DanE4367
-
Posts
3 -
Joined
-
Last visited
Content Type
Events
Profiles
Forums
Posts posted by DanE4367
-
-
Shadowwar,
Thank you, I could use instructions on how to export the registry key. I believe it was quarantined by Malwarebytes.
-
Since last program update of Malwarebytes, keep having Malwarebytes flag the file sdfiles.exe of Spybot Search & Destroy as malware. Specifically, riskware.ifeohijack in Registry values and registry keys for sdfiles.exe and debugger.
RiskWare.IFEOHijack, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\SDFILES.EXE, No Action By User, [6772], [249769],1.0.4588
RiskWare.IFEOHijack, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\SDFILES.EXE, No Action By User, [6772], [249769],1.0.4588Registry Value: 2
RiskWare.IFEOHijack, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\SDFILES.EXE|DEBUGGER, No Action By User, [6772], [249769],1.0.4588
RiskWare.IFEOHijack, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\SDFILES.EXE|DEBUGGER, No Action By User, [6772], [249769],1.0.4588False Positive? Don't like Spybot all of a sudden? True infection? Every time I quarantine or quarantine and remove, it comes back at a later date. Any help would be appreciated!
False Positive RiskWare.IFEOHijack in sdfiles.exe of Spybot Search & Destro
in File Detections
Posted
Attached Registry Key.
SDFiles_reg_key.zip