Jahn Posted May 11, 2008 C:\windows\mota113.exe 6/31 at VT, mostly suspicious. File sent to nicks. Thanks SAS 4.1.1040 Defs 3458/1449 Share this post Link to post Share on other sites
jmet Posted May 11, 2008 I am getting the same thing, turned up suddenly as I have SAS run every night and this started popping up a day or two ago. I ran 5 other scanners none of which see it. Share this post Link to post Share on other sites
SUPERAntiSpy Posted May 11, 2008 What address did you send the file to? Did you send to samples AT superantispyware.com? Share this post Link to post Share on other sites
Jahn Posted May 12, 2008 What address did you send the file to? Did you send to samples AT superantispyware.com? OK, I see you received it now. Share this post Link to post Share on other sites
Nightcap Posted May 12, 2008 My scan found two entries today. Besides MOTA113.EXE it reported DTSX264.EXE. As far as I know that file is part of the DTS X264 video codec? Trojan.Dropper/Multi-MBAD C:\WINDOWS\MOTA113.EXE C:\WINDOWS\SYSTEM32\DTSX264.EXE The samples will be mailed for evaluation after completing this post. Nightcap Share this post Link to post Share on other sites
SUPERAntiSpy Posted May 12, 2008 My scan found two entries today. Besides MOTA113.EXE it reported DTSX264.EXE. As far as I know that file is part of the DTS X264 video codec?Trojan.Dropper/Multi-MBAD C:\WINDOWS\MOTA113.EXE C:\WINDOWS\SYSTEM32\DTSX264.EXE The samples will be mailed for evaluation after completing this post. Nightcap Thank you! Share this post Link to post Share on other sites
Jahn Posted May 13, 2008 Defs 3459/1450 no longer detect it. Thank you. Share this post Link to post Share on other sites
Nightcap Posted May 13, 2008 Same here for my two files! Thank you for a great product and a great team. Share this post Link to post Share on other sites
SUPERAntiSpy Posted May 13, 2008 Thank you for your support and letting us know Share this post Link to post Share on other sites