VTASKMAN.EXE - Dangerous
%WINDIR%\VTASKMAN.EXE
Jeff's Story:
My PC had gotten a bad rootkit that my ISP antivirus software (powered by McAfee) could not detect, nor could fix.
I sought a solution on the Internet and discovered your product and tried out the trial.
You quickly found the rootkit and SAVED my PC!
I haven't had any problems since, and I'm extremely grateful.
Manual removal instructions:
MD5 of VTASKMAN.EXE = F4DFD83153E8C9088AE2DB704107060D
VTASKMAN.EXE size is 15360 bytes.
Full path on a computer: %WINDIR%\VTASKMAN.EXE
Related Files:
C:\AUTORUN.INF
C:\PAINT
[PATHNAME WITH A STRING SHARE]\VDW20.EXE
[PATHNAME WITH A STRING SHARE]\VDWTRIG20.EXE
%WINDIR%\VTASKMAN.ICO
[PATHNAME WITH A STRING SHARE]\VMSINF16H.EXE
[PATHNAME WITH A STRING SHARE]\VMSINFO32.EXE
[PATHNAME WITH A STRING SHARE]\VSAPISVR.EXE
%PROGRAMFILES%\INTERNET EXPLORER\CONNECTION WIZARD\VICWCONN1.EXE
%PROGRAMFILES%\INTERNET EXPLORER\CONNECTION WIZARD\VICWCONN2.EXE
%PROGRAMFILES%\INTERNET EXPLORER\CONNECTION WIZARD\VICWRMIND.EXE
%PROGRAMFILES%\INTERNET EXPLORER\CONNECTION WIZARD\VICWTUTOR.EXE
%PROGRAMFILES%\INTERNET EXPLORER\CONNECTION WIZARD\VINETWIZ.EXE
%PROGRAMFILES%\INTERNET EXPLORER\CONNECTION WIZARD\VISIGNUP.EXE
%PROGRAMFILES%\INTERNET EXPLORER\VIEDW.EXE
%PROGRAMFILES%\MSN\MSNCOREFILES\INSTALL\MSN9COMPONENTS\VDIGCORE.EXE
%PROGRAMFILES%\MSN\MSNCOREFILES\INSTALL\MSN9COMPONENTS\VMSNCLI.EXE
%PROGRAMFILES%\MSN\MSNCOREFILES\INSTALL\VMSNSUSII.EXE
%PROGRAMFILES%\MSN\MSNIA\VMSNIASVC.EXE
%PROGRAMFILES%\MSN\MSNIA\VPRESTP.EXE
%PROGRAMFILES%\MSN\MSNINSTALLER\VMSNINST.EXE
%PROGRAMFILES%\NETMEETING\VCB32.EXE
%PROGRAMFILES%\NETMEETING\VCONF.EXE
%PROGRAMFILES%\NETMEETING\VWB32.EXE
%PROGRAMFILES%\OUTLOOK EXPRESS\VMSIMN.EXE
%PROGRAMFILES%\OUTLOOK EXPRESS\VOEMIG50.EXE
%PROGRAMFILES%\OUTLOOK EXPRESS\VSETUP50.EXE
%PROGRAMFILES%\OUTLOOK EXPRESS\VWAB.EXE
%PROGRAMFILES%\OUTLOOK EXPRESS\VWABMIG.EXE
%PROGRAMFILES%\WEB PUBLISH\VWPWIZ.EXE
%PROGRAMFILES%\WINDOWS MEDIA PLAYER\VMIGRATE.EXE
%PROGRAMFILES%\WINDOWS MEDIA PLAYER\VMPLAYER2.EXE
%PROGRAMFILES%\WINDOWS MEDIA PLAYER\VSETUP_WM.EXE
