Jump to content

Search the Community

Showing results for tags 'falsepositive'.

  • Search By Tags

    Type tags separated by commas.
  • Search By Author

Content Type


  • Announcements
    • Malwarebytes News
    • Beta Testing Program
  • Malware Removal Help
    • Windows Malware Removal Help & Support
    • Mac Malware Removal Help & Support
    • Mobile Malware Removal Help & Support
    • Malware Removal Self-Help Guides
  • Malwarebytes for Home Support
    • Malwarebytes for Windows Support Forum
    • Malwarebytes for Mac Support Forum
    • Malwarebytes for Android Support Forum
    • Malwarebytes for iOS Support
    • Malwarebytes Privacy
    • Malwarebytes Browser Guard
    • False Positives
    • Comments and Suggestions
  • Malwarebytes for Business Support
    • Malwarebytes Endpoint Protection
    • Malwarebytes Incident Response (includes Breach Remediation)
    • Malwarebytes Endpoint Security
    • Malwarebytes Business Products Comments and Suggestions
  • Malwarebytes Tools and Other Products
    • Malwarebytes AdwCleaner
    • Malwarebytes Junkware Removal Tool Support
    • Malwarebytes Anti-Rootkit BETA Support
    • Malwarebytes Techbench USB (Legacy)
    • Malwarebytes Secure Backup discontinued
    • Other Tools
    • Malwarebytes Tools Comments and Suggestions
  • General Computer Help and Security Updates
    • BSOD, Crashes, Kernel Debugging
    • General Windows PC Help
  • Research Center
    • Newest Rogue-Ransomware Threats
    • Newest Malware Threats
    • Newest Mobile Threats
    • Newest IP or URL Threats
    • Newest Mac Threats
    • Report Scam Phone Numbers
  • General
    • General Chat
    • Forums Announcements & Feedback

Find results in...

Find results that contain...

Date Created

  • Start


Last Updated

  • Start


Filter by number of...


