Author Topic: Trojan.Downloader Detected  (Read 6910 times)

0 Members and 1 Guest are viewing this topic.

Offline Patrick2

  • Poster
  • *
  • Posts: 489
Re: Trojan.Downloader Detected
« Reply #15 on: September 26, 2016, 11:12:40 PM »
Not Commerical PC, Brought Pro since my original HP system that I gave to Mom, had Windows 10 Pro (Free) upgrade from 8.1 Media Center...So decided to get the same version for this system when I bought it in January 2016 from Newegg, freely upgraded to Windows 10 Home First, then later on bought Pro version

Results of virustotal scan


https://www.virustotal.com/en/file/5424c12fdf736034b39cf6aa843236b428d9e6707876dbd9e33c99db8ac76d3c/analysis/


Based on System Performance since system clean install, it feels the Trojan Downloader original infection is gone at this point, but i'll feel much safer once I hear back nothing else in the logs that are concerning...I use Remote Desktop at times to do system maintenance, Home edition didn't include that, so why I bought Pro Edition of Windows 10.   Didn't restore files from backup either, redownloaded all drivers, games, and such, did disable built in wifi, since thought would interfere with Ethernet

« Last Edit: September 27, 2016, 12:52:55 AM by Patrick2 »
Windows 10 Pro 64bit 1909 18363.476, Intel I7 7700 Nvidia Geforce 1050 16gb DDR4, WD 250GBSSD, 1tb Storage, Avast Free 19.8.2393
HP Omen Laptop Intel I7 7700HQ, 8gb Of Ram Windows 10 Home x64 1909 18363.476 128GB SSD, 1tb Storage, Avast Free 19.8.2393

Offline Michael (alan1998)

  • Massive Poster
  • ****
  • Posts: 2768
  • Volunteer
Re: Trojan.Downloader Detected
« Reply #16 on: September 27, 2016, 02:11:30 AM »
No worries about Windows 10 Pro. Just isn't quite normal to see. Generally we don't work on Corporate computers.

I'll send a message to dbrisendine just to make sure he knows about this thread and your logs have been posted.

Can you re-upload that file and click "New Analysis" that scan is 4 weeks old.
VOLUNTEER

Senior Security Analyst; Sys Admin (Linux); Forensics/Incident Response.

Security is a mindset, not an application. Think BEFORE you click.

Offline Patrick2

  • Poster
  • *
  • Posts: 489
« Last Edit: September 27, 2016, 02:15:59 AM by Patrick2 »
Windows 10 Pro 64bit 1909 18363.476, Intel I7 7700 Nvidia Geforce 1050 16gb DDR4, WD 250GBSSD, 1tb Storage, Avast Free 19.8.2393
HP Omen Laptop Intel I7 7700HQ, 8gb Of Ram Windows 10 Home x64 1909 18363.476 128GB SSD, 1tb Storage, Avast Free 19.8.2393

Offline Michael (alan1998)

  • Massive Poster
  • ****
  • Posts: 2768
  • Volunteer
Re: Trojan.Downloader Detected
« Reply #18 on: September 27, 2016, 02:26:07 AM »
Ah, I see what it is now. BattleField 4 file.

https://battlelog.battlefield.com/bf3/forum/threadview/2955065670154489854/

Signers    
  • Electronic Sports Network i Sverige AB
VOLUNTEER

Senior Security Analyst; Sys Admin (Linux); Forensics/Incident Response.

Security is a mindset, not an application. Think BEFORE you click.

