Jump to content

USBDeview.exe (Trojan.FakeAlert)

Guest remixed

Recommended Posts

Guest remixed

FP? I know Nirsoft have something of a history of being flagged by security software but this is the first from MBAM. Download URL....

www.nirsoft.net/utils/usb_devices_view.html I await your judgement.

23/03/2009 20:34:20

mbam-log-2009-03-23 (20-34-08).txt

Scan type: Quick Scan

Objects scanned: 68966

Time elapsed: 5 minute(s), 2 second(s)

Memory Processes Infected: 0

Memory Modules Infected: 0

Registry Keys Infected: 0

Registry Values Infected: 0

Registry Data Items Infected: 0

Folders Infected: 0

Files Infected: 1

Memory Processes Infected:

(No malicious items detected)

Memory Modules Infected:

(No malicious items detected)

Registry Keys Infected:

(No malicious items detected)

Registry Values Infected:

(No malicious items detected)

Registry Data Items Infected:

(No malicious items detected)

Folders Infected:

(No malicious items detected)

Files Infected:

C:\USBDeview.exe (Trojan.FakeAlert) -> No action taken.

Link to post
Share on other sites

Storing exes in root is a bad idea as malware is just about all that runs from there and because of this we don't let much of anything run from there .

Move the exe to another location (even c:\applications would be fine) and see if we still flag it .

Link to post
Share on other sites

Guest remixed

Apologies for the log, it's been such a time since i had a possible Fp i wasn't up to speed. Unfortunately, re-scanning showed no infections even though the file remains. Of course i'll move the fle, i should know better (getting slack). Cheers

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.