Did a full scan with a up-to-date MBAM today and it found 15 infected files.
However once the scan was over with, the files it thought was infected was from GIMP, a graphics/photo editing program.
I haven’t updated GIMP in a long time either and never had any problems before. So it shouldn’t be GIMP?
False positive? Or not?
Malwarebytes’ Anti-Malware 1.50.1.1100
www.malwarebytes.org
Database version: 5965
Windows 6.0.6001 Service Pack 1
Internet Explorer 8.0.6001.19019
3/5/2011 1:29:19 PM
mbam-log-2011-03-05 (13-29-16).txt
Scan type: Full scan (C:|D:|)
Objects scanned: 327698
Time elapsed: 1 hour(s), 28 minute(s), 11 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 15
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
c:\program files\GIMP-2.0\lib\gimp\2.0\plug-ins\alien-map.exe (Trojan.Dropper) → No action taken.
c:\program files\GIMP-2.0\lib\gimp\2.0\plug-ins\cartoon.exe (Trojan.Dropper) → No action taken.
c:\program files\GIMP-2.0\lib\gimp\2.0\plug-ins\cubism.exe (Trojan.Dropper) → No action taken.
c:\program files\GIMP-2.0\lib\gimp\2.0\plug-ins\file-csource.exe (Trojan.Dropper) → No action taken.
c:\program files\GIMP-2.0\lib\gimp\2.0\plug-ins\file-gbr.exe (Trojan.Dropper) → No action taken.
c:\program files\GIMP-2.0\lib\gimp\2.0\plug-ins\file-html-table.exe (Trojan.Dropper) → No action taken.
c:\program files\GIMP-2.0\lib\gimp\2.0\plug-ins\help.exe (Trojan.Dropper) → No action taken.
c:\program files\GIMP-2.0\lib\gimp\2.0\plug-ins\oilify.exe (Trojan.Dropper) → No action taken.
c:\program files\GIMP-2.0\lib\gimp\2.0\plug-ins\file-sgi.exe (Trojan.Dropper) → No action taken.
c:\program files\GIMP-2.0\lib\gimp\2.0\plug-ins\fractal-trace.exe (Trojan.Dropper) → No action taken.
c:\program files\GIMP-2.0\lib\gimp\2.0\plug-ins\noise-solid.exe (Trojan.Dropper) → No action taken.
c:\program files\GIMP-2.0\lib\gimp\2.0\plug-ins\photocopy.exe (Trojan.Dropper) → No action taken.
c:\program files\GIMP-2.0\lib\gimp\2.0\plug-ins\polar-coords.exe (Trojan.Dropper) → No action taken.
c:\program files\GIMP-2.0\lib\gimp\2.0\plug-ins\ripple.exe (Trojan.Dropper) → No action taken.
c:\program files\GIMP-2.0\lib\gimp\2.0\plug-ins\van-gogh-lic.exe (Trojan.Dropper) → No action taken.