PECCB.EXE - Dangerous
PECCB.EXE
Manual removal instructions:
Antivirus Report of PECCB.EXE:
peccb.exe
We suggest you to remove DDORA.EXE from your computer as soon as possible.
DDORA.EXE is known as: Mal/Packer [Sophos] Trojan-Downloader.Win32.Small [Ikarus] packed with FSG [Kaspersky Lab].
MD5 of DDORA.EXE = 2531D75005CBB5935210C46DEEC94994
DDORA.EXE size is 50000 bytes.
Full path on a computer: %TEMP%\DDORA.EXE
Related Files:
%TEMPLATES%\OBG3H81J46E7T4G6U26E170O
%COMMONAPPDATA%\WINSYSTEM.TDL
%COMMONAPPDATA%\WINCAP.AI
%COMMONTEMPLATES%\MAINSYS.DLL
%APPDATA%\CLEANHDM.DLL
%APPDATA%\CLEANHDM.EXE
%APPDATA%\MOUSEDRIVER.BAT
%APPDATA%\ZF2C.EXE
%USERPROFILE%\DELME.BAT
%APPDATA%\SYL.EXE
%TEMP%\15.TMP
%TEMP%\18.TMP
%SYSTEM%\FIPLOCK.DLL
%TEMP%\4141559320.EXE
%TEMP%\8.TMP
%WINDIR%\TASKMGR.EXE
%SYSTEM%\SYSTEM.EXE
%TEMP%\INSTALL.EXE
%WINDIR%\WIN16.EXE
%TEMP%\LSASS.EXE
%TEMP%\MANSERVICE-0.47.7.EXE
%TEMP%\MANSERVICE-0.96.7.EXE
%TEMP%\MANSERVICE-50.71.57.EXE
%TEMP%\MANSERVICE-56.86.4.EXE
%TEMP%\MANSERVICE-75.68.59.EXE
%TEMP%\MANSERVICE-93.90.7.EXE
%TEMP%\MANSERVICE-96.83.7.EXE
%TEMP%\MBGG1XJXT2J2.EXE
%TEMP%\MFC64DBF.DLL
%TEMP%\NSY12.TMP\NSISDL_TEMP.ZUGO
%TEMP%\NSAF.TMP\NSISDL.DLL
%TEMP%\NSAF.TMP\SYSTEM.DLL
%TEMP%\NSAF.TMP\ZSILENT.EXE
%TEMP%\NSN11.TMP
%TEMP%\NSW3.TMP\1EUROP.EXE
%TEMP%\NSW3.TMP\6TBP.EXE
%TEMP%\NSY12.TMP\ERRORTRACKING.ZUGO
%TEMP%\NSY12.TMP\GETVERSION.DLL
%TEMP%\NSY12.TMP\INETC.DLL
%TEMP%\NSY12.TMP\KILLPROCDLL.DLL
%TEMP%\NSY12.TMP\MATH.DLL
%TEMP%\NSY12.TMP\NSISDL.DLL
%PROGRAMFILES%\SEARCH TOOLBAR\SEARCHTOOLBAR.DLL
%TEMP%\NSY12.TMP\SEARCHTOOLBAR.XPI
%PROGRAMFILES%\SEARCH TOOLBAR\SEARCHTOOLBARUPDATER.EXE
%TEMP%\NSY12.TMP\SYSTEM.DLL
%TEMP%\PECCB.EXE
%TEMP%\QWUTU.EXE
%TEMP%\TCOMFPAG.EXE
%TEMP%\WINAMP.EXE
%TEMP%\YTTWULHW.EXE
%USERPROFILE%\SWORK.BAT
%WINDIR%\MQCMFI.DLL
%WINDIR%\SPOOLSV.EXE
%WINDIR%\SVCHOST.EXE
%SYSTEM%\ELITKUQWR.DLL
%SYSTEM%\FHPATCH.DLL
%SYSTEM%\IPHY.DLL
%SYSTEM%\VCMJ.EXE
%SYSTEM%\WINSET.INI
%WINDIR%\WIN.EXE
PECCB.EXE | Mal/Packer [Sophos] Trojan-Downloader.Win32.Small [Ikarus] packed with FSG [Kaspersky Lab]. |
PECCB.EXE | Dangerous |
PECCB.EXE | High Risk |
DDORA.EXE is known as: Mal/Packer [Sophos] Trojan-Downloader.Win32.Small [Ikarus] packed with FSG [Kaspersky Lab].