%PROGRAMFILES%\WINDOWS MEDIA PLAYER\VWMPLAYER.EXE
%PROGRAMFILES%\WINDOWS NT\ACCESSORIES\VWORDPAD.EXE
%PROGRAMFILES%\WINDOWS NT\PINBALL\VPINBALL.EXE
%PROGRAMFILES%\WINDOWS NT\VDIALER.EXE
%PROGRAMFILES%\WINDOWS NT\VHYPERTRM.EXE
%PROGRAMFILES%\WINPCAP\VRPCAPD.EXE
%PROGRAMFILES%\WINPCAP\VUNINSTALL.EXE
%WINDIR%\CACHE\ADOBE READER 6.0.1\ENUBIG\VINSTMSIA.EXE
%WINDIR%\CACHE\ADOBE READER 6.0.1\ENUBIG\VINSTMSIW.EXE
%WINDIR%\CACHE\ADOBE READER 6.0.1\ENUBIG\VSETUP.EXE
%WINDIR%\MICROSOFT.NET\FRAMEWORK\V1.0.3705\VINSTALLUTIL.EXE.CONFIG
%WINDIR%\MICROSOFT.NET\FRAMEWORK\V1.0.3705\VREGSVCS.EXE.CONFIG
%WINDIR%\MICROSOFT.NET\FRAMEWORK\V1.1.4322\VGACUTIL.EXE.CONFIG
%WINDIR%\MICROSOFT.NET\FRAMEWORK\V1.1.4322\VREGSVCS.EXE.CONFIG
%WINDIR%\MICROSOFT.NET\FRAMEWORK\V2.0.50727\VAPPLAUNCH.EXE
%WINDIR%\MICROSOFT.NET\FRAMEWORK\V2.0.50727\VASPNET_COMPILER.EXE
%WINDIR%\MICROSOFT.NET\FRAMEWORK\V2.0.50727\VASPNET_REGBROWSERS.EXE
%WINDIR%\MICROSOFT.NET\FRAMEWORK\V2.0.50727\VASPNET_REGIIS.EXE
%WINDIR%\MICROSOFT.NET\FRAMEWORK\V2.0.50727\VASPNET_REGSQL.EXE
%WINDIR%\MICROSOFT.NET\FRAMEWORK\V2.0.50727\VASPNET_REGSQL.EXE.CONFIG
%WINDIR%\MICROSOFT.NET\FRAMEWORK\V2.0.50727\VASPNET_STATE.EXE
%WINDIR%\MICROSOFT.NET\FRAMEWORK\V2.0.50727\VASPNET_WP.EXE
%WINDIR%\MICROSOFT.NET\FRAMEWORK\V2.0.50727\VCASPOL.EXE
%WINDIR%\MICROSOFT.NET\FRAMEWORK\V2.0.50727\VIEEXEC.EXE.CONFIG
%WINDIR%\MICROSOFT.NET\FRAMEWORK\V2.0.50727\VCSC.EXE
%WINDIR%\MICROSOFT.NET\FRAMEWORK\V2.0.50727\VCSC.EXE.CONFIG
%WINDIR%\MICROSOFT.NET\FRAMEWORK\V2.0.50727\VCVTRES.EXE
%WINDIR%\MICROSOFT.NET\FRAMEWORK\V2.0.50727\VDFSVC.EXE
%WINDIR%\MICROSOFT.NET\FRAMEWORK\V2.0.50727\VIEEXEC.EXE
%WINDIR%\MICROSOFT.NET\FRAMEWORK\VNETFXSBS10.EXE
%WINDIR%\MSAGENT\VAGENTSVR.EXE
%WINDIR%\MUI\VMUISETUP.EXE
%WINDIR%\PCHEALTH\HELPCTR\BINARIES\VHELPCTR.EXE
%WINDIR%\PCHEALTH\UPLOADLB\BINARIES\VUPLOADM.EXE
%SYSTEM%\VACCWIZ.EXE
%WINDIR%\VHH.EXE
%WINDIR%\VNOTEPAD.EXE
%WINDIR%\VREGEDIT.EXE
%WINDIR%\VTASKMAN.EXE
%WINDIR%\VTWUNK_16.EXE
%WINDIR%\VTWUNK_32.EXE
%WINDIR%\VWINHELP.EXE
%WINDIR%\VWINHLP32.EXE