Jump to content

Rainmeter skin .exe files flagged as Trojan.Inject.AI, FP?

Recommended Posts

I ran a full scan last time yesterday, with at the time the latest DB. Today, I updated DB and ran full scan again to check if yesterday's FP(s) were fixed, and a Rainmeter skin had two .exe files flagged that were not flagged yesterday.

Log below and files attached as .zip.

Malwarebytes Anti-Malware


Database version: v2013.02.21.08

Windows 8 x64 NTFS

Internet Explorer 10.0.9200.16484

Tuomas :: BLACKHEXATOWER [administrator]

21.2.2013 22:06:26

MBAM-log-2013-02-21 (22-14-27).txt

Scan type: Full scan (E:\|)

Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM

Scan options disabled: P2P

Objects scanned: 462343

Time elapsed: 7 minute(s), 50 second(s)

Memory Processes Detected: 0

(No malicious items detected)

Memory Modules Detected: 0

(No malicious items detected)

Registry Keys Detected: 0

(No malicious items detected)

Registry Values Detected: 0

(No malicious items detected)

Registry Data Items Detected: 0

(No malicious items detected)

Folders Detected: 0

(No malicious items detected)

Files Detected: 2

E:\Documents\Rainmeter\Skins\Enigma\@Resources\Addons\FindWOEID\FindWOEID.exe (Trojan.Inject.AI) -> No action taken. [5c4057452e3dc472848327ee0ef37888]

E:\Documents\Rainmeter\Skins\Enigma\@Resources\Addons\RainFile\RainFile.exe (Trojan.Inject.AI) -> No action taken. [a3f9a5f7d794b38356b15fb63ec3b749]


21-02-2013 scan.zip

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Recently Browsing   0 members

    No registered users viewing this page.

Back to top
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.