FraudTool.XPAntivirus.ld
|
Description:
|
Rogue Security Program
|
|
Risk Level:
|
High
|
|
Date of First Occurence:
|
Wednesday, July 23, 2008
|
|
Software Developer:
|
(unknown)
|
|
Brief Info:
|
Rogue/Suspect Anti-Spyware Product
"Rogue/Suspect" means that these products are of unknown, questionable, or dubious value as anti-spyware protection.
|
|
Removal:
|
This threat can be removed using "Spyware
Terminator"
|
REMOVER SPYWARE »
Geographical Distribution of Threat "FraudTool.XPAntivirus.ld"
Threat Info
View All
Detected Items
- Detected Files:
%SYSDIR%\scui.cpl
MD5: 65ACC1DE2DCC9A14DC5EDA4B8332A11E Size:833
MD5: 4995F303F7C20B1E896D12F2DDDA36B1 Size:49373
MD5: 07BE8D53143E9493114B6ECFB6FDEF17 Size:23846
MD5: B69DAF8D44CBBB438DD86240C4960D07 Size:78336
MD5: 1C75AFB81BA06A83E4B16E94FD7B0F63 Size:77312
MD5: 2E96F5118471DD06C8B55E8CA68EB410
MD5: FC6C0180AFAB649C102AA13C31D7FD93 Size:76288
- Detected Files with variable Filenames:
MD5: 2E96F5118471DD06C8B55E8CA68EB410 Size: 78336
%SYSDIR%\scui.cpl
%SystemDiskRoot%\System Volume Information\_restore{6834B86C-C746-4D53-86D8-0630C3F3B625}\RP441\A0154224.cpl
%SystemDiskRoot%\Qoobox\Quarantine\C\WINDOWS\system32\scui.cpl.vir
%SystemDiskRoot%\System Volume Information\_restore{063A976B-8ECB-4E20-B27F-2B40C2CB26DF}\RP637\A0135024.cpl
%SystemDiskRoot%\System Volume Information\_restore{052D99FF-1BB6-416D-888A-BF613D09013F}\RP280\A0059062.cpl
%SystemDiskRoot%\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP2\A0004026.cpl
%SystemDiskRoot%\System Volume Information\_restore{0F749E51-0C54-407A-B69B-C8707913E9DB}\RP104\A0040210.cpl
%ALLUSERS_APPDATA%\Kaspersky Lab\AVP7\PdmHist\89c.1180F13201C90318.history\0000004a.bak
%SystemDiskRoot%\System Volume Information\_restore{7E620D8B-25AB-40DF-9BF8-9A6DBBBAADDA}\RP117\A0077154.cpl
%SystemDiskRoot%\System Volume Information\_restore{7E620D8B-25AB-40DF-9BF8-9A6DBBBAADDA}\RP117\A0076140.cpl
%SystemDiskRoot%\System Volume Information\_restore{7E620D8B-25AB-40DF-9BF8-9A6DBBBAADDA}\RP116\A0076116.cpl
and next 22 variations.
Detecting items list:
- Files by Name
%SYSDIR%\scui.cpl
- Files by MD5
MD5: 2E96F5118471DD06C8B55E8CA68EB410 Size: 78336
MD5: F02260F84CA6997F78F6844503461AAD Size: 204431
«
Go to Software Database