Hi,
I purchased a brand new, sealed VERBATIM SDHC card. When I put it in my computer it had the files autorun.inf and j83uv.exe. I checked the net and got lots of virus hits for j83uv. I ran avast free over the exe file and got a virus hit. Is Verbatim selling virus from the factory?
can you upload the file to www.virustotal.com and test it with 43 malware scanners
when you have the result, copy the url in the address bar and post it here so we can see the result
Complete scanning result of “j83uv.exe”, processed in VirusTotal at 12/21/2010 08:54:23 (CET).
[ file data ]
name…: j83uv.exe
size…: 129024
md5…: 475d851a33f809d1e690f08f6405f164
sha1…: 831eeaf525386f3916ee854f6e18b61871d52fb4
peid…: ASPack v2.12
[ scan result ]
AhnLab-V3 2010.12.20.06/20101220 found [Win-Trojan/Magania.129024.AF]
AntiVir 7.11.0.110/20101220 found [TR/Crypt.ASPM.Gen]
Antiy-AVL 2.0.3.7/20101221 found [Trojan/Win32.Magania.gen]
Avast 4.8.1351.0/20101220 found [Win32:Malware-gen]
Avast5 5.0.677.0/20101220 found [Win32:Malware-gen]
AVG 9.0.0.851/20101221 found [SHeur3.AIIW]
BitDefender 7.2/20101221 found [Trojan.Generic.4480924]
CAT-QuickHeal 11.00/20101221 found [Worm.AutoRun.hdn]
ClamAV 0.96.4.0/20101221 found [PUA.Packed.ASPack]
Command 5.2.11.5/20101221 found [W32/MalwareF.EFNC]
Comodo 7134/20101221 found [TrojWare.Win32.Trojan.Agent.Gen]
DrWeb 5.0.2.03300/20101221 found [Trojan.PWS.Gamania.27534]
Emsisoft 5.1.0.1/20101221 found [Trojan-GameThief.Win32.Magania!IK]
eSafe 7.0.17.0/20101219 found [Win32.PWSFrethog]
eTrust-Vet 36.1.8051/20101220 found [Win32/Frethog.HPJ]
F-Prot 4.6.2.117/20101220 found [W32/MalwareF.EFNC]
F-Secure 9.0.16160.0/20101221 found [Trojan.Generic.4480924]
Fortinet 4.2.254.0/20101219 found nothing
GData 21/20101221 found [Trojan.Generic.4480924]
Ikarus T3.1.1.90.0/20101221 found [Trojan-GameThief.Win32.Magania]
Jiangmin 13.0.900/20101221 found [Trojan/PSW.Magania.anxw]
K7AntiVirus 9.73.3296/20101220 found [Password-Stealer]
Kaspersky 7.0.0.125/20101221 found [Trojan-GameThief.Win32.Magania.dmim]
McAfee 5.400.0.1158/20101221 found [PWS-Gamania.b!k]
McAfee-GW-Edition 2010.1C/20101220 found [PWS-Gamania.b!k]
Microsoft 1.6402/20101221 found [PWS:Win32/Frethog.gen!H]
NOD32 5719/20101220 found [probably a variant of Win32/PSW.OnLineGames.POG]
Norman 6.06.12/20101220 found [W32/Suspicious_Gen2.DMFDN]
nProtect 2010-12-21.01/20101221 found [Trojan/W32.Agent.129024.DM]
Panda 10.0.2.7/20101220 found [W32/Lineage.KDB]
PCTools 7.0.3.5/20101221 found [Trojan.Gen]
Prevx 3.0/20101221 found [Medium Risk Malware]
Rising 22.79.00.03/20101221 found [Trojan.Win32.Generic.521E9533]
Sophos 4.60.0/20101221 found [Mal/Taterf-B]
SUPERAntiSpyware 4.40.0.1006/20101221 found nothing
Symantec 20101.3.0.103/20101221 found [Trojan.Gen]
TheHacker 6.7.0.1.104/20101221 found [Trojan/Magania.dmim]
TrendMicro 9.120.0.1004/20101221 found [TROJ_GAMETHI.GSW]
TrendMicro-HouseCall 9.120.0.1004/20101221 found [TROJ_GAMETHI.GSW]
VBA32 3.12.14.2/20101220 found [BScope.Trojan-Dropper.Inject]
VIPRE 7742/20101221 found [BehavesLike.Win32.Malware.bse (vs)]
ViRobot 2010.12.20.4210/20101221 found [JS.S.Agent.129024]
VirusBuster 13.6.104.2/20101220 found [Trojan.Magania.Gen!Pac.3]
From the VT scan result it sure looks as they are, you may send them a mail with a link to this
if they have good customer support you should get a new card......and maybe something extra for the trouble ;)
You only need to install software on your computer and you can be sure that you will be protected.
Not only does the computer is protected, but USB flash drive or other memory card. will automatically be cleaned.
To me, this is the best program for this purpose that can be found on the net, and it is free.
I had contacted verbatim. They suggest that the most reasonable explanation is that my machine was the source of infection. I did some further checking and there is no evidence of infection on any of the machines on my local network or removable storage media.
From the VT scan result it sure looks as they are, you may send them a mail with a link to this
if they have good customer support you should get a new card......and maybe something extra for the trouble ;)