View Single Post
Old 04-25-2007, 12:05 PM   #3 (permalink)
jross1943
Registered User
 
Join Date: Jan 2007
Location: Southeast
Posts: 70
OS: XP/sp2


Re: Help - win32 Trojan

Can't get SmitFraudFix. When I try to download it gets to 99% and quits. When I try to copy from my thumb drive, it deletes the program from the drive. But here is the HJT Uninstall list and the results from VirusTotal.

Thanks for all you do

---------------
HJT Uninstall List

2003 United Guaranty's Tax Analysis
Adobe Flash Player 9 ActiveX
Adobe Reader 6.0.1
Adobe SVG Viewer 3.0
Advanced Networking Pack for Windows XP
Agere Systems AC'97 Modem
ATI Control Panel
ATI Display Driver
BlackBerry Desktop Software 4.0
BlackBerry Desktop Software 4.0
Broadcom Gigabit Integrated Controller
CBA DirectLynk
Citrix ICA Web Client
Diagnostics for Windows
DirectX 9 Hotfix - KB839643
D-Link AirPlus G Wireless Adapter
Easy CD & DVD Creator 6
eCombiner
FileNET Panagon Viewer 3.2
HighMAT Extension to Microsoft Windows XP CD Writing Wizard
HijackThis 1.99.1
HP Integrated Wireless LAN W400-W500 Driver
HP Mobile Printing
hp psc 1200 series
Insight Management Agent
InterActual Player
Internet Explorer Security Plugin 2006
Internet Security Add-On
InterVideo WinDVD
Java 2 Runtime Environment Standard Edition v1.3.1_02
Java 2 Runtime Environment, SE v1.4.1_05
Java Web Start
LiveReg (Symantec Corporation)
LiveUpdate 1.6 (Symantec Corporation)
LockPoint Web Client 2.1
Macromedia Shockwave Player
MarketerPro 15.6.0 Release
MarketerPro 15.7.0 Release
MarketerPro 15.8.0 Release
MarketerPro Backup
McAfee VirusScan Enterprise
Microsoft .NET Framework 1.1
Microsoft .NET Framework 1.1
Microsoft .NET Framework 1.1 Hotfix (KB886903)
Microsoft Access 2000 Runtime
Microsoft Data Access Components KB870669
Microsoft Office Live Meeting
Microsoft Office Professional Edition 2003
Microsoft Windows Journal Viewer
O2Micro MemoryCardBus Windows Driver
OnDemand5
pdfFactory
PhotoParade Player
Pro Client
Public Messenger ver 2.03
Remote Diagnostics Enabling Agent
Remote Services Driver
SBA 2.2 Remote System
Security Update for Windows XP (KB890046)
Security Update for Windows XP (KB896358)
Security Update for Windows XP (KB896422)
Security Update for Windows XP (KB896426)
Security Update for Windows XP (KB896428)
SoundMAX
Spybot - Search & Destroy 1.3
Symantec pcAnywhere
Synaptics Pointing Device Driver
TCNLink For Windows 7.0 SP2 Custom
Windows Installer 3.1 (KB893803)
Windows Installer 3.1 (KB893803)
Windows Media Player 9 Hotfix [See KB885492 for more information]
Windows Media Player Hotfix [See KB837272 for more information]
Windows Media Player Hotfix [See Q828026 for more information]
Windows Safety Alert
Windows XP Hotfix - KB820291
Windows XP Hotfix - KB821253
Windows XP Hotfix - KB822603
Windows XP Hotfix - KB823182
Windows XP Hotfix - KB824105
Windows XP Hotfix - KB824141
Windows XP Hotfix - KB825119
Windows XP Hotfix - KB826939
Windows XP Hotfix - KB826942
Windows XP Hotfix - KB828028
Windows XP Hotfix - KB828035
Windows XP Hotfix - KB828741
Windows XP Hotfix - KB833407
Windows XP Hotfix - KB833987
Windows XP Hotfix - KB834707
Windows XP Hotfix - KB835732
Windows XP Hotfix - KB837001
Windows XP Hotfix - KB839645
Windows XP Hotfix - KB840315
Windows XP Hotfix - KB840374
Windows XP Hotfix - KB840987
Windows XP Hotfix - KB841356
Windows XP Hotfix - KB841533
Windows XP Hotfix - KB841873
Windows XP Hotfix - KB842773
Windows XP Hotfix - KB867282
Windows XP Hotfix - KB871250
Windows XP Hotfix - KB873333
Windows XP Hotfix - KB873339
Windows XP Hotfix - KB873376
Windows XP Hotfix - KB883357
Windows XP Hotfix - KB883939
Windows XP Hotfix - KB885250
Windows XP Hotfix - KB885835
Windows XP Hotfix - KB885836
Windows XP Hotfix - KB888113
Windows XP Hotfix - KB888302
Windows XP Hotfix - KB889293
Windows XP Hotfix - KB890047
Windows XP Hotfix - KB890175
Windows XP Hotfix - KB890859
Windows XP Hotfix - KB890923
Windows XP Hotfix - KB891711
Windows XP Hotfix - KB891781
Windows XP Hotfix - KB892944
Windows XP Hotfix - KB893066
Windows XP Hotfix - KB893086
Windows XP Hotfix - KB897715
Windows XP Hotfix (SP2) Q322011
Windows XP Hotfix (SP2) Q327979
Windows XP Hotfix (SP2) Q814995
Windows XP Hotfix (SP2) Q815485

