Search:  

 
 
   All ForumsHot TopicsGallery






how-to block ads


 
Forums » Up and Running » Security » Security » Win32 backdoor D
Search Topic:
Share Topic:
RSS topic:
toggle:
flat / full
normal / watch
Posting:
Post a:
Post a:
SIC - System Information Collector version 2.7-1122 »
« Yahoo mail date hack  
AuthorAll Replies


CalamityJane
Premium,VIP,MVM
join:2002-08-27
Eustis, FL


edit:
March 19th, @09:47PM

reply to Mikey
Re: Win32 backdoor D

said by Mikey :

Suggestions?
1. Will have to wait for Zone Alarm to correct it. It's their move now.

2. Don't use the Microsoft Malicious Software Removal Tool (for now).

I'll see if I can find a way to get the CCleaner installer to them to examine. I just downloaded a fresh copy and only Prevx Heuristics has a possible problem with it (Heuristics can do that - have FPs). All other scanners call it clean
quote:
File ccsetup205.exe received on 03.20.2008 01:01:51 (CET)
Current status:finished
Result: 1/32 (3.13%)

Antivirus Version Last Update Result
AhnLab-V3 2008.3.19.1 2008.03.19 -
AntiVir 7.6.0.75 2008.03.19 -
Authentium 4.93.8 2008.03.19 -
Avast 4.7.1098.0 2008.03.19 -
AVG 7.5.0.516 2008.03.19 -
BitDefender 7.2 2008.03.20 -
CAT-QuickHeal 9.50 2008.03.14 -
ClamAV 0.92.1 2008.03.20 -
DrWeb 4.44.0.09170 2008.03.19 -
eSafe 7.0.15.0 2008.03.18 -
eTrust-Vet 31.3.5628 2008.03.19 -
Ewido 4.0 2008.03.19 -
F-Prot 4.4.2.54 2008.03.19 -
F-Secure 6.70.13260.0 2008.03.19 -
FileAdvisor 1 2008.03.20 -
Fortinet 3.14.0.0 2008.03.19 -
Ikarus T3.1.1.20 2008.03.19 -
Kaspersky 7.0.0.125 2008.03.20 -
McAfee 5255 2008.03.20 -
Microsoft 1.3301 2008.03.19 -
NOD32v2 2961 2008.03.20 -
Norman 5.80.02 2008.03.19 -
Panda 9.0.0.4 2008.03.18 -
Prevx1 V2 2008.03.20 Heuristic: Suspicious Hijacker
Rising 20.36.22.00 2008.03.19 -
Sophos 4.27.0 2008.03.20 -
Sunbelt 3.0.978.0 2008.03.18 -
Symantec 10 2008.03.20 -
TheHacker 6.2.92.250 2008.03.19 -
VBA32 3.12.6.3 2008.03.17 -
VirusBuster 4.3.26:9 2008.03.19 -
Webwasher-Gateway 6.6.2 2008.03.19 -
Additional information
File size: 2733520 bytes
MD5: 06ab7fd00ca2f03baf4616c40bb2c761
SHA1: 96f0796a003371529d023d4381f7d6e8e6d55f1e
PEiD: -
packers: WiseSFXDropper, WiseSFXDropper, WiseSFXDropper
Prevx info: »info.prevx.com/aboutprogramtext.···7DCE38E9

If you download the installer again check it first at VirusTotal:
»www.virustotal.com/

Check the MD5 to my file above listed
(MD5: 06ab7fd00ca2f03baf4616c40bb2c761)
If it is the same, you have the clean one (with the FP problem ZA and MSRT).

All you can do is ignore those false reports.
--
It takes a disaster to make a woman out of a female
Microsoft MVP/Windows Security 2003-2008
Proud Member of ASAP (Alliance of Security Analysis Professionals)
-
Forums » Up and Running » Security » SecuritySIC - System Information Collector version 2.7-1122 »
« Yahoo mail date hack  


Thursday, 21-Aug 04:57:18 Terms of Use | Privacy Policy | Hosting by www.nac.net - DSL,Hosting & Co-lo | feedback | contact
over 9 years online! © 1999-2008 dslreports.com.republican-creole
page compression OFF
Most commented news this week
· [99] Was FiOS a Good Idea?
· [77] Landscaping, Courtesy of AT&T?
· [76] ISPs Whine About Network Neutrality 'Paranoia'
· [68] FCC Finally Issues Comcast Throttling Order
· [56] Google Launches White Space Broadband Website
· [56] Craig Moffett: Network Upgrades Are For Ninnies
· [52] Qwest, Unions Strike Deal
· [52] Did Apple iPhone Fix Make Problems Worse?
· [49] Olympics Didn't Cause The Exaflood
· [49] AT&T Cooking Up New VoIP Product
Most people now reading
· Criss Angel revealed. [56k lookout! (broadband heavy)]
· [Speed] Comcast to throttle individual users; all protocols [Comcast HSI]
· How do you file things on your computer? [General Questions]
· Neighbor Yanks a Power Line & Voltage Overloads the Block [Home Repair & Improvement]
· Ebook websites, fraud charges, Devbill/DigitalAge/Pluto [Spam, Scam and Phishbusters]
· Fresh install of xubuntu blacks out after installing video [All Things Unix]
· Tomato/MLPPP released (evade throttle or bond two DSL lines) [TekSavvy]
· [iPhone] 2.0.2 firmware is out, Please post outcome [All things Macintosh]
· [DD-WRT] Shields Up scan shows open port [Linksys]
· Acronis True Image Home 2009 Beta Testing! [Software]