Need help? Ask the community or hire an expert.
Go to Avira Answers
Nume:Adware/MediaGet.E
Descoperit pe data de:02/10/2012
Tip:Adware/Spyware
ITW:Nu
Numar infectii raportate:Scazut
Potential de raspandire:Scazut
Potential de distrugere:Scazut
Versiune VDF:7.11.44.246 - marți, 2 octombrie 2012
Versiune IVDF:7.11.44.246 - marți, 2 octombrie 2012

 General Metoda de raspandire:
   • Nu are rutina proprie de raspandire


Alias:
   •  Kaspersky: not-a-virus:HEUR:Downloader.Win32.MediaGet.gen
   •  Eset: probably a variant of Win32/MediaGet application
   •  Norman: Trojan W32/DLoader.AQSAQ


Sistem de operare:
   • Windows 2000
   • Windows XP
   • Windows 2003
   • Windows Vista
   • Windows Server 2008
   • Windows 7


Imediat dupa lansarea in executie, pe ecran este afisat:


 Fisiere Sunt create fisierele:

– Fisiere inofensive:
   • %temp%\mediaget-installer-tmp\img\kaspersky.gif;
      %temp%\mediaget-installer-tmp\img\pbar-ani.gif;
      %temp%\mediaget-installer-tmp\img\preloader.gif;
      %temp%\mediaget-installer-tmp\img\babylon.jpg;
      %temp%\mediaget-installer-tmp\img\claro.jpg;
      %temp%\mediaget-installer-tmp\img\line.jpg;
      %temp%\mediaget-installer-tmp\img\orbitum.jpg;
      %temp%\mediaget-installer-tmp\img\orbitum_logo.jpg;
      %temp%\mediaget-installer-tmp\img\poster.jpg;
      %temp%\mediaget-installer-tmp\img\yandex.jpg;
      %temp%\mediaget-installer-tmp\img\bg.png;
      %temp%\mediaget-installer-tmp\img\start.png;
      %temp%\mediaget-installer-tmp\stub.html;
      %temp%\mediaget-installer-tmp\js\jquery-ui.min.1.8.0.js;
      %temp%\mediaget-installer-tmp\js\jquery.min.1.6.4.js;
      %temp%\mediaget-installer-tmp\index.template;
      %temp%\mediaget-installer-tmp\index.html

– Un fisier temporar care poate fi sters dupa aceea:
   • %temp%\mediaget-installer-tmp\mediaget-tmp-41.tmp

 Alte informatii Conexiune internet:
Pentru a verifica legatura la internet se conecteaza la urmatorul server DNS:
   • download.**********-get.ru

Description inserted by Wensin Lee on Thursday, October 4, 2012
Description updated by Wensin Lee on Thursday, October 4, 2012

Back . . . .