balu1.exe - Dangerous

balu1.exe

Jeff's Story:

My PC had gotten a bad rootkit that my ISP antivirus software (powered by McAfee) could not detect, nor could fix.

I sought a solution on the Internet and discovered your product and tried out the trial.

You quickly found the rootkit and SAVED my PC!

I haven't had any problems since, and I'm extremely grateful.

Manual removal instructions:

balu1.exe
We suggest you to remove balu1.exe from your computer as soon as possible.
Balu1.exe is Trojan/Backdoor.
Kill the process balu1.exe and remove balu1.exe from Windows startup.

Malware:
C:\sand-box\balu1.exe
Removed:
C:\WINDOWS\system32\kjgk.sko

Detected by UnHackMe:
Item Name: shell
Author: Unknown
Related File: Explorer.exe rundll32.exe kjgk.sko ibawtl
Type: System.ini
Removal Results: Success
Number of reboot: 1

Classification:Antivirus Version Last Update Result
F-Secure 9.0.15370.0 2010.04.08 Trojan.Generic.3585032
Kaspersky 7.0.0.125 2010.04.08 Trojan-Dropper.Win32.Agent.buxt
Microsoft 1.5605 2010.04.08 Trojan:Win32/Oficla.M
NOD32 5011 2010.04.08 Win32/Oficla.FM

Additional information
File size: 20480 bytes
MD5 : 39bc1b8fa157260f6fcfd2e59d35f918
SHA1 : bdde24991c89fd9cc447189c7bbc2962d88202ab
SHA256: ed78c6166d37b36ea538529db50614d5a3a5dd54b4fae22ecd477914e1c929fb

http://greatis.com/blog/how-to-remove-ma...

Remove balu1.exe now!