Jump to content

False Positive on Heidleberg Engineering Software For Diagnostic software


BobSoul

Recommended Posts

Hello :

 

 I just got the following false postives on our Heidelberg FA machines ( Diagnostic Equipment for taking images of the Retina ) 

These are not new and have been on system for sometime actually the main software for the machine to function

They are being detected as Malware.Sandbox.1

  • Endpoint name: 
  • OS platform: Windows
  • OS release name: Microsoft Windows 10 Pro for Workstations
  • Location: C:\PROGRAMDATA\{2A0FDD43-0EB4-490F-85DC-61A60EA69080}\SETUP.EXE
  • Policy name:
  • Report time: September 29th 2022, 14:04:26 UTC
  • Scan time: September 29th 2022, 14:01:00 UTC
  • Action taken: Quarantined
  • Threat name: Malware.Sandbox.1
  • Type: file

 

  • Endpoint name: 
  • OS platform: Windows
  • OS release name: Microsoft Windows 10 Pro for Workstations
  • Location: HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\Heidelberg Eye Explorer
  • Policy name: 
  • Report time: September 29th 2022, 14:04:26 UTC
  • Scan time: September 29th 2022, 14:01:00 UTC
  • Action taken: Quarantined
  • Threat name: Malware.Sandbox.1
  • Type: reg_key

 

  • Endpoint name: 
  • OS platform: Windows
  • OS release name: Microsoft Windows 10 Pro for Workstations
  • Location: HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{CA920751-9922-42DB-AD51-F199D40F2F0A}
  • Policy name: 
  • Report time: September 29th 2022, 14:04:26 UTC
  • Scan time: September 29th 2022, 14:01:00 UTC
  • Action taken: Quarantined
  • Threat name: Malware.Sandbox.1
  • Type: reg_key

 

Attached Diags as well

 

1552734866_MalwarebytesDiagnostics(5).zip

Edited by BobSoul
Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.