Jump to content
sempr0n

Samsung Kies application

Recommended Posts

i have recently installed the Samsung Kies application an when I run MBAM it identifies 80 objects as Trojan.Agent. Many of the objects identified are prefixed "muz" which is a common prefix in the Samsung kies application. I would be grateful if you could investigate and reply as to whether this is a false positive or malware.

MBAM /developer log follows...

Thanks

Simon

Malwarebytes' Anti-Malware 1.46

www.malwarebytes.org

Database version: 4377

Windows 5.1.2600 Service Pack 3

Internet Explorer 8.0.6001.18702

01/08/2010 16:01:39

mbam-log-2010-08-01 (16-01-39).txt

Scan type: Quick scan

Objects scanned: 224469

Time elapsed: 42 minute(s), 37 second(s)

Memory Processes Infected: 0

Memory Modules Infected: 0

Registry Keys Infected: 50

Registry Values Infected: 0

Registry Data Items Infected: 0

Folders Infected: 1

Files Infected: 29

Memory Processes Infected:

(No malicious items detected)

Memory Modules Infected:

(No malicious items detected)

Registry Keys Infected:

HKEY_CLASSES_ROOT\TypeLib\{a043783e-4380-4270-b770-3b457c7d4cdf} (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

HKEY_CLASSES_ROOT\Interface\{616ee024-f676-45e5-8933-5be48fa9a60e} (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

HKEY_CLASSES_ROOT\AppID\{99806add-c5ef-4632-a3d0-3e778b051f94} (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

HKEY_CLASSES_ROOT\CLSID\{99806add-c5ef-4632-a3d0-3e778b051f94} (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

HKEY_CLASSES_ROOT\TypeLib\{e7c28ebf-91a9-411a-9293-ce9deb0fd816} (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

HKEY_CLASSES_ROOT\CLSID\{b792a203-fb64-4909-aefe-a9efb2697e55} (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

HKEY_CLASSES_ROOT\TypeLib\{067b5d39-578c-4d25-a119-a475e24d5f95} (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

HKEY_CLASSES_ROOT\Interface\{039b7df6-3103-48f0-bd6f-24291bc7e637} (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

HKEY_CLASSES_ROOT\Interface\{1bd69f2f-96b4-41b3-accf-c46ed55e3a58} (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

HKEY_CLASSES_ROOT\Interface\{2194682f-acb0-45ce-b900-3fcd2d13bfb5} (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

HKEY_CLASSES_ROOT\Interface\{24d4e9fc-5097-483b-b0fe-6e3ef28bff4a} (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

HKEY_CLASSES_ROOT\Interface\{382be372-d636-451d-8fa8-54c51569ad88} (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

HKEY_CLASSES_ROOT\Interface\{3a60359d-0eb2-4437-ad15-a08bee794c14} (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

HKEY_CLASSES_ROOT\Interface\{46902815-1008-40c8-ba07-4f3d2276e6d2} (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

HKEY_CLASSES_ROOT\Interface\{777421f7-878b-426e-b7f7-593cbe6b543d} (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

HKEY_CLASSES_ROOT\Interface\{777421f7-878b-426e-b7f7-593cbe6b543f} (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

HKEY_CLASSES_ROOT\Interface\{7876dc2b-dd2e-48d3-b182-6e261698aadb} (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

HKEY_CLASSES_ROOT\Interface\{9b7984e0-1b06-434d-a233-5323ab08f05f} (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

HKEY_CLASSES_ROOT\Interface\{a0f36689-35ea-4b9b-8b16-2236b0581557} (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

HKEY_CLASSES_ROOT\Interface\{b1ce34ce-dfa2-4a5e-a99a-5fdef5021994} (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

HKEY_CLASSES_ROOT\Interface\{ce9cc21b-4f0c-4da5-9a2b-cb4d6a631228} (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

HKEY_CLASSES_ROOT\Interface\{e0778c77-10e3-4ab3-9077-fe845de401b4} (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

HKEY_CLASSES_ROOT\Interface\{e5b630a9-c1e3-42f3-b58b-9afa3662c010} (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

HKEY_CLASSES_ROOT\CLSID\{02aab237-8e24-46ce-bd71-ab4f4df52e3c} (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

HKEY_CLASSES_ROOT\CLSID\{0d37433c-8c73-458e-a7d6-15de1cec0f91} (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

HKEY_CLASSES_ROOT\CLSID\{11921be2-a0a6-4532-b708-76537c9bb86d} (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

HKEY_CLASSES_ROOT\CLSID\{37f08bce-c7b2-48e8-88b0-666bc1c58c36} (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

HKEY_CLASSES_ROOT\CLSID\{5b2f6a77-8a7e-4aa7-b6d7-fac7657f58bd} (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

HKEY_CLASSES_ROOT\CLSID\{5e395ec3-30f4-4a0e-a7f6-8878c60e8eb1} (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

HKEY_CLASSES_ROOT\CLSID\{6126a5f4-a096-4f8a-a272-c54fd7f63c17} (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

HKEY_CLASSES_ROOT\CLSID\{69f34ba8-7ed4-4911-97f4-4b88adf25441} (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

