this program adds its self to the trused site on execution
cdnrep.reimage.com
then downloads 30,000+ files inc fake.trojan,virtumonde.
(most off the files are locked,i had to use a file killer to remove all)
then screws up your hosts files.
the said files wernt picked up by s&d alought it may off duped the deciction (sp) as it scans your manchine for all files ect..
its suppsed to repair your manchine hence the expected 30,000+ files
the fake trojan installs on reboot as does virtumonde.
this mabye a attempt to get you pay the £40 it asks for the repair.
i was lucky i have webroot installed witch on reboot checks for malware and also alereted me to "THostsFile::SetActive call to RemoveOldCASSEntries falted" imo i dont know what this means but it happened after running that program i am not asking for help at this point as i have asked webroot,i am simply posting what happened to my manchine after running this program.
downloading the program doesnt seem to be a issiue but running it and allowing it access to your manchine does.
i did have to use another program to remove et all (fake.trojan)
i do have logs off the found files if so needed.