Jump to content

Malwarebytes

This is strange


2 replies to this topic

#1
BlairWitch

    banned

  • Banned
  • PipPipPipPip
  • 257 posts
  • Gender:Male
  • Location:Atlantis
I sent a sample to Avira about a memory dump that i took from ctfmon.exe and i also uploaded it in here... So i got this information from Avira to my email...

Posted Image

Uploaded with ImageShack.us

So the memory dump is detected as malware that is able to spy out data and violate privacy... It's just that i dont understand that when i upload to virustotal the ctfmon.exe file in my computer, not a memory dump then none of the scanners detects it and also not any malware removal program is able to detect the malicious code in the memory. I mean if i get this right ain't a memory dump like a dumped memory so according to that there should be something malicious running in my computers memory...
Can someone share their knowledge about memory dumps? So that i could understand this... Thanks!

#2
BlairWitch

    banned

  • Banned
  • PipPipPipPip
  • 257 posts
  • Gender:Male
  • Location:Atlantis
Here is the file that i uploaded here http://forums.malwar...howtopic=104072
And here is the latest virustotal scan report https://www.virustot...sis/1326904314/

Still nothing is detected when i scan my computer. Not even in the computers memory.

#3
BlairWitch

    banned

  • Banned
  • PipPipPipPip
  • 257 posts
  • Gender:Male
  • Location:Atlantis
http://vil.nai.com/v...nt/v_423018.htm

Heres what the trojan is supposed to do...





1 user(s) are reading this topic

0 members, 1 guests, 0 anonymous users

Follow Us