Jump to content

Malwarebytes

bot.exe


3 replies to this topic

#1
Jaxryley

    Forum Deity

  • Malware Hunters
  • PipPipPipPipPipPip
  • 6,718 posts
  • Gender:Male
  • Location:West Aussie
  • Interests:Gardening and computers.
http://adobe-updating-service.cn/zs/bot.exe
2 out of 21 scanners reported malware.
Jottis
File size: 90112 bytes
http://rapidshare.de/files/48183417/bot.rar.html


#2
Jaxryley

    Forum Deity

  • Malware Hunters
  • PipPipPipPipPipPip
  • 6,718 posts
  • Gender:Male
  • Location:West Aussie
  • Interests:Gardening and computers.
http://www.5w90.co.cc/z/bot.exe
12 out of 21 scanners reported malware.
Jottis
File size: 62976 bytes
http://rapidshare.de/files/48183426/bot.rar.html


#3
noknojon

    you know why ---

  • Honorary Members
  • PipPipPipPipPipPip
  • 5,588 posts
  • Gender:Male

View PostJaxryley, on Aug 23 2009, 10:42 AM, said:

http://adobe-updating-service.cn/zs/bot.exe
2 out of 21 scanners reported malware.
Jottis
File size: 90112 bytes
http://rapidshare.de/files/48183417/bot.rar.html

A friend of mine was updating Kasper and shortly after it reported Adobe updater as an infection of some kind -
I was not familiar enough with Kasper to give the exact report, but it wanted to delete the update I had just done for them -
Naturally I was blamed as it was a fairly new laptop but I noticed it as unusual -
Is this one of the A/V programs , or was it me -
Just another private helper - (not a company man) -
When you don't have to worry about your computer anymore, you can start living again !

#4
Fatdcuk

    Malware BBQ'er

  • Moderators
  • PipPipPipPipPipPip
  • 16,150 posts
  • Gender:Male
  • Location:127.0.0.1
Thanks Jax,

Have added the URL's for harvesting now :)

Hi Noknojon,

I cant comment on what Kaspersky is detecting but as you might be aware malware sometimes uses the names of legitimate files and process's in order to conceal itself.

That said i know that Kaspersky PDM can be a bit over zealous and has labled legitimate process's as suspicious before....ironically it flags MBAM update routine when it is autoupdating the MBAM software installed :lol:
Ade Gill
Research Engineer

Posted Image

Follow us: Twitter, Become a fan: Facebook





1 user(s) are reading this topic

0 members, 1 guests, 0 anonymous users

Follow Us