Lode Posted June 16, 2011 Report Share Posted June 16, 2011 HI, I had not utilized this marvelous AV for some time, but just re-installed it. During the scan it reported as malware and quarantined "HiJackThis.msi". As far as I know this is the installer for HijackThis. I had it restored. If I was mistaken, and this would not be a false positive, I would like to know, if possible. Otherwise I'll trust it was just my HijackThis installer. Link to comment Share on other sites More sharing options...
sweidre Posted June 16, 2011 Report Share Posted June 16, 2011 HI, I had not utilized this marvelous AV for some time, but just re-installed it. During the scan it reported as malware and quarantined "HiJackThis.msi". As far as I know this is the installer for HijackThis. I had it restored.If I was mistaken, and this would not be a false positive, I would like to know, if possible. Otherwise I'll trust it was just my HijackThis installer. Hi Lode, I had the same problem with HighJackThis.msi, that was as per Orlando a False Positive! See this thread (4 posts only!): "A28C4D.msi (= Hijackthis.msi) Malware or False Positive?" http://forum.immunet.com/index.php?/topic/1119-a28c4dmsi-hijackthismsi/page__pid__6086&do=findComment&comment=6086 Cheers, sweidre PS. You do not have to send an email to support@samples.immunet.com with the file in zip-format attached, because I have already done it. It is a little bit strange, that you have HiJackThis.msi reported as a malware, because the Immunet Cloud should has got this info long time ago! DS Link to comment Share on other sites More sharing options...
Lode Posted June 17, 2011 Author Report Share Posted June 17, 2011 Thank you! I also just saw on my Online Armor firewall monitor that data were send to "AMAZONAWS.COM" Among other things this company provides "AntiFraud Solutions." http://cqcounter.com/whois/?query=amazonaws.com Also: "CloudFormation." http://aws.amazon.com/ Would this be related to Immunet? Link to comment Share on other sites More sharing options...
Rob.T Posted June 17, 2011 Report Share Posted June 17, 2011 Yup, http://aws.amazon.com/ is Immunet contacting the Cloud. Thanks for reporting the FP on Hijack this, I have marked it clean in the Cloud. Note it may take up to 24 hours to take effect. Link to comment Share on other sites More sharing options...
Lode Posted June 17, 2011 Author Report Share Posted June 17, 2011 You're welcome and thank you. Now that we're at it, Avira reported this: Virus or unwanted program 'TR/Crypt.XPACK.Gen [trojan]' detected in file 'C:\Program Files\Immunet\clamav\temp\clamtmp\clamav-ba17ba05d6e6a060c66a8d1f2d0a08b4. I guess for this I have to go to Avira... which I will do right now. Link to comment Share on other sites More sharing options...
Recommended Posts
Archived
This topic is now archived and is closed to further replies.