Solved Trojan - Malwarebytes

xxxdannyxxx

Do You Believe
Guru
Gold Member
VIP
Local time
2:35 PM
Messages
2,615
Location
England
I'm looking for some advice with this. I've just updated malwarebytes to the new version and this has just popped up. I scanned yesterday and all was fine.MSE detects nothing, just running superantispyware now.

Capture.PNG

Any help or advice appreciated

Danny
 

My Computer

Computer Manufacturer/Model Number
acer aspire 5935g
OS
Windows 7 Home Premium x64 SP1
CPU
intel(R)core(TM)2 duo CPU T6600 @ 2.20GHz
Motherboard
intel gm45/gm47 revision 07
Memory
3 gb ddr3
Graphics Card(s)
ati radeon hd4570/512mb
Monitor(s) Displays
lop156wh2-tle1 15.3 flat
Screen Resolution
1366x768
Hard Drives
OCZ-Agility3 60gig ssd
320gig external hdd
500gig external hdd
Mouse
Optical
Internet Speed
30Mbps Down/30Mbps Up
Hi Danny,
Just to be on the safe side and exclude (or confirm) that it is a false positive: post to the Malwarebytes Forum over here and attach your log:
Malwarebytes Forum

I've got false positives from Malwarebytes before (twice), and I checked the forum each time before doing anything in order to get confirmation, and a new definition file fixed the issue.

If those files Malwarebytes flagged happen to be false positives and you delete them, you might end up crippling your computer...So I think it's best to make sure in the Malwarebytes Forum.
 

My Computer

OS
-
Danny, the flagged files are in the winsxs directory, thats the problem. As you know, that folder holds authoritative versions of OS files that are required to repair corrupted files. Can you afford to have those files deleted? No. Why? as long as the corresponding files in System32 are intact, you shouldn't encounter any problem even if you manage to delete the winsxs files. The problem will arise when you try to update because some components will be missing.

If I were you, I'd just ignore MBAM's findings. If you're very very paranoid, run a repair install.
 

My Computer

Computer Manufacturer/Model Number
Too many to describe...
OS
Windows 7 x64 pro/ Windows 7 x86 Pro/ XP SP3 x86
If I were you, I'd just ignore MBAM's findings. If you're very very paranoid, run a repair install.

I'd want to make sure and get certainty by going to the Malwarebytes Forum - I think the Malwarebytes programmers contribute to the forum, too, so they will be able to give more information. In this case, I don't think taking immediate action (deleting) or simply ignoring the flagged items without getting more information is a good idea.

I only know that the forum helped me a lot when Malwarebytes give me false positives some time back.
 

My Computer

OS
-
Thanks for your input guys. I had just ignored it up to now as it didn't seem to sit right with me. As Bill2 said jumping in and deleting files from the winsxs folder is liable to bite you back as some point. I've ran 3 online scanners and superantispyware and nothing pinged up on them so I will just post on the Malwarebytes forum and see if a new definition solves the problem.

Thankyou all for your help

Danny
 

My Computer

Computer Manufacturer/Model Number
acer aspire 5935g
OS
Windows 7 Home Premium x64 SP1
CPU
intel(R)core(TM)2 duo CPU T6600 @ 2.20GHz
Motherboard
intel gm45/gm47 revision 07
Memory
3 gb ddr3
Graphics Card(s)
ati radeon hd4570/512mb
Monitor(s) Displays
lop156wh2-tle1 15.3 flat
Screen Resolution
1366x768
Hard Drives
OCZ-Agility3 60gig ssd
320gig external hdd
500gig external hdd
Mouse
Optical
Internet Speed
30Mbps Down/30Mbps Up
They are pretty quick with their updates Danny - in the next few updates I doubt this will be flagged again.

Regards,
Golden
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Golden Mk. I.4
OS
Windows 10 Pro x64 ; Xubuntu x64
CPU
Intel i7 860 @ 2.80 GHz O/C'ed to 4.0GHz
Motherboard
Gigabyte P55A-UD3R Rev.1. Award BIOS F13
Memory
16GB Corsair Vengance DDR3 @ 661 MHz Dual Channel (9-9-9-24)
Graphics Card(s)
EVGA NVidia GTX 560 1024MB
Sound Card
Realtek Integrated
Monitor(s) Displays
Dual Samsung SyncMaster 2494HS
Screen Resolution
1920*1080 and 1920*1080
Hard Drives
1*Samsung 840 EVO 120GB SSD;
1*OCZ Vertex 2 60GB SSD;
2*Samsung F3 SpinPoint 1TB in RAID0;
1*Samsung F1 SpinPoint 1TB;
2*Western Digital 1TB External USB 3.0
1*Western Digital 500GB External USB 3.0
1*Seagate 500GB External USB 2.0
PSU
Thermaltake ToughPower QFan 750W
Case
Thermaltake Element S VK60001W2Z
Cooling
Corsair H60 Water Cooling, 2*230mm and 2*80mm case fans
Keyboard
Logitech G110
Mouse
Logitech MX518
They are pretty quick with their updates Danny - in the next few updates I doubt this will be flagged again.

Regards,
Golden

And as if by magic I've just updated again and re-run and alls clear. Thanks for all your help guys.Its not my area malware and viruses and I am probably on the paranoid side running scans very frequently with various scanners but in 2 years of windows 7 this is only the second item to be brought to my attention so it works for me.

