マイライブラリ
マイライブラリ

+ マイライブラリに追加

電話

お問い合わせ履歴

電話(英語)

+7 (495) 789-45-86

Profile

Trojan.MulDrop5.33832

Added to the Dr.Web virus database: 2014-06-26

Virus description added:

Technical Information

Malicious functions:
Terminates or attempts to terminate
the following user processes:
  • iexplore.exe
  • firefox.exe
Modifies file system :
Creates the following files:
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\timers.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\tabs.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\util\array.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\url.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\tabs\tabs.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\tabs\tabs-firefox.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\tabs\worker.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\tabs\utils.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\window\browser.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\util\uuid.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\window\utils.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\window\namespace.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\util\list.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\util\deprecate.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\util\registry.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\util\object.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\system\unload.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\system\runtime.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\system.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\system\xul-app.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\system\environment.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\simple-storage.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\system\globals.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\system\events.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\tabs\tab-fennec.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\tabs\observer.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\tabs\tab.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\tabs\tab-firefox.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\tabs\events.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\tabs\common.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\tabs\namespace.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\tabs\helpers.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\f\data\src\icons\ie\16.ico
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\f\data\src\icons\firefox\64.png
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\f\data\src\index.html
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\f\data\src\identity.json
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\f\data\src\icons\chrome\16.png
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\f\data\src\icons\chrome\128.png
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\f\data\src\icons\firefox\32.png
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\f\data\src\icons\chrome\48.png
  • %TEMP%\application.exe
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\f\data\src\id.txt
  • %TEMP%\31732.dmp
  • %TEMP%\dw.log
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\f\data\src\js\frame.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\f\data\src\js\background.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\f\lib\main.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\f\data\src\js\page.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\windows\tabs-fennec.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\windows\observer.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\windows.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\windows\tabs-firefox.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\windows\fennec.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\windows\dom.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\windows\loader.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\windows\firefox.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\f\data\forge\disable-frames.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\f\data\forge\app_config.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\f\data\src\config.json
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\f\data\forge.html
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\f\data\forge\all.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\toolkit\loader.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\f\data\forge\api-firefox-proxy.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\f\data\forge\api-firefox-bg.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\self.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\core\promise.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\core\namespace.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\deprecated\cortex.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\deprecated\api-utils.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\content\thumbnail.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\content\symbiont.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\core\heritage.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\content\worker.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\deprecated\memory.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\deprecated\list.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\deprecated\traits\core.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\deprecated\observer-service.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\deprecated\events\assembler.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\deprecated\errors.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\deprecated\light-traits.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\deprecated\events.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\icon.png
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\harness-options.json
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\install.rdf
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\icon64.png
  • %TEMP%\chrzp.zip
  • %APPDATA%\id.txt
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\bootstrap.js
  • %TEMP%\ffjt.zip
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\content\content-proxy.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\console\traceback.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\content\loader.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\content\content-worker.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\addon\runner.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\locales.json
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\console\plain-text.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\base64.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\notifications.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\net\xhr.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\page-mod.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\page-mod\match-pattern.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\loader\cuddlefish.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\lang\functional.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\net\url.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\loader\sandbox.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\private-browsing.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\private-browsing\window\utils.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\request.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\querystring.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\platform\xpcom.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\page-worker.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\private-browsing\utils.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\preferences\service.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\frame\hidden-frame.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\event\target.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\io\byte-streams.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\frame\utils.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\deprecated\window-utils.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\deprecated\traits.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\event\core.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\dom\events.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\l10n\loader.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\l10n\html.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\l10n\prefs.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\l10n\locale.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\io\file.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\io\data.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\l10n\core.js
  • %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\8d5722f08367402ca7e74cf2ef319f24@jetpack\resources\addon-sdk\lib\sdk\io\text-streams.js
Miscellaneous:
Searches for the following windows:
  • ClassName: 'Shell_TrayWnd' WindowName: '(null)'

Curing recommendations

  1. If the operating system (OS) can be loaded (either normally or in safe mode), download Dr.Web Security Space and run a full scan of your computer and removable media you use. More about Dr.Web Security Space.
  2. If you cannot boot the OS, change the BIOS settings to boot your system from a CD or USB drive. Download the image of the emergency system repair disk Dr.Web® LiveDisk , mount it on a USB drive or burn it to a CD/DVD. After booting up with this media, run a full scan and cure all the detected threats.
Download Dr.Web

Download by serial number

Use Dr.Web Anti-virus for macOS to run a full scan of your Mac.

After booting up, run a full scan of all disk partitions with Dr.Web Anti-virus for Linux.

Download Dr.Web

Download by serial number

  1. If the mobile device is operating normally, download and install Dr.Web for Android. Run a full system scan and follow recommendations to neutralize the detected threats.
  2. If the mobile device has been locked by Android.Locker ransomware (the message on the screen tells you that you have broken some law or demands a set ransom amount; or you will see some other announcement that prevents you from using the handheld normally), do the following:
    • Load your smartphone or tablet in the safe mode (depending on the operating system version and specifications of the particular mobile device involved, this procedure can be performed in various ways; seek clarification from the user guide that was shipped with the device, or contact its manufacturer);
    • Once you have activated safe mode, install the Dr.Web for Android onto the infected handheld and run a full scan of the system; follow the steps recommended for neutralizing the threats that have been detected;
    • Switch off your device and turn it on as normal.

Find out more about Dr.Web for Android