3 Replies Latest reply on Mar 8, 2010 3:24 PM by nchattop Branched from an earlier discussion.

    FakeAlert Stinger found some malware, what is the next step?

      It did find some things. Here is the log. So what is the next step? Are these actually Trojans that I should let fakeavalert stinger Delete?

       

       

       

       

      McAfee® Stinger Version 10.0.1.758 built on Jan 25 2010

      Copyright © 2010 McAfee, Inc. All Rights Reserved.

      Virus data file v1000 created on Jan 25 2010.

      Ready to scan for 1491 viruses, trojans and variants.

       

      Scan initiated on Thu Mar 04 12:23:32 2010

        Number of clean files: 33860

       

      Scan initiated on Thu Mar 04 12:27:40 2010

      C:\Program Files\NOS\bin\IEGetPlugin.ocx

           Found the Artemis!1A2148CA58E4 trojan !!!

      C:\ProgramData\WildTangent\b39b5240-8cc9-4d1a-9cd3-2282de842a83-extr.exe\11.nsis

           Found the Artemis!5C08C956949D trojan !!!

      C:\Users\All Users\WildTangent\b39b5240-8cc9-4d1a-9cd3-2282de842a83-extr.exe\11.nsis

           Found the Artemis!5C08C956949D trojan !!!

      C:\Users\MYNAME\AppData\Local\Microsoft\Windows\Temporary Internet Files\Virtualized\C\ProgramData\WildTangent\b39b5240-8cc9-4d1a-9cd3-2282de842a8 3-extr.exe\11.nsis

           Found the Artemis!5C08C956949D trojan !!!

        Number of clean files: 686696

        Number of Trojans: 4

       

      McAfee® Stinger Version 10.0.1.758 built on Jan 25 2010

      Copyright © 2010 McAfee, Inc. All Rights Reserved.

      Virus data file v1000 created on Jan 25 2010.

      Ready to scan for 1491 viruses, trojans and variants.

       

      Scan initiated on Thu Mar 04 12:23:32 2010

        Number of clean files: 33860

       

      Scan initiated on Thu Mar 04 12:27:40 2010

      C:\Program Files\NOS\bin\IEGetPlugin.ocx

           Found the Artemis!1A2148CA58E4 trojan !!!

      C:\ProgramData\WildTangent\b39b5240-8cc9-4d1a-9cd3-2282de842a83-extr.exe\11.nsis

           Found the Artemis!5C08C956949D trojan !!!

      C:\Users\All Users\WildTangent\b39b5240-8cc9-4d1a-9cd3-2282de842a83-extr.exe\11.nsis

           Found the Artemis!5C08C956949D trojan !!!

      C:\Users\MyNAME\AppData\Local\Microsoft\Windows\Temporary Internet Files\Virtualized\C\ProgramData\WildTangent\b39b5240-8cc9-4d1a-9cd3-2282de842a8 3-extr.exe\11.nsis

           Found the Artemis!5C08C956949D trojan !!!

        Number of clean files: 686696

        Number of Trojans: 4

       

       

      Message was edited by: sunny10 on 3/4/10 1:02:23 PM CST
        • 1. Re: FakeAlert Stinger found some malware, what is the next step?

          Hello,

           

          I have suppressed both the files which were detecting as

           

          Artemis!5C08C956949D

          Artemis!1A2148CA58E

           

          McAfee(R) Artemis technology provides real-time protection that secures enterprises and consumers from threats as they strike and much quicker than traditional signatures can be deployed. As Artemis is updated in real-time there is no requirement to wait for a full DAT update nor to use an EXTRA.DAT intermediate solution. Simply wait approximately 30 minutes and this false will no longer exist or trigger on your system. Depending on the network settings you have or the caching involved between your system and ours it may take slightly longer for this false alarm to be resolved.

           

          Please let me know if you have any query or concern?

           

          Regards

          Neha

          • 2. Re: FakeAlert Stinger found some malware, what is the next step?

            Ok so these are? or Are not trojans? Am I supposed to delete these files?

             

            I actually posted this in another post because I have fake anti virus software popping up on my computer. One of the administrators moved the post here because you guys specialize in the artemis.

             

            I ran the stinger in high mode and these are the files that showed up. If these are not trojans that the stinger found does that mean the stinger detects nothing? I am certain I have some kind of fake anti virus software virus because I receive pop ups and my mcafee firewall is disabled.

            • 3. Re: FakeAlert Stinger found some malware, what is the next step?

              Hi

               

              These are not trojans and a copy must have placed in your quarantine folder (we always put any detected file, into the quarantine folder, just in case of false detections).

              I have already suppressed these files, hence you must not be seeing any detection longer.

               

              If you see any detection, please send us a sample for analysis, in a password-protected ZIP file (password - infected) to (virus_research@avertlabs.com)

               

              Regards

              Neha