Jump to content

False Positive - ozfamily.exe?


Recommended Posts

MalwareBytes Professional, running in limited user mode, with active protection enabled.

Did a Runas administrator, running mbam.exe /developer from command prompt.

Malwarebytes' Anti-Malware


Database version: 7274

Windows 5.1.2600 Service Pack 3

Internet Explorer 7.0.5730.13

7/26/2011 4:36:22 PM

mbam-log-2011-07-26 (16-36-07).txt

Scan type: Full scan (C:\|)

Objects scanned: 218897

Time elapsed: 21 minute(s), 40 second(s)

Memory Processes Infected: 0

Memory Modules Infected: 0

Registry Keys Infected: 0

Registry Values Infected: 0

Registry Data Items Infected: 0

Folders Infected: 0

Files Infected: 2

Memory Processes Infected:

(No malicious items detected)

Memory Modules Infected:

(No malicious items detected)

Registry Keys Infected:

(No malicious items detected)

Registry Values Infected:

(No malicious items detected)

Registry Data Items Infected:

(No malicious items detected)

Folders Infected:

(No malicious items detected)

Files Infected:

c:\documents and settings\ebraun\local settings\application data\Mozilla\Firefox\Profiles\fc0rg4g9.default\Cache\9234fcf6d01 (Trojan.Qhosts) -> No action taken. [28422bf1be42db251c12228d7f867789]

c:\utils\OZFamily.exe (Trojan.Qhosts) -> No action taken. [4f1b75a7649cb64ad955f4bb5da80af6]

This was from an industrial parts supplier, as part of their online catalog. It consists of some EXE file downloads, an Activex control and a website. I'm a computer service provider for a customer who needs access to this. Note that I copied this file to the c:\utils location above.


Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.