4 Replies Latest reply on Jun 2, 2014 9:32 AM by terzis

    False Artemis detection Artemis!A2F1D8C17226

    terzis

      Software installation download from www.smilebox.com is detected as Artemis trojan with the code above.

       

      Is it really a trojan?

        • 1. Re: False Artemis detection Artemis!A2F1D8C17226
          catdaddy

          May I ask what the particular program was that you downloaded from (SmileBox .com)?  Quite often these (Free) programs are bundled with software that are considered as (PUP). Not classified as Malware,but have undesirable traits.

           

          Since McAfee detected it as Artemis!,something was suspicious.

           

          You may if you wish, to get a second opinion run Malwawarebytes (Free) Version only. Do not accept the Free Trial/or Activate. The (Free) Version can be located below my Signature (Second Link)

           

          You could also Download/Install the Latest Getsusp Tool, which can be found in the same location. Just remember to add your Email Address under "Preferences" before scanning. This tool detects Suspicious/Unknown items and sends them to McAfee Labs.

           

          Regards,

           

           

           

          Message was edited by: catdaddy on 6/2/14 7:00:27 AM EDT
          • 2. Re: False Artemis detection Artemis!A2F1D8C17226
            terzis

            It is the smilebox application itself that I tried to download.

             

            The alert was raised for the installer download (in fact, as soon as part of it was downloaded).

             

            I had also a number of other Artemis alerts relating to the same application:

             

            Artemis!F60B6E474423 for  Smilebox.Starter.new

             

            Artemis!34646F4DACBD for SkywalkerSetup[1].exe - the installer for the application

             

            Basically, the first one resulted in a removal that made the application unusable and the following ones resulted in an attempt to re-install it.

            • 3. Re: False Artemis detection Artemis!A2F1D8C17226
              catdaddy

              Have you attempted to Download Getsusp,and Malwarebytes to run and check these two particular programs,as suggested? Doing a brief search on both here-in mentioned,the executables are questionable.

               

              I will run both against Virus Total,and check the Trusted source.org Data Base, as time permits.

               

              Please run the (2) programs as suggested. As with all games, sometimes there is a detection,that may or not be malicious.

               

              Please post back your results.....

              Wishing you all the best,

              • 4. Re: False Artemis detection Artemis!A2F1D8C17226
                terzis

                Malware bytes also identifies it as PUP.

                 

                It seems to be correct, as when the software is installed and tries to update it highjacks the browser.

                 

                This seems to be a recent update to the software (didn't have this issue a week back).

                 

                Thanks for the help.

                 

                Message was edited by: terzis on 02/06/14 09:32:23 CDT