Offline Patrick2

  • Poster
  • *
  • Posts: 489
Re: Trojan.Downloader Detected
« Reply #19 on: September 27, 2016, 02:33:06 AM »
Yeah what I thought it was connected to myself, but wasn't positive

Hopefully all the other files are safe, and yay!,  Not sure how I even got ahold of The Trojan Downloader, not sure if panicing was right way to handle it, I have learned switching Antivirus programs too much isn't a good idea either, last month I was switching between Avast Free, and Defender, maybe I got the infection then
Windows 10 Pro 64bit 1909 18363.476, Intel I7 7700 Nvidia Geforce 1050 16gb DDR4, WD 250GBSSD, 1tb Storage, Avast Free 19.8.2393
HP Omen Laptop Intel I7 7700HQ, 8gb Of Ram Windows 10 Home x64 1909 18363.476 128GB SSD, 1tb Storage, Avast Free 19.8.2393

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37532
  • Not a avast user
Re: Trojan.Downloader Detected
« Reply #20 on: September 27, 2016, 07:47:25 AM »

Offline dbrisendine

  • Malware Fighter
  • Avast Evangelist
  • Super Poster
  • ***
  • Posts: 1258
Re: Trojan.Downloader Detected
« Reply #21 on: September 27, 2016, 08:19:08 AM »
Patrick2,
As for the sonarinst.exe file, is this relevant to you?  https://www.reasoncoresecurity.com/sonarinst.exe-a4a72957f3a60bc78a29127039a106e0416d0c3f.aspx

Also, the only thing I see in these FRST logs is that the System Restore service is not working.  Did you disable that on purpose?  If not, see if the following helps:

Go to Start and type System in the search box.

Click on System (under Control Panel or Settings) and then on System Protection.

Click on Configure and then select Turn on system protection.

Click Apply and then OK.

In the System Protection screen, is Protection now On for the drive?

Win7 x32 Ult. SP1, Brain 2.0 / Win10 x64, Brain2.5
My help is always free but if you would like to help encourage me or show your thanks -----> DONATE

Offline Patrick2

  • Poster
  • *
  • Posts: 489
Re: Trojan.Downloader Detected
« Reply #22 on: September 27, 2016, 02:18:52 PM »
System Protection Status shows on for the Main C: Drive currently, Off For External G Drive,  As for the file, that is related to Battlefield 4 Game I play regularly,  Would've replied sooner but I was sleeping, and forgot I stayed logged in

Windows 10 Pro 64bit 1909 18363.476, Intel I7 7700 Nvidia Geforce 1050 16gb DDR4, WD 250GBSSD, 1tb Storage, Avast Free 19.8.2393
HP Omen Laptop Intel I7 7700HQ, 8gb Of Ram Windows 10 Home x64 1909 18363.476 128GB SSD, 1tb Storage, Avast Free 19.8.2393

Offline dbrisendine

  • Malware Fighter
  • Avast Evangelist
  • Super Poster
  • ***
  • Posts: 1258
Re: Trojan.Downloader Detected
« Reply #23 on: September 27, 2016, 04:47:45 PM »
Good to know about the file (figured it was something like that as it appeared to be a temp installer but not anything malicious).  As good to know that System Restore is working; that was the only issue I saw in you logs.

Your logs appear to be clean as a fresh OS install should be.  Enjoy your games and play well.  Just keep some good scanners around and use them every now and then to stay clean.  (Malwarebytes would be a great choice of a free version to have.  Along with Avast, of course.)   8)
Win7 x32 Ult. SP1, Brain 2.0 / Win10 x64, Brain2.5
My help is always free but if you would like to help encourage me or show your thanks -----> DONATE

Offline Patrick2

  • Poster
  • *
  • Posts: 489
Re: Trojan.Downloader Detected
« Reply #24 on: September 27, 2016, 05:28:42 PM »
Yes I do have Malwarebytes Free, and Avast Free fully updated, so thinking now safer than I used to be--thank you so much for checking the logs, so appreciate it
Windows 10 Pro 64bit 1909 18363.476, Intel I7 7700 Nvidia Geforce 1050 16gb DDR4, WD 250GBSSD, 1tb Storage, Avast Free 19.8.2393
HP Omen Laptop Intel I7 7700HQ, 8gb Of Ram Windows 10 Home x64 1909 18363.476 128GB SSD, 1tb Storage, Avast Free 19.8.2393