FraudTool.XPAntivirus.ld

Description: Rogue Security Program
Risk Level: High
Date of First Occurence: Wednesday, July 23, 2008
Software Developer: (unknown)
Brief Info: Rogue/Suspect Anti-Spyware Product "Rogue/Suspect" means that these products are of unknown, questionable, or dubious value as anti-spyware protection.
Removal: This threat can be removed using "Spyware Terminator"

SCAN & REMOVE NOW »

Geographical Distribution of Threat "FraudTool.XPAntivirus.ld"

Threat Info

View All

Detected Items

  1. Detected Files: %SYSDIR%\scui.cpl MD5: 65ACC1DE2DCC9A14DC5EDA4B8332A11E Size:833 MD5: 4995F303F7C20B1E896D12F2DDDA36B1 Size:49373 MD5: 07BE8D53143E9493114B6ECFB6FDEF17 Size:23846 MD5: B69DAF8D44CBBB438DD86240C4960D07 Size:78336 MD5: 1C75AFB81BA06A83E4B16E94FD7B0F63 Size:77312 MD5: 2E96F5118471DD06C8B55E8CA68EB410 MD5: FC6C0180AFAB649C102AA13C31D7FD93 Size:76288
  2. Detected Files with variable Filenames: MD5: 2E96F5118471DD06C8B55E8CA68EB410 Size: 78336 %SYSDIR%\scui.cpl %SystemDiskRoot%\System Volume Information\_restore{6834B86C-C746-4D53-86D8-0630C3F3B625}\RP441\A0154224.cpl %SystemDiskRoot%\Qoobox\Quarantine\C\WINDOWS\system32\scui.cpl.vir %SystemDiskRoot%\System Volume Information\_restore{063A976B-8ECB-4E20-B27F-2B40C2CB26DF}\RP637\A0135024.cpl %SystemDiskRoot%\System Volume Information\_restore{052D99FF-1BB6-416D-888A-BF613D09013F}\RP280\A0059062.cpl %SystemDiskRoot%\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP2\A0004026.cpl %SystemDiskRoot%\System Volume Information\_restore{0F749E51-0C54-407A-B69B-C8707913E9DB}\RP104\A0040210.cpl %ALLUSERS_APPDATA%\Kaspersky Lab\AVP7\PdmHist\89c.1180F13201C90318.history\0000004a.bak %SystemDiskRoot%\System Volume Information\_restore{7E620D8B-25AB-40DF-9BF8-9A6DBBBAADDA}\RP117\A0077154.cpl %SystemDiskRoot%\System Volume Information\_restore{7E620D8B-25AB-40DF-9BF8-9A6DBBBAADDA}\RP117\A0076140.cpl %SystemDiskRoot%\System Volume Information\_restore{7E620D8B-25AB-40DF-9BF8-9A6DBBBAADDA}\RP116\A0076116.cpl and next 22 variations.

Detecting items list:

  1. Files by Name %SYSDIR%\scui.cpl
  2. Files by MD5 MD5: 2E96F5118471DD06C8B55E8CA68EB410 Size: 78336 MD5: F02260F84CA6997F78F6844503461AAD Size: 204431

« Go to Software Database