Skip to main content
Today suddenly my facebook account log out and show my system is infected with a malware .

 

Then show kaspersky Malware Scanner suggestion page !!!!

 

This is really Suspicious !!! becuase i think my system is Clear .

 

 
After many try , i can download kaspersky malware scanner .

 

Kaspersky_T10152966461621724T_.exe    size : 2.6MB

 

but when i run , do not show any GUI .  i search it at process . i understand process run , but after few time automatic close .

 

when i scan kaspersky malware scanner with virus total .

 

https://www.virustotal.com/en/file/be79198c8632a105fe1eeedfc3720d4b879e4c6ef204a36fbb427c1d2b8e2749/analysis/

 

 

i see information .

 

then i download " Trendmicro_T498370246980345T_.exe "   Size : 2.6 MB

 

https://fbcdn-dragon-a.akamaihd.net/hphotos-ak-xtf1/t39.2507-6/11409266_471801762983220_1187772128_n.exe/Trendmicro_T498370246980345T_.exe

 

interesting : both are same with 2 name !!!

 

 

MD5 6aee033d91e5626921515f1373e1aaa4SHA1 14b23e9a19730bef85a6324d3ec14db7abd8b520SHA256 be79198c8632a105fe1eeedfc3720d4b879e4c6ef204a36fbb427c1d2b8e2749ssdeep49152:0AFLdWRV79E6xalza4qaZxPNMd9sBsBj9XSQ/s+:0AFLMRV79E6xaBa4qoxlMd9sBej9Cqauthentihash f7b54e8c47b4624823b8ddd23d5c67c3669ee1e7bd56bc2917aeca551c8e50c4imphash 0752febf9d67b4f4771ffb478232015bFile size 2.6 MB ( 2742304 bytes )File type Win32 EXEMagic literalPE32 executable for MS Windows (GUI) Intel 80386 32-bitTrIDWin32 Executable (generic) (52.7%)

Generic Win/DOS Executable (23.4%)

DOS Executable Generic (23.3%)

VXD Driver (0.3%)

Autodesk FLIC Image File (extensions: flc, fli, cel) (0.0%)

Tagspeexe signed overlayVirusTotal metadata

First submission 2015-06-18 23:07:36 UTC ( 2 weeks, 5 days ago )Last submission 2015-07-08 08:18:33 UTC ( 13 minutes ago ) Fsecure_T125126771153128T_.exe

Facebook Malware Scanner

Fsecure_T673152526152125T_.exe

ESET_T378754265656582T_.exe

Trendmicro_T498370246980345T_.exe

Fsecure_T839393282813175T_.exe

ESET_T747369655371775T_.exe

Fsecure_T1421080914887946T_.exe

Fsecure_T1612685405677117T_.exe

ESET_T1017584131615668T_.exe

ESET_T1586462758309181T_.exe

ESET_T914945935228697T_.exe

Fsecure_T1502111060029536T_.exe

Fsecure_T1630423603840908T_ (1).exe

Trendmicro_T125575307774941T_.exe

Trendmicro_T137435423254761T_.exe

Kaspersky_T101047510243369T_.exe

Kaspersky_T863330400402653T_.exe

Fsecure_T1464867840497117T_.exe

Trendmicro_T461744507326249T_.exe

ESET_T1468053230174013T_.exe

Fsecure_T863567630387016T_ (2).exe

Trendmicro_T946529208718810T_.exe

Fsecure_T816165811813875T_.exe

Trendmicro_T1600112810240790T_.exe ------------------------------------------ What this means ? facebook create same file with multi names ? or kaspersky creat they ?!   
i can not understand why facebook only suggestion kaspersky malware scanner to me !

 

Unfortunately i force to downloaded & installed kaspersky malware scanner for solve my facebook account problem . and then Immediate uninstalled it .

 

I hope near time facebook leave this russia company . :D

 

 

 

 

 

 

Reply