Solved Potential Malware: syswow64 cmd.exe

archtech

New Member
Thread author
Oct 31, 2017
1
0
2
Vancouver, BC, Canada
Hello,

Just wanted to check if there were any issues after opening an e-mail that Kaspersky prompted was an issue.
Kasperysky Total Security is prompting that syswow64\cmd.exe may have been used in a possible Trojan attack.

FRST and Addition logs are attached.

Steps:
- Scanned with Kaspersky, no issues
- Scanned with Malwarebytes Anti-Rootkit, no issues
- Scanned with FRST64, logs generated

Posting this here as per CMD pop-up topics not to be posted in Malware Removal Assistance

Context:
A client of ours must have gotten hacked, we got a MS Word attachment from them that was 'on an older generation of word'. On clicking 'enable editing', Kasperysky lit up and hopefully stopped a potential attack.
Just checking to see if there is anything to be worried about.

Kaspersky keeps saying I should 'resolve' the cmd.exe, but doesn't give me any instructions how and the prompt just stays up. It's probably a non-issue, but wanted to check.

Thanks for the help! :)
 

Attachments