Thanks again

Danny
 

My Computer

Computer Manufacturer/Model Number
acer aspire 5935g
OS
Windows 7 Home Premium x64 SP1
CPU
intel(R)core(TM)2 duo CPU T6600 @ 2.20GHz
Motherboard
intel gm45/gm47 revision 07
Memory
3 gb ddr3
Graphics Card(s)
ati radeon hd4570/512mb
Monitor(s) Displays
lop156wh2-tle1 15.3 flat
Screen Resolution
1366x768
Hard Drives
OCZ-Agility3 60gig ssd
320gig external hdd
500gig external hdd
Mouse
Optical
Internet Speed
30Mbps Down/30Mbps Up
So it was a false positive? :-)
Good to know that the latest definition fixed it :-D
 

My Computer

OS
-
Last edited:

My Computer

Computer Manufacturer/Model Number
acer aspire 5935g
OS
Windows 7 Home Premium x64 SP1
CPU
intel(R)core(TM)2 duo CPU T6600 @ 2.20GHz
Motherboard
intel gm45/gm47 revision 07
Memory
3 gb ddr3
Graphics Card(s)
ati radeon hd4570/512mb
Monitor(s) Displays
lop156wh2-tle1 15.3 flat
Screen Resolution
1366x768
Hard Drives
OCZ-Agility3 60gig ssd
320gig external hdd
500gig external hdd
Mouse
Optical
Internet Speed
30Mbps Down/30Mbps Up
That's an excellent idea. It can take long for people to report this kind of thing - especially if you're in a different time zone...
 

My Computer

OS
-
The team at Malwarebytes is pretty good at fixing things fast. Three, maybe 4 years ago I had a 2 fonts that were flagged as virus laden. I posted to the Malwarebytes forum and was asked to submit the files in question. The next day, when I updated the defs, the files no longer showed as a virus. They are on top of things....
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Dell Hell oh Well
OS
Win 7 32 Home Premium, Win 7 64 Pro, Win 8.1, Win 10
CPU
Intel Core 2 Duo 2.93GHz
Memory
Not much with my ADHD
Graphics Card(s)
ATI Radeon HD 4350
Monitor(s) Displays
24" HDTV/Monitor
Screen Resolution
Blurry after a Scotch or 2
Hard Drives
1 HDD 250 GB, 1 HDD 1 TB, 3 - 1 TB Externals
Case
Don't get on my case...man :D
Cooling
I have an Air Conditioner & Diet Pepsi
Keyboard
Saitek Cyborg
Mouse
10 yr old MS optical mouse that still works
Internet Speed
Never fast enough
Antivirus
Various
Browser
Various
The team at Malwarebytes is pretty good at fixing things fast. Three, maybe 4 years ago I had a 2 fonts that were flagged as virus laden. I posted to the Malwarebytes forum and was asked to submit the files in question. The next day, when I updated the defs, the files no longer showed as a virus. They are on top of things....

Indeed. Their malicious IP blocking is also second to none : one of the reasons I recommend people consider the paid version.
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Golden Mk. I.4
OS
Windows 10 Pro x64 ; Xubuntu x64
CPU
Intel i7 860 @ 2.80 GHz O/C'ed to 4.0GHz
Motherboard
Gigabyte P55A-UD3R Rev.1. Award BIOS F13
Memory
16GB Corsair Vengance DDR3 @ 661 MHz Dual Channel (9-9-9-24)
Graphics Card(s)
EVGA NVidia GTX 560 1024MB
Sound Card
Realtek Integrated
Monitor(s) Displays
Dual Samsung SyncMaster 2494HS
Screen Resolution
1920*1080 and 1920*1080
Hard Drives
1*Samsung 840 EVO 120GB SSD;
1*OCZ Vertex 2 60GB SSD;
2*Samsung F3 SpinPoint 1TB in RAID0;
1*Samsung F1 SpinPoint 1TB;
2*Western Digital 1TB External USB 3.0
1*Western Digital 500GB External USB 3.0
1*Seagate 500GB External USB 2.0
PSU
Thermaltake ToughPower QFan 750W
Case
Thermaltake Element S VK60001W2Z
Cooling
Corsair H60 Water Cooling, 2*230mm and 2*80mm case fans
Keyboard
Logitech G110
Mouse
Logitech MX518
My PRO version updated its database just before 13.00 BST and that is the latest database version so it looks like it may have been corrected then.
 

My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
Hewlett-Packard/G62-107SA Notebook
OS
Microsoft Windows 7 Home Premium 64-bit Service Pack 1
CPU
Intel(R) Core(TM) i3 CPU M 330 @ 2.13GHz
Motherboard
Hewlett-Packard 1425
Memory
8 GB DDR3
Graphics Card(s)
Intel(R) HD Graphics
Sound Card
Realtek High Definition Audio
Monitor(s) Displays
Builtin
Screen Resolution
1366 x 768 x 32 bits (4294967296 colors) @ 60 Hz
Hard Drives
250 GB SATA Hard Disk Drive 7200 rpm
2TB Seagate GoFlex USB 2 Drive
1TB Iomega Prestige USB 2 Drive
1.5TB Iomega Prestige USB 2 Drive (Samsung)
2TB WD MyBook Live NAS.
Mouse
Logitech Anywhere MX
Internet Speed
152 Mbs download 10 Mbs upload
Antivirus
Norton 360
Browser
Chrome
Back
Top