Jump to content

CoffeeLover

Members
  • Content Count

    8
  • Joined

  • Last visited

About CoffeeLover

  • Rank
    Newbie
  1. Okay I submitted the false positive report (from before) in case you wanted to look at it. Thanks for making sure they were ok! I figured they were probably legit but I just wanted to make sure. I also saw the Spybot on here was an older version (1.6.2) not the current Spybot 2, so it may be that the older version was just wonky and clashing with SAS.
  2. Hello Just updated the free version of SuperAntiSpyware and started a scan. It is still in progress, but it's currently detecting 3 files as Trojan.Agent/Gen-Buzus: C:\PROGRAM FILES (X86)SPYBOT - SEARCH & DESTROY\PLUGINS\CHAI.DLL C:\PROGRAM FILES (X86)SPYBOT - SEARCH & DESTROY\PLUGINS\FENNEL.DLL C:\PROGRAM FILES (X86)SPYBOT - SEARCH & DESTROY\PLUGINS\MATE.DLL I looked at the files to see when they were last changed and the system says they have been there since 2008. It looks to me like this are probably a legitimate part of Spybot, does anyone know if this is SAS with a False Positive or if the threat is genuine? Thanks, will submit a false positive report once scan completes.
  3. CoffeeLover

    Trojan.Agent/Gen-Stranfom

    Thank you guys. Yeah I just freaked out because I use these comps for everything and I was just on my bank so I'm like OMG they have all my info I am totally screwed. Didn't even occur to me they might be false. I'll try to keep it together till the officials weigh in.
  4. CoffeeLover

    Trojan.Agent/Gen-Stranfom

    I don't believe so, it quarantined everything and then I deleted it because I panicked. I don't think it auto deleted anything, but it did pop up both times in the middle of the scan to tell me I was in trouble.
  5. CoffeeLover

    Trojan.Agent/Gen-Stranfom

    Yeah I'm going to see if the report as false positive button pops up on the 3rd computer. Incidentally on the 3rd computer it also says the files were created on 8/24/13. I'm thinking that must have been a day I told Google Chrome to update or something, and all of these files are just Google files from the update.
  6. CoffeeLover

    Trojan.Agent/Gen-Stranfom

    Here is the scan from my second computer, and one is finishing up on the third that is also reporting this. SUPERAntiSpyware Scan Log http://www.superantispyware.com Generated 09/20/2013 at 00:35 AM Application Version : 5.6.1032 Core Rules Database Version : 10778 Trace Rules Database Version: 8590 Scan type : Complete Scan Total Scan Time : 00:28:01 Operating System Information Windows 7 Home Premium 64-bit, Service Pack 1 (Build 6.01.7601) UAC On - Limited User Memory items scanned : 794 Memory threats detected : 0 Registry items scanned : 70554 Registry threats detected : 0 File items scanned : 46050 File threats detected : 64 Trojan.Agent/Gen-Stranfom C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\29.0.1547.62\LOCALES\AM.DLL C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\29.0.1547.62\LOCALES\AR.DLL C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\29.0.1547.62\LOCALES\BN.DLL C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\29.0.1547.62\LOCALES\EN-GB.DLL C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\29.0.1547.62\LOCALES\EN-US.DLL C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\29.0.1547.62\LOCALES\ET.DLL C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\29.0.1547.62\LOCALES\FA.DLL C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\29.0.1547.62\LOCALES\FI.DLL C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\29.0.1547.62\LOCALES\GU.DLL C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\29.0.1547.62\LOCALES\HE.DLL C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\29.0.1547.62\LOCALES\MS.DLL C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\29.0.1547.62\LOCALES\JA.DLL C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\29.0.1547.62\LOCALES\KO.DLL C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\29.0.1547.62\LOCALES\LV.DLL C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\29.0.1547.62\LOCALES\MR.DLL C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\29.0.1547.62\LOCALES\NB.DLL C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\29.0.1547.62\LOCALES\RU.DLL C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\29.0.1547.62\LOCALES\SR.DLL C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\29.0.1547.62\LOCALES\SV.DLL C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\29.0.1547.62\LOCALES\TH.DLL C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\29.0.1547.62\LOCALES\UK.DLL C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\29.0.1547.62\LOCALES\VI.DLL C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\29.0.1547.62\LOCALES\ZH-CN.DLL C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\29.0.1547.62\LOCALES\ZH-TW.DLL C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\29.0.1547.66\LOCALES\AM.DLL C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\29.0.1547.66\LOCALES\AR.DLL C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\29.0.1547.66\LOCALES\BN.DLL C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\29.0.1547.66\LOCALES\EN-GB.DLL C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\29.0.1547.66\LOCALES\EN-US.DLL C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\29.0.1547.66\LOCALES\ET.DLL C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\29.0.1547.66\LOCALES\FA.DLL C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\29.0.1547.66\LOCALES\FI.DLL C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\29.0.1547.66\LOCALES\GU.DLL C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\29.0.1547.66\LOCALES\HE.DLL C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\29.0.1547.66\LOCALES\MS.DLL C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\29.0.1547.66\LOCALES\JA.DLL C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\29.0.1547.66\LOCALES\KO.DLL C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\29.0.1547.66\LOCALES\LV.DLL C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\29.0.1547.66\LOCALES\MR.DLL C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\29.0.1547.66\LOCALES\NB.DLL C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\29.0.1547.66\LOCALES\RU.DLL C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\29.0.1547.66\LOCALES\SR.DLL C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\29.0.1547.66\LOCALES\SV.DLL C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\29.0.1547.66\LOCALES\TH.DLL C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\29.0.1547.66\LOCALES\UK.DLL C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\29.0.1547.66\LOCALES\VI.DLL C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\29.0.1547.66\LOCALES\ZH-CN.DLL C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\29.0.1547.66\LOCALES\ZH-TW.DLL Adware.Tracking Cookie accounts.google.com [ C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .ads.pointroll.com [ C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .pointroll.com [ C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .pointroll.com [ C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .ads.pointroll.com [ C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .ads.pointroll.com [ C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .ads.pointroll.com [ C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .ads.pointroll.com [ C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .ads.pointroll.com [ C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .ads.pointroll.com [ C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .insightexpressai.com [ C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .insightexpressai.com [ C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .doubleclick.net [ C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .doubleclick.net [ C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .ru4.com [ C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .ru4.com [ C:\USERS\FIZCORG\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
  7. CoffeeLover

