Slimjet web-setup exhumed by Malwarebytes.

General discussion about Slimjet, or other issues related to web browser in general.
Locked
saurabhdua
Posts: 70
Joined: Sat Jun 11, 2016 9:32 am

Slimjet web-setup exhumed by Malwarebytes.

Post by saurabhdua » Wed Feb 07, 2018 2:37 am

Hello!

My recent system scan with the latest version of Malwarebytes has left the web-installer of Slimjet >> entirely exhumed !

The web-installer were recognized as PUP & default action of MBAM - 'Quarantine' has made that disappear from my downloads folder.

Scan log is enclosed herewith...& Inputs in this regard will be sincerely appreciated. Thank you.

Malwarebytes
www.malwarebytes.com

-Log Details-
Scan Date: 2/7/18
Scan Time: 1:32 PM
Log File: 48d3e72f-0bdd-11e8-b880-10bf48779e96.json
Administrator: Yes

-Software Information-
Version: 3.3.1.2183
Components Version: 1.0.262
Update Package Version: 1.0.3887
License: Free

-System Information-
OS: Windows 7 Service Pack 1
CPU: x86
File System: NTFS
User: Mushkin-PC\Mushkin

-Scan Summary-
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 158778
Threats Detected: 1
Threats Quarantined: 1
Time Elapsed: 3 min, 47 sec

-Scan Options-
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Enabled
Heuristics: Enabled
PUP: Detect
PUM: Detect

-Scan Details-
Process: 0
(No malicious items detected)

Module: 0
(No malicious items detected)

Registry Key: 0
(No malicious items detected)

Registry Value: 0
(No malicious items detected)

Registry Data: 0
(No malicious items detected)

Data Stream: 0
(No malicious items detected)

Folder: 0
(No malicious items detected)

File: 1
PUP.Optional.InstallCore, C:\USERS\MUSHKIN\DOWNLOADS\SJTWEBSETUP_X86.EXE, Quarantined, [2], [424266],1.0.3887

Physical Sector: 0
(No malicious items detected)


(end)

User avatar
oftentired
Posts: 1234
Joined: Tue May 13, 2014 3:14 am

Re: Slimjet web-setup exhumed by Malwarebytes.

Post by oftentired » Wed Feb 07, 2018 8:33 am

upload it to virustotal.com for a scan
For those of you who wear aluminum foil hats, the voices lie, don't believe them!

Running 32 Bit SJ on Win 7 Pro


User avatar
oftentired
Posts: 1234
Joined: Tue May 13, 2014 3:14 am

Re: Slimjet web-setup exhumed by Malwarebytes.

Post by oftentired » Fri Mar 09, 2018 7:23 pm

Where did you get the file?

When I click on the webinstaller and download it and check the SHA-256 signature it doesn't match the file size or SHA-256 signature of the one that you uploaded to virustotal.
For those of you who wear aluminum foil hats, the voices lie, don't believe them!

Running 32 Bit SJ on Win 7 Pro

sleeper10
Posts: 350
Joined: Thu Jun 23, 2016 7:34 pm

Re: Slimjet web-setup exhumed by Malwarebytes.

Post by sleeper10 » Sat Mar 10, 2018 11:19 am

oftentired,

I can't check on linux, but how does that file scan on virustotal, better or same as his? You might also scan it here:
https://www.hybrid-analysis.com/

Like you, I suspect a bad file source &/or false positives.

Locked