Solved Potential Malware: syswow64 cmd.exe

archtech

New Member
Thread author
Oct 31, 2017
1
Hello,

Just wanted to check if there were any issues after opening an e-mail that Kaspersky prompted was an issue.
Kasperysky Total Security is prompting that syswow64\cmd.exe may have been used in a possible Trojan attack.

FRST and Addition logs are attached.

Steps:
- Scanned with Kaspersky, no issues
- Scanned with Malwarebytes Anti-Rootkit, no issues
- Scanned with FRST64, logs generated

Posting this here as per CMD pop-up topics not to be posted in Malware Removal Assistance

Context:
A client of ours must have gotten hacked, we got a MS Word attachment from them that was 'on an older generation of word'. On clicking 'enable editing', Kasperysky lit up and hopefully stopped a potential attack.
Just checking to see if there is anything to be worried about.

Kaspersky keeps saying I should 'resolve' the cmd.exe, but doesn't give me any instructions how and the prompt just stays up. It's probably a non-issue, but wanted to check.

Thanks for the help! :)
 

Attachments

  • FRST.txt
    71.9 KB · Views: 4
  • Addition.txt
    47.9 KB · Views: 2

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top