    Trojan.Agent/Gen-Stranfom

    Thank you so much for posting this as I've been freaking out for over an hour! I hope this really is a False Positive. I don't know much about computers but this is my log that came up, both my computers had this: SUPERAntiSpyware Scan Log http://www.superantispyware.com Generated 09/20/2013 at 01:36 AM Application Version : 5.6.1032 Core Rules Database Version : 10778 Trace Rules Database Version: 8590 Scan type : Complete Scan Total Scan Time : 00:24:23 Operating System Information Windows 7 Home Premium 64-bit, Service Pack 1 (Build 6.01.7601) UAC On - Limited User Memory items scanned : 500 Memory threats detected : 0 Registry items scanned : 70647 Registry threats detected : 0 File items scanned : 44528 File threats detected : 48 Trojan.Agent/Gen-Stranfom C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\29.0.1547.62\LOCALES\AM.DLL C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\29.0.1547.62\LOCALES\AR.DLL C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\29.0.1547.62\LOCALES\BN.DLL C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\29.0.1547.62\LOCALES\EN-GB.DLL C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\29.0.1547.62\LOCALES\EN-US.DLL C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\29.0.1547.62\LOCALES\ET.DLL C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\29.0.1547.62\LOCALES\FA.DLL C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\29.0.1547.62\LOCALES\FI.DLL C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\29.0.1547.62\LOCALES\GU.DLL C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\29.0.1547.62\LOCALES\HE.DLL C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\29.0.1547.62\LOCALES\MS.DLL C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\29.0.1547.62\LOCALES\JA.DLL C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\29.0.1547.62\LOCALES\KO.DLL C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\29.0.1547.62\LOCALES\LV.DLL C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\29.0.1547.62\LOCALES\MR.DLL C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\29.0.1547.62\LOCALES\NB.DLL C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\29.0.1547.62\LOCALES\RU.DLL C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\29.0.1547.62\LOCALES\SR.DLL C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\29.0.1547.62\LOCALES\SV.DLL C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\29.0.1547.62\LOCALES\TH.DLL C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\29.0.1547.62\LOCALES\UK.DLL C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\29.0.1547.62\LOCALES\VI.DLL C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\29.0.1547.62\LOCALES\ZH-CN.DLL C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\29.0.1547.62\LOCALES\ZH-TW.DLL C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\29.0.1547.66\LOCALES\AM.DLL C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\29.0.1547.66\LOCALES\AR.DLL C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\29.0.1547.66\LOCALES\BN.DLL C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\29.0.1547.66\LOCALES\EN-GB.DLL C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\29.0.1547.66\LOCALES\EN-US.DLL C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\29.0.1547.66\LOCALES\ET.DLL C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\29.0.1547.66\LOCALES\FA.DLL C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\29.0.1547.66\LOCALES\FI.DLL C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\29.0.1547.66\LOCALES\GU.DLL C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\29.0.1547.66\LOCALES\HE.DLL C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\29.0.1547.66\LOCALES\MS.DLL C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\29.0.1547.66\LOCALES\JA.DLL C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\29.0.1547.66\LOCALES\KO.DLL C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\29.0.1547.66\LOCALES\LV.DLL C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\29.0.1547.66\LOCALES\MR.DLL C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\29.0.1547.66\LOCALES\NB.DLL C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\29.0.1547.66\LOCALES\RU.DLL C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\29.0.1547.66\LOCALES\SR.DLL C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\29.0.1547.66\LOCALES\SV.DLL C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\29.0.1547.66\LOCALES\TH.DLL C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\29.0.1547.66\LOCALES\UK.DLL C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\29.0.1547.66\LOCALES\VI.DLL C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\29.0.1547.66\LOCALES\ZH-CN.DLL C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\29.0.1547.66\LOCALES\ZH-TW.DLL And the crazy part is, I went to that file to see when those things showed up and it says 8/24/13, however I had just run a scan with SuperAntiSpyware on the 18 and that came up clean apart from a couple cookies. Also, I checked my Avast and I had just recently run a boot scan on 9/12 and a Full scan on 9/15, and I'd also run a Malware Bytes scan on 9/17 and all had come up clean. If it had been on the computer for over a month surely something would have picked it up before now? Hopefully someone can confirm this is false, because I am freaking out right now.
  8. Hi SAS told me to update, I did, and then I ran a scan. I received this end result: File threats detected : 2 Trojan.Agent/Gen-VB C:\SWSETUP\APP\SUPPORT\HP\HPSA\6.1\SRC\FORBPC\REGKEY.EXE C:\SWSETUP\APP\SUPPORT\HP\HPSA\6.1\SRC\FORWORKSTATIONS\REGKEY.EXE This just seems to me like it must be a mistake. Those look like part of the HP support that comes with this type of the computer. How do I submit them to be checked if I've already quarantined them? I have an HP p7-1235 with Windows 7 Home 64 bit, it's very new. I had run a scan 12 days ago (last time I had it turned on) and there were no problems. Also, HP had asked to run a HP Support Tune up at the time, is it possible that had something to do with it?
×