252.exe
  • %WINDIR%\8719tzoj45d5.cpl
  • %WINDIR%\59139ackdooz1806.bin
  • <SYSTEM32>\9042wo5z639.cpl
  • %WINDIR%\6576haczt9ol7d5.dll
  • %WINDIR%\309905otza-virus2eb.cpl
  • %WINDIR%\1791zsp52f3.cpl
  • <SYSTEM32>\91d0thzeat222375.dll
  • %WINDIR%\9z42wo955dd.ocx
  • <SYSTEM32>\69d69zea5397.dll
  • %WINDIR%\15199szambot125.dll
  • <SYSTEM32>\295849o5m5zc.cpl
  • %WINDIR%\29105worz305.bin
  • <SYSTEM32>\zc9dbackdoo92552.cpl
  • %WINDIR%\27145n59-z-virus80.bin
  • <SYSTEM32>\45a2ste9l25z7.ocx
  • <SYSTEM32>\2695stea9176z.ocx
  • <SYSTEM32>\5be4sp9rsz1415.cpl
  • <SYSTEM32>\4dc29hreatz70775.cpl
  • <SYSTEM32>\3z569hief94.cpl
  • <SYSTEM32>\ebct5reat2893z.exe
  • %WINDIR%\38viru965az.dll
  • <SYSTEM32>\6z025roj9.ocx
  • <SYSTEM32>\8917zor5433.ocx
  • %WINDIR%\822stza91556.bin
  • <SYSTEM32>\20506h9ckto5l74z.exe
  • <SYSTEM32>\9c4z5ddware740.bin
  • %WINDIR%\75f6tz5eat179.bin
  • <SYSTEM32>\37fad9wa5e30z9.bin
  • <SYSTEM32>\22z159i5us150.dll
  • <SYSTEM32>\472z9p5731.bin
  • %WINDIR%\9875zyware1750.bin
  • %WINDIR%\76thzea593779.dll
  • %WINDIR%\zd5cs9yware1912.ocx
  • %WINDIR%\ce5th5ea93180z.cpl
  • <SYSTEM32>\70259ot-a-vizus355.ocx
  • %WINDIR%\61e5ba9kdoorz376.dll
  • %WINDIR%\9z02t9o53b1.ocx
  • <SYSTEM32>\61b7downl5ader2098z.bin
  • <SYSTEM32>\90575worz14d.cpl
  • %WINDIR%\7d55v9rz006.bin
  • <SYSTEM32>\z289thi5f3258.cpl
  • %WINDIR%\1z35spam59t532.exe
  • <SYSTEM32>\5ed9spyzare489.dll
  • %WINDIR%\5ac5bz9kdoor1347.dll
  • %WINDIR%\75ezs5ars91969.dll
  • <SYSTEM32>\z3902h9cktoo51a5.bin
  • <SYSTEM32>\4c9etzief475.dll
  • %WINDIR%\52572hackzoo975f.bin
  • <SYSTEM32>\45c2z5ief1199.exe
  • %WINDIR%\dbzir25459.dll
  • %WINDIR%\22259spamz9t3db.exe
  • %WINDIR%\dzcstea92545.dll
  • <SYSTEM32>\194875ot-a9virzsf6.dll
  • <SYSTEM32>\18828hacktooz95d.cpl
  • <SYSTEM32>\9559virusz3e.bin
  • <SYSTEM32>\201bsz5rs9650.dll
  • <SYSTEM32>\19zfthief5653.cpl
  • %WINDIR%\6z6backd5or2994.cpl
  • %WINDIR%\2095zhacktool7e0.exe
  • %WINDIR%\3z909ackdoor3055.ocx
  • %WINDIR%\1z849worm51c9.exe
  • <SYSTEM32>\139cdownloader3z759.bin
  • %WINDIR%\49z5spywar95295.bin
  • <SYSTEM32>\5f6bspyw9ze1558.dll
  • <SYSTEM32>\762cs5zwa9e1993.ocx
  • %WINDIR%\4e14t5reatz9690.cpl
  • %WINDIR%\77d9dzwnl5ader43.exe
  • <SYSTEM32>\30z9back5oor10349.dll
  • %WINDIR%\5597spazbot425.ocx
  • %WINDIR%\2z637not-a-vi95sb5.dll
  • %WINDIR%\28454wo5m5ez9.bin
  • <SYSTEM32>\31454not-9-vizus7dd.ocx
  • <SYSTEM32>\7z95backdoor9039.cpl
  • <SYSTEM32>\19z5addwa5e182.dll
  • <SYSTEM32>\32731spam95t61z.exe
  • %WINDIR%\13z79parse16615.exe
  • <SYSTEM32>\345bzack9oor1916.ocx
  • <SYSTEM32>\26299zpam5ot429.ocx
  • <SYSTEM32>\7592t9ief1z65.cpl
  • %WINDIR%\957f5teaz55.dll
  • <SYSTEM32>\3527a9dware569z.cpl
  • <SYSTEM32>\434spyzare1959.exe
  • <SYSTEM32>\12c2s5a9se2z63.bin
  • <SYSTEM32>\11189t95jzb4.bin
  • <SYSTEM32>\74ec9hrezt320625.cpl
  • %WINDIR%\25081z9y16e5.cpl
  • <SYSTEM32>\5d07zpy9are1845.ocx
  • %WINDIR%\15c5thiez9976.ocx
  • %WINDIR%\7597dowzloade51991.dll
  • <SYSTEM32>\137999iruz4505.dll
  • %WINDIR%\z00219or55ee.cpl
  • <SYSTEM32>\z9775troj20c.exe
  • %WINDIR%\16451not9a-viruz457.bin
  • <SYSTEM32>\92c0s5ywzre2192.cpl
  • %WINDIR%\5f4bad9wa5e2855z.dll
  • %WINDIR%\5665stezl1189.bin
  • %WINDIR%\3z8bs9yware3605.exe
  • %WINDIR%\384fd5wn9oadzr2430.dll
  • <SYSTEM32>\17725h9zf2259.exe
  • <SYSTEM32>\8069trojz95.bin
  • <SYSTEM32>\59a8spzrse2088.exe
  • <SYSTEM32>\19895hzcktool781.dll
  • %WINDIR%\3fa9dow5lzader1348.exe
Miscellaneous:
Searches for the following windows:
  • ClassName: 'Shell_TrayWnd' WindowName: ''

