Jump to content

FP - Malware.Heuristic.1003 - Argus Monitor - HWInit.dll


shanelord

Recommended Posts

Malwarebytes
www.malwarebytes.com

-Log Details-
Protection Event Date: 29/04/2021
Protection Event Time: 12:33
Log File: 50f59302-a893-11eb-bf5a-3cf0113cf770.json

-Software Information-
Version: 4.3.0.98
Components Version: 1.0.1273
Update Package Version: 1.0.39897
Licence: Premium

-System Information-
OS: Windows 10 (Build 19042.928)
CPU: x64
File System: NTFS
User: System

-Blocked Malware Details-
File: 1
Malware.Heuristic.1003, C:\Program Files (x86)\ArgusMonitor\HWInit.dll, Quarantined, 1000001, 0, 1.0.39897, 0000000000000000000003EB, dds, 01221816, 1B2FC68BD7344621210BB63434541243, 6898F044B85EE6F1E6E6B9B5ADA321A5133993A41D8534E74C8B9F7BC68A9343


(end)

HWInit.zip

Link to post
Share on other sites

8 minutes ago, shanelord said:

-Blocked Malware Details-
File: 1
Malware.Heuristic.1003, C:\Program Files (x86)\ArgusMonitor\HWInit.dll, Quarantined, 1000001, 0, 1.0.39897, 0000000000000000000003EB, dds, 01221816, 1B2FC68BD7344621210BB63434541243, 6898F044B85EE6F1E6E6B9B5ADA321A5133993A41D8534E74C8B9F7BC68A9343

Do you have the following setting enabled? If so the default is supposed to be off currently.

If you restore the file and rescan It will not be detected.

 

2021-04-28_22h22_55.png

Edited by Porthos
Link to post
Share on other sites

6 minutes ago, Porthos said:

Do you have the following setting enabled? If so the default is supposed to be off currently.

If you restore the file and rescan It will not be detected.

Thanks. I've disabled and no longer being detected. Does this open me up to increased risk?

Thanks,
Shane.

Link to post
Share on other sites

Just now, shanelord said:

Does this open me up to increased risk?

No

It is to detect malformed files but sometimes legit files use protection that make them malformed. We are still tweaking the algorithms that is why it’s off by default. If you switch it on it is assumed you are able to tell the difference between a FP and a legit detection. 

And if you keep it on I suggest also turn off auto quarantine. Gives you the time to report FP's and not go thru the extra step to have to restore from quarantine.

In either way, we will look into this and get this fixed.

Thanks for reporting!

Link to post
Share on other sites

  • AdvancedSetup changed the title to FP - Malware.Heuristic.1003 - Argus Monitor - HWInit.dll

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.