what kind of virus is this ?jpgutilsy.dll

well today i formated my PC because of this virus [ jpgutilsy.dll]

my system [ when infected with virus]

windows xp service pack 3
comodo firewall with optimum firewall security

quick heal anti virus [i1 more month :cry:
i also downloaded malwarebytes antimalware but it also was useless

symptoms:::

1]my every browser was takking too much time to open .[ firefox and ie8 was seriously damaged ]

2]l3 out of 10 times when i clicked i was redirected to some other websites like snap deals
this was quite noticeable when i used to click any wikipedia link obtained from Google search

3] in comodo defence plus i found that jpgutilsy.dll starts with windows and downloads some invisible data from internet
i blocked it using my firewall : after reading logs about jpgutilsy.dll i made a block-list compatible with peer block
and i was surprised that my pc was connecting to these ips when pc starts, browsers starts , browser is closed and at the shut down time unfortunately peer block was not able to block these ips when shutting down [i dont trust this peer block it sometime fail to block ips ]it was comodo firewall !!!—HOW?? well in comodo acive process list in defense plus that jpgutilsy.dll is subprocess of svcost.exe and it is connecting to internate as jpgutilsy.dll and through svcost also so in firewall i modified svocost.exe firewall seting such that it will not allow anything other than comodo secure dns ips not even windows update!

so then i installed comodo antivirus but my bad it was not able to detect it as virus

and one more thing i forgot to write that since i noticed jpgutilsy.dll was responsible to disturb my system i blocked it in defence plus but no effect it wasnot blocking it i was not able to find the jpgutilsy.dll at it original location [ as shown in defence plus c/windows/system 32/jpgutilsy.dll]

COMODO DFENCE PLUS WAS NOT ABLE TO BLOCK JPGUTILSY.DLL

COMODO WAS NOT ABLE TO SNADBOX JPGUTILSY.DLL
I SEND THIS APPLICATION TO BLOCKED LIST IN DEFENSE EPLUS
I BLOCKED IT VIA FIREWALL
CIS DIDNT DETECT IT
FIREWALL WAS ONLY ABLE TO BLOCK IT FROM CONNECTING TO INTERNET
DEFENSE + WAS NOT ABLE TO BLOCK IT OR SANDBOXED IT

WISH LIST::: COMODO SHOULD HAVE A PLUG IN OR INBUILD SYSTEM SO IT CAN IMPORT IBLOCKLIST LISTS , I KNOW PEER BLOCK DON’T WORK ON WINDOWS 7 AND VISTA MACHINE AND I DONT EVEN TRUST PEER BLOCK

PLEASE NOTE THAT WHEN I CHECKED IT ON CLOUD [ ON LINE LOOK UP ] THE RESULT WAS QUESTION MARK -UNKNOWN RESULT

I DELETED JPGUTILSY.DLL VIA DEFENSE PLUS BUT IT CAME BACK AGAIN

Hello digit01,

If possible please submit the malicious file here: Comodo Antivirus Database | Submit Files for Malware Analysis
and also mention in the comments the link to this post. Thank you!

Best regards,
FlorinG

thanks FlorinG for quick reply as i mentioned i was not able to locate this file in my pc though the path was know , not even windows search was able to find it
[ i also searched using show hidden files and folder ]

i searched on my pc manually to delete this file but i didnt find it
its like no search result

but i have submitted this file to comodo
[i set my defense + setting to paranoid mode and rebooted at the first boot up comodo unrecognized it and there was also a option send comodo for analysis which is always ticked yes ]]
but this was for 1st boot up since then jpgutilsy.dll was still running and can found in active process list , though it was in blocked list in both firewall and defense +

no other information of this file is available on Google
i also spelled the file name correctly

and please comodo and any plug in or in built service so we can import peer block list , peer block is useless i don’t trust this program
comodo firewall is best!!!

See if the following helps to get rid of the virus. Look up the virus in Killswitch (which is part of Comodo Security Essentials) or in Process Hacker, select it and right click then choose Suspend. After suspending terminate and delete it. Now reboot and see if it returns or not.