Trojan.Dropper/Gen

swarfega

da Cleaner
Guru
Gold Member
VIP
Local time
4:11 PM
Messages
4,925
SuperAntiSpyware has just caught this trojan when Spybot, Malwarebytes, spyware terminator didnt. Same happened with this guy which got me thinking about SuperAntiSpyware and what its doing that the others arent doing and whether its kosher.
 

My Computer

Computer Manufacturer/Model Number
self built
OS
Windows 7 Professional 64-bit
CPU
Intel E8400 3GHz
Motherboard
Intel DX48BT2
Memory
Kingston PC3-10700H 4Gb
Graphics Card(s)
XFX Radeon HD 5850 BlackEd.
Sound Card
Asus Xonar DG
Monitor(s) Displays
2x Samsung SM-T220HD 22"
Screen Resolution
1680x1050 on two monitors
Hard Drives
OCZ Vertex 2 120gb 3.5" (OS)
Seagate Momentus XT 500gb
Samsung F3 1Tb (games)
2x Samsung F1 1Tb
PSU
Thermaltake ToughPower 850w
Case
Thermaltake Armor
Cooling
Scythe Mugen II
Keyboard
Microsoft Comfort Curve USB
Mouse
Razer Diamondback 3G
Internet Speed
8128/443
SuperAntiSpyware has just caught this trojan when Spybot, Malwarebytes, spyware terminator didnt. Same happened with this guy which got me thinking about SuperAntiSpyware and what its doing that the others arent doing and whether its kosher.

A Google says it is a legit Trojan, and Avira had a post about it a while back - TR/Dropper.Gen - Full description

SpywareWarrior recommends SUPERAntiSpyware as a tool.

It is reasonable to be concerned because the others didn't find it - that's a trick a lot of crapware uses to get you to buy their (inferior) product. In this case, it looks like it is just a bit better than the others.
 

My Computer

Computer Manufacturer/Model Number
Gateway, Toshiba Laptop, and Home Brew
OS
Windows 7 x64 HP, Windows 7 HP, Windows 7 Ult
CPU
Intel I3, Cerelon, Pentium 4 @ 3Ghz
Motherboard
Intel, Intel, Asus
Memory
8G, 3G, 3G
Graphics Card(s)
On-board Intel, On-board nVidia, nVIDIA card
Sound Card
on-board, on-board, SoundBlaster
Monitor(s) Displays
Hannspree HF237, Toshiba, SyncMaster 931B
Screen Resolution
default (all)
Hard Drives
1T internal, 320G internal, 160G internal, 1T networked
PSU
300w, unk, 650w
Case
black, black, grey
Cooling
air (all)
Keyboard
standard wired (all)
Mouse
standard wired (all)
Internet Speed
6M down, 768K up
Other Info
Home LAN through Linksys hub to 4 port and wireless switch/router. Networked HP 2600n. Wife's computer running Windows 7, and spare laptop running Ubuntu "Karmic Kola" (9.10).
yeah I keep an eye on lavasofts blog since they post warnings about false spyware programs. Thanks for the reassurance.
 

My Computer

Computer Manufacturer/Model Number
self built
OS
Windows 7 Professional 64-bit
CPU
Intel E8400 3GHz
Motherboard
Intel DX48BT2
Memory
Kingston PC3-10700H 4Gb
Graphics Card(s)
XFX Radeon HD 5850 BlackEd.
Sound Card
Asus Xonar DG
Monitor(s) Displays
2x Samsung SM-T220HD 22"
Screen Resolution
1680x1050 on two monitors
Hard Drives
OCZ Vertex 2 120gb 3.5" (OS)
Seagate Momentus XT 500gb
Samsung F3 1Tb (games)
2x Samsung F1 1Tb
PSU
Thermaltake ToughPower 850w
Case
Thermaltake Armor
Cooling
Scythe Mugen II
Keyboard
Microsoft Comfort Curve USB
Mouse
Razer Diamondback 3G
Internet Speed
8128/443
SAS is not really trying to sell you anything. It is free for the home user. I have used it for about two years, amazing program. I have saved a couple computers with it.
:geek:
 

My Computer

Computer Manufacturer/Model Number
HP dv7-1264nr
OS
Win7 ultimate 64bit
Memory
4gig
the offending program was a sidebar gadget which monitors game servers and the number of players using qstat. So I think in this case it may be safe.
 

