what is this file really? i got it just an hour.
size is 0KB
Scan MBAM and Avast no detection.
what is this file really? i got it just an hour.
size is 0KB
Scan MBAM and Avast no detection.
7.TMP
Trojan.Agent/Gen-NumTemp
http://www.superantispyware.com/malwarefiles/7.TMP.html
Prevx - File info
http://www.prevx.com/filenames/4517428039466501-X1/7.TMP.html
http://www.prevx.com/filenames/X2585376901231661142-X1/7E7.TMP.EXE.html
I dunno what ive got this because im using sandboxie.
Plenty users said its a trojan.
But some said its normal file?
I dunno why Avast free and MBAM didnt detect iton scanning?
btw the file is 0KB
Run superantispyware and see if anything is found anything www.superantispyware.com
also try Hitman-PRO it has the prevx scanner http://www.surfright.nl/en/hitmanpro
Ok. Install now and updating SAS icon really a yellow bug picture?
Finish scanning. SAS
Tracking cookie found only.
No detection on 7.tmp file.
My question is how do i got this? from LAN? because this computer is network.
Can i manually delete this?
Its a virus.
I was downloading mp4 movie file. Its on the partition drive D: that’s why SAS, MBAM and Avast missed it.
I found out when i try to scan my D: using avast it pops mp4 file as a virus but avast cant quarantine it… What i did was to quick format the D: then delete C:\7.tmp and it was deleted.
I scan again using Avast on C: and D: no found.
Am i safe now?
Hi
It is a backdoor: 7.tmp is Backdoor. – (Backdoor.Win32.Packed.TDSS.v)
Please remove 7.tmp from your computer as soon as possible.
The Backdoor create the following file:
%Temp%\7.tmp
File Type: Backdoor
File Size: 78336 bytes
How to remove 7.tmp?
Delete file: %Temp%\7.tmp
You also reported it here: http://www.bleepingcomputer.com/forums/topic302472.html
and as we read from you previous post yhat you were succesful in removing it,
scan your third party software for updates and patches with Secunia PSI,
download from: http://secunia-psi.en.softonic.com/download
to no longer be vulnerable through software exploits,
polonus
But polonus may it is just a temp file lefted by application may running GMER and give us the log will be good but dont remove any rootkit reported by GMER if we dont tell you to do so
@polonus
i scan using Secunia PSI and found 1 threats. Adobe reader9.x what is this?
@polonus i scan using Secunia PSI and found 1 threats. Adobe reader9.x what is this?it means that your adobe reader is a security risk as you don`t have the latest version i would replace adobe with free foxit reader http://filehippo.com/download_foxit/
ß îáíàðóæèë ïîäîçðèòåëüíûé ôàéë BA23FE86.TMP…
Åñëè åãî ñêîïèðîâàòü â ïàïêó TEMP, òî ALTDESK íà ýòîé ìàøèíå ñ÷èòàåòñÿ çàðåãèñòðèðîâàííûì…
Îáúÿñíèòå, ïîæàëóéñòà, ÷òî ýòî çíà÷èò?
È ìîæíî ëè åãî ðàñïðîñòðàíÿòü?