Jump to content

AutoCAD FPs


siketa

Recommended Posts

Likely more ACAD 2007 false positives... Previous weekly full scans (more than 1 year's worth) did not report any infected files. I am unable to attach the files for review in that my client emailed only the log which is pasted below:

 

<begin>

Malwarebytes Anti-Malware (PRO) 1.75.0.1300
www.malwarebytes.org

Database version: v2013.11.02.04

Windows XP Service Pack 3 x86 NTFS
Internet Explorer 8.0.6001.18702
Bob :: BOBPC [administrator]

Protection: Disabled

11/3/2013 11:06:01 AM
MBAM-log-2013-11-03 (14-39-33).txt

Scan type: Full scan (C:\|)
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 574297
Time elapsed: 3 hour(s), 3 minute(s), 39 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs|C:\PROGRAM FILES\AUTOCAD 2007\SENDDMPRES.DLL (Trojan.Downloader.BD) -> Data: 1 -> No action taken.

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 8
C:\WINDOWS\Installer\6577d.msi (Trojan.Downloader.BD) -> No action taken.
C:\WINDOWS\Installer\{5783F2D7-5001-0409-0002-0060B0CE6BBA}\Acad162_icon.exe (Trojan.Downloader.BD) -> No action taken.
C:\Program Files\AutoCAD 2007\acgsConfigRes.dll (Trojan.Downloader.BD) -> No action taken.
C:\Program Files\AutoCAD 2007\AcVisualStylesManagerRes.dll (Trojan.Downloader.BD) -> No action taken.
C:\Program Files\AutoCAD 2007\senddmpRes.dll (Trojan.Downloader.BD) -> No action taken.
C:\Program Files\AutoCAD 2007\acad.exe (Trojan.Downloader.BD) -> No action taken.
C:\Program Files\AutoCAD 2007\acadres.dll (Trojan.Downloader.BD) -> No action taken.
C:\Program Files\AutoCAD 2007\WSCommCntrUI1Res.dll (Trojan.Downloader.BD) -> No action taken.

<end>

 

If needed, I will submit a zipped file containing the referenced files.

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.