Jump to content

Frankie1

Members
  • Posts

    4
  • Joined

  • Last visited

Reputation

0 Neutral
  1. So a quick follow-up. In the KaseyaFW.ni file I renamed the uTorrent.exe to uTorrent1.exe and ran the scan again and everything comes up clean so that seems to be the easiest way to handle this.
  2. That is correct. We do use Kaseya at the office and in the KaseyaFW.ini file it does list uTorrent as a denied file name. I will try as you suggest but in earlier versions of Mbar I don't recall it detecting this before. I will try as you suggested. Thanks for the quick response. Better to have ghost detections than real ones. Maybe there is also something they can do in the mbar code to ignore those in the future. [Protected File List] Filename : 3.3.1_30017.exe Approved : Denied : ******** Filename : utorrent.exe Approved : Denied : ******** Filename : bittorrent.exe Approved : Denied : ******** Filename : utt5dc7.tmp.exe Approved : Denied : ********
  3. When I run Mbar on one of my systems I get the following results. Doing a search for any msdcsc folder returns 0 results even with all hidden system files and folders available to view. uTorrent also returns 0 results. Search of the registry returns 0 results so why am I getting these showing after running a scan. I also cannot find any c:\windows\root\ folder. I got these running the latest mbar.exe mbar-1.09.1.1004. Are these false positives as it seems these files and folders do not exist on my machine. Mcafee Virus scan Enterprise version returns nothing so reaching out for a little assistance here. After trying to clean these up they return with the next scan. Done! Infected: c:\windows\root\utorrent.exe --> [Trojan.Agent] Infected: c:\users\administrator\documents\msdcsc\utorrent.exe --> [backdoor.Agent.DC] Infected: c:\users\default\documents\msdcsc\utorrent.exe --> [backdoor.Agent.DC] Infected: c:\users\mhowell\documents\msdcsc\utorrent.exe --> [backdoor.Agent.DC] Infected: c:\users\public\documents\msdcsc\utorrent.exe --> [backdoor.Agent.DC] Infected: c:\users\user\documents\msdcsc\utorrent.exe --> [backdoor.Agent.DC] Infected: c:\users\whardin\documents\msdcsc\utorrent.exe --> [backdoor.Agent.DC] Infected: c:\windows\serviceprofiles\localservice\documents\msdcsc\utorrent.exe --> [backdoor.Agent.DC] Infected: c:\windows\serviceprofiles\networkservice\documents\msdcsc\utorrent.exe --> [backdoor.Agent.DC] Infected: c:\windows\system32\config\systemprofile\documents\msdcsc\utorrent.exe --> [backdoor.Agent.DC] Infected: c:\windows\system32\install\utorrent.exe --> [Trojan.Agent] Infected: c:\windows\syswow64\install\utorrent.exe --> [Trojan.Agent] Scan finished system-log.txt
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.