Removed: richtx64.exe, wscsvc32.exe
Malware: C:\sand-box\setup.exe Removed: C:\Documents and Settings\Administrator\Local Settings\Temp\richtx64.exe C:\Documents and Settings\Administrator\Local Settings\Temp\wscsvc32.exe —————————————————————————————————————————- Classification: Antivirus Version Last Update Result F-Secure 9.0.15370.0 2009.12.07 – Kaspersky 7.0.0.125 2009.12.09 Packed.Win32.TDSS.aa McAfee 5827 2009.12.09 DNSChanger.p Microsoft 1.5302 2009.12.09 Trojan:Win32/Alureon.BT NOD32 4673 2009.12.09 Win32/Adware.CoreguardAntivirus Symantec 1.4.4.12 2009.12.09 Trojan.Dropper —————————————————————————————————————————- Additional information File size: 1187840 bytes MD5 : c8111bf3fcdc0f975c676704ad7b337b SHA1 : 0c6d1679104218c67914cf8bf52721fb45b75cb1 [...]
Removal Tool
Removed: raidhost.exe
Malware: update.exe Removed: C:\WINDOWS\raidhost.exe —————————————————————————————————————————- Classification: Antivirus Version Last Update Result F-Secure 9.0.15370.0 2009.12.03 – Kaspersky 7.0.0.125 2009.12.07 Backdoor.Win32.IRCBot.ncw McAfee 5824 2009.12.06 – Microsoft 1.5302 2009.12.06 Worm:Win32/Pushbot.gen!C NOD32 4665 2009.12.06 Win32/AutoRun.IRCBot.CX Symantec 1.4.4.12 2009.12.07 W32.IRCBot —————————————————————————————————————————- Additional information File size: 33280 bytes MD5 : 1dbddad46127cdac06a5f6e0d05780ae SHA1 : cddd71704d139ba7a845608bfc4df42ba3cd2981 SHA256: 77a058511b3f9ba5d4a1d78c530df4a5d6527d3a08110395e9a651f40dbce160 —————————————————————————————————————————- Installation When the program [...]
Removal Tool
Removed: winhelper86.dll, winupdate86.exe, winlogon86.exe
alware: load.exe Removed: C:\WINDOWS\system32\winhelper86.dll C:\WINDOWS\system32\winupdate86.exe C:\WINDOWS\system32\winlogon86.exe —————————————————————————————————————————- Classification: Antivirus Version Last Update Result F-Secure 9.0.15370.0 2009.12.03 Gen:Malware.Heur.bqW@bSUlgdik Kaspersky 7.0.0.125 2009.12.05 Trojan-Downloader.Win32.FraudLoad.wwrx McAfee 5822 2009.12.04 Generic FakeAlert.b Microsoft 1.5302 2009.12.05 TrojanDownloader:Win32/Fakeinit NOD32 4661 2009.12.04 a variant of Win32/Kryptik.AZD Symantec 1.4.4.12 2009.12.05 Trojan.FakeAV —————————————————————————————————————————- Additional information File size: 27136 bytes MD5 : 3c76d7056ee6a49741159caa5371e2e7 SHA1 : 4bee7cf057ae39dcbe324aeaac5d7e1fe0c5ebce SHA256: [...]
Removal Tool
Removed: abfw.xgo
Malware: C:\sand-box\04.exe Removed: C:\WINDOWS\system32\abfw.xgo —————————————————————————————————————————- Classification: Antivirus Version Last Update Result F-Secure 9.0.15370.0 2009.12.07 – Kaspersky 7.0.0.125 2009.12.07 Backdoor.Win32.Bredavi.bgt Microsoft 1.5302 2009.12.07 – NOD32 4668 2009.12.07 a variant of Win32/Kryptik.BHB Symantec 1.4.4.12 2009.12.07 – —————————————————————————————————————————- Additional information File size: 44544 bytes MD5 : f9f03038d5de44a4c2902ccc90c9d297 SHA1 : 08cc0d071fdb4668e0c9caf9da8fd09d25fcef6d SHA256: 9e395b07c7a105e45a246b4ddd2c91d46d1c20060352b0ae60be04287154e8d8 —————————————————————————————————————————- Installation When the program is [...]
Removal Tool
Removed: service.exe
Malware: C:\sand-box\service.exe Removed: C:\sand-box\service.exe —————————————————————————————————————————- Classification: Antivirus Version Last Update Result F-Secure 9.0.15370.0 2009.11.29 Suspicious:W32/Malware!Gemini Kaspersky 7.0.0.125 2009.12.02 – McAfee 5819 2009.12.01 – Microsoft 1.5302 2009.12.02 Trojan:Win32/Waledac.gen!A NOD32 4653 2009.12.02 a variant of Win32/Kryptik.AVN Symantec 1.4.4.12 2009.12.02 – —————————————————————————————————————————- Installation When the program is executed, it creates the following registry subkeys and values: ———————————- Keys [...]
Removal Tool
Removed: svchost.exe:exe.exe, ihaupd32.exe, av_md.exe
Malware: antivirus.exe Removed:C:\WINDOWS\system32\svchost.exe:exe.exe C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\ihaupd32.exe C:\Documents and Settings\Administrator\av_md.exe C:\WINDOWS\system32\av_md.exe —————————————————————————————————————————- Classification: Antivirus Version Last Update Result F-Secure 9.0.15370.0 2009.11.29 – Kaspersky 7.0.0.125 2009.12.02 Trojan.Win32.Buzus.cnkv McAfee 5819 2009.12.01 Generic VB.z Microsoft 1.5302 2009.12.02 VirTool:Win32/VBInject.gen!CN NOD32 4653 2009.12.02 Win32/TrojanDownloader.FakeAlert.AAA Symantec 1.4.4.12 2009.12.02 Packed.Generic.266 —————————————————————————————————————————- Additional information File size: 36864 bytes MD5 : 52bb48127af5dbeb04650b53ae1efec3 SHA1 : [...]
Removal Tool



