Jump to content

False Positive (30 march) ?


Denny_M

Recommended Posts

hi, next yesterday to do a scan but none....yesterday

a new scan and Antimlawarebyte say have a TROYAN:

Infect keys:

HKEY_CLASSES_ROOT\CLSID\{248dd897-bb45-11cf-9abc-0080c7e7b78d} (Trojan.BHO) -> No action taken.

HKEY_CLASSES_ROOT\TypeLib\{248dd890-bb45-11cf-9abc-0080c7e7b78d} (Trojan.BHO) -> No action taken.

HKEY_CLASSES_ROOT\Interface\{248dd892-bb45-11cf-9abc-0080c7e7b78d} (Trojan.BHO) -> No action taken.

HKEY_CLASSES_ROOT\Interface\{248dd893-bb45-11cf-9abc-0080c7e7b78d} (Trojan.BHO) -> No action taken.

HKEY_CLASSES_ROOT\CLSID\{248dd896-bb45-11cf-9abc-0080c7e7b78d} (Trojan.BHO) -> No action taken.

and program infect is:

C:\WINDOWS\system32\mswinsck.ocx (Trojan.BHO) -> No action taken.

i have scan this MSWINSCK.OCX with Virus Scan and say no virus o trojan !!!

is a false/positive ?????

yestarday i have installed ONLY the update of Java RE6 version 13.

help me ? what i to do ?

Link to post
Share on other sites

later day i scan and result INFECT in system32 the MSWINSCK.OCX file ....

yestarday i download the new database at 6 P.M. and re-scan ....NO VIRUS or

TROJAN result ! !!! an false/positive !

yesterday, at 9 P.M. download the new database: 1926 31 march 2009

re-scan and it say:

REGISTER KEY INFECT:

HKEY_CLASSES_ROOT\ierunner.dochostuihandler (Trojan.FakeAlert) -> No action taken.

HKEY_CLASSES_ROOT\CLSID\{3f2bbc05-40df-11d2-9455-00104bc936ff} (Trojan.FakeAlert) -> No action take

what to do? kill this key or ANOTHER false/positive of Antimalwarebyte's ? help me....

please

Link to post
Share on other sites

Malwarebytes' Anti-Malware 1.35

Versione del database: 1926

Windows 5.1.2600 Service Pack 2

01/04/2009 5.13.14

mbam-log-2009-04-01 (05-13-03).txt

Tipo di scansione: Scansione completa (C:\|)

Elementi scansionati: 160823

Tempo trascorso: 46 minute(s), 2 second(s)

Processi delle memoria infetti: 0

Moduli della memoria infetti: 0

Chiavi di registro infette: 2

Valori di registro infetti: 0

Elementi dato del registro infetti: 0

Cartelle infette: 0

File infetti: 0

Processi delle memoria infetti:

(Nessun elemento malevolo rilevato)

Moduli della memoria infetti:

(Nessun elemento malevolo rilevato)

Chiavi di registro infette:

HKEY_CLASSES_ROOT\ierunner.dochostuihandler (Trojan.FakeAlert) -> No action taken.

HKEY_CLASSES_ROOT\CLSID\{3f2bbc05-40df-11d2-9455-00104bc936ff} (Trojan.FakeAlert) -> No action taken.

Valori di registro infetti:

(Nessun elemento malevolo rilevato)

Elementi dato del registro infetti:

(Nessun elemento malevolo rilevato)

Cartelle infette:

(Nessun elemento malevolo rilevato)

File infetti:

(Nessun elemento malevolo rilevato)

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.