Jump to content

netmars

Members
  • Posts

    29
  • Joined

  • Last visited

Everything posted by netmars

  1. Here it is. OriginClientService.zip
  2. Hello, i just want to report that after newest database update, i got this threat detection: Malwarebytes Anti-Malware www.malwarebytes.org Scan Date: 9. 11. 2015 Scan Time: 19:01 Logfile: Administrator: Yes Version: 2.2.0.1024 Malware Database: v2015.11.09.05 Rootkit Database: v2015.11.04.02 License: Free Malware Protection: Disabled Malicious Website Protection: Disabled Self-protection: Disabled OS: Windows 8.1 CPU: x64 File System: NTFS User: Netmars Scan Type: Threat Scan Result: Completed Objects Scanned: 346914 Time Elapsed: 6 min, 46 sec Memory: Enabled Startup: Enabled Filesystem: Enabled Archives: Enabled Rootkits: Enabled Heuristics: Enabled PUP: Enabled PUM: Enabled Processes: 0 (No malicious items detected) Modules: 0 (No malicious items detected) Registry Keys: 1 Trojan.MalPack, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\Origin Client Service, , [bb3e57244c3fc86e9f1d1632fa06bb45], Registry Values: 0 (No malicious items detected) Registry Data: 0 (No malicious items detected) Folders: 0 (No malicious items detected) Files: 1 Trojan.MalPack, G:\Games\Origin\ORIGINCLIENTSERVICE.EXE, , [bb3e57244c3fc86e9f1d1632fa06bb45], Physical Sectors: 0 (No malicious items detected) (end)
  3. Here it is. HitmanPro_20141113_1636.log
  4. It seems like there is some kind of problem. I left scan run for more than 4 hours and it was still "scanning" files hanging in C:\Programdata\application data\.... it is as if scan was in some kind of loop (see scan.jpg). When i viewed folders with option to show hidden system files, there were many shortcut folders but i was unable to open any of them, because of "access denied". What is meaning of this?
  5. i see no issues right now, but even before i didnt notice any bad behaviour. Only found this problem thanks to random scan with MBAM and it reported trojan. Addition.txt FRST.txt
  6. ok, hele is result. zoek-results.log
  7. Hi, here are logs. mbar-log-2014-11-13 (10-07-00).txt system-log.txt
  8. Hello, yes i waited for reply, so i still be glad for your assistance to remove any remaining harmful stuff.
  9. Hello, here are new logs. Addition.txt FRST.txt zoek-results.log
  10. Okay, thanks again for your support!
  11. Ok, done. Can i ask, why is there red colored row? isnt it bad too?
  12. Hello, ok here is update on this topic, resuming from https://forums.malwarebytes.org/index.php?/topic/160411-false-positive/?p=903726 Can i ask for help to remove anything harmful in my pc. Thanks.
  13. to David H. Lipman: i do not understand what do you mean.
  14. Oh, ok, thank you very much for your help!
  15. Yes, nothing suspicious reported from Avast at all, even when i directly scan those files... And no, i never used any bitcoin miner apps or anything like it. And i did not notice any bad behaviour, but problem is, i have pretty powerful computer which is quite new (Core i7-4790K, 16 GB RAM and GTX 970). So i cant be so sure about computer not having any slowdowns, i just didnt notice anything for now.
  16. Btw i have no clue what created those files.
  17. Hey, thank you for response. Hele are all hidden files from roaming folder + hidden kernel folder + C:\Windows\66588 file 66588.rar kernel.rar Roaming.rar
  18. Hello, malwarebytes anti-malware detected trojan.agent.gen in C:\users\username\appdata\roaming\smsvchost.exe. But Virus Total seems ok (only 1/54 reported trojan). https://www.virustotal.com/cs/file/96b3f5dc84ed4031677ec126bf1fda205197c0af62c25b9ace20eee30b2164f0/analysis/1415085984/ So is it false positive and its ok? I attached file itself and test logs. Thanks! SMSvcHost.rar Addition.txt aswMBR.txt FRST.txt malwarebites.txt
  19. In addition: here is Virus Total results: https://www.virustotal.com/cs/file/96b3f5dc84ed4031677ec126bf1fda205197c0af62c25b9ace20eee30b2164f0/analysis/1415085984/ and suspicious file itself: http://s000.tinyupload.com/download.php?file_id=12517921326218993731&t=1251792132621899373107903
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.