I downloaded your no terrian.. and this is what i get.. is this safe? MOD? I NEED A MOD TO APPROVE IF THIS IS OKAY OR SOMEONE TO APPROVE THIS.. My Investigation says its not good file download.
Antivirus Version Last Update Result
a-squared 4.5.0.24 2009.08.28 -
AhnLab-V3 5.0.0.2 2009.08.28 -
AntiVir 7.9.1.7 2009.08.28 -
Antiy-AVL 2.0.3.7 2009.08.24 -
Authentium 5.1.2.4 2009.08.29 W32/Downloader.H.gen!Eldorado
Avast 4.8.1335.0 2009.08.28 -
AVG 8.5.0.406 2009.08.28 -
BitDefender 7.2 2009.08.29 -
CAT-QuickHeal 10.00 2009.08.28 -
ClamAV 0.94.1 2009.08.28 -
Comodo 2124 2009.08.29 -
DrWeb 5.0.0.12182 2009.08.28 -
eSafe 7.0.17.0 2009.08.27 Suspicious File
eTrust-Vet 31.6.6707 2009.08.28 -
F-Prot 4.5.1.85 2009.08.29 W32/Downloader.H.gen!Eldorado
F-Secure 8.0.14470.0 2009.08.28 -
Fortinet 3.120.0.0 2009.08.28 -
GData 19 2009.08.29 -
Ikarus T3.1.1.68.0 2009.08.28 -
Jiangmin 11.0.800 2009.08.28 -
K7AntiVirus 7.10.830 2009.08.28 -
Kaspersky 7.0.0.125 2009.08.29 -
McAfee 5723 2009.08.28 -
McAfee+Artemis 5723 2009.08.28 -
McAfee-GW-Edition 6.8.5 2009.08.29 -
Microsoft 1.5005 2009.08.28 -
NOD32 4378 2009.08.28 -
Norman 2009.08.28 -
nProtect 2009.1.8.0 2009.08.28 -
Panda 10.0.2.2 2009.08.28 -
PCTools 4.4.2.0 2009.08.28 -
Prevx 3.0 2009.08.29 -
Rising 21.44.40.00 2009.08.28 -
Sophos 4.45.0 2009.08.29 -
Sunbelt 3.2.1858.2 2009.08.29 -
Symantec 1.4.4.12 2009.08.29 -
TheHacker 6.3.4.3.390 2009.08.28 -
TrendMicro 8.950.0.1094 2009.08.28 -
VBA32 3.12.10.10 2009.08.28 -
ViRobot 2009.8.28.1907 2009.08.28 -
VirusBuster 4.6.5.0 2009.08.28 -
W32/Peregar.C is a trojan. The trojan will infect Windows systems.
This trojan is either downloaded from the Internet or dropped by other malware applications.
Upon execution, the trojan drops the following files:
kiasys.dll in the Windows folder,
[Random Characters] in Current Users' Temp folder,
bind[1].htm in Temporary Internet Files folder,
pic[2].htm in Temporary Internet Files folder,
search[4].htm in Temporary Internet Files folder.
The dropped file kiasys.dll is injected to explorer.exe and iexplorer.exe processes.
The trojan opens the google search page with the search string sex world.
The first URL in the google result page will be hijacked and redirected to
The following message will be embedded between the first and second search result.
Other names of W32/Peregar.C Trojan:
This trojan is also known as Trojan-Downloader.Win32.Peregar.c, W32/Downloader.H.gen!Eldorado, Mal/DelpDldr-E.