Win32/Adware.iBryte [Threat Name] go to Threat

Win32/AdWare.iBryte.R [Threat Variant Name]

Category adware,riskware
Size 1039360 B
Detection created Feb 24, 2014
Detection database version 10390
Short description

Win32/AdWare.iBryte.R is an adware - an application designed for delivery of unsolicited advertisements.

Installation

The adware does not create any copies of itself.

Information stealing

The adware collects the following information:

  • Microsoft .NET framework version
  • information about the operating system and system settings

The adware attempts to send gathered information to a remote machine.

Other information

The adware downloads configuration data from the Internet.


It can show advertisements.


The adware contains a list of URLs.


The adware tries to download a file from the Internet. The HTTP protocol is used in the communication.


The file is stored in the following location:

  • %temp%\­FLVPlayer.exe

The file is then executed.


The adware quits immediately if it is run within a debugger.


The adware may create the following files:

  • %temp%\­lock.temp

Please enable Javascript to ensure correct displaying of this content and refresh this page.