1 2 Previous Next 10 Replies Latest reply on Jul 22, 2012 12:24 PM by exbrit

    McAfee doesn't find and stop but Emsisoft and Kaspersky finds exactly!!!

      There is new online Virus, when you go some websites it freezes your screen and blocks your computer and they ant money to solve (remove) this Virus.
      You have to go some places to buy a special paycard and write that code into that web page which appears only on your computer...

       

      McAfee does nothing!!!

      As an IT Expert I reccomend my clients to buy McAfee, sometimes recommend to buy DELL Systems which comes with McAfee...

       

      Please find below that virus information which I created via EMSISOFT (emsisoft.de) and picture of Virus!

       

       

      Emsisoft Emergency Kit - Version 2.0
      Last update: 18.07.2012 09:38:56

      Scan settings:

      Scan type: Deep Scan
      Objects: Rootkits, Memory, Traces, C:\
      Scan archives: On
      ADS Scan: On

      Scan start: 21.07.2012 22:08:56

      C:\Users\Aras\AppData\Roaming\toolplugin\toolbar.dll  detected: Adware.Win32.Agent.AMN!E1
      C:\Users\Aras\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\41\4595eca9-4c32c8c a -> cryptosuite.class  detected: Trojan-Downloader.Java.Agent!E2
      C:\Users\Aras\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\36\50a0d64-319d62e6 -> a\Data.class  detected: Trojan.Java.Downloader!E2
      C:\Users\Aras\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\19\77271c13-223269c 2 -> t6a\t6b.class  detected: Exploit.Java.Blacole!E2
      C:\Users\Aras\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\19\77271c13-223269c 2 -> t6a\t6d.class  detected: Trojan-Downloader.Java.Agent!E2
      C:\Users\Aras\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\19\77271c13-223269c 2 -> t6a\t6c.class  detected: Exploit.Java.CVE-2012!E2
      C:\Users\Aras\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\19\77271c13-223269c 2 -> t6a\t6a.class  detected: Exploit.Java.Blacole!E2
      C:\Users\Aras\AppData\Local\Temp\goempthnhvhggp.exe  detected: Trojan.Ransom.Win32.Foreign.AMN!E1
      C:\Users\Aras\AppData\Local\Temp\kptufvtqtdyevqli.exe  detected: Trojan.Ransom.Win32.Foreign.AMN!E1
      C:\Users\Aras\AppData\Local\Temp\npkglqqllbg.exe  detected: Trojan.Ransom.Win32.Foreign.AMN!E1
      C:\Users\Aras\AppData\Local\Temp\rgnygtgcuex.exe  detected: Trojan.Ransom.Win32.Foreign.AMN!E1
      C:\Users\Aras\AppData\Local\Temp\tmp1d9f8839.bat  detected: Virus.BAT.Deleter!E2
      C:\Users\Aras\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\U70104IF\index[1].htm  detected: Exploit.JS.Blacole!E2
      C:\Users\Aras\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\4A9IXF4T\index[1].htm  detected: Exploit.JS.Blacole!E2
      C:\Users\Aras\AppData\Local\MediaGet2\libvlc.dll  detected: Riskware.Downloader.Win32.MediaGet.AMN!E1
      C:\Users\Aras\AppData\Local\MediaGet2\mediaget-admin-proxy.exe  detected: Riskware.Downloader.Win32.MediaGet.AMN!E1

      Scanned 617381
      Found 16

      Scan end: 21.07.2012 22:35:08
      Scan time: 0:26:12

      C:\Users\Aras\AppData\Local\MediaGet2\libvlc.dll Deleted Riskware.Downloader.Win32.MediaGet.AMN!E1
      C:\Users\Aras\AppData\Local\MediaGet2\mediaget-admin-proxy.exe Deleted Riskware.Downloader.Win32.MediaGet.AMN!E1
      C:\Users\Aras\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\U70104IF\index[1].htm Deleted Exploit.JS.Blacole!E2
      C:\Users\Aras\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\4A9IXF4T\index[1].htm Deleted Exploit.JS.Blacole!E2
      C:\Users\Aras\AppData\Local\Temp\tmp1d9f8839.bat Deleted Virus.BAT.Deleter!E2
      C:\Users\Aras\AppData\Local\Temp\goempthnhvhggp.exe Deleted Trojan.Ransom.Win32.Foreign.AMN!E1
      C:\Users\Aras\AppData\Local\Temp\kptufvtqtdyevqli.exe Deleted Trojan.Ransom.Win32.Foreign.AMN!E1
      C:\Users\Aras\AppData\Local\Temp\npkglqqllbg.exe Deleted Trojan.Ransom.Win32.Foreign.AMN!E1
      C:\Users\Aras\AppData\Local\Temp\rgnygtgcuex.exe Deleted Trojan.Ransom.Win32.Foreign.AMN!E1
      C:\Users\Aras\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\19\77271c13-223269c 2 -> t6a\t6c.class Deleted Exploit.Java.CVE-2012!E2
      C:\Users\Aras\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\36\50a0d64-319d62e6 -> a\Data.class Deleted Trojan.Java.Downloader!E2
      C:\Users\Aras\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\41\4595eca9-4c32c8c a -> cryptosuite.class Deleted Trojan-Downloader.Java.Agent!E2
      C:\Users\Aras\AppData\Roaming\toolplugin\toolbar.dll Deleted Adware.Win32.Agent.AMN!E1

      Deleted 13

        1 2 Previous Next