Jump to content
PROROOTECT

Possibility of FP Security.Hijack

Recommended Posts

Hello , Security.Hijack : Registry Key : HKLM / Software / Microsoft / Windows NT / CurrentVersion / Image File Execution Options / taskmgr.exe THANK YOU ALL SO MUCH !!!

Share this post


Link to post
Share on other sites

... MBAM database : 876 ; NO action taken . Task Manager : OK. ( taskmgr.exe : Memory used 4404 ko ) ; HijackThis , BugHunter , ESET SysInspector , GMER and kX-Ray - all OK. Thanks ...

Share this post


Link to post
Share on other sites

Hello , Marcin , Good MORNING :D , Illinois , USA ! Yeah !!! Dzien dobry ?.. :P Excuse me ... This is OLD CONTINENT ! I'm sorry ... :P:D:P

Share this post


Link to post
Share on other sites

FANTASTIC :P ! Database v. 879 . The scan completed successfully . NO malicious items were detected ... TRUSTWORTHY MBAM ! And his RESCUE TEAM !!! With Kindest Regards , PROROOTECT :P

Share this post


Link to post
Share on other sites

Could someone please check this out and see whether it might be an FP or an infection? I've got this on both my Dell Inspiron and the HP Mini, after updating to database 2609. I was wondering whether it could be related to the latest Windows/Microsoft updates.

Malwarebytes' Anti-Malware 1.40

Database version: 2609

Windows 5.1.2600 Service Pack 3

12/08/2009 8:47:08

mbam-log-2009-08-12 (08-46-34) developer

Scan type: Quick Scan

Objects scanned: 107249

Time elapsed: 8 minute(s), 54 second(s)

Memory Processes Infected: 0

Memory Modules Infected: 0

Registry Keys Infected: 1

Registry Values Infected: 0

Registry Data Items Infected: 0

Folders Infected: 0

Files Infected: 0

Memory Processes Infected:

(No malicious items detected)

Memory Modules Infected:

(No malicious items detected)

Registry Keys Infected:

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options (Security.Hijack) -> No action taken. [3857535134304144385864454836344564463436414247386152483953563451386146746883808

48071856156747969808884014753613686838370798555708384748079614278667270013974777

0

013889706886857480790148818574807984]

Registry Values Infected:

(No malicious items detected)

Registry Data Items Infected:

(No malicious items detected)

Folders Infected:

(No malicious items detected)

Files Infected:

(No malicious items detected)

Thank you very much for looking into this.

Share this post


Link to post
Share on other sites

Hi all

Date : 8/11/2009

Database version : 2609

Fingerprints loaded : 121602

Today I had this Security.Hijack in this registry key :

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options (Security.Hijack) -> Quarantined and deleted successfully.

I have restored since all the HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options key was deleted by mbam ...

Is this a FALSE ALERT from mbam ?

Sincerely

yapaksa

Share this post


Link to post
Share on other sites

Fixed with database version 2610.

Thank you very much for the extremely quick response.

You're really an exceptional team! ;)

Share this post


Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now

  • Recently Browsing   0 members

    No registered users viewing this page.

×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.