MD5 of DDORA.EXE = 2531D75005CBB5935210C46DEEC94994
DDORA.EXE size is 50000 bytes.
Full path on a computer: %TEMP%\DDORA.EXE
Related Files:
%TEMPLATES%\OBG3H81J46E7T4G6U26E170O
%COMMONAPPDATA%\WINSYSTEM.TDL
%COMMONAPPDATA%\WINCAP.AI
%COMMONTEMPLATES%\MAINSYS.DLL
%APPDATA%\CLEANHDM.DLL
%APPDATA%\CLEANHDM.EXE
%APPDATA%\MOUSEDRIVER.BAT
%APPDATA%\ZF2C.EXE
%USERPROFILE%\DELME.BAT
%APPDATA%\SYL.EXE
%TEMP%\15.TMP
%TEMP%\18.TMP
%SYSTEM%\FIPLOCK.DLL
%TEMP%\4141559320.EXE
%TEMP%\8.TMP
%WINDIR%\TASKMGR.EXE
%SYSTEM%\SYSTEM.EXE
%TEMP%\INSTALL.EXE
%WINDIR%\WIN16.EXE
%TEMP%\LSASS.EXE
%TEMP%\MANSERVICE-0.47.7.EXE
%TEMP%\MANSERVICE-0.96.7.EXE
%TEMP%\MANSERVICE-50.71.57.EXE
%TEMP%\MANSERVICE-56.86.4.EXE
%TEMP%\MANSERVICE-75.68.59.EXE
%TEMP%\MANSERVICE-93.90.7.EXE
%TEMP%\MANSERVICE-96.83.7.EXE
%TEMP%\MBGG1XJXT2J2.EXE
%TEMP%\MFC64DBF.DLL
%TEMP%\NSY12.TMP\NSISDL_TEMP.ZUGO
%TEMP%\NSAF.TMP\NSISDL.DLL
%TEMP%\NSAF.TMP\SYSTEM.DLL
%TEMP%\NSAF.TMP\ZSILENT.EXE
%TEMP%\NSN11.TMP
%TEMP%\NSW3.TMP\1EUROP.EXE
%TEMP%\NSW3.TMP\6TBP.EXE
%TEMP%\NSY12.TMP\ERRORTRACKING.ZUGO
%TEMP%\NSY12.TMP\GETVERSION.DLL
%TEMP%\NSY12.TMP\INETC.DLL
%TEMP%\NSY12.TMP\KILLPROCDLL.DLL
%TEMP%\NSY12.TMP\MATH.DLL
%TEMP%\NSY12.TMP\NSISDL.DLL
%PROGRAMFILES%\SEARCH TOOLBAR\SEARCHTOOLBAR.DLL
%TEMP%\NSY12.TMP\SEARCHTOOLBAR.XPI
%PROGRAMFILES%\SEARCH TOOLBAR\SEARCHTOOLBARUPDATER.EXE
%TEMP%\NSY12.TMP\SYSTEM.DLL
%TEMP%\PECCB.EXE
%TEMP%\QWUTU.EXE
%TEMP%\TCOMFPAG.EXE
%TEMP%\WINAMP.EXE
%TEMP%\YTTWULHW.EXE
%USERPROFILE%\SWORK.BAT
%WINDIR%\MQCMFI.DLL
%WINDIR%\SPOOLSV.EXE
%WINDIR%\SVCHOST.EXE
%SYSTEM%\ELITKUQWR.DLL
%SYSTEM%\FHPATCH.DLL
%SYSTEM%\IPHY.DLL
%SYSTEM%\VCMJ.EXE
%SYSTEM%\WINSET.INI
%WINDIR%\WIN.EXE
Dmitry Sokolov:
I created UnHackMe in 2006 to fix the problem that antivioruses did not fix: detecting rootkits.
Since that time I work every day to fix the issues that antiviruses cannot.
If your antivirus have not helped you solve the problem, you should try UnHackMe.
We are a small company and you can ask me directly, if you have any questions.