File Tour

Category: Adware and PUAsProtection available since:19 Mar 2016 13:07:30 (GMT)
Type: Unspecified PUALast Updated:30 Nov 2018 23:18:11 (GMT)

Download Download our free Virus Removal Tool - Find and remove threats your antivirus missed

Examples of File Tour include:

Example 1

File Information

Size
378K
SHA-1
0e2deab3e68681199e70e277b97579ea8e25d934
MD5
dd9a1a2e2dd74c199d61d8b2f838b789
CRC-32
c8ba27d5
File type
Windows executable
First seen
2017-10-12

Runtime Analysis

Dropped Files
  • c:\Documents and Settings\test user\Local Settings\Temp\is-VME13.tmp\license.key
  • c:\Documents and Settings\test user\Local Settings\Temp\is-PTQ79.tmp\sample.tmp
Processes Created
  • c:\docume~1\support\locals~1\temp\is-ptq79.tmp\sample.tmp
HTTP Requests
  • http://tuominen.ru/archive.zip
DNS Requests
  • tuominen.ru

Example 2

File Information

Size
384K
SHA-1
6ce36791881def92694196aa47ef24970ae7670b
MD5
faff17b6d7e1d7a78862de1977ad9d98
CRC-32
29350102
File type
Windows executable
First seen
2017-11-21

Runtime Analysis

Dropped Files
  • c:\Documents and Settings\test user\Local Settings\Temp\is-JKRAR.tmp\sample.tmp
  • c:\Documents and Settings\test user\Local Settings\Temp\is-BUV19.tmp\license.key
Processes Created
  • c:\docume~1\support\locals~1\temp\is-jkrar.tmp\sample.tmp
HTTP Requests
  • http://saarnio.ru/archive_2.1.zip
DNS Requests
  • saarnio.ru

Example 3

File Information

Size
3.7M
SHA-1
4047da16b71c84b5b67da7d7eb2ca720cdff0edc
MD5
1276b7901d2b74ea10c39ee977f76c4e
CRC-32
5d2b5bf6
File type
Windows executable
First seen
2016-09-03

download Try Sophos products for free
Download now