Jump to content

luddy

Members
  • Posts

    8
  • Joined

  • Last visited

Posts posted by luddy

  1. Sorry, I wasn't sure where to post this but my latest NIS 2014 with latest updates is detecting the following.  Is this a real issue or false detection?  Thanks!

     

    Filename: 00024957.tmp
    Threat name: Infostealer
    Full Path: c:\program files (x86)\malwarebytes anti-malware\00024957.tmp

    ____________________________

     

    Details
    Very Few Users,  Very New,  Risk High

     

     

    Origin
    Downloaded from
     Unknown

     

     

    Activity
    Actions performed: 11

     

    ____________________________

     

    On computers as of 
    2/10/2015 at 9:06:23 AM

    Last Used 
    2/10/2015 at 9:08:24 AM

    Startup Item 
    No

    Launched 
    No

    ____________________________

    Very Few Users
    Fewer than 5 users in the Norton Community have used this file.

    Very New
    This file was released less than 1 week  ago.

    High
    This file risk is high.

    Threat type: Virus. Programs that infect other programs, files, or areas of a computer by inserting themselves or attaching themselves to that medium.

     

    ____________________________

     

    Source: External Media

     

    Source File:
    00024957.tmp

     

    ____________________________

    File Actions

    Infected file: c:\program files (x86)\malwarebytes anti-malware\ 00024957.tmp Removed
    ____________________________

    Registry Actions

    Registry change: HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\ Main->Enable Browser Extensions:yes Repaired
    Registry change: HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\ Main->Enable Browser Extensions:yes Repaired
    Registry change: HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Explorer\ Advanced->Hidden:1 Repaired
    Registry change: HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Explorer\ Advanced->Hidden:1 Repaired
    Registry change: HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Explorer\ Advanced->ShowSuperHidden:1 Repaired
    Registry change: HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Explorer\ Advanced->ShowSuperHidden:1 Repaired
    Registry change: HKEY_USERS\S-1-5-21-390404729-398284926-4290371345-1001\Software\Microsoft\Internet Explorer\ Main->Enable Browser Extensions:yes Repaired
    Registry change: HKEY_USERS\S-1-5-21-390404729-398284926-4290371345-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\ Advanced->Hidden:1 Repaired
    Registry change: HKEY_USERS\S-1-5-21-390404729-398284926-4290371345-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\ Advanced->ShowSuperHidden:1 Repaired
    Registry change: HKEY_USERS\S-1-5-21-390404729-398284926-4290371345-1001\Software\Microsoft\Windows\CurrentVersion\Policies\System\ ->DisableRegistryTools:0 Repaired
    ____________________________

    File Thumbprint - SHA:
    f08ac45c00799308b31b8dede05435e4f8fde32c8af54766d59ced4a45222f99
    File Thumbprint - MD5:
    Not available

  2. Malwarebytes Anti-Malware
    www.malwarebytes.org

    Scan Date: 1/19/2015
    Scan Time: 4:54:04 PM
    Logfile:
    Administrator: Yes

    Version: 2.00.4.1028
    Malware Database: v2015.01.19.14
    Rootkit Database: v2015.01.14.01
    License: Premium
    Malware Protection: Enabled
    Malicious Website Protection: Enabled
    Self-protection: Disabled

    OS: Windows 8.1
    CPU: x64
    File System: NTFS
     

    Scan Type: Custom Scan
    Result: Completed
    Objects Scanned: 380954
    Time Elapsed: 1 min, 50 sec

    Memory: Enabled
    Startup: Enabled
    Filesystem: Enabled
    Archives: Enabled
    Rootkits: Disabled
    Heuristics: Enabled
    PUP: Enabled
    PUM: Enabled

    Processes: 0
    (No malicious items detected)

    Modules: 0
    (No malicious items detected)

    Registry Keys: 0
    (No malicious items detected)

    Registry Values: 0
    (No malicious items detected)

    Registry Data: 0
    (No malicious items detected)

    Folders: 0
    (No malicious items detected)

    Files: 1
    Backdoor.Bot, F:\Google Chrome Portable\GoogleChromePortable\App\Chrome-bin\39.0.2171.71\nacl64.exe, Quarantined, [d5758f6a573262d47b33b65754ae33cd],

    Physical Sectors: 0
    (No malicious items detected)

    (end)

Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.