February 2nd, 2009 Malware, Service
This is an harmful program.
Name: jgok
Filename: jgok.exe
Command: C:\WINDOWS\system32\jgok.exe
Startup Type: Service
RSIT/Combofix Line:
Description: unknown malware
February 2nd, 2009 Malware, Service
This is an harmful program.
Name: reat
Filename: reat.exe
Command: C:\Program Files\reat.exe
Startup Type: Service
RSIT/Combofix Line:
S2 Brewser;Compvter Brewser; C:\Program Files\reat.exe [2008-10-01 718336]
Description: Unknown malware
February 2nd, 2009 Driver, Trojan
This is an harmful program.
Name: systemntmi
Filename: systemntmi.sys
Command: C:\WINDOWS\system32\drivers\systemntmi.sys
Startup Type: Driver
RSIT/Combofix Line:
S2 systemntmi;systemntmi; \??\C:\WINDOWS\system32\drivers\systemntmi.sys []
Description: Trojan, VirTool:Win32/Cutwail.gen
February 2nd, 2009 Driver, Trojan
This is an harmful program.
Name: securentm
Filename: securentm.sys
Command: C:\WINDOWS\system32\drivers\securentm.sys
Startup Type: Driver
RSIT/Combofix Line:
S2 securentm;securentm; \??\C:\WINDOWS\system32\drivers\securentm.sys []
Description: Trojan, VirTool:Win32/Cutwail.gen [microsoft]
February 2nd, 2009 Driver, Trojan
This is an harmful program.
Name: port135sik
Filename: port135sik.sys
Command: C:\WINDOWS\system32\drivers\port135sik.sys
Startup Type: Driver
Combofix/RSIT Line:
S2 port135sik;port135sik; \??\C:\WINDOWS\system32\drivers\port135sik.sys []
Description: Trojan, VirTool:Win32/Cutwail.gen [microsoft]
February 2nd, 2009 Driver, Trojan
This is an harmful program.
Name: ksi32sk
Filename: ksi32sk.sys
Command: C:\WINDOWS\system32\drivers\ksi32sk.sys
Startup Type: Driver
RSIT/Combofix Line:
S2 ksi32sk;ksi32sk; \??\C:\WINDOWS.0\system32\drivers\ksi32sk.sys []
Description: Trojan, VirTool:Win32/Cutwail.gen [microsoft]
February 2nd, 2009 Driver, Trojan
This is an harmful program.
Name: fips32cup
Filename: fips32cup.sys
Registry key: key
Command: C:\WINDOWS\system32\drivers\fips32cup.sys
Startup Type: Driver
RSIT/Combofix Line:
S2 fips32cup;fips32cup; \??\C:\WINDOWS\system32\drivers\fips32cup.sys []
Description: Trojan component, VirTool:Win32/Cutwail.gen [microsoft]
February 2nd, 2009 Driver, Trojan
This is an harmful program.
Name: amd64si
Filename: amd64si.sys
Command: C:\WINDOWS\system32\drivers\amd64si.sys
Startup Type: Driver
RSIT/Combofix Line:
S2 amd64si;amd64si; \??\C:\WINDOWS\system32\drivers\amd64si.sys []
Description: unknown trojan component
February 2nd, 2009 autorun.inf, Trojan
This is an harmful program.
Name: copy
Filename: copy.exe
Registry key:
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{e7c5715d-5709-11dd-93a8-0080483fe4ed}
Command: C:\WINDOWS.0\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL copy.exe
CLSID: e7c5715d-5709-11dd-93a8-0080483fe4ed
Startup Type: autorun.inf
Description: autorun.inf trojan component
How to remove: How to remove trojans that uses autorun.inf file
February 2nd, 2009 SafeBoot, Trojan
This is an harmful program.
Name: java2
Filename: java2.sys
Registry key:
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\java2.sys
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\java2.sys
Command: C:\Windows\System32\java2.sys
Startup Type: SafeBoot registry key
Description: Backdoor:Win32/Haxdoor [Microsoft], Trojan-Spy.Win32.Goldun [Ikarus]