Jump to content

MobaXterm Malware.Generic.874958581 ?


biomembrain

Recommended Posts

  • Staff

 i installed from the website and i dont get that file in the install. Can you please zip and attach this file?

 

C:\Users\admin\Documents\MobaXterm\slash\bin\busybox.exe

or go to virustotal.com

upload that file and let it scan

then paste the link to the report here.

 

 

Edited by shadowwar
Link to post
Share on other sites

I deleted it from Quarantine, the same day. However, I remember how it happened. I pressed the button, start a new connection, in the middle of the MobaXterm program. I only used the program a couple of times, and that's how it happened. Yea, I remember pressing that button, when it happened. Maybe restarting the computer, and relaunching the program does something... I am not sure.

Other users reported the same issues with MobaXterm, and it's in this False Positive forum. I am not sure what others concluded.

Thanks for your help @shadowwar. Have nice food, and nice drinks. You deserve the best. Thank you.  ( ˘▽˘)っ tea, coffee, water, juice,.

Link to post
Share on other sites

On 5/28/2020 at 12:43 PM, emptyramenbx said:

Hi y'all!

I've been working with MobaXTerm with sometime. I use it to connect to my local media server. 
I was attempting to organize my files today in the middle of one of the scans, when I saw that Malwarebytes reported something "MXT" on Quarantine.
I quarantined it and did not care. Currently performing a system-wide scan, but I remembered that MXT can be MobaXTerm. Guess I was right, because something called bin/bash was quarantined.
Is this is a false positive? Just for some information: I do have some scripts on the server to facilitate the process of organizing files on the remote machine.
If I execute a bash script on this machine, can the Malwarebytes scan be impacted? Thanks.

malwarebytes.PNG

 

This topic has the suspected files.

Link to post
Share on other sites

Okay, I deleted the 'first setup files' for MobaXTerm... and then I reinstalled it. So it's like a new fresh install.

busybox.exe is in the MobaXterm folder, in the Documents directory. I double clicked busybox.exe, and Malwarebytes didn't detect anything.

Yea, I installed the non-portable version of MobaXterm, the right download button. If you search busy in Windows Explorer while in: Documents --> MobaXTerm folder. You should be able to find this file.

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.