Recommandations pour le traitement

  1. Si le système d'exploitation peut être démarré (en mode normal ou en mode sans échec), téléchargez Dr.Web Security Space et lancez un scan complet de votre ordinateur et de tous les supports amovibles que vous utilisez. En savoir plus sur Dr.Web Security Space.
  2. Si le démarrage du système d'exploitation est impossible, veuillez modifier les paramètres du BIOS de votre ordinateur pour démarrer votre ordinateur via CD/DVD ou clé USB. Téléchargez l'image du disque de secours de restauration du système Dr.Web® LiveDisk ou l'utilitaire pour enregistrer Dr.Web® LiveDisk sur une clé USB, puis préparez la clé USB appropriée. Démarrez l'ordinateur à l'aide de cette clé et lancez le scan complet et le traitement des menaces détectées.

Veuillez lancer le scan complet du système à l'aide de Dr.Web Antivirus pour Mac OS.

Veuillez lancer le scan complet de toutes les partitions du disque à l'aide de Dr.Web Antivirus pour Linux.

  1. Si votre appareil mobile fonctionne correctement, veuillez télécharger et installer sur votre appareil mobile Dr.Web pour Android. Lancez un scan complet et suivez les recommandations sur la neutralisation des menaces détectées.
  2. Si l'appareil mobile est bloqué par le Trojan de la famille Android.Locker (un message sur la violation grave de la loi ou la demande d'une rançon est affiché sur l'écran de l'appareil mobile), procédez comme suit:
    • démarrez votre Smartphone ou votre tablette en mode sans échec (si vous ne savez pas comment faire, consultez la documentation de l'appareil mobile ou contactez le fabricant) ;
    • puis téléchargez et installez sur votre appareil mobile Dr.Web pour Android et lancez un scan complet puis suivez les recommandations sur la neutralisation des menaces détectées ;
    • Débranchez votre appareil et rebranchez-le.

En savoir plus sur Dr.Web pour Android