Jump to content

Trojan.Crypt false positive?


Recommended Posts



The newest database version detected a single file in my system. I checked my file MD5 hash against various sites and got the same value (0B5916EAA10D2D7A11EE667EDE0297E5)

I also downloaded the file dotTraceProfilingSDK.msi from jetbrains and extracted the file JetNativeHooks.dll and scanned it which showed the same infection. the files own file version is There are newer versions of this file which are not detected as malware. 


The previous database version from a week ago did not detect the file as malware.



Malwarebytes Anti-Malware (MEE)
Database version: v2015.11.09.01
Windows 8 x64 NTFS
Internet Explorer 11.0.9600.18053
%username% :: %computer_name% [administrator]
Protection: Enabled
9.11.2015 11:44:52
MBAM-log-2015-11-09 (11-45-01).txt
Scan type: Custom scan (c:\users\%username%\downloads\_redist.file.x64.jetnativehooks.dll|)
Scan options enabled: File System | Heuristics/Shuriken | PUP | PUM | P2P
Scan options disabled: Memory | Startup | Registry | Heuristics/Extra
Objects scanned: 1
Time elapsed: 1 second(s)
Memory Processes Detected: 0
(No malicious items detected)
Memory Modules Detected: 0
(No malicious items detected)
Registry Keys Detected: 0
(No malicious items detected)
Registry Values Detected: 0
(No malicious items detected)
Registry Data Items Detected: 0
(No malicious items detected)
Folders Detected: 0
(No malicious items detected)
Files Detected: 1
c:\temp\JetNativeHooks.zip (Trojan.Crypt) -> No action taken. [43b20e6d76157db952d2122fd92bf808]


Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.