Adware/MediaTickets
Analysis
Adware/MediaTickets.F is an Adware inter-related to a small trojan.
This trojan is also detected as Adware/MediaTickets.F or known as
Trojan-Clicker.Win32.Small.ab QLowZones-1 trojan TROJ_SMALL.AB Trojan.Clicker.Small-16 Trojan.Clicker.Small.AB | ||
This trojan connects to www.searchmeup.cc through HTTP port using a random port around 1800, and sends an "Get" request type. The site is currently not returning any relevant value. | ||
This trojan updates the registry to include a trusted provider from its own list.
Below are the information for the added trusted provider. | ||
Integrated Search Technologies CDT inc. MediaTickets | ||
This trojan also updates the registry to remove the Browser Restriction under Internet Setting and adds the following particular sites. | ||
blazefind.com clickspring.net flingstone.com mt-download.com my-internet.info searchbarcash.com searchmeup.cc searchmiracle.com skoobidoo.com slotch.com xxxtoolbar.com |
Telemetry
Detection Availability
FortiClient | |
---|---|
Extreme | |
FortiMail | |
Extreme | |
FortiSandbox | |
Extreme | |
FortiWeb | |
Extreme | |
Web Application Firewall | |
Extreme | |
FortiIsolator | |
Extreme | |
FortiDeceptor | |
Extreme | |
FortiEDR |