Jump to content
ronzie009

False positive: Spyware.LokiBot C:\PROGRAM FILES\WINPCAP\RPCAPD.EXE

Recommended Posts

VirusTotal shows MBAM as the only positive (1/67) on this file.  I don't know exactly when this file was installed because the latest Windows 10 update caused the add/remove programs control panel to now show the date of the update as the install date for all applications installed at that time.

Windows 10 Home version 1803 OS build 17134.1

 

2018-05-04_scan_report.txt

rpcapd.rar

Share this post


Link to post
Share on other sites

Thanks,

This is a false positive indeed and will get fixed in next database update.

Thanks for reporting!

Share this post


Link to post
Share on other sites

Got the same false positive this night. Win7X86prof this file belongs to WireShark, using it since 2012(?)

THX for your work

Share this post


Link to post
Share on other sites

Yes, the next update will have this fixed, which should go out in 20 mins (or so).

This will be addressed in database update 

MBAM2 Version: v2018.05.04.06
MBAM3 Version: 1.0.4982

Share this post


Link to post
Share on other sites

Correct, as this was a false positive. This has been fixed in a meanwhile, as the update just went out:

MBAM2 Version: v2018.05.04.06
MBAM3 Version: 1.0.4982

Share this post


Link to post
Share on other sites

THX a lot for updating. It works.

I'll send you a virtual belgican schocolade and a bag of belgican Pommes Frites.

I could die for that :)

Saludos y Suerte (Greetings and luck, a nice Pagarugayan wish from Paraguay (PY))

Wolfgang

Share this post


Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now

  • Recently Browsing   0 members

    No registered users viewing this page.

×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.