TCPOSMOD.EXE - Dangerous
TCPOSMOD.EXE
Jeff's Story:
My PC had gotten a bad rootkit that my ISP antivirus software (powered by McAfee) could not detect, nor could fix.
I sought a solution on the Internet and discovered your product and tried out the trial.
You quickly found the rootkit and SAVED my PC!
I haven't had any problems since, and I'm extremely grateful.
Manual removal instructions:
TCPOSMOD.EXE is known as: Backdoor.Trojan [PCTools] Backdoor.Trojan [Symantec] Backdoor.Win32.DSSdoor.a [Kaspersky Lab] BackDoor-APQ.gen [McAfee] Troj/Bdoor-APQ [Sophos] Backdoor:Win32/DSSdoor [Microsoft] Backdoor.Win32.DSSdoor [Ikarus].
MD5 of TCPOSMOD.EXE = 2A8647EF467286FC858D9408C17603EA
TCPOSMOD.EXE size is 396800 bytes.
Full path on a computer: %WINDIR%\TCPOSMOD.EXE
Related Files:
%APPDATA%\MACROMEDIA\FLASH PLAYER\MACROMEDIA.COM\REDIRECTSO.SOL
%APPDATA%\MACROMEDIA\FLASH PLAYER\MACROMEDIA.COM\SUPPORT\FLASHPLAYER\SYS\#MACROMEDIA.COM\SETTINGS.SOL
%APPDATA%\MACROMEDIA\FLASH PLAYER\MACROMEDIA.COM\SUPPORT\FLASHPLAYER\SYS\#VX.ROO.COM\SETTINGS.SOL
%APPDATA%\MACROMEDIA\FLASH PLAYER\MACROMEDIA.COM\SUPPORT\FLASHPLAYER\SYS\SETTINGS.SOL
%PROGRAMFILES%\HTTP BRUTE FORCER\EXCITE.DEF
%PROGRAMFILES%\HTTP BRUTE FORCER\HEADERS.TXT
%PROGRAMFILES%\HTTP BRUTE FORCER\HTTP BRUTE FORCER.EXE
%PROGRAMFILES%\HTTP BRUTE FORCER\PASS.LST
%PROGRAMFILES%\HTTP BRUTE FORCER\VBRUN60SP5.EXE
%WINDIR%\BHWIN.SYS
%SYSTEM%\README-NET.DOC
%SYSTEM%\REGOBJ.DLL
%SYSTEM%\SOCKETX.DLL
%SYSTEM%\SOCKETX.OCX
%WINDIR%\TCPOSMOD.EXE
%WINDIR%\UAWIN.DLL