HKEY_CLASSES_ROOT\CLSID\{7aa18156-1945-45af-9ac6-f1a9787ace06} (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

HKEY_CLASSES_ROOT\CLSID\{841643d5-d102-4b24-917c-0caf6d9dfbf1} (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

HKEY_CLASSES_ROOT\CLSID\{b359b6ea-e892-4018-8cd2-4ecc9bd477a2} (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

HKEY_CLASSES_ROOT\CLSID\{cbabf241-9875-46c8-bb0b-6f90cc8d12fe} (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

HKEY_CLASSES_ROOT\CLSID\{e8cd244f-1836-4ffe-af58-1776580d1622} (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

HKEY_CLASSES_ROOT\CLSID\{f39659cf-699b-47ef-bb19-c15a84bbb143} (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

HKEY_CLASSES_ROOT\CLSID\{fa150b05-7510-471d-9afb-467b94462fde} (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

HKEY_CLASSES_ROOT\TypeLib\{b3774019-f8c2-4a55-b075-ff0529b79c31} (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

HKEY_CLASSES_ROOT\Interface\{b373722b-f571-43a6-b51d-15766456ca91} (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

HKEY_CLASSES_ROOT\Interface\{ba79865a-c1ef-402f-9706-609eb2fb2360} (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

HKEY_CLASSES_ROOT\Interface\{bae10fb0-a2ac-4c36-92ce-14bd30be0bb6} (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

HKEY_CLASSES_ROOT\CLSID\{f251bed0-0544-42c7-abbc-93556e513238} (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

HKEY_CLASSES_ROOT\CLSID\{f1aa2cad-0e89-4239-85e5-a91b69c5862d} (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

HKEY_CLASSES_ROOT\CLSID\{f92ace0c-4692-4793-bc37-eabc55da988a} (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

HKEY_CLASSES_ROOT\CLSID\{f9458b32-119c-4301-b86d-53a845894d5b} (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

HKEY_CLASSES_ROOT\CLSID\{f4a40134-ed3b-4069-bc86-ed9733bd3217} (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

HKEY_CLASSES_ROOT\CLSID\{f9a9f058-a535-45d3-8414-e80cafd6d31f} (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

HKEY_CLASSES_ROOT\CLSID\{ff7bcf7c-1d4b-4717-a39a-0db1a107b62b} (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

HKEY_CLASSES_ROOT\CLSID\{f817f096-9e9d-45fc-be44-11cef283faea} (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

Registry Values Infected:

(No malicious items detected)

Registry Data Items Infected:

(No malicious items detected)

Folders Infected:

C:\WINDOWS\system32\System32 (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

Files Infected:

C:\WINDOWS\system32\System32\cis-2.4.dll (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

C:\WINDOWS\system32\System32\issacapi_bs-2.3.dll (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

C:\WINDOWS\system32\System32\issacapi_pe-2.3.dll (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

C:\WINDOWS\system32\System32\issacapi_se-2.3.dll (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

C:\WINDOWS\system32\System32\MACXMLProto.dll (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

C:\WINDOWS\system32\System32\MaDRM.dll (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

C:\WINDOWS\system32\System32\MaJGUILib.dll (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

C:\WINDOWS\system32\System32\MaJUtilLib.dll (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

C:\WINDOWS\system32\System32\MAMACExtract.dll (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

C:\WINDOWS\system32\System32\MASetupCaller.dll (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

C:\WINDOWS\system32\System32\MASetupCleaner.exe (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

C:\WINDOWS\system32\System32\MaXMLProto.dll (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

C:\WINDOWS\system32\System32\MK_Lyric.dll (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

C:\WINDOWS\system32\System32\MSCLib.dll (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

C:\WINDOWS\system32\System32\MSFLib.dll (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

C:\WINDOWS\system32\System32\MSLUR71.dll (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

C:\WINDOWS\system32\System32\msvcp60.dll (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

C:\WINDOWS\system32\System32\MTTELECHIP.dll (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

C:\WINDOWS\system32\System32\MTXSYNCICON.dll (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

C:\WINDOWS\system32\System32\muzaf1.dll (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

C:\WINDOWS\system32\System32\muzapp.dll (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

C:\WINDOWS\system32\System32\muzapp.exe (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

C:\WINDOWS\system32\System32\muzdecode.ax (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

C:\WINDOWS\system32\System32\muzeffect.ax (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

C:\WINDOWS\system32\System32\muzmp4sp.ax (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

C:\WINDOWS\system32\System32\muzmpgsp.ax (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

C:\WINDOWS\system32\System32\muzoggsp.ax (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

C:\WINDOWS\system32\System32\muzwmts.dll (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

C:\WINDOWS\system32\System32\psapi.dll (Trojan.Agent) -> No action taken. [F8D5E8971ABBD49543D126CD7CACE554]

Share this post


Link to post
Share on other sites

This looks like a 32bit installer may have caused some problems on your 64bit system. I am looking into this.

Share this post


Link to post
Share on other sites
This looks like a 32bit installer may have caused some problems on your 64bit system. I am looking into this.

thanks, but my system is a Dell dimension 3100 32 bit pentium

Share this post


Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now

  • Recently Browsing   0 members

    No registered users viewing this page.

×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.