Page 1 of 1

Industroyer

Posted: Thu Jun 15, 2017 10:35 pm
by winultimate
Just today I found out that my compile has this:

https://www.bleepingcomputer.com/news/s ... wer-grids/

And so my Anti-malware removed it, and required reboot of my PC to finish cleaning.

Never seen that happened to a compile that I compiled before.

Re: Industroyer

Posted: Fri Jun 16, 2017 2:13 pm
by EqMule
Send it to them for analysis so they can whitelist it. Don't forget to mention it's open source so they can actually check the source as well.

I suppose it's possible that your version has been infected after you built it.

Re: Industroyer

Posted: Fri Jun 16, 2017 2:19 pm
by demonstar55
Also, what file did it report as malware?

Re: Industroyer

Posted: Wed Jun 21, 2017 11:26 pm
by crawky
I had a file flagged by Malwarebytes (version 3.0.6.1469). The file was flaggged as soon as I tried to run MQ2
Threat: Backdoor.Industroyer.Generic
File: MQ2-20170615\RELEASE\MQ2MAIN.DLL

Re: Industroyer

Posted: Thu Jun 22, 2017 1:28 am
by demonstar55
It's a false positive, report it to them.

Re: Industroyer

Posted: Mon Jun 26, 2017 4:48 pm
by winultimate
What's weird is that after the offending MQ2Main file and its source were removed by the antivirus, the strange power reading for my computer battery is back to 100%. It was at 81% plugging but not charging before the malware was quarantined.

Backdoor.Industroyer.Generic

Re: Industroyer

Posted: Fri Jul 07, 2017 12:01 am
by winultimate
Seems like my comp slows down during this past couple of weeks. But after I removed this malware, and rebooted, the comp is faster now and not bogged down every time running web browsers and folders.

Re: Industroyer

Posted: Fri Jul 07, 2017 12:06 am
by Cilraaz
The placebo effect is a hell of a thing.

Re: Industroyer

Posted: Fri Jul 07, 2017 10:28 pm
by warlock45
MQ is virus free so...

you musta cleared something else =)