![]() |
|
|
#1 (permalink) |
|
Member
Join Date: Oct 2010
Posts: 2
|
The other day I downloaded KRenameSetup and when
I tried to install it my Malwarebytes Anti-Malware pops up and says the file has a trojan in it called TrojanDropper.PGen. I was wondering whether or not anyone else is having a similar problem.
|
|
|
|
|
|
#2 (permalink) |
|
Foundation Editor
Join Date: Apr 2008
Location: Planet Earth
Posts: 1,391
|
It may well be infected. I downloaded the file from the developers site and ran it through VirusTotal. Below is the link to the results.
http://www.virustotal.com/file-scan/...b18-1284291557 It could still be a false positive that is occurring because of some code that has similarities to existing malware, but when you have this many detections I would be very careful.
__________________
The smallest good deed is better than the greatest intention. |
|
|
|
|
|
#3 (permalink) | |
|
Foundation Editor
Join Date: Apr 2008
Location: Planet Earth
Posts: 1,391
|
Here are the results from Norman Sandbox, I don't see anything suspicious going on in the install. I am waiting for results from other online malware analyzers
Quote:
__________________
The smallest good deed is better than the greatest intention. |
|
|
|
|
|
|
#4 (permalink) |
|
Foundation Editor
Join Date: Apr 2008
Location: Planet Earth
Posts: 1,391
|
Here are Joebox results. They were too big to post, or to attach so they are available to download from drop.io Joebox shows everything that a program does, and takes a long time to read through. I skimmed down to the most important sections, and did not see any major virus activity, but I am no expert in reading these things either.
results.html http://drop.io/bvkprle
__________________
The smallest good deed is better than the greatest intention. |
|
|
|
|
|
#5 (permalink) | |
|
Member
Join Date: Oct 2010
Posts: 2
|
Quote:
|
|
|
|
|
|
|
#8 (permalink) |
|
Senior Member
Join Date: Jul 2010
Location: UK
Posts: 173
|
This is interesting, Softpedia has KenRename as well but the zipped version and it returns only 2/41 from virus total.
http://www.virustotal.com/file-scan/...2e8-1277305696 Edit: I have just noticed that developers page has turned Orange in WOT ratings, I will be removing Ken Rename from my reviews today. |
|
|
|
![]() |
| Thread Tools | |
| Display Modes | |
|
|