----------------------------------

STATUS: FINISHEDComplete scanning result of "vwsrv.exe", received in VirusTotal at 04.25.2007, 19:28:18 (CET).

Antivirus Version Update Result
AhnLab-V3 2007.4.26.0 04.25.2007 no virus found
AntiVir 7.4.0.15 04.25.2007 TR/Dldr.Sisdot
Authentium 4.93.8 04.24.2007 no virus found
Avast 4.7.981.0 04.25.2007 no virus found
AVG 7.5.0.464 04.25.2007 Downloader.Agent.KJC
BitDefender 7.2 04.25.2007 no virus found
CAT-QuickHeal 9.00 04.25.2007 TrojanDownloader.Agent.bnc
ClamAV devel-20070416 04.25.2007 Trojan.Downloader-5648
DrWeb 4.33 04.25.2007 BACKDOOR.Trojan
eSafe 7.0.15.0 04.25.2007 Win32.Agent.bnc
eTrust-Vet 30.7.3594 04.25.2007 no virus found
Ewido 4.0 04.25.2007 Downloader.Agent.bnc
FileAdvisor 1 04.25.2007 No threat detected
Fortinet 2.85.0.0 04.25.2007 W32/Agent.BNC!tr.dldr
F-Prot 4.3.2.48 04.24.2007 no virus found
F-Secure 6.70.13030.0 04.25.2007 Trojan-Downloader.Win32.Agent.bnc
Ikarus T3.1.1.5 04.25.2007 Trojan-Downloader.Win32.Agent.bnc
Kaspersky 4.0.2.24 04.25.2007 Trojan-Downloader.Win32.Agent.bnc
McAfee 5017 04.25.2007 no virus found
Microsoft 1.2405 04.25.2007 no virus found
NOD32v2 2218 04.25.2007 no virus found
Norman 5.80.02 04.25.2007 W32/Malware.PLI
Panda 9.0.0.4 04.25.2007 Adware/DriveCleaner
Prevx1 V2 04.25.2007 Polynomial.Code.Exploit
Sophos 4.16.0 04.23.2007 no virus found
Sunbelt 2.2.907.0 04.19.2007 VIPRE.Suspicious
Symantec 10 04.25.2007 no virus found
TheHacker 6.1.6.095 04.15.2007 no virus found
VBA32 3.11.4 04.25.2007 no virus found
VirusBuster 4.3.7:9 04.25.2007 no virus found
Webwasher-Gateway 6.0.1 04.25.2007 Trojan.Dldr.Sisdot


Aditional Information
File size: 7168 bytes
MD5: d763131fd9b2d02faeab6d39e5232bf4
SHA1: afc6ef942132e1df1314260a819e0ea3d9e655f0
packers: PECOMPACT
Bit9 info: http://fileadvisor.bit9.com/services...ab6d39e5232bf4
packers: PecBundle, PECompact
Prevx info: http://fileinfo.prevx.com/fileinfo.asp?PXC=c4e389519880
Sunbelt info: VIPRE.Suspicious is a generic detection for potential threats that are deemed suspicious through heuristics.

VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.
> Go to: Home Contactar En Español
--------------------------------------------------------------------------------
www.virustotal.com :: ©Hispasec Sistemas 2004-07:: e-mail info@virustotal.com
jross1943 is offline