yingzi.exe - Dangerous

yingzi.exe

Jeff's Story:

My PC had gotten a bad rootkit that my ISP antivirus software (powered by McAfee) could not detect, nor could fix.

I sought a solution on the Internet and discovered your product and tried out the trial.

You quickly found the rootkit and SAVED my PC!

I haven't had any problems since, and I'm extremely grateful.

Manual removal instructions:

yingzi.exe
We suggest you to remove yingzi.exe from your computer as soon as possible.
Yingzi.exe is Trojan/Backdoor.
Kill the process yingzi.exe and remove yingzi.exe from Windows startup.

Malware: C:\sand-box\yingzi.exe
Removed: C:\WINDOWS\System32\taoba_1.dll
C:\WINDOWS\System32\srcile.dll

Classification:Antivirus Version Last Update Result
F-Secure 9.0.15370.0 2010.01.22 Suspicious:W32/Malware!Gemini
Kaspersky 7.0.0.125 2010.01.21 -
Microsoft 1.5302 2010.01.21 -
NOD32 4795 2010.01.22 a variant of Win32/Agent.QNU
Symantec 20091.2.0.41 2010.01.22 Downloader

Additional information
File size: 55808 bytes
MD5 : 15aad38d9588b5b40cdb755919e67ed9
SHA1 : d83733c61a3e5cd37f46d3878a2ffb7c0db3c787
SHA256: bf9ca935c32edc4fe1665fd34d083bacdffc1eab67a7ad5f2099d5637f13fce9

http://greatis.com/blog/how-to-remove-ma...

Remove yingzi.exe now!