redhat
Mad and Furious
My Computer has been infected with BackDoor.SdBot2.RMI.
I have AVG Antivirus 7.5 with the latest updates. Recently I started getting Threat Detection warnings from AVG. It finds that the file "C:\Windows\System32\eraseme_*****" is infected with the trojan BackDoor.SdBot2.RMI. But a full system scan finds nothing. The file can be healed too, but after around 1 hour it reappears with a new number after the '_'. Please help me on how to remove this infection from the computer
I did a complete scan of the infected file, with the online scanning of www.virustotal.com. Here are the results I got:
I have AVG Antivirus 7.5 with the latest updates. Recently I started getting Threat Detection warnings from AVG. It finds that the file "C:\Windows\System32\eraseme_*****" is infected with the trojan BackDoor.SdBot2.RMI. But a full system scan finds nothing. The file can be healed too, but after around 1 hour it reappears with a new number after the '_'. Please help me on how to remove this infection from the computer
I did a complete scan of the infected file, with the online scanning of www.virustotal.com. Here are the results I got:
Code:
Aditional Information
File size: 117388 bytes
MD5: b8fc70577502a49e6e4d0bdbff455a32
SHA1: c067abf8d352ec41f5e769bf0f473fb69018f6b8
Code:
Antivirus Result
AhnLab-V3 no virus found
AntiVir HEUR/Crypted
Authentium could be a corrupted executable file
Avast Win32:Sdbot-4285
AVG no virus found
BitDefender no virus found
CAT-QuickHeal no virus found
ClamAV no virus found
DrWeb BackDoor.IRC.Sdbot.984
eSafe Suspicious Trojan/Worm
eTrust-Vet Win32/Petribot.AGX
Ewido no virus found
FileAdvisor no virus found
Fortinet no virus found
F-Prot no virus found
F-Secure Backdoor.Win32.SdBot.bdu
Ikarus no virus found
Kaspersky Backdoor.Win32.SdBot.bdu
McAfee W32/Sdbot.worm.gen.m
Microsoft no virus found
NOD32v2 IRC/SdBot
Norman W32/SDBot.APKM
Panda Suspicious file
Prevx1 no virus found
Sophos no virus found
Sunbelt no virus found
Symantec W32.Spybot.Worm
TheHacker no virus found
UNA Backdoor.SdBot.AE0A
VBA32 BackDoor.IRC.Sdbot.984
VirusBuster no virus found
Webwasher-Gateway Heuristic.Crypted
Last edited: