Results 1 to 3 of 3

Thread: False Positive

  1. #1
    Junior Member
    Join Date
    Jul 2007
    Posts
    22

    Default False Positive

    Currently getting the following detection

    ABetterInternet.Aurora: Settings (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnceEx\800


    --- Spybot - Search & Destroy version: 1.4 (build: 20050523) ---

    2005-05-31 blindman.exe (1.0.0.1)
    2005-05-31 SpybotSD.exe (1.4.0.3)
    2007-02-07 TeaTimer.exe (1.5.0.6)
    2005-12-08 unins000.exe (51.41.0.0)
    2005-05-31 Update.exe (1.4.0.0)
    2007-05-23 advcheck.dll (1.5.3.0)
    2005-05-31 aports.dll (2.1.0.0)
    2005-05-31 borlndmm.dll (7.0.4.453)
    2005-05-31 delphimm.dll (7.0.4.453)
    2005-05-31 SDHelper.dll (1.4.0.0)
    2007-01-02 Tools.dll (2.0.1.0)
    2005-05-31 UnzDll.dll (1.73.1.1)
    2005-05-31 ZipDll.dll (1.73.2.0)
    2007-07-11 Includes\Beta.sbi (*)
    2007-07-10 Includes\Beta.uti
    2007-07-11 Includes\Cookies.sbi (*)
    2007-05-30 Includes\Dialer.sbi (*)
    2007-07-11 Includes\DialerC.sbi (*)
    2007-07-11 Includes\Hijackers.sbi (*)
    2007-07-11 Includes\HijackersC.sbi (*)
    2007-07-11 Includes\Keyloggers.sbi (*)
    2007-07-11 Includes\KeyloggersC.sbi (*)
    2007-07-11 Includes\Malware.sbi (*)
    2007-07-11 Includes\MalwareC.sbi (*)
    2007-07-11 Includes\PUPS.sbi (*)
    2007-07-11 Includes\PUPSC.sbi (*)
    2007-07-11 Includes\Revision.sbi (*)
    2007-05-30 Includes\Security.sbi (*)
    2007-07-11 Includes\SecurityC.sbi (*)
    2007-07-11 Includes\Spybots.sbi (*)
    2007-07-11 Includes\SpybotsC.sbi (*)
    2005-02-17 Includes\Tracks.uti
    2007-07-03 Includes\Trojans.sbi (*)
    2007-07-11 Includes\TrojansC.sbi (*)
    2007-06-06 Plugins\TCPIPAddress.dll
    Though going to the registry key myself it doesn't look like anything bad.

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnceEx\800]
    "000"="C:\\WINDOWS\\system32\\Macromed\\Flash\\Flash9c.ocx|DllRegisterServer"

  2. #2
    Member of Team Spybot tashi's Avatar
    Join Date
    Oct 2005
    Location
    USA
    Posts
    30,959

    Default

    Hello.

    I have made a note of this for our detectives.
    Microsoft MVP Reconnect 2018-
    Windows Insider MVP 2016-2018
    Microsoft Consumer Security MVP 2006-2016

  3. #3
    Senior Member Yodama's Avatar
    Join Date
    Oct 2005
    Location
    Buchenheim
    Posts
    1,110

    Default

    hi,
    thank you for reporting this. It is a false positive and will be removed from detection database with the next update scheduled for the middle of next week.
    born in the shadow to die in the shadow, that is the fate of the shinobi

    Spybot S&D Downloads

    Please help us improve Spybot and download our distributed testing client.

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •