La mia libreria
La mia libreria

+ Aggiungi alla libreria

Supporto
Supporto 24/7 | Regole per contattare

Richieste

Profile

Trojan.KillFiles.20366

Aggiunto al database dei virus Dr.Web: 2015-01-02

La descrizione è stata aggiunta:

Technical Information

Malicious functions:
Creates and executes the following:
  • '%TEMP%\RarSFX0\LKAD-405_driver_v1\autorun.exe' /autorun.exe
Executes the following:
  • '<SYSTEM32>\wbem\wmiadap.exe' /R /T
Modifies file system :
Creates the following files:
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\common.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wlan0up
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\todo.txt
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\preauth.h
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wlan0dhcp
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\drv.tar.gz
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wlan0down
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\ifcfg-wlan0
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\config.h
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\eloop.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\hostapd.h
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\eap.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\eapol_test.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\tls.h
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\eap_md5.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\common.h
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\crypto.h
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Driver_WIN98_XP_VISTA_ME_2K\Release notes\Utility_Release.txt
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Driver_WIN98_XP_VISTA_ME_2K\Release notes\ISS_Release.txt
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Driver_WIN98_XP_VISTA_ME_2K\data2.cab
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Driver_WIN98_XP_VISTA_ME_2K\Release notes\Release_87.txt
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Driver_WIN98_XP_VISTA_ME_2K\DATA\8187.ini
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Driver_WIN98_XP_VISTA_ME_2K\DATA\RtlService.ini
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Driver_WIN98_XP_VISTA_ME_2K\DATA\RtWLan.ico
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Driver_WIN98_XP_VISTA_ME_2K\DATA\background2.jpg
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Driver_WIN98_XP_VISTA_ME_2K\data1.cab
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\ReadMe.txt
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\autorun.ico
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wlan0rmv
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\stack.tar.gz
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Driver_WIN98_XP_VISTA_ME_2K\IsConfig.ini
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Driver_WIN98_XP_VISTA_ME_2K\data1.hdr
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Driver_WIN98_XP_VISTA_ME_2K\Setup.ini
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Driver_WIN98_XP_VISTA_ME_2K\Setup.exe
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\driver_wext.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\wpa_supplicant.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\defconfig
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\eap_psk_common.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\defs.h
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\driver_hostap.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\eap_tls_common.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\README-Windows.txt
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\l2_packet_linux.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\driver_ndis.h
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\eap_sim.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\aes_wrap.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\eap_tlv.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\main.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\Makefile
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\base64.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\eap_psk_common.h
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\crypto_gnutls.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\ms_funcs.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\eap.h
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\driver_madwifi.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\driver_prism54.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\tls_openssl.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\win_if_list.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\wpa_cli.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\driver.h
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\eap_i.h
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\radius.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\config_file.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\l2_packet_pcap.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\ctrl_iface.h
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\config.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\eapol_sm.h
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\eap_ttls.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Driver_WIN98_XP_VISTA_ME_2K\DATA\background.jpg
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Windows7\setup.exe
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Windows7\IsConfig.ini
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\autorun.inf
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Windows7\Setup.ini
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Windows7\data1.cab
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Windows7\data2.cab
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Windows7\data1.hdr
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Windows7\UnInstall.bat
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\autorun.exe
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Mac OSX\MacOS10.4_Driver\Install.mpkg\Contents\Info.plist
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Mac OSX\MacOS10.5_Driver\Release_87.txt
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Mac OSX\MacOS10.4_Driver\.DS_Store
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Mac OSX\MacOS10.4_Driver\Install.mpkg\Contents\PkgInfo
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Mac OSX\MacOS10.5_Driver\.DS_Store
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Mac OSX\MacOS10.5_Driver\install.pkg
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Mac OSX\MacOS10.5_Driver\realtek USB WLAN Uninstall.command
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Mac OSX\MacOS10.5_Driver\Utility_release.txt
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Windows7\DATA\WPS
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Windows7\DATA\text.file
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Windows7\DATA\background.jpg
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Windows7\DATA\Thumbs.db
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Windows7\EAP\EAP-LEAP.msi
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Windows7\EAP\EAP-FAST.msi
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Windows7\DATA\TrayIcon.bmp
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Windows7\DATA\Vista\8187.ini
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Windows7\DATA\RtlService.ini
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Windows7\Release notes\ISS_Release.txt
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Windows7\DATA\Win7\8187.ini
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Windows7\Release notes\Release_87.txt
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Windows7\Release notes\Utility_Release.txt
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Windows7\DATA\background2.jpg
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Windows7\DATA\8187.ini
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Windows7\DATA\Win7\RtlService.ini
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Windows7\DATA\RtWLan.ico
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Driver_WIN98_XP_VISTA_ME_2K\RTL8187\WinME\Netrtuw.inf
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Driver_WIN98_XP_VISTA_ME_2K\RTL8187\WinME\rtl8187.sys
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Driver_WIN98_XP_VISTA_ME_2K\RTL8187\WinX64\Netrtuw_x64.inf
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Driver_WIN98_XP_VISTA_ME_2K\RTL8187\WinX64\rtl8187.sys
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Driver_WIN98_XP_VISTA_ME_2K\RTL8187\VistaX64\rtl8187.sys
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Driver_WIN98_XP_VISTA_ME_2K\RTL8187\WinXP2K\netrtuw.cat
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Driver_WIN98_XP_VISTA_ME_2K\RTL8187\VistaX64\Netrtuw.inf
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Driver_WIN98_XP_VISTA_ME_2K\RTL8187\VistaX64\Netrtuw.cat
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Driver_WIN98_XP_VISTA_ME_2K\RTL8187\WinX64\netrtuw.cat
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Driver_WIN98_XP_VISTA_ME_2K\DATA\text.file
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Driver_WIN98_XP_VISTA_ME_2K\DATA\TrayIcon.bmp
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Driver_WIN98_XP_VISTA_ME_2K\DATA\Thumbs.db
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Driver_WIN98_XP_VISTA_ME_2K\DATA\WPS
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Driver_WIN98_XP_VISTA_ME_2K\RTL8187\Win98\Netrtuw.inf
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Driver_WIN98_XP_VISTA_ME_2K\RTL8187\Win98\rtl8187.sys
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Driver_WIN98_XP_VISTA_ME_2K\DATA\Vista\8187.ini
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Driver_WIN98_XP_VISTA_ME_2K\ISSetup.dll
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\background_icon.png
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Splash image.png
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Driver_WIN98_XP_VISTA_ME_2K\layout.bin
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\main page.png
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Mac OSX\MacOS10.4_Driver\realtek USB WLAN Uninstall.command
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Mac OSX\MacOS10.4_Driver\Utility_release.txt
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\LKAD-405.png
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Mac OSX\MacOS10.4_Driver\Release_87.txt
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Driver_WIN98_XP_VISTA_ME_2K\_Setup.dll
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Driver_WIN98_XP_VISTA_ME_2K\RTL8187\VistaX86\netrtuw.cat
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Driver_WIN98_XP_VISTA_ME_2K\RTL8187\VistaX86\Netrtuw.inf
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Driver_WIN98_XP_VISTA_ME_2K\RTL8187\WinXP2K\Netrtuw.inf
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Driver_WIN98_XP_VISTA_ME_2K\RTL8187\WinXP2K\rtl8187.sys
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Driver_WIN98_XP_VISTA_ME_2K\setup.iss
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Driver_WIN98_XP_VISTA_ME_2K\setup.ico
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Driver_WIN98_XP_VISTA_ME_2K\RTL8187\VistaX86\rtl8187.sys
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Driver_WIN98_XP_VISTA_ME_2K\setup.inx
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\sha1.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\examples\ieee8021x.conf
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\examples\plaintext.conf
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\examples\wpa-psk-tkip.conf
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\examples\wep.conf
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\tls_schannel.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\eap_pax_common.h
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\examples\wpa2-eap-ccmp.conf
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\rc4.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\crypto.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\eap_tls.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\md5.h
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\radius.h
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\eap_pax.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\driver_test.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\driver_ndis.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\wireless_copy.h
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\wpa_passphrase.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\doc\docbook\Makefile
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\doc\docbook\wpa_cli.8
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\doc\docbook\.cvsignore
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\doc\docbook\wpa_supplicant.sgml
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\doc\docbook\wpa_supplicant.8
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\doc\doxygen.full
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\doc\docbook\wpa_background.8
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\doc\docbook\wpa_cli.sgml
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\doc\docbook\wpa_background.sgml
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\doc\kerneldoc2doxygen.pl
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\doc\porting.doxygen
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\doc\mainpage.doxygen
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\doc\doxygen.fast
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\doc\docbook\wpa_passphrase.8
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\doc\docbook\wpa_supplicant.conf.sgml
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\doc\docbook\wpa_passphrase.sgml
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\doc\docbook\wpa_supplicant.conf.5
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\radius_client.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\eap_gtc.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\eap_sim_common.h
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\eap_leap.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\pcsc_funcs.h
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\driver_wext.h
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\sha1.h
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\radius_client.h
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\driver_bsd.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\autorun.tgt
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\makedrv
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\main page2.png
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\autorun.aru
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\wpa_supplicant.conf
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\wpa_ctrl.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\wpa.h
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\driver_atmel.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\eap_mschapv2.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\config_ssid.h
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\eloop.h
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\preauth.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\ctrl_iface.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\wpa_i.h
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\base64.h
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\eap_fast.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\eap_pax_common.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\l2_packet.h
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\wpa_supplicant.h
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\eap_peap.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\README
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\eap_tlv.h
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\driver_hostap.h
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\version.h
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\tls_gnutls.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\doc\driver_wrapper.doxygen
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\aes.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\tls_none.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\driver_broadcom.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\driver_ipw.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\wpa_ctrl.h
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\.cvsignore
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\eap_tls_common.h
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\md5.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\eap_psk.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\rc4.h
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\driver_wired.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\openssl-tls-extensions.patch
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\ChangeLog
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\aes_wrap.h
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\driver_ndis_.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\eap_defs.h
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\driver_ndiswrapper.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\wpa_gui\networkconfig.ui
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\wpa_gui\wpa_gui.pro
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\wpa_gui\.cvsignore
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\wpa_gui\main.cpp
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\ms_funcs.h
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\priv_netlink.h
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\wpa_gui\wpamsg.h
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\eapol_sm.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\wpa_gui\scanresults.ui
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\wpa_gui\userdatarequest.ui.h
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\wpa_gui\wpagui.ui
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\preauth_test.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\wpa_gui\eventhistory.ui.h
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\wpa_gui\networkconfig.ui.h
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\wpa_gui\scanresults.ui.h
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\wpa_gui\eventhistory.ui
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\wpa_gui\userdatarequest.ui
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\eap_otp.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\COPYING
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\wpa.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\l2_packet_freebsd.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\drivers.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\eap_testing.txt
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\eap_sim_common.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\pcsc_funcs.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\eap_aka.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\doc\.cvsignore
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\doc\eap.doxygen
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\doc\wpa_supplicant.fig
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\doc\testing_tools.doxygen
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\wpa_supplicant_i.h
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\events.c
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\doc\ctrl_iface.doxygen
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\doc\code_structure.doxygen
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\wpa_gui-qt4\scanresults.ui
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\wpa_gui-qt4\.cvsignore
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\wpa_gui-qt4\networkconfig.ui.h
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\wpa_gui-qt4\scanresults.ui.h
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\wpa_gui-qt4\wpa_gui.pro
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\wpa_gui-qt4\wpamsg.h
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\wpa_gui-qt4\main.cpp
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\wpa_gui-qt4\networkconfig.ui
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\wpa_gui-qt4\userdatarequest.ui
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\eap_ttls.h
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\wpa_gui-qt4\eventhistory.ui.h
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\ndis_events.cpp
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\config_types.h
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\wpa_gui-qt4\eventhistory.ui
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\wpa_gui-qt4\setup-mingw-cross-compiling
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\wpa_gui-qt4\userdatarequest.ui.h
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\wpa_gui-qt4\wpagui.ui
Sets the 'hidden' attribute to the following files:
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\wpa_gui\.cvsignore
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Mac OSX\MacOS10.4_Driver\.DS_Store
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Mac OSX\MacOS10.5_Driver\.DS_Store
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\.cvsignore
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\doc\docbook\.cvsignore
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\doc\.cvsignore
  • %TEMP%\RarSFX0\LKAD-405_driver_v1\Linux\wpa_supplicant-0.4.9\wpa_gui-qt4\.cvsignore
Deletes the following files:
  • <SYSTEM32>\PerfStringBackup.TMP
  • <SYSTEM32>\wbem\Performance\WmiApRpl.ini
Miscellaneous:
Searches for the following windows:
  • ClassName: 'Shell_TrayWnd' WindowName: ''
  • ClassName: 'EDIT' WindowName: ''

Curing recommendations

  1. If the operating system (OS) can be loaded (either normally or in safe mode), download Dr.Web Security Space and run a full scan of your computer and removable media you use. More about Dr.Web Security Space.
  2. If you cannot boot the OS, change the BIOS settings to boot your system from a CD or USB drive. Download the image of the emergency system repair disk Dr.Web® LiveDisk , mount it on a USB drive or burn it to a CD/DVD. After booting up with this media, run a full scan and cure all the detected threats.
Download Dr.Web

Download by serial number

Use Dr.Web Anti-virus for macOS to run a full scan of your Mac.

After booting up, run a full scan of all disk partitions with Dr.Web Anti-virus for Linux.

Download Dr.Web

Download by serial number

  1. If the mobile device is operating normally, download and install Dr.Web for Android. Run a full system scan and follow recommendations to neutralize the detected threats.
  2. If the mobile device has been locked by Android.Locker ransomware (the message on the screen tells you that you have broken some law or demands a set ransom amount; or you will see some other announcement that prevents you from using the handheld normally), do the following:
    • Load your smartphone or tablet in the safe mode (depending on the operating system version and specifications of the particular mobile device involved, this procedure can be performed in various ways; seek clarification from the user guide that was shipped with the device, or contact its manufacturer);
    • Once you have activated safe mode, install the Dr.Web for Android onto the infected handheld and run a full scan of the system; follow the steps recommended for neutralizing the threats that have been detected;
    • Switch off your device and turn it on as normal.

Find out more about Dr.Web for Android