My Computer

Computer Manufacturer/Model Number
self built
OS
Windows 7 Professional 64-bit
CPU
Intel E8400 3GHz
Motherboard
Intel DX48BT2
Memory
Kingston PC3-10700H 4Gb
Graphics Card(s)
XFX Radeon HD 5850 BlackEd.
Sound Card
Asus Xonar DG
Monitor(s) Displays
2x Samsung SM-T220HD 22"
Screen Resolution
1680x1050 on two monitors
Hard Drives
OCZ Vertex 2 120gb 3.5" (OS)
Seagate Momentus XT 500gb
Samsung F3 1Tb (games)
2x Samsung F1 1Tb
PSU
Thermaltake ToughPower 850w
Case
Thermaltake Armor
Cooling
Scythe Mugen II
Keyboard
Microsoft Comfort Curve USB
Mouse
Razer Diamondback 3G
Internet Speed
8128/443
It found Trojan.Agent/Gen in a quick scan which MBAM didn't find.
Capture.PNG
 

My Computer

Computer Manufacturer/Model Number
Samsung NP530U4B-S02IN
OS
Windows® 8 Pro (64-bit)
CPU
Intel® Core™ i5 Processor 2467M (1.60GHz, 3MB L3 Cache)
Motherboard
Samsung Electronics
Memory
6GB DDR3 System Memory at 1,333MHz (on BD 4GB + 2GB x 1)
Graphics Card(s)
AMD Radeon™ HD7550M 1GB DDR3 (Ext. Graphic)
Sound Card
Realtek High Definition Audio
Monitor(s) Displays
35.56cm (14.0) SuperBright 300nit HD LED Display
Screen Resolution
1366x768
Hard Drives
1TB S-ATA II Hard Drive (5400RPM) with ExpressCache 16GB SSD
Internet Speed
sucks
Antivirus
Microsoft Security Essentials
Browser
Google Chrome (Sync enabled)
It was the first time Ive done a full scan with SAP as well.
 

My Computer

Computer Manufacturer/Model Number
self built
OS
Windows 7 Professional 64-bit
CPU
Intel E8400 3GHz
Motherboard
Intel DX48BT2
Memory
Kingston PC3-10700H 4Gb
Graphics Card(s)
XFX Radeon HD 5850 BlackEd.
Sound Card
Asus Xonar DG
Monitor(s) Displays
2x Samsung SM-T220HD 22"
Screen Resolution
1680x1050 on two monitors
Hard Drives
OCZ Vertex 2 120gb 3.5" (OS)
Seagate Momentus XT 500gb
Samsung F3 1Tb (games)
2x Samsung F1 1Tb
PSU
Thermaltake ToughPower 850w
Case
Thermaltake Armor
Cooling
Scythe Mugen II
Keyboard
Microsoft Comfort Curve USB
Mouse
Razer Diamondback 3G
Internet Speed
8128/443
I must say that Super Anti Spyware is the Best Anti Spyware Product.
 

My Computer

Computer Manufacturer/Model Number
Samsung NP530U4B-S02IN
OS
Windows® 8 Pro (64-bit)
CPU
Intel® Core™ i5 Processor 2467M (1.60GHz, 3MB L3 Cache)
Motherboard
Samsung Electronics
Memory
6GB DDR3 System Memory at 1,333MHz (on BD 4GB + 2GB x 1)
Graphics Card(s)
AMD Radeon™ HD7550M 1GB DDR3 (Ext. Graphic)
Sound Card
Realtek High Definition Audio
Monitor(s) Displays
35.56cm (14.0) SuperBright 300nit HD LED Display
Screen Resolution
1366x768
Hard Drives
1TB S-ATA II Hard Drive (5400RPM) with ExpressCache 16GB SSD
Internet Speed
sucks
Antivirus
Microsoft Security Essentials
Browser
Google Chrome (Sync enabled)
I must say that Super Anti Spyware is the Best Anti Spyware Product.


