Today suddenly my facebook account log out and show my system is infected with a malware .
Then show kaspersky Malware Scanner suggestion page !!!!
This is really Suspicious !!! becuase i think my system is Clear .
Page 1 / 1
After many try , i can download kaspersky malware scanner .
Kaspersky_T10152966461621724T_.exe size : 2.6MB
but when i run , do not show any GUI . i search it at process . i understand process run , but after few time automatic close .
when i scan kaspersky malware scanner with virus total .
https://www.virustotal.com/en/file/be79198c8632a105fe1eeedfc3720d4b879e4c6ef204a36fbb427c1d2b8e2749/analysis/
i see information .
then i download " Trendmicro_T498370246980345T_.exe " Size : 2.6 MB
https://fbcdn-dragon-a.akamaihd.net/hphotos-ak-xtf1/t39.2507-6/11409266_471801762983220_1187772128_n.exe/Trendmicro_T498370246980345T_.exe
interesting : both are same with 2 name !!!
MD5 6aee033d91e5626921515f1373e1aaa4SHA1 14b23e9a19730bef85a6324d3ec14db7abd8b520SHA256 be79198c8632a105fe1eeedfc3720d4b879e4c6ef204a36fbb427c1d2b8e2749ssdeep49152:0AFLdWRV79E6xalza4qaZxPNMd9sBsBj9XSQ/s+:0AFLMRV79E6xaBa4qoxlMd9sBej9Cqauthentihash f7b54e8c47b4624823b8ddd23d5c67c3669ee1e7bd56bc2917aeca551c8e50c4imphash 0752febf9d67b4f4771ffb478232015bFile size 2.6 MB ( 2742304 bytes )File type Win32 EXEMagic literalPE32 executable for MS Windows (GUI) Intel 80386 32-bitTrIDWin32 Executable (generic) (52.7%)
Generic Win/DOS Executable (23.4%)
DOS Executable Generic (23.3%)
VXD Driver (0.3%)
Autodesk FLIC Image File (extensions: flc, fli, cel) (0.0%)
Tagspeexe signed overlayVirusTotal metadata
First submission 2015-06-18 23:07:36 UTC ( 2 weeks, 5 days ago )Last submission 2015-07-08 08:18:33 UTC ( 13 minutes ago ) Fsecure_T125126771153128T_.exe
Facebook Malware Scanner
Fsecure_T673152526152125T_.exe
ESET_T378754265656582T_.exe
Trendmicro_T498370246980345T_.exe
Fsecure_T839393282813175T_.exe
ESET_T747369655371775T_.exe
Fsecure_T1421080914887946T_.exe
Fsecure_T1612685405677117T_.exe
ESET_T1017584131615668T_.exe
ESET_T1586462758309181T_.exe
ESET_T914945935228697T_.exe
Fsecure_T1502111060029536T_.exe
Fsecure_T1630423603840908T_ (1).exe
Trendmicro_T125575307774941T_.exe
Trendmicro_T137435423254761T_.exe
Kaspersky_T101047510243369T_.exe
Kaspersky_T863330400402653T_.exe
Fsecure_T1464867840497117T_.exe
Trendmicro_T461744507326249T_.exe
ESET_T1468053230174013T_.exe
Fsecure_T863567630387016T_ (2).exe
Trendmicro_T946529208718810T_.exe
Fsecure_T816165811813875T_.exe
Trendmicro_T1600112810240790T_.exe ------------------------------------------ What this means ? facebook create same file with multi names ? or kaspersky creat they ?!
Kaspersky_T10152966461621724T_.exe size : 2.6MB
but when i run , do not show any GUI . i search it at process . i understand process run , but after few time automatic close .
when i scan kaspersky malware scanner with virus total .
https://www.virustotal.com/en/file/be79198c8632a105fe1eeedfc3720d4b879e4c6ef204a36fbb427c1d2b8e2749/analysis/
i see information .
then i download " Trendmicro_T498370246980345T_.exe " Size : 2.6 MB
https://fbcdn-dragon-a.akamaihd.net/hphotos-ak-xtf1/t39.2507-6/11409266_471801762983220_1187772128_n.exe/Trendmicro_T498370246980345T_.exe
interesting : both are same with 2 name !!!
MD5 6aee033d91e5626921515f1373e1aaa4SHA1 14b23e9a19730bef85a6324d3ec14db7abd8b520SHA256 be79198c8632a105fe1eeedfc3720d4b879e4c6ef204a36fbb427c1d2b8e2749ssdeep49152:0AFLdWRV79E6xalza4qaZxPNMd9sBsBj9XSQ/s+:0AFLMRV79E6xaBa4qoxlMd9sBej9Cqauthentihash f7b54e8c47b4624823b8ddd23d5c67c3669ee1e7bd56bc2917aeca551c8e50c4imphash 0752febf9d67b4f4771ffb478232015bFile size 2.6 MB ( 2742304 bytes )File type Win32 EXEMagic literalPE32 executable for MS Windows (GUI) Intel 80386 32-bitTrIDWin32 Executable (generic) (52.7%)
Generic Win/DOS Executable (23.4%)
DOS Executable Generic (23.3%)
VXD Driver (0.3%)
Autodesk FLIC Image File (extensions: flc, fli, cel) (0.0%)
Tagspeexe signed overlayVirusTotal metadata
First submission 2015-06-18 23:07:36 UTC ( 2 weeks, 5 days ago )Last submission 2015-07-08 08:18:33 UTC ( 13 minutes ago ) Fsecure_T125126771153128T_.exe
Facebook Malware Scanner
Fsecure_T673152526152125T_.exe
ESET_T378754265656582T_.exe
Trendmicro_T498370246980345T_.exe
Fsecure_T839393282813175T_.exe
ESET_T747369655371775T_.exe
Fsecure_T1421080914887946T_.exe
Fsecure_T1612685405677117T_.exe
ESET_T1017584131615668T_.exe
ESET_T1586462758309181T_.exe
ESET_T914945935228697T_.exe
Fsecure_T1502111060029536T_.exe
Fsecure_T1630423603840908T_ (1).exe
Trendmicro_T125575307774941T_.exe
Trendmicro_T137435423254761T_.exe
Kaspersky_T101047510243369T_.exe
Kaspersky_T863330400402653T_.exe
Fsecure_T1464867840497117T_.exe
Trendmicro_T461744507326249T_.exe
ESET_T1468053230174013T_.exe
Fsecure_T863567630387016T_ (2).exe
Trendmicro_T946529208718810T_.exe
Fsecure_T816165811813875T_.exe
Trendmicro_T1600112810240790T_.exe ------------------------------------------ What this means ? facebook create same file with multi names ? or kaspersky creat they ?!
i can not understand why facebook only suggestion kaspersky malware scanner to me !
Unfortunately i force to downloaded & installed kaspersky malware scanner for solve my facebook account problem . and then Immediate uninstalled it .
I hope near time facebook leave this russia company . :D
Unfortunately i force to downloaded & installed kaspersky malware scanner for solve my facebook account problem . and then Immediate uninstalled it .
I hope near time facebook leave this russia company . :D
Reply
Login to the community
No account yet? Create an account
Enter your E-mail address. We'll send you an e-mail with instructions to reset your password.