Jump to content

False Malware Finding?


Recommended Posts

Hi

 

I have recently installed Malwarebytes software. During a quick scan it quarantined Firefoxsetup.exe  which I removed. The Firefox... has been on my computer for a long time but was never detected by my anti-virus software Trend Micro Titanium Maximum Security program. I did a full scan after this and nothing was found however two days later I did another quick scan with Malwarebytes and it quarantined another file NoRiftRifeDelux.zip that was already on my computer when I did the inital scan but it wasn't detected. I contacted the person I received the program from and he informed me the software is certified clean with macafee antispiware.

I saved the log and went back to the main menu. When I returned to the quarantine section the NoRiftRifeDelux.zip file had been removed but I didn't remove it, it was just gone.  When I searched for the NoRiftRifeDelux.zip file on my computer I found it where I had put it so I tried to open it. Malwarebytes blocked it and it was back in the quarantine section again. Should the program be doing this? Is the NoRiftRifeDelux.zip file, which I have attached the log and the NoRiftRifeDelux.zip file here, really a Trojan as claimed by the Malwarebytes program? If so why wasn't it detected in the first two scans being the quick and full scan? If not then why is the program behaving in this way?

 

Hoping you can assist with this issue.

 

Thankyou

 

MBAM-log-2013-07-08 (18-52-17).txt

NoRiftRifeDeluxe.zip

Link to post
Share on other sites

Hi and welcome Matrixmalware: :)

 

Thanks for reporting this.

(IIRC there was a FP for a a legit firefox setup.exe file many, many months ago, but nothing recently - so you'd want to double check to be sure you're getting your Firefox from the only official source >>HERE<<.)

 

This pinned topic includes the instructions for running a "developer mode" scan that will help the engineers to confirm whether or not it's a FP: Please read before reporting a false positive

Then please post the requested info (including the zip file of the file in question)  >>HERE<<.

 

The MBAM staff will determine whether the detections you report are or are not FPs.

 

Thanks!

 

daledoc1

 

Link to post
Share on other sites

Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.