DIVXX.EXE - Dangerous
DIVXX.EXE
Jeff's Story:
My PC had gotten a bad rootkit that my ISP antivirus software (powered by McAfee) could not detect, nor could fix.
I sought a solution on the Internet and discovered your product and tried out the trial.
You quickly found the rootkit and SAVED my PC!
I haven't had any problems since, and I'm extremely grateful.
Manual removal instructions:
DIVXX.EXE is known as: Trojan-PSW.Win32.Dybalom.dhc [Kaspersky Lab] packed with UPX [Kaspersky Lab].
MD5 of DIVXX.EXE = 925F371C99176022DCDB5B451FD865AA
DIVXX.EXE size is 1199034 bytes.
Full path on a computer: %WINDIR%\WEB\DIVXX.EXE
Related Files:
%WINDIR%\WEB\COMMEND.CMD
%DESKTOPDIR%\DEMO.LNK
%DESKTOPDIR%\PNG2ICON.LNK
%APPDATA%\XENOCODE\SANDBOX\DIVX\9.20.0.11\2011.03.07T13.39\VIRTUAL\STUBEXE\8.0.1112\@PROFILE@\LOCAL SETTINGS\TEMP\DEZEND.EXE
%TEMP%\DIVX.EXE
%TEMP%\PNG2ICON SETUP LOG.TXT
%PROGRAMS%\PNG2ICON\UNINSTALL PNG2ICON.LNK
%PROGRAMFILES%\PNG2ICON\DEMO.EXE
%PROGRAMFILES%\PNG2ICON\LUA5.1.DLL
%PROGRAMFILES%\PNG2ICON\PNG2ICON.EXE
%PROGRAMFILES%\PNG2ICON\UNINS000.DAT
%PROGRAMFILES%\PNG2ICON\UNINS000.EXE
%PROGRAMFILES%\PNG2ICON\UNINSTALL\IRIMG1.JPG
%PROGRAMFILES%\PNG2ICON\UNINSTALL\IRIMG2.JPG
%PROGRAMFILES%\PNG2ICON\UNINSTALL\UNINSTALL.DAT
%PROGRAMFILES%\PNG2ICON\UNINSTALL\UNINSTALL.XML
%PROGRAMFILES%\PNG2ICON\UNINSTALL.EXE
%WINDIR%\WEB\DIVXX.EXE