  • Start





Website URL






  1. Hi, We have received reports from our customers that our site is blocked by Malwarebytes even though we are a legitimate business and have been editing essays since the late nineties. Domain: essayedge.com IP: Can you please remove us from your block list? Thank you.
  2. Kindly Remove my website www.theprolink.com from your list.
  3. Hi, Can you please delist the domain dunntech.ddns.net Currently testing a program spiceworks using a free domain but malwarebytes is blocking it. -Website Data- Domain: dunntech.ddns.net Type: Outbound File: C:\Program Files (x86)\Spiceworks\Agent\Spiceworks Agent Service.exe Cheers
  4. I have SmartSVN Pro 9.1.2 #5050 on Windows 10 Pro. Last night Malwarebytes Anti-Malware Home (Premium) decided that 271 files and 51 folders in ... C:\Users\Laurence\AppData\Roaming\SmartSVN\ ... have the Trojan.Fileless in them. That seems unlikely. I am assuming this is a false positive with Malwarebytes but I would like to know if anyone else is seeing something like this. I updated the database, exited MBAM, ran MBAM /DEVELOPER, and rescanned the ...\SmartSVN\ folder above. I have attached the log file from that scan. Since the entire SmartSVN folder was detected I created a two part (to stay under 30MB per file) .rar of everything in it. 20161023-Malwarebytes-claims-SmartSVN-trojan-developer.txt SmartSVN.part2.rar SmartSVN.part1.rar
  5. This program is a variant of KODI/XBMC/TVMC. It is a legitimate program, but like Kodi/TVMC, it is detected as ransomeware.
  6. Saturday I ran into a virus I can’t seem to get rid of. I noticed it directly as I got a popup about windows user account control had been disabled. I immediately cancelled everything, activated UAC again and did the following steps: - Uninstalled all new programs via control panel (almost 10) - Removed yessearches as the new homepage for browsers - Checked for addons in browsers = none - Updated and ran a scan on Spybot - Updated and ran a scan on Avast But the problem remained. Almost every program I start get this huge installer screen saying “Update to the latest version of….” (Outlook, VLC etc). As this pops up, Avast displays that it has blocked a threat origin from the temp folder (under c:\ or c:\windows). (Which it obviously hasn’t, as the installer still starts.) I have downloaded Microsoft security scan, and when running a full scan it reports that it has only partially removed win32 Mizenote. I get no instructions on how to fully remove it. I have tried to empty the temp folders that Avast says the virus origins from, but files are protected. I have also found a very suspicious chromebrowser.exe in my windows file with the same creation date as when the problem started, that neither can be removed, not even via cmd. I have googled my eyes blue. HELP! What is this? And more importantly, how can I remove it as Spybot, Avast and Microsoft security runs short?
  7. FPs on DVDStyler and Gpg4win: http://www.dvdstyler.org/en/& https://www.gpg4win.org/ Nothing appeared to be added to the quarantine list in the GUI, but notifications came up saying that ransomware was detected in the tray area. Since nothing was quarantined, I have no EXE for Gpg4win since that one happened a while ago and I don't remember what EXE it was, but I will attach the DVDStyler EXE that was flagged in the notification, since that happened today. The DVDStyler FP happened while building a DVD to be burned. I don't remember what I was doing when the Gpg4win FP occurred. Both installer packages were detected by 0 AVs on Virustotal before installing them, and they were downloaded from the sites listed above. Attached are the requested .zips from the FP reporting thread. Malwarebytes Anti-Ransomware.zip MBAMService.zip DVDStyler.zip
  8. It seems that when using multiple mini-programs in Glary Utilities 5, MBARW is flagging them as ransomware and/or rootkits. The programs so far are DiskCleaner.exe & fileencrypt.exe. These program are designed for cleaning your disk (DiskCleaner.exe) & Encrypting confidential information. (fileencrypt.exe). These files are not malicious in any way, shape or form. Here are are the virustotal reports: DiskCleaner.exe - https://www.virustotal.com/en/file/7c3adba19684b870aeb87afe446c351ff395d27a9c5a9628ed29d4ef917111e4/analysis/1454143679/ fileencrypt.exe - https://www.virustotal.com/en/file/4adabcd2850f36e26e341f7c413bb65d02a1fcb0527feda643e2d243f5c0b618/analysis/1454143676/.
  9. Hello, Our website (hxxp://bip.malopolska.pl) is being blocked by Malwarebytes. I've checked the server for presence of malware, server came up clean. Also I've checked some blacklists like: hxxp://www.blacklistalert.org/ hxxp://whatismyipaddress.com/blacklist-check hxxp://mxtoolbox.com/SuperTool.aspx?action=blacklist%3a91.213.108.36 In additional this is not shared IP so I believe it to be a false positive. Please kindly fix this, Cheers malwarebytes_log.xml
  10. Dear Support, We were verifying our software at virustotal.com and we could see that you detect us as "PUP.Optional.MyStartTB.A" . This is a false positive because our software is free of virus or others threats. Our software is available at http://toolbar.mystart.com and I sent in attached file too. the virustotal rapport is available here https://www.virustotal.com/en/file/010dd7101666dd0b5836d1e45188a09f9e4a73ecdb0cf93e4a80feca1f378ccd/analysis/1401205926/ If you have question, let me know. Best regards, Marco Ribeiro
  11. Hi, When we open www.installmonetizer.com then malware bytes blocks this site. The site has been checked on other antivirus and no threat has been detected by them. Please re-examine the detection. I reported this issue 2 days back and seems as if my post got deleted in the recent downtime. Thanks Sameer
  12. ok, i'm just wondering if these results are false positives. Malwarebytes Anti-Malware www.malwarebytes.org Database version: v2012.12.05.07 Windows XP Service Pack 3 x86 NTFS Internet Explorer 8.0.6001.18702 Luke Fitton :: LUKE-143F21AD47 [administrator] 05/12/2012 18:39:16 mbam-log-2012-12-05 (23-00-37).txt Scan type: Full scan (C:\|E:\|G:\|H:\|I:\|) Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM Scan options disabled: P2P Objects scanned: 647893 Time elapsed: 4 hour(s), 3 minute(s), 26 second(s) Memory Processes Detected: 0 (No malicious items detected) Memory Modules Detected: 0 (No malicious items detected) Registry Keys Detected: 1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Veoh Web Player Beta (Trojan.Magania) -> No action taken. [744717c397c6b18543d631af5fa1a15f] Registry Values Detected: 0 (No malicious items detected) Registry Data Items Detected: 0 (No malicious items detected) Folders Detected: 0 (No malicious items detected) Files Detected: 2 C:\Program Files\Veoh Networks\VeohWebPlayer\uninst.exe (Trojan.Magania) -> No action taken. [744717c397c6b18543d631af5fa1a15f] E:\installedgames\Age Of Empires II\Data\closedpw.exe (Trojan.Onlinegames) -> No action taken. [d8e3b7237ae38ea84e6e0b218a7a6e92] (end) i will upload the two files aswell, please mention if you want the registry file. uploaded posible FP files.zip
Back to top
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.