IPB

Welcome Guest ( Log In | Register )

 
Closed TopicStart new topic
> Trojan.FakeMS
Jetta Jones
post 5.01.2011 00:28
Post #1


Member
**

Group: Members
Posts: 46
Joined: 17.03.2009




Hi

OS - Windows 7 Home Premium (64-Bit) (clean install) (fully updated)
IE8

I normally run Kaspersky Internet Security 2011 with all protection enabled. On alternate weeks I do a full scan with Kaspersky and the free MalwareBytes scanner.

Today, MalwareBytes detected the following:

Trojan.Fake.MS

and quarantined it. The MalwareBytes log file contains this entry:

c:\Windows\winsxs\x86_microsoft-windows-bits-bitsadmin_31bf3856ad364e35_6.1.7600.16385_none_4ce7e7256dbfa16f\bitsadmin.exe (Trojan.FakeMS) -> Quarantined and deleted successfully.

Kaspersky detected nothing before this nor anything in a full scan after MalwareBytes had quarantined it.

Can I now be confident that my system is clean?

My GSI can be found here:

http://www.getsysteminfo.com/read.php?file...c89a2bd11dba898

Many Thanks
Jetta
Go to the top of the page
 
+Quote Post
Lucian Bara
post 5.01.2011 00:53
Post #2


Are You Kidding?
*****************

Group: Gold beta testers
Posts: 56947
Joined: 28.01.2006
From: Timisoara, Romania




hello
please send that file to malwarebytes. The file c:\Windows\winsxs\x86_microsoft-windows-bits-bitsadmin_31bf3856ad364e35_6.1.7600.16385_none_4ce7e7256dbfa16f\bitsadmin.exe exists on a clean windows installation. It doesn't mean that a malware can't replace it with it's own, but it can also be that it's a false alarm from malware bytes.
Go to the top of the page
 
+Quote Post

Closed TopicStart new topic

 



Lo-Fi Version Time is now: 23.10.2014 07:45