Jump to content

Recommended Posts

Hello:

The following shows up in my first quick scan with Malwarebytes AntiMalware 1.44. The Vendor is named as: Rogue.Antivirus2008

Registry Keys Infected:

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{3aa42713-5c1e-48e2-b432-d8bf420dd31d} (Rogue.AntiVirus2008) -> No action taken.

No other infections were found.

It seems that the vendor is listed as Microsoft. And no other infections were found. Nor does this registry key show up as infected by other anti spyware or av scans.

Question:

Is this likely a false positive?

Thanks in advance:

-eliuri

Malwarebytes AntiMalware 1.44

SuperAntiSpyware

Zone Alarm Security Suite

Since all that was found was this isolated registry key, I cannot upload any file here.

=======================================

Log File for Scan:

Malwarebytes' Anti-Malware 1.44

Database version: 3719

Windows 5.1.2600 Service Pack 3

Internet Explorer 7.0.5730.11

2/10/2010 10:08:02 AM

mbam-log-2010-02-10 (10-07-59).txt

Scan type: Quick Scan

Objects scanned: 120871

Time elapsed: 10 minute(s), 1 second(s)

Memory Processes Infected: 0

Memory Modules Infected: 0

Registry Keys Infected: 1

Registry Values Infected: 0

Registry Data Items Infected: 0

Folders Infected: 0

Files Infected: 0

Memory Processes Infected:

(No malicious items detected)

Memory Modules Infected:

(No malicious items detected)

Registry Keys Infected:

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{3aa42713-5c1e-48e2-b432-d8bf420dd31d} (Rogue.AntiVirus2008) -> No action taken.

Registry Values Infected:

(No malicious items detected)

Registry Data Items Infected:

(No malicious items detected)

Folders Infected:

(No malicious items detected)

Files Infected:

(No malicious items detected)

Link to post
Share on other sites

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\ <- This is a trace location .

{3aa42713-5c1e-48e2-b432-d8bf420dd31d} <- This is the actual detection here and since it is not linked to any other component there is no active infection .

What most likely happened was this infection was cleaned up long ago and this one trace was missed . Let MBAM remove it and all work here is done .

Link to post
Share on other sites

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\ <- This is a trace location .

{3aa42713-5c1e-48e2-b432-d8bf420dd31d} <- This is the actual detection here and since it is not linked to any other component there is no active infection .

What most likely happened was this infection was cleaned up long ago and this one trace was missed . Let MBAM remove it and all work here is done .

========================================

Thank you, Nosirrah:

Two questions:

1) If I choose to put this item into the Ignore List, does it pose any serious problem to my PC?

2) If I choose to remove it, does it automatically go into Quarantine so that it can be restored in case its a needed key?

Thanks again:

-Eliuri

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.