While I havent tried all of them ( though Im sure you have Dinesh ;) ) I did download it and scanned my drives... It found one tracking cookie... Ill have to test it over a longer period of time for a fair comparison ....
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
LENOVO K450 @3.0GHZ
OS
64-bit Windows 8.1 Pro
CPU
Core(TM) i5 CPU 4330 Haswell @ 3.20GHz
Motherboard
LENOVO
Memory
12.00 GB
Graphics Card(s)
Intel(R) HD Graphics
Sound Card
Intel HD integtrated
Monitor(s) Displays
HP 25' ISP Monitor
Screen Resolution
1900/1020
Hard Drives
(1) ST1000DM003-1CH162 (2) Generic STORAGE DEVICE USB Device (3) Generic STORAGE DEVICE USB Device
Internet Speed
100mb down/10mb up
the offending program was a sidebar gadget which monitors game servers and the number of players using qstat. So I think in this case it may be safe.
This could be a 'false/positive' on SuperAntispyware's part, but if you have the .exe file you should upload it to Jotti's or Virus Total VirusTotal - Free Online Virus and Malware Scan just to make sure.

The QStat program is called "qstat" on Linux/Unix and "qstat.exe" on Windows. The Windows binary can be found in "win32/qstat.exe" of the QStat ZIP file
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Bruce ... somewhere in his 40's
OS
Windows 7 Ultimate 32bit SP1
CPU
Intel(R) Core(TM)2 Quad CPU @ 2.40GHz, 2400 MHz
Motherboard
INTEL/D975XBX2
Memory
4 GB
Graphics Card(s)
ATI Radeon HD 2600 Pro
Monitor(s) Displays
Samsung SyncMaster 914v
Screen Resolution
1280 x 1024
Hard Drives
2/500GB each ... ST3500630AS ATA Device.
One is not connected
PSU
Rocketfish 700 W
Case
G.Skill Gigabyte Chassis
Keyboard
Standard PS/2 Keyboard
Mouse
Microsoft PS/2 Mouse
Internet Speed
DSL
Antivirus
Avira Internet Security
Browser
IE 11
Other Info
ATI HDMI Audio
I am telling you guys, this program is solid. that whole " a virus has been found on your computer, click here to remove it " banner trogan....my inlaws apparently can't resist flashy blinky banners and got it on both of their computers. Put SAS on a flash drive, installed,scanned and........ vwalah ! I love it. IMHO, better than anything out there, paid or not.
 

My Computer

Computer Manufacturer/Model Number
HP dv7-1264nr
OS
Win7 ultimate 64bit
Memory
4gig
God watches over infants and click monkeys ... :sarc:
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
LENOVO K450 @3.0GHZ
OS
64-bit Windows 8.1 Pro
CPU
Core(TM) i5 CPU 4330 Haswell @ 3.20GHz
Motherboard
LENOVO
Memory
12.00 GB
Graphics Card(s)
Intel(R) HD Graphics
Sound Card
Intel HD integtrated
Monitor(s) Displays
HP 25' ISP Monitor
Screen Resolution
1900/1020
Hard Drives
(1) ST1000DM003-1CH162 (2) Generic STORAGE DEVICE USB Device (3) Generic STORAGE DEVICE USB Device
Internet Speed
100mb down/10mb up
SuperAntiSpyware has a very good reputation at Wilders Security Forum.
For example, the list here(it is in the list under Anti-malware Scanners).
 

My Computer

Computer Manufacturer/Model Number
Lenovo ThinkPad E520 / MacBook Pro 17" (mid 2010)
OS
Windows 7 Professional (64-bit) / OS X Snow Leopard
CPU
Core i5 / Core i7
Memory
4 GB / 8 GB
Sound Card
built-in
Monitor(s) Displays
internal & Samsung SyncMaster 191T / internal
Screen Resolution
1366x768 & 1280 x 1024 /1920x1200
Hard Drives
2 WD Raptors (74 G)
1 WD Caviar (250 G)
1 HP Personal Media Drive (USB, 300 G)
etc.
Cooling
none
Keyboard
built-in
Mouse
generic mouse / Wacom Intuos 3 tablet
Internet Speed
(very variable) high-speed cable
It found Trojan.Agent/Gen in a quick scan which MBAM didn't find.
View attachment 30632


so am i gonna delete it?
or just let.
it's a friends laptop here..

and its a leak inside a system file called

"msxml.dll"

i think THIS is the last enemy.

anyway thanks for the hijackthis tool. :party:
and avast a bit! :p

nod32 rulez :cool:
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
intel - albatron 7016
OS
Debian Ubuntu 12.04.1 LTS x64 ell
CPU
Intel Pentium 4 630, 3000 MHz (15 x 200) Hyper Threading
Motherboard
Intel Avalon D915GAV
Memory
2046mb/-- 200mhz 1gb kingstone channel A - 2x512mb channelB
Graphics Card(s)
Intel® 915G
Sound Card
SB Live! 24-bit
Monitor(s) Displays
Samsung SyncMaster 913N 19" LCD (SXGA)
Screen Resolution
1280x1024 96ppi
Hard Drives
ST3160815AS (9RA2P1Y9) [with a Puppy Racy partition]
system WDC WD360ADFD-00NLR1 (WD-WMANT1046405)
PSU
ISO-P500SPP 420W
Case
middleATX
Cooling
3.. fans >> cpu:intel, hdds.. + PSU's = 3~
Keyboard
Labtec wireless
Mouse
wired microsoft basic optical
Internet Speed
2.0 mbps wifi adsl
Antivirus
I Prefer Microsoft Security Essentials for WindowsSeven.
Browser
checking SUPERBIRD (a google like chrome browser) on a Win7
Other Info
classified
Double check before you do so. I know that when I ran a scan, it popped up with a several of the tracking cookies from the web browser, most of which were legit. There will be some false positives, while it is nice to be ultra careful, you can also be a little too zealous and do damage to yourself by accident too.
 

My Computer

Computer Manufacturer/Model Number
Alienware Area 51 Desktop and Dell Inspirion 17R (N7010)
OS
Windows 7 Ultimate x64 and Home Premium x64
CPU
Intel i7 960 (3.2 GHz Quad Core)
Motherboard
Alienware Intel based X58
Memory
12 Gigs (Triple Channel)
Graphics Card(s)
Alienware OEM nVidia GTX 560 Ti (1.25 Gig)
Sound Card
Creative Labs X-Fi Titanium
Monitor(s) Displays
Samsung PX2370 LED 23" Monitor
Screen Resolution
1920x1080
Hard Drives
2 320 Gig SATA in Raid 1 Configuration (System/App)
1 1 Tera SATA (Games)
1 1 Tera SATA (Data/Music/Videos)
PSU
750 Watt Power Supply
Case
Alienware Area 51 Desktop
Cooling
Liquid Cooled
Keyboard
Logitech G510
Mouse
Microsoft Trackball Explorer
Internet Speed
Cable
There is no such thing as a legit tracking cookie. I have used SAS for years as a on demand program along with many other security programs. No one program does it all. Super Anti Spyware has always been a quality program IMHO.
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Home made Desktop
OS
Windows 10 Pro. 64/ version 1709 Windows 7 Pro/64
CPU
Intel i7-6800K @ 4.3
Motherboard
ASUS X-99 Deluxe II
Memory
Corsair Platinum 16 gig @2400
Graphics Card(s)
EVGA GTX 1070 OC
Monitor(s) Displays
Asus 27" LED LCD/VE278Q
Screen Resolution
1920-1080 or 1280-720 HDMI
Hard Drives
INTEL SSD 730-240 Gb Sata 3.0/
PSU
EVGA Platium 1200W
Case
Phanteks Luxe Tempered Glass 8 fans/ one radiator
Cooling
XSPC/ Water Cooled CPU
Keyboard
Das 4 Professional
Mouse
Logitech M705/MX Anywhere 2-S
Internet Speed
100 mbits
Antivirus
Microsoft Security Essentials/ Malwarebytes Premium 3.0/ SAS
Browser
I.E. 11 default/Firefox/ ISP Time Warner Cable/Spectrum
Other Info
LG BluRay Burner/
Sound system-KLipsch-THX/
Icy Dock ssd Hot Swap bays.
Back
Top