False Positive?

Discussion in 'other anti-malware software' started by Infected, Apr 7, 2019.

  1. Infected

    Infected Registered Member

    Joined:
    Feb 9, 2015
    Posts:
    1,137
    Kaspersky detected this in Google Chrome. Is this a false positive? When I go to that folder, that extension isn't there.
     

    Attached Files:

    Last edited: Apr 7, 2019
  2. Bill_Bright

    Bill_Bright Registered Member

    Joined:
    Jun 29, 2007
    Posts:
    4,042
    Location:
    Nebraska, USA
    That's why, regardless our primary anti-malware solution of choice, we should always have a secondary scanner on hand for "on-demand" scanning. I generally recommend Malwarebytes for that.
     
  3. itman

    itman Registered Member

    Joined:
    Jun 22, 2010
    Posts:
    8,593
    Location:
    U.S.A.
    You don't have to do anything.

    Kaspersky's JavaScript scanner detected adware; i.e. analytics.js, in Chrome's disk cache area, blocked it from executing, and deleted it.
     
  4. Mr.X

    Mr.X Registered Member

    Joined:
    Aug 10, 2013
    Posts:
    4,805
    Location:
    .
  5. itman

    itman Registered Member

    Joined:
    Jun 22, 2010
    Posts:
    8,593
    Location:
    U.S.A.
    An attacker can likewise compromise a web site and embed malicious javascript code. Hence the need to use an AV solution with a JavaScript scanner coupled with SSL protocol scanning to detect crap like this.
     
    Last edited: Apr 7, 2019
  6. Bill_Bright

    Bill_Bright Registered Member

    Joined:
    Jun 29, 2007
    Posts:
    4,042
    Location:
    Nebraska, USA
    Good point. Probably would have been good to try with FF or Edge too.
     
  7. guest

    guest Guest

    The ID ...\Extensions\jpaglkhbmbmhlnpnehlffkgaaapoicnk\... is an indicator for this extension: Video Downloader professional - https://chrome.google.com/webstore/detail/video-downloader-professi/jpaglkhbmbmhlnpnehlffkgaaapoicnk
    Is this extension currently installed?
    Some "reviews":
     
  8. Mr.X

    Mr.X Registered Member

    Joined:
    Aug 10, 2013
    Posts:
    4,805
    Location:
    .
    I rather be protected by Chrome's policies than not. And everyone should. Despite you say it has nothing to do with Chrome which I believe you're wrong but that's another story.
     
  9. Infected

    Infected Registered Member

    Joined:
    Feb 9, 2015
    Posts:
    1,137
  10. itman

    itman Registered Member

    Joined:
    Jun 22, 2010
    Posts:
    8,593
    Location:
    U.S.A.
    Agreed. In this case, it was a Chrome extension.
     
    Last edited: Apr 7, 2019
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.