Jump to content

Registry key- false positive?


sbreg9

Recommended Posts

Hi

Adwcleaner has  found these registry keys: 

HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\service1
[x64] HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\service1

They are some malicious keys or false positive?

Thanks a lot for your answers :)

Link to post
Share on other sites

Hi,

 

I can confirm that this is a FP:

 

# AdwCleaner v6.044 - Bericht erstellt am 18/03/2017 um 17:33:51
# Aktualisiert am 28/02/2017 von Malwarebytes
# Datenbank : 2017-03-17.2 [Server]
# Betriebssystem : Windows 10 Home  (X64)
# Benutzername : M-K-D-B - LAPTOP-1E0PSF9A
# Gestartet von : C:\Users\M-K-D-B\Desktop\adwcleaner_6.044.exe
# Modus: Suchlauf
# Unterstützung : https://www.malwarebytes.com/support


***** [ Registrierungsdatenbank ] *****
Schlüssel Gefunden: HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\service1
Schlüssel Gefunden: [x64] HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\service1

 

 

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\EventLog\Application\service1]
"EventMessageFile"="C:\Windows\Microsoft.NET\Framework\v4.0.30319\EventLogMessages.dll"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\EventLog\Application\service1]
"EventMessageFile"="C:\Windows\Microsoft.NET\Framework\v4.0.30319\EventLogMessages.dll"

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.