BINDME.EXE - Dangerous

BINDME.EXE

Jeff's Story:

My PC had gotten a bad rootkit that my ISP antivirus software (powered by McAfee) could not detect, nor could fix.

I sought a solution on the Internet and discovered your product and tried out the trial.

You quickly found the rootkit and SAVED my PC!

I haven't had any problems since, and I'm extremely grateful.

Manual removal instructions:

bindme.exe
We suggest you to remove BINDME.EXE from your computer as soon as possible.
BINDME.EXE is known as: Trojan.MSIL.Agent.ete [Kaspersky Lab].
MD5 of BINDME.EXE = 138A87C83BAA86D4C0DDA9A62D3C2F1E
BINDME.EXE size is 532480 bytes.
Full path on a computer: %TEMP%\IXP000.TMP\BINDME.EXE
Related Files:
%COMMONPROGRAMS%\SANDBOXIE\RUN ANY PROGRAM SANDBOXED.LNK
%COMMONPROGRAMS%\SANDBOXIE\RUN WEB BROWSER SANDBOXED.LNK
%COMMONPROGRAMS%\SANDBOXIE\RUN WINDOWS EXPLORER SANDBOXED.LNK
%COMMONPROGRAMS%\SANDBOXIE\SANDBOXIE CONTROL.LNK
%COMMONPROGRAMS%\SANDBOXIE\SANDBOXIE START MENU.LNK
%COMMONPROGRAMS%\SANDBOXIE\UNINSTALL SANDBOXIE.LNK
%APPDATA%\CHRTMP
%TEMP%\IXP000.TMP\BINDME.EXE
%TEMP%\IXP000.TMP\RUNDLI32.DLL
%WINDIR%\INSTALLER\SANDBOXIEINSTALL32.EXE
%TEMP%\NSB2.TMP
%TEMP%\NSR3.TMP\INSTALLTYPE.INI
%TEMP%\NSR3.TMP\IOSPECIAL.INI
%TEMP%\NSR3.TMP\LANGDLL.DLL
%TEMP%\NSR3.TMP\SYSTEM.DLL
%TEMP%\NSR3.TMP\WARNING.INI
%PROGRAMFILES%\EXPLORER.EXE
%PROGRAMFILES%\SANDBOXIE\LICENSE.EXE
%PROGRAMFILES%\SANDBOXIE\LICENSE.TXT
%PROGRAMFILES%\SANDBOXIE\MANIFEST0.TXT
%PROGRAMFILES%\SANDBOXIE\MANIFEST1.TXT
%PROGRAMFILES%\SANDBOXIE\MANIFEST2.TXT
%PROGRAMFILES%\SANDBOXIE\QUICKLAUNCH.LNK
%PROGRAMFILES%\SANDBOXIE\SANDBOXIEBITS.EXE
%PROGRAMFILES%\SANDBOXIE\SANDBOXIECRYPTO.EXE
%PROGRAMFILES%\SANDBOXIE\SANDBOXIEDCOMLAUNCH.EXE
%PROGRAMFILES%\SANDBOXIE\SANDBOXIERPCSS.EXE
%PROGRAMFILES%\SANDBOXIE\SANDBOXIEWUAU.EXE
%PROGRAMFILES%\SANDBOXIE\SBIECTRL.EXE
%PROGRAMFILES%\SANDBOXIE\SBIEDLL.DLL
%PROGRAMFILES%\SANDBOXIE\SBIEDRV.SYS
%PROGRAMFILES%\SANDBOXIE\SBIEMSG.DLL
%PROGRAMFILES%\SANDBOXIE\SBIESVC.EXE
%PROGRAMFILES%\SANDBOXIE\START.EXE
%PROGRAMFILES%\SANDBOXIE\TEMPLATES.INI

Remove BINDME.EXE now!