ip.exe - Dangerous
%sysdir%\ip.exe
Jeff's Story:
My PC had gotten a bad rootkit that my ISP antivirus software (powered by McAfee) could not detect, nor could fix.
I sought a solution on the Internet and discovered your product and tried out the trial.
You quickly found the rootkit and SAVED my PC!
I haven't had any problems since, and I'm extremely grateful.
Manual removal instructions:
%SysDir%\ip.exe is Trojan/Backdoor.
Kill the process %SysDir%\ip.exe and remove %SysDir%\ip.exe from Windows startup.
Malware: video-player.exe
Removed: C:\WINDOWS\system32\ip.exe
Classification:Antivirus Version Last Update Result
F-Secure 9.0.15370.0 2010.03.01 Trojan.Generic.KD.422
Kaspersky 7.0.0.125 2010.03.01 Trojan-Downloader.Win32.Genome.aeih
McAfee 5906 2010.02.28 Generic Downloader.x!dcq
Microsoft 1.5502 2010.02.28 -
NOD32 4903 2010.02.28 Win32/TrojanDownloader.Delf.PJB
Additional information
File size: 663040 bytes
MD5 : f652bc1aa3a94df9a986605edb9408df
SHA1 : b7b923d976983f96e68e6d0f747ebd9042b9bd35
SHA256: ae529a940d0a264da77e57795e87d6d9d376f487c867ba9bbf53feadd3ff2d3e
http://greatis.com/blog/how-to-remove-ma...