asd1.tmp.exe - Dangerous
asd1.tmp.exe
Jeff's Story:
My PC had gotten a bad rootkit that my ISP antivirus software (powered by McAfee) could not detect, nor could fix.
I sought a solution on the Internet and discovered your product and tried out the trial.
You quickly found the rootkit and SAVED my PC!
I haven't had any problems since, and I'm extremely grateful.
Manual removal instructions:
Asd1.tmp.exe is Trojan/Backdoor.
Kill the process asd1.tmp.exe and remove asd1.tmp.exe from Windows startup.
Malware: C:\sand-box\1.exe
Removed: C:\RECYCLER\S-1-5-21-8945527254-2255357064-096907189-2527\wnzip32.exe
C:\WINDOWS\system32\regedit.exe
C:\Documents and Settings\Administrator\Local Settings\Application Data\Windows Server\qvxoob.dll
C:\WINDOWS\_VOIDornnsvjibi\_VOIDd.sys
C:\Documents and Settings\Administrator\Local Settings\Temp\asr64_ldm.exe
Classification:Antivirus Version Last Update Result
F-Secure 9.0.15370.0 2010.03.07 Trojan.Generic.KD.1843
Kaspersky 7.0.0.125 2010.03.07 Trojan.Win32.Inject.ansp
McAfee 5912 2010.03.06 PWS-Zbot.gen.ak
Microsoft 1.5502 2010.03.07 TrojanDownloader:Win32/Harnig
NOD32 4922 2010.03.07 probably a variant of Win32/Kryptik.CWK
Additional information
File size: 13824 bytes
MD5 : dc64aa64a82acec65c8cb434155e28cc
SHA1 : c29ae0548083a6a2d6eb2e60bf152168c51d55c5
SHA256: 4f8b0dbfab699b0e4aa421457108d7647ef610ec81c17a2ba49a48c99e73649e
http://greatis.com/blog/